Hull, North Humberside, England, United Kingdom Hybrid / WFH Options
Heron Foods
InformationSecurityAnalyst – Heron Foods Salary: £35,000 – £45,000 per annum (depending on experience) Location: Hull (with hybrid working flexibility) About the Role We are looking for an InformationSecurityAnalyst to join the Group InformationSecurity Function at B&M, with a dedicated focus on Heron Foods. In this role … you’ll act as the primary contact for all things cyber and informationsecurity at Heron Foods, working day-to-day under the steer of the Head of IT at Heron Foods while aligning with the security strategy, policies, and standards set by the Group Head of Information Security. This is an exciting opportunity to be … at the frontline of cyber defence — monitoring threats, responding to incidents, managing vulnerabilities, and embedding security into everyday operations across Heron Foods. Key Responsibilities As InformationSecurityAnalyst, you will: Be the first point of contact for all cyber and informationsecurity matters within Heron Foods. Monitor and respond to alerts from our Managed More ❯
North Ferriby, North Humberside, North East, United Kingdom Hybrid / WFH Options
Heron Foods
InformationSecurityAnalyst – Heron Foods Salary: £35,000 – £45,000 per annum (depending on experience) Location: Hull (with hybrid working flexibility) About the Role We are looking for an InformationSecurityAnalyst to join the Group InformationSecurity Function at B&M, with a dedicated focus on Heron Foods. In this role … you'll act as the primary contact for all things cyber and informationsecurity at Heron Foods, working day-to-day under the steer of the Head of IT at Heron Foods while aligning with the security strategy, policies, and standards set by the Group Head of Information Security. This is an exciting opportunity to be … at the frontline of cyber defence — monitoring threats, responding to incidents, managing vulnerabilities, and embedding security into everyday operations across Heron Foods. Key Responsibilities As InformationSecurityAnalyst, you will: Be the first point of contact for all cyber and informationsecurity matters within Heron Foods. Monitor and respond to alerts from our Managed More ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
Role: InformationSecurityAnalyst Location: Guildford (Hybrid options available) Salary: Circa £45,000 (plus comprehensive benefits package) Start date: ASAP My client, a leading financial services organisation, is looking for an InformationSecurityAnalyst to join their team. This is an excellent opportunity to play a key role in advancing the company's security posture by delivering Governance, Risk, and Compliance (GRC) initiatives and embedding the NIST Cyber Security Framework (CSF) across the business. Key skills/responsibilities: Deliver day-to-day GRC activities, including designing and implementing security controls and managing informationsecurity risks Interpret and apply requirements from the Group InformationSecurity Framework Conduct gap … assessments, identify risks, and support maturity uplift across security functions Develop and maintain an informationsecurity controls catalogue, policies, and procedures aligned with NIST CSF Collaborate with business units to integrate security measures into operations Support compliance activities for frameworks such as Cyber Essentials, PCI DSS, and the Group InformationSecurity Framework Facilitate reviews More ❯
Are you passionate about protecting critical information and systems? Our client is seeking an experienced InformationSecurityAnalyst to make a real impact in safeguarding their digital assets. This is fantastic opportunity to play a central role in maintaining a strong security posture across the business. In this role, you’ll develop and maintain a … robust InformationSecurity Management System (ISMS), carry out regular risk assessments and contribute to the continuous development of security tools, technologies and processes, making a direct difference in the company’s cyber resilience. Key Responsibilities: Develop and maintain a comprehensive InformationSecurity Management System (ISMS) Conduct regular risk assessments to identify and mitigate potential security threats Establish and manage a security incident response plan, documenting incidents and protocols Perform PCI Compliance auditing and ensure adherence to GDPR and the Data Protection Act 2018 Collaborate with security partners and stakeholders to maintain a robust security posture Continuously monitor security systems, investigate alerts, and take appropriate actions Support penetration testing and remediation More ❯
Responsibilities Plan, coordinate and support the ongoing maintenance and improvement of the InformationSecurity Management System. Maintain and improve the framework of informationsecurity policies, standards, processes and procedures. Gather and report on informationsecurity Key Risk Indicators and Key Performance Indicators. Collaborate and prepare content for informationsecurity governance groups. Support … risk assessment and control improvement activity. Support tracking and delivery of informationsecurity activities, including projects, cases, assurance actions, and stakeholder due diligence requests. Requirements Experience of working within a corporate environment. Demonstrable knowledge of an InformationSecurity Management System. Strong understanding of the ISO 27001 standard. Established knowledge of informationsecurity risk management. … Familiar with informationsecurity control frameworks. Implementing and/or maintaining an InformationSecurity Management System to a recognised security standard. Reviewing policies, standards, processes and procedures. Producing presentations and reports. Personal Strong organisational skills, preferably with project management experience. Strong verbal and written communication skills. Strong presentation skills and an ability to articulate complex More ❯
