Hull, North Humberside, England, United Kingdom Hybrid / WFH Options
Heron Foods
InformationSecurityAnalyst – Heron Foods Salary: £35,000 – £45,000 per annum (depending on experience) Location: Hull (with hybrid working flexibility) About the Role We are looking for an InformationSecurityAnalyst to join the Group InformationSecurity Function at B&M, with a dedicated focus on Heron Foods. In this role … you’ll act as the primary contact for all things cyber and informationsecurity at Heron Foods, working day-to-day under the steer of the Head of IT at Heron Foods while aligning with the security strategy, policies, and standards set by the Group Head of Information Security. This is an exciting opportunity to be … at the frontline of cyber defence — monitoring threats, responding to incidents, managing vulnerabilities, and embedding security into everyday operations across Heron Foods. Key Responsibilities As InformationSecurityAnalyst, you will: Be the first point of contact for all cyber and informationsecurity matters within Heron Foods. Monitor and respond to alerts from our Managed More ❯
North Ferriby, North Humberside, North East, United Kingdom Hybrid / WFH Options
Heron Foods
InformationSecurityAnalyst – Heron Foods Salary: £35,000 – £45,000 per annum (depending on experience) Location: Hull (with hybrid working flexibility) About the Role We are looking for an InformationSecurityAnalyst to join the Group InformationSecurity Function at B&M, with a dedicated focus on Heron Foods. In this role … you'll act as the primary contact for all things cyber and informationsecurity at Heron Foods, working day-to-day under the steer of the Head of IT at Heron Foods while aligning with the security strategy, policies, and standards set by the Group Head of Information Security. This is an exciting opportunity to be … at the frontline of cyber defence — monitoring threats, responding to incidents, managing vulnerabilities, and embedding security into everyday operations across Heron Foods. Key Responsibilities As InformationSecurityAnalyst, you will: Be the first point of contact for all cyber and informationsecurity matters within Heron Foods. Monitor and respond to alerts from our Managed More ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
Role: InformationSecurityAnalyst Location: Guildford (Hybrid options available) Salary: Circa £45,000 (plus comprehensive benefits package) Start date: ASAP My client, a leading financial services organisation, is looking for an InformationSecurityAnalyst to join their team. This is an excellent opportunity to play a key role in advancing the company's security posture by delivering Governance, Risk, and Compliance (GRC) initiatives and embedding the NIST Cyber Security Framework (CSF) across the business. Key skills/responsibilities: Deliver day-to-day GRC activities, including designing and implementing security controls and managing informationsecurity risks Interpret and apply requirements from the Group InformationSecurity Framework Conduct gap … assessments, identify risks, and support maturity uplift across security functions Develop and maintain an informationsecurity controls catalogue, policies, and procedures aligned with NIST CSF Collaborate with business units to integrate security measures into operations Support compliance activities for frameworks such as Cyber Essentials, PCI DSS, and the Group InformationSecurity Framework Facilitate reviews More ❯
Are you passionate about protecting critical information and systems? Our client is seeking an experienced InformationSecurityAnalyst to make a real impact in safeguarding their digital assets. This is fantastic opportunity to play a central role in maintaining a strong security posture across the business. In this role, you’ll develop and maintain a … robust InformationSecurity Management System (ISMS), carry out regular risk assessments and contribute to the continuous development of security tools, technologies and processes, making a direct difference in the company’s cyber resilience. Key Responsibilities: Develop and maintain a comprehensive InformationSecurity Management System (ISMS) Conduct regular risk assessments to identify and mitigate potential security threats Establish and manage a security incident response plan, documenting incidents and protocols Perform PCI Compliance auditing and ensure adherence to GDPR and the Data Protection Act 2018 Collaborate with security partners and stakeholders to maintain a robust security posture Continuously monitor security systems, investigate alerts, and take appropriate actions Support penetration testing and remediation More ❯
InformationSecurity Compliance Analyst Are you passionate about informationsecurity and data privacy, and looking for a role where you can make an immediate impact? We’re working with a leading global law firm seeking a InformationSecurity Compliance Analyst to join their Technology Compliance & InformationSecurity team on a … you’ll be doing: Supporting the maintenance of ISO27001 ISMS certification Coordinating internal and external audits, including evidence collation and remediation tracking Aligning data privacy policies and processes with security standards Managing client and supplier informationsecurity reviews, questionnaires, and audits Acting as a point of escalation for informationsecurity and data privacy queries Supporting … the implementation of systems to meet information and data privacy objectives What we’re looking for: At least 3 years’ experience with ISO27001 certification Solid understanding of informationsecurity and data privacy frameworks (ISO27001, NIST, ISO27701) Experience in risk management processes Strong organisational and documentation skills, with the ability to manage multiple projects Clear communicator, able to More ❯
