SecurityRiskAnalyst – 6-month contract