InformationSecurity Compliance Analyst Are you passionate about informationsecurity and data privacy, and looking for a role where you can make an immediate impact? We’re working with a leading global law firm seeking a InformationSecurity Compliance Analyst to join their Technology Compliance & InformationSecurity team on a … you’ll be doing: Supporting the maintenance of ISO27001 ISMS certification Coordinating internal and external audits, including evidence collation and remediation tracking Aligning data privacy policies and processes with security standards Managing client and supplier informationsecurity reviews, questionnaires, and audits Acting as a point of escalation for informationsecurity and data privacy queries Supporting … the implementation of systems to meet information and data privacy objectives What we’re looking for: At least 3 years’ experience with ISO27001 certification Solid understanding of informationsecurity and data privacy frameworks (ISO27001, NIST, ISO27701) Experience in risk management processes Strong organisational and documentation skills, with the ability to manage multiple projects Clear communicator, able to More ❯
A highly successful retail business is searching for an InformationSecurityAnalyst in the Bournemouth area. Your Role While in this position your duties may include but are not limited to: Maintaining an InformationSecurity Management Systems, effectively identify and manage IT risk and conduct risk assessments and inform mitigation strategies Supporting the Systems Engineering … team to execute penetration testing, remediation processes and security checks and develop security tools, processes and technologies, keeping future certifications for security standards in mind such as Cyber Essentials or ISO27001 Creating a security incident response plan, to promote rapid response and investigations of incidents to identify severity and sources, including the monitoring of alerts and … springing into action to remediate threats, ensuring that detailed documentation is maintained Undertaking PCI compliance auditing Collaborating with security partners to ensure a robust security posture and undertake due diligence during the onboarding process for non-system suppliers Managing the ongoing monitoring of security systems, logs and network traffic to proactively identify potential threats and apply appropriate More ❯
Innova Solutions has a client that is immediately hiring for an InformationSecurityAnalyst Title: InformationSecurityAnalyst Position type: Full Time - Contract Duration: 12+ Months Location: Chandler Arizona As a Security Engineer, You will : Participate in and consult on moderately complex InformationSecurity initiatives and deliverables. Contribute to strategic planning … and execution of InformationSecurity Analysis projects. Review and analyze security challenges requiring in-depth evaluation of variable factors. Resolve moderately complex issues by applying sound judgment and knowledge of policies, procedures, and compliance requirements. The ideal candidate have required skills- Case Management EDR (Endpoint Detection & Response) SIEM (SecurityInformation and Event Management) Splunk Qualified … candidates should APPLY NOW for immediate consideration! Please hit APPLY to provide the required information, and we will be back in touch as soon as possible. We are currently interviewing to fill this and other similar positions. If this role is not a fit for you, we do offer a referral bonus program for referrals that we successfully place More ❯
InformationSecurityAnalyst Job Locations US-CA-Point Mugu Req No. Category Information Technology Type Regular Full-Time Clearance Level Top Secret Overview BAI, a defense contractor, is seeking an InformationSecurityAnalyst with 3+ years of experience with DevSecOps Automation and Continuous Integration Continuous Delivery (CI/CD) experience to work Department … USD to $153,000.00 USD. Salary will be based on current qualifications, directly related experience, geographic location, and possible contractual requirements which could fall outside of this range. Responsibilities Information Assurance Plan, implement, upgrade, or monitor security measures for the protection of computer networks and information Assess system vulnerabilities for security risks and propose and implement … risk mitigation strategies May ensure appropriate security controls are in place that will safeguard digital files and vital electronic infrastructure May respond to computer security breaches and viruses Work with ISSO and Cybersecurity Lead to respond to computer security breaches and viruses DevSecOps Integrate security into a continuous integration, continuous delivery, and continuous deployment pipeline to More ❯
