Job purpose: The securityanalyst will join a small security team for one of our clients in Central London. you will be a subject matter expert on all aspects of security to include mail security, web security, infrastructure security and end user device security. The securityanalyst plays a key role … in driving and improving and technology security at the organisation, providing expert advice and reliable guidance to a broad range of colleagues and stakeholders to achieve this. Key Accountabilities: • Proactively assess device and application logs for security vulnerabilities, as well as investigate causes and ultimately resolve or mitigate those vulnerabilities • Lead and investigate security breaches and cyber … incidents, providing timely resolution to agreed service level agreements/expectations • Install Security updates/measures in line with best practices to ensure that the client is protected against the latest cyber security threats • Work with third parties and internal teams to schedule proactive penetration tests, ensuring that vulnerabilities are resolved or mitigated • Support the delivery of securityMore ❯
london (city of london), south east england, united kingdom
InterQuest Group
Job purpose: The securityanalyst will join a small security team for one of our clients in Central London. you will be a subject matter expert on all aspects of security to include mail security, web security, infrastructure security and end user device security. The securityanalyst plays a key role … in driving and improving and technology security at the organisation, providing expert advice and reliable guidance to a broad range of colleagues and stakeholders to achieve this. Key Accountabilities: • Proactively assess device and application logs for security vulnerabilities, as well as investigate causes and ultimately resolve or mitigate those vulnerabilities • Lead and investigate security breaches and cyber … incidents, providing timely resolution to agreed service level agreements/expectations • Install Security updates/measures in line with best practices to ensure that the client is protected against the latest cyber security threats • Work with third parties and internal teams to schedule proactive penetration tests, ensuring that vulnerabilities are resolved or mitigated • Support the delivery of securityMore ❯
Security Risk Analyst 6-month contract London/Remote Inside IR35 My Customer is looking for a Security Risk Analyst to join their Governance, Risk & Compliance (GRC) team. You will play a key role in strengthening their risk management processes, working primarily with Archer and other GRC tools to support risk assessment, compliance, and governance activities. … In this role, you will be responsible for identifying, assessing, and tracking security risks across assets, systems, and third parties, ensuring compliance with internal standards, policies, and regulatory frameworks. Key Skills from the Security Risk Analyst: Strong background in Security Risk and Governance with hands-on experience in Archer (experience with other GRC tools is also … valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO (phone number removed , and compliance requirements (GDPR, PCI DSS, SOX). Strong written communication skills, able to produce clear technical reports and risk documentation. Excellent stakeholder management, able to collaborate across technical and non-technical teams. Beneficial certifications: CISSP, CISA, CISM (or equivalent). ISO27001/ISMS More ❯
london (city of london), south east england, united kingdom
Sanderson
Information SecurityAnalyst – NIST Implementation Rate - £500 Inside IR35 (Total to umbrella) Duration – 6 months Location – twice a week on site into London Role Description: As a Senior Information SecurityAnalyst, you will be instrumental in executing the company's Information Security strategies and initiatives, focusing on supporting the Governance, Risk, and Compliance (GRC) function … and implementing the NIST Cyber Security Framework (CSF) throughout the organization. You will lead day-to-day GRC activities, including designing security controls, enforcing requirements from the Group Information Security Framework, and proactively managing non-compliance issues and mitigating Information Security risks. About You : You will be developing and implementing an information security controls catalogue … policies, and procedures aligned with the NIST Cyber Security Framework (CSF). Conducting assessments to identify material gaps, analyzing potential risks, and monitoring progress on maturity uplifting across security functions. Supporting compliance activities with the Group Information Security Framework, Cyber Essentials, and PCI DSS attestation. Collaborating with the wider organization to integrate control testing and risk management More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Copello
Remote (UK) Up to £95,000 + Benefits An opportunity has arisen for a Principal SecurityAnalyst with a strong technical background and a passion for problem solving to join a growing UK MSSP. This role has no line management responsibility. Instead, the position is focused on being an escalation point for Senior Analysts, dealing with more complex … alerts as well as identifying opportunities to tune, optimise, automate and improve relevant systems. The Role The Principal SecurityAnalyst will support busy pods on more complex issues, lead and coordinate threat hunting activities, perform and lead vulnerability assessment activities and perform SIEM-based event analysis, incident triage and coordinate incident response activities. Furthermore, the Principal SecurityAnalyst will actively collaborate with other analysts and enhance the teams effectiveness through ownership of relevant issues and contribute to a culture of continual improvement. Skills Required This role would suit an experienced, highly technical analyst with an engineering mindset who is comfortable tackling complex problems and has experience in a SOC/MSSP environment. Essential -Sentinel More ❯
Information Security Compliance Analyst Are you passionate about information security and data privacy, and looking for a role where you can make an immediate impact? We’re working with a leading global law firm seeking a Information Security Compliance Analyst to join their Technology Compliance & Information Security team on a 12-month FTC maternity … you’ll be doing: Supporting the maintenance of ISO27001 ISMS certification Coordinating internal and external audits, including evidence collation and remediation tracking Aligning data privacy policies and processes with security standards Managing client and supplier information security reviews, questionnaires, and audits Acting as a point of escalation for information security and data privacy queries Supporting the implementation … of systems to meet information and data privacy objectives What we’re looking for: At least 3 years’ experience with ISO27001 certification Solid understanding of information security and data privacy frameworks (ISO27001, NIST, ISO27701) Experience in risk management processes Strong organisational and documentation skills, with the ability to manage multiple projects Clear communicator, able to collaborate across stakeholders and More ❯
Espire Infolabs is hiring for Security Audit Analyst for London, UK location, Job: Security Audit Analyst Job Type: Open for both Permanent and Fixed Term Contract Location: London, UK(3 Days/Week onsite) Job Description: Overview The Third-Party Audit Consultant is responsible for conducting customer audits, managing short-term projects, and assessing third-party … security compliance. This role requires ISO 27001 Lead Auditor certification and a solid understanding of risk management principles. Requirements Certification as an ISO 27001 Lead Auditor, with hands-on experience conducting audits and managing audit processes. Ability to manage short-term projects independently, from planning to execution, including audit preparation and report generation. Familiarity with technology systems, infrastructure, and … related security controls. Proven track record of conducting audits of third-party vendors or partners to ensure compliance with security standards. Understanding of risk management principles and their application in security audits. Knowledge of compliance frameworks like ISO 27001, SOC 2, or similar, and their implementation within enterprise environments. Experience with audit tools and software used for More ❯