A highly successful retail business is searching for an InformationSecurityAnalyst in the Bournemouth area. Your Role While in this position your duties may include but are not limited to: Maintaining an InformationSecurity Management Systems, effectively identify and manage IT risk and conduct risk assessments and inform mitigation strategies Supporting the Systems Engineering … team to execute penetration testing, remediation processes and security checks and develop security tools, processes and technologies, keeping future certifications for security standards in mind such as Cyber Essentials or ISO27001 Creating a security incident response plan, to promote rapid response and investigations of incidents to identify severity and sources, including the monitoring of alerts and … springing into action to remediate threats, ensuring that detailed documentation is maintained Undertaking PCI compliance auditing Collaborating with security partners to ensure a robust security posture and undertake due diligence during the onboarding process for non-system suppliers Managing the ongoing monitoring of security systems, logs and network traffic to proactively identify potential threats and apply appropriate More ❯
Hertfordshire, England, United Kingdom Hybrid / WFH Options
ALTERED RESOURCING LTD
InformationSecurityAnalyst Attractive salary & package. Hertfordshire - with flexibility to work from home. A global client of ours are looking to hire an InformationSecurity Analyst. This company offer the chance for you to work in a very attractive industry, with a great benefit package also. It is a great time to join them as … they globalise their IT dept. This InformationSecurityAnalyst role would suit someone with: Good knowledge of frameworks like ISO 27001, NIS2 etc SOC process Incident response ISO27001 auditing experience - internal & external GDPR knowledge Gap analysis & vulnerability scanning experience In this role you will be maintaining their ISO27001 certification. Any cyber certs you have would be beneficial. More ❯
We are looking for an InformationSecurityAnalyst to join us on a 6 months FTC. This InfoSec Analyst role will be to ensure that PCI DSS certifications is achieved and maintaining all appropriate payment gateways used by Howdens. The role will also play a key role in managing security incidents and in assessing risks … team are based from our office on Brackmills Business Park, Northamptonshire and you will be expected to work onsite 2 days per week. What will I be doing as InformationSecurityAnalyst? Manage and deliver a plan to deliver PCI DSS certification to all appropriate payment gateways within Howdens. Work with 3rd party PCI DSS assessor, organise … and scope the assessments Lead with incident management investigations and assist with the coordination of any remediation activities Provide technical project support representing informationsecurity Support the PMO (Project Management Office) to ensure appropriate security is assessed within projects alongside overseeing supplier compliance to Howdens needs for Cyber Security Conduct risk and vulnerability assessments to identify More ❯
InformationSecurityAnalyst | ISO27001, Rapid7, Protecht | Global Trading Platform £60–70k base + 10% bonus Hybrid in Coventry with monthly travel to London Security certification support & career development built-in Help shape a high-stakes security program as a hands-on GRC Analyst supporting a global financial institution’s banking expansion. You’ll be … central to their mission of scaling a modern InfoSec environment, balancing regulatory rigor, ethical standards and BAU resilience. You’ll focus on third-party security assessments, metrics reporting, and supporting certification frameworks including ISO27001 and SOC2. Expect close collaboration across risk, technology and compliance stakeholders. All while operating at pace, with visibility and trust from the top down. What … you’ll bring: 3+ years in an InfoSec or IT security role within a regulated or financial firm Security certifications: SSCP, Security+, or equivalent Strong GRC foundation: Able to interpret risk frameworks and speak the language of ISO, SOC2, NIST, etc. Comfortable with security tooling and metrics-driven reporting Confident communicator: Translate acronyms into action, and engage More ❯
Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
InformationSecurity Senior Analyst Location: Surrey (Hybrid) Our client, a large corporate organisation based in Surrey, is seeking an InformationSecurity Senior Analyst with experience of Risk & Controls to join their team. The successful candidate will have proven experience in risk management, controls, and governance frameworks, who can lead initiatives, mentor others, and collaborate … effectively across business units. You should be both strategic and hands-on, with a passion for proactive security and continuous improvement. Responsibilities: Lead the InfoSec risk register - Identify, assess, and mitigate informationsecurity risks. Own control frameworks - Maintain and improve controls to ensure alignment with standards like NIST CSF and COBIT. Drive assurance - Monitor the effectiveness of … security controls, including outcomes of penetration testing and red team exercises. Collaborate with business units - Act as a security advocate and guide cross-functional teams in secure practices. Lead technical initiatives - Provide hands-on leadership and mentor more junior team members. Conduct threat and vulnerability assessments - Take a proactive role in identifying potential security threats. Skills and More ❯