Position: InformationSecurityAnalyst A cleared defense program is seeking an InformationSecurityAnalyst with 3+ years of hands-on experience in DevSecOps automation and CI/CD environments. This role supports Department of Defense initiatives located at Naval Base Point Mugu near Camarillo, CA. The position offers long-term stability, career growth opportunities … a strong benefits package. Compensation: Typical salary range: $120,000 - $155,000 annually. Final offer will be based on skills, relevant background, location, and contract-specific factors. Key Responsibilities InformationSecurity & Assurance Develop, implement, and maintain security measures to protect networks and sensitive data Identify and assess system vulnerabilities; recommend and apply mitigation strategies Ensure security controls protect critical files and infrastructure Collaborate with ISSO and Cybersecurity Lead on incident response for security breaches and malware Monitor and upgrade security protocols to meet evolving threats DevSecOps Integration Embed security practices into CI/CD pipelines to reduce software vulnerabilities Partner with developers and operations teams to enforce secure coding and delivery standards More ❯
Hertfordshire, England, United Kingdom Hybrid / WFH Options
ALTERED RESOURCING LTD
InformationSecurityAnalyst Attractive salary & package. Hertfordshire - with flexibility to work from home. A global client of ours are looking to hire an InformationSecurity Analyst. This company offer the chance for you to work in a very attractive industry, with a great benefit package also. It is a great time to join them as … they globalise their IT dept. This InformationSecurityAnalyst role would suit someone with: Good knowledge of frameworks like ISO 27001, NIS2 etc SOC process Incident response ISO27001 auditing experience - internal & external GDPR knowledge Gap analysis & vulnerability scanning experience In this role you will be maintaining their ISO27001 certification. Any cyber certs you have would be beneficial. More ❯
We are looking for an InformationSecurityAnalyst to join us on a 6 months FTC. This InfoSec Analyst role will be to ensure that PCI DSS certifications is achieved and maintaining all appropriate payment gateways used by Howdens. The role will also play a key role in managing security incidents and in assessing risks … team are based from our office on Brackmills Business Park, Northamptonshire and you will be expected to work onsite 2 days per week. What will I be doing as InformationSecurityAnalyst? Manage and deliver a plan to deliver PCI DSS certification to all appropriate payment gateways within Howdens. Work with 3rd party PCI DSS assessor, organise … and scope the assessments Lead with incident management investigations and assist with the coordination of any remediation activities Provide technical project support representing informationsecurity Support the PMO (Project Management Office) to ensure appropriate security is assessed within projects alongside overseeing supplier compliance to Howdens needs for Cyber Security Conduct risk and vulnerability assessments to identify More ❯
Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
InformationSecurity Senior Analyst Location: Surrey (Hybrid) Our client, a large corporate organisation based in Surrey, is seeking an InformationSecurity Senior Analyst with experience of Risk & Controls to join their team. The successful candidate will have proven experience in risk management, controls, and governance frameworks, who can lead initiatives, mentor others, and collaborate … effectively across business units. You should be both strategic and hands-on, with a passion for proactive security and continuous improvement. Responsibilities: Lead the InfoSec risk register - Identify, assess, and mitigate informationsecurity risks. Own control frameworks - Maintain and improve controls to ensure alignment with standards like NIST CSF and COBIT. Drive assurance - Monitor the effectiveness of … security controls, including outcomes of penetration testing and red team exercises. Collaborate with business units - Act as a security advocate and guide cross-functional teams in secure practices. Lead technical initiatives - Provide hands-on leadership and mentor more junior team members. Conduct threat and vulnerability assessments - Take a proactive role in identifying potential security threats. Skills and More ❯
Job purpose: The securityanalyst will join a small security team for one of our clients in Central London. you will be a subject matter expert on all aspects of security to include mail security, web security, infrastructure security and end user device security. The securityanalyst plays a key role … in driving and improving and technology security at the organisation, providing expert advice and reliable guidance to a broad range of colleagues and stakeholders to achieve this. Key Accountabilities: • Proactively assess device and application logs for security vulnerabilities, as well as investigate causes and ultimately resolve or mitigate those vulnerabilities • Lead and investigate security breaches and cyber … incidents, providing timely resolution to agreed service level agreements/expectations • Install Security updates/measures in line with best practices to ensure that the client is protected against the latest cyber security threats • Work with third parties and internal teams to schedule proactive penetration tests, ensuring that vulnerabilities are resolved or mitigated • Support the delivery of securityMore ❯
Job purpose: The securityanalyst will join a small security team for one of our clients in Central London. you will be a subject matter expert on all aspects of security to include mail security, web security, infrastructure security and end user device security. The securityanalyst plays a key role … in driving and improving and technology security at the organisation, providing expert advice and reliable guidance to a broad range of colleagues and stakeholders to achieve this. Key Accountabilities: • Proactively assess device and application logs for security vulnerabilities, as well as investigate causes and ultimately resolve or mitigate those vulnerabilities • Lead and investigate security breaches and cyber … incidents, providing timely resolution to agreed service level agreements/expectations • Install Security updates/measures in line with best practices to ensure that the client is protected against the latest cyber security threats • Work with third parties and internal teams to schedule proactive penetration tests, ensuring that vulnerabilities are resolved or mitigated • Support the delivery of securityMore ❯
Senior InformationSecurityAnalyst We are looking for a Senior InformationSecurityAnalyst with a strong operational background with a focus on Cyber Security and a working knowledge of GRC to be part of a central team supporting a mixture of security operations ensuring compliance with business needs. This will focus around … vulnerability and threat management, making sure security controls are functioning, mentorship of junior members and working being part of a 24 x 7 remote support rota. If you have experience of working in Cyber Security and are keen to make a difference here is what we are looking for: Significant experience of working in a security related … role, with demonstrable experience within an operational aspect with extensive vulnerability and threat management. A strong understanding of Risk Assessment frameworks and methodologies. The ability to explain complex security issues in a fashion that could be understood by non-technical people. Knowledge of cloud security, with a knowledge of Azure/O365 Possess a knowledge of various technologies More ❯
Senior InformationSecurityAnalyst We are looking for a Senior InformationSecurityAnalyst with a strong operational background with a focus on Cyber Security and a working knowledge of GRC to be part of a central team supporting a mixture of security operations ensuring compliance with business needs. This will focus around … vulnerability and threat management, making sure security controls are functioning, mentorship of junior members and working being part of a 24 x 7 remote support rota. If you have experience of working in Cyber Securityand are keen to make a difference here is what we are looking for: Significant experience of working in a security related role, with … demonstrable experience within an operational aspect with extensive vulnerability and threat management. A strong understanding of Risk Assessment frameworks and methodologies. The ability to explain complex security issues in a fashion that could be understood by non-technical people. Knowledge of cloud security, with a knowledge of Azure/O365 Possess a knowledge of various technologies, how they More ❯
Northampton, Northamptonshire, England, United Kingdom
Howdens Joinery
Howdens Joinery have an exciting brand-new opportunity as an InformationSecurity Architect to join our growing Cyber team. Responsible for designing secure, scalable solutions that align with Howdens’ business goals and cyber risk strategy. This role will suit a pro-active individual with an investigative nature who will be our key advisor across IT, Architecture, and Cyber … be required to work onsite 2 days per week. What will I be doing as an InfoSec Architect? Collaborate across business, technical, and service teams to design and deliver security solutions that enhance cybersecurity maturity, reduce risk, and align with broader business objectives and priorities. Engage with stakeholders to understand and balance competing business needs, technical constraints, and security requirements, ensuring practical and effective outcomes. Lead and contribute to solution design and re-architecture initiatives, assessing technical options in partnership with the Head of InformationSecurity and Enterprise Architecture, and ensuring solutions are secure, maintainable, and scalable. Conduct proactive security architecture reviews of planned and existing systems to identify risks, validate control effectiveness, and drive More ❯
with one heart, one mind, and one purpose, we can accomplish our mission and be an organization anyone would be proud to be a part of. POSITION SUMMARY The InformationSecurityAnalyst provides expert-level cybersecurity oversight and technical support to protect AF TENCAP's multi-domain information systems and networks. This role develops and maintains … assessments, and coordinates with internal teams, leadership, and external agencies to ensure full compliance with DoD and Air Force cybersecurity directives. Operating with a high degree of autonomy, the analyst advises leadership on risk mitigation strategies, drives security process improvements, and ensures operational readiness of systems at all classification levels. A constant focus on IT security vigilance … incident response, and COMSEC responsibilities is critical to safeguarding AF TENCAP's mission and information assets. ESSENTIAL JOB FUNCTIONS Develop, maintain, and manage system certification and accreditation packages in accordance with DoD, AF, and intelligence community cybersecurity requirements, including RMF, NIST SP 800-53, ICD 503, and DoDI 8510.01. Analyze system vulnerabilities, interpret risk assessment results, and recommend remediation More ❯
We are recruiting for a Senior InformationSecurityAnalyst to join an established security team within a highly respected organisation that makes a real difference. This is a hybrid role with a balance of operational and governance responsibilities. Kent (Hybrid – 2 days office) What we are looking for: A Senior SecurityAnalyst to lead … security operations and incident response Someone to assure security controls, manage vulnerabilities, and maintain policies A mentor to support junior analysts while contributing to governance and compliance work Strong technical background – SOC, incident response, threat intelligence or security engineering Experience with Microsoft Security tools (Sentinel, Defender, etc.) Knowledge of governance, risk and compliance frameworks (PCI, FCA More ❯