Job purpose: The securityanalyst will join a small security team for one of our clients in Central London. you will be a subject matter expert on all aspects of security to include mail security, web security, infrastructure security and end user device security. The securityanalyst plays a key role … in driving and improving and technology security at the organisation, providing expert advice and reliable guidance to a broad range of colleagues and stakeholders to achieve this. Key Accountabilities: • Proactively assess device and application logs for security vulnerabilities, as well as investigate causes and ultimately resolve or mitigate those vulnerabilities • Lead and investigate security breaches and cyber … incidents, providing timely resolution to agreed service level agreements/expectations • Install Security updates/measures in line with best practices to ensure that the client is protected against the latest cyber security threats • Work with third parties and internal teams to schedule proactive penetration tests, ensuring that vulnerabilities are resolved or mitigated • Support the delivery of securityMore ❯
Job purpose: The securityanalyst will join a small security team for one of our clients in Central London. you will be a subject matter expert on all aspects of security to include mail security, web security, infrastructure security and end user device security. The securityanalyst plays a key role … in driving and improving and technology security at the organisation, providing expert advice and reliable guidance to a broad range of colleagues and stakeholders to achieve this. Key Accountabilities: • Proactively assess device and application logs for security vulnerabilities, as well as investigate causes and ultimately resolve or mitigate those vulnerabilities • Lead and investigate security breaches and cyber … incidents, providing timely resolution to agreed service level agreements/expectations • Install Security updates/measures in line with best practices to ensure that the client is protected against the latest cyber security threats • Work with third parties and internal teams to schedule proactive penetration tests, ensuring that vulnerabilities are resolved or mitigated • Support the delivery of securityMore ❯
Senior InformationSecurityAnalyst We are looking for a Senior InformationSecurityAnalyst with a strong operational background with a focus on Cyber Security and a working knowledge of GRC to be part of a central team supporting a mixture of security operations ensuring compliance with business needs. This will focus around … vulnerability and threat management, making sure security controls are functioning, mentorship of junior members and working being part of a 24 x 7 remote support rota. If you have experience of working in Cyber Security and are keen to make a difference here is what we are looking for: Significant experience of working in a security related … role, with demonstrable experience within an operational aspect with extensive vulnerability and threat management. A strong understanding of Risk Assessment frameworks and methodologies. The ability to explain complex security issues in a fashion that could be understood by non-technical people. Knowledge of cloud security, with a knowledge of Azure/O365 Possess a knowledge of various technologies More ❯
Senior InformationSecurityAnalyst We are looking for a Senior InformationSecurityAnalyst with a strong operational background with a focus on Cyber Security and a working knowledge of GRC to be part of a central team supporting a mixture of security operations ensuring compliance with business needs. This will focus around … vulnerability and threat management, making sure security controls are functioning, mentorship of junior members and working being part of a 24 x 7 remote support rota. If you have experience of working in Cyber Securityand are keen to make a difference here is what we are looking for: Significant experience of working in a security related role, with … demonstrable experience within an operational aspect with extensive vulnerability and threat management. A strong understanding of Risk Assessment frameworks and methodologies. The ability to explain complex security issues in a fashion that could be understood by non-technical people. Knowledge of cloud security, with a knowledge of Azure/O365 Possess a knowledge of various technologies, how they More ❯
Northampton, Northamptonshire, England, United Kingdom
Howdens Joinery
Howdens Joinery have an exciting brand-new opportunity as an InformationSecurity Architect to join our growing Cyber team. Responsible for designing secure, scalable solutions that align with Howdens’ business goals and cyber risk strategy. This role will suit a pro-active individual with an investigative nature who will be our key advisor across IT, Architecture, and Cyber … be required to work onsite 2 days per week. What will I be doing as an InfoSec Architect? Collaborate across business, technical, and service teams to design and deliver security solutions that enhance cybersecurity maturity, reduce risk, and align with broader business objectives and priorities. Engage with stakeholders to understand and balance competing business needs, technical constraints, and security requirements, ensuring practical and effective outcomes. Lead and contribute to solution design and re-architecture initiatives, assessing technical options in partnership with the Head of InformationSecurity and Enterprise Architecture, and ensuring solutions are secure, maintainable, and scalable. Conduct proactive security architecture reviews of planned and existing systems to identify risks, validate control effectiveness, and drive More ❯
We are recruiting for a Senior InformationSecurityAnalyst to join an established security team within a highly respected organisation that makes a real difference. This is a hybrid role with a balance of operational and governance responsibilities. Kent (Hybrid – 2 days office) What we are looking for: A Senior SecurityAnalyst to lead … security operations and incident response Someone to assure security controls, manage vulnerabilities, and maintain policies A mentor to support junior analysts while contributing to governance and compliance work Strong technical background – SOC, incident response, threat intelligence or security engineering Experience with Microsoft Security tools (Sentinel, Defender, etc.) Knowledge of governance, risk and compliance frameworks (PCI, FCA More ❯
We are recruiting for a Senior InformationSecurityAnalyst to join an established security team within a highly respected organisation that makes a real difference. This is a hybrid role with a balance of operational and governance responsibilities. Kent (Hybrid – 2 days office) What we are looking for: A Senior SecurityAnalyst to lead … security operations and incident response Someone to assure security controls, manage vulnerabilities, and maintain policies A mentor to support junior analysts while contributing to governance and compliance work Strong technical background – SOC, incident response, threat intelligence or security engineering Experience with Microsoft Security tools (Sentinel, Defender, etc.) Knowledge of governance, risk and compliance frameworks (PCI, FCA More ❯
Middlesbrough, England, United Kingdom Hybrid / WFH Options
83zero
IT SecurityAnalyst Location: Hybrid – Middlesbrough Salary: £50,000 – £55,000 + Benefits 83zero are partnered with a market-leading software company who are on a mission to transform the construction and related industries through their end-to-end digital solutions. With teams across the UK, Europe, USA and India, they are delivering large-scale transformation projects on … a global scale and are continuing to expand. We are now looking for a highly organised and detail-driven IT SecurityAnalyst to join their growing security function. This role plays a key part in securing customer trust and supplier integrity, ensuring compliance with recognised frameworks, and supporting wider security initiatives. The Role Own and manage … responses to customer security questionnaires (SIG, CAIQ, bespoke). Work cross-functionally with Legal, Compliance, Procurement, Product and Security teams. Maintain the security assurance matrix in line with ISO 27001, Cyber Essentials, and SOC 2. Act as the key point of contact for security assurance queries. Conduct vendor risk assessments against ISO 27001, NIST, and CIS More ❯
york, yorkshire and the humber, united kingdom Hybrid / WFH Options
83zero
IT SecurityAnalyst Location: Hybrid – Middlesbrough Salary: £50,000 – £55,000 + Benefits 83zero are partnered with a market-leading software company who are on a mission to transform the construction and related industries through their end-to-end digital solutions. With teams across the UK, Europe, USA and India, they are delivering large-scale transformation projects on … a global scale and are continuing to expand. We are now looking for a highly organised and detail-driven IT SecurityAnalyst to join their growing security function. This role plays a key part in securing customer trust and supplier integrity, ensuring compliance with recognised frameworks, and supporting wider security initiatives. The Role Own and manage … responses to customer security questionnaires (SIG, CAIQ, bespoke). Work cross-functionally with Legal, Compliance, Procurement, Product and Security teams. Maintain the security assurance matrix in line with ISO 27001, Cyber Essentials, and SOC 2. Act as the key point of contact for security assurance queries. Conduct vendor risk assessments against ISO 27001, NIST, and CIS More ❯
Hatfield, Hertfordshire, United Kingdom Hybrid / WFH Options
Michael Page
The InformationSecurityAnalyst will play a critical role in safeguarding the organisation's systems and data, ensuring compliance with security policies and regulations. Based in Hatfield, this role is ideal for individuals passionate about the life science industry and technology. Client Details The hiring company is a medium-sized organisation operating within the life science … and excellence in its field. The company is known for its commitment to leveraging technology to drive forward its mission. Description Implement and maintain ISMS aligning with ISO27001 Ensure security controls are in-place based on ISO27001 and NIST As the regional security representative in the global Security/Technology project Lead/execute phishing campaign Conduct … vulnerability assessments and implement measures to mitigate potential risks. Involve in global security operations process, analysis and escalate security alerts/tickets from global SOC team Maintain and update security policies, standards, and procedures in alignment with industry regulations. Collaborate with cross-functional teams to ensure secure system designs and implementations. Provide training and support to staff More ❯
InformationSecurity Assurance Specialist - Permanent Up to £41,500 Eastleigh (Hybrid - one day a week in office) Are you ready to take your security career to the next level? We're working with a leading organisation to recruit an InformationSecurity Assurance & Architecture Specialist for a permanent role based in Eastleigh , with just one day … a week in the office . This is a fantastic opportunity to join a forward-thinking team that's embedding security into every layer of business and technology. About the Role: This position plays a key role in delivering security assurance, architectural input, and governance processes. You'll collaborate across technical and operational teams to ensure robust security controls and compliance with industry standards. Key Responsibilities: Conducting assurance reviews and risk assessments Embedding security into solution designs Supporting incident response and post-incident analysis Ensuring compliance with GDPR, ISO27001, NIST, and other frameworks Advising on threat modelling and mitigation strategies What We're Looking For: Strong understanding of security principles and frameworks Experience designing and More ❯
Launch Your Cyber Security Career – Job Guaranteed! Cyber attacks are rising, and companies need skilled professionals now more than ever. With Newto Training’s Cyber Security Career Programme, you’ll gain 4 top certifications (Azure Fundamentals, CompTIA Security+, CompTIA CySA+, Forescout FSCA) plus real-world project work that doubles as hands-on experience. 100+ hours of live training More ❯