We are recruiting for a Senior InformationSecurityAnalyst to join an established security team within a highly respected organisation that makes a real difference. This is a hybrid role with a balance of operational and governance responsibilities. Kent (Hybrid – 2 days office) What we are looking for: A Senior SecurityAnalyst to lead … security operations and incident response Someone to assure security controls, manage vulnerabilities, and maintain policies A mentor to support junior analysts while contributing to governance and compliance work Strong technical background – SOC, incident response, threat intelligence or security engineering Experience with Microsoft Security tools (Sentinel, Defender, etc.) Knowledge of governance, risk and compliance frameworks (PCI, FCA More ❯
Middlesbrough, England, United Kingdom Hybrid / WFH Options
83zero
IT SecurityAnalyst Location: Hybrid – Middlesbrough Salary: £50,000 – £55,000 + Benefits 83zero are partnered with a market-leading software company who are on a mission to transform the construction and related industries through their end-to-end digital solutions. With teams across the UK, Europe, USA and India, they are delivering large-scale transformation projects on … a global scale and are continuing to expand. We are now looking for a highly organised and detail-driven IT SecurityAnalyst to join their growing security function. This role plays a key part in securing customer trust and supplier integrity, ensuring compliance with recognised frameworks, and supporting wider security initiatives. The Role Own and manage … responses to customer security questionnaires (SIG, CAIQ, bespoke). Work cross-functionally with Legal, Compliance, Procurement, Product and Security teams. Maintain the security assurance matrix in line with ISO 27001, Cyber Essentials, and SOC 2. Act as the key point of contact for security assurance queries. Conduct vendor risk assessments against ISO 27001, NIST, and CIS More ❯
york, yorkshire and the humber, united kingdom Hybrid / WFH Options
83zero
IT SecurityAnalyst Location: Hybrid – Middlesbrough Salary: £50,000 – £55,000 + Benefits 83zero are partnered with a market-leading software company who are on a mission to transform the construction and related industries through their end-to-end digital solutions. With teams across the UK, Europe, USA and India, they are delivering large-scale transformation projects on … a global scale and are continuing to expand. We are now looking for a highly organised and detail-driven IT SecurityAnalyst to join their growing security function. This role plays a key part in securing customer trust and supplier integrity, ensuring compliance with recognised frameworks, and supporting wider security initiatives. The Role Own and manage … responses to customer security questionnaires (SIG, CAIQ, bespoke). Work cross-functionally with Legal, Compliance, Procurement, Product and Security teams. Maintain the security assurance matrix in line with ISO 27001, Cyber Essentials, and SOC 2. Act as the key point of contact for security assurance queries. Conduct vendor risk assessments against ISO 27001, NIST, and CIS More ❯
InformationSecurityAnalyst Job Overview: Serves as primary security compliance agent. Performs vulnerability/risk assessments of computer systems and applications during all phases of the system development life cycle to support the RMF authorization process. Analyzes general information assurance-related technical problems and provides recommendations and technical support in solving these problems. Assesses and … supports the implementation of solutions that meet network security requirements. Performs vulnerability/risk analyses of computer systems and applications during all phases of the system development life cycle. Perform duties associated with the development and review of RMF packages Core Job Duties: Conduct vulnerability and risk assessments of computer systems and applications throughout the system development life cycle … to support the Risk Management Framework (RMF) authorization process Analyze general information assurance-related technical problems and provide recommendations and technical support in solving these problems Assess and support the implementation of solutions that meet network security requirements Develop and review RMF packages, conduct network and vulnerability scans, and analyze network scans, vulnerability scans, and traffic logs Implement More ❯
Hi, Interested for below role? GA DHS - InformationSecurityAnalyst (776405) Atlanta, GA 30334, USA Web Cam Interview Only Hybrid This role is responsible for monitoring, detecting, analyzing, and responding to security events, managing vulnerabilities, and ensuring compliance with federal, agency, and organizational security requirements (NIST, FISMA, IRS Pub 1075, CMS, SSA). The analyst will also support audit readiness, maintain the System Security Plan (SSP), and lead targeted security awareness initiatives. Required Qualifications Bachelor's degree in informationsecurity, Cybersecurity, IT, or related field; or equivalent 1 year; or Preference will be given to candidates with relevant State of Georgia Experience Hands-on experience with Splunk, CrowdStrike Falcon, and More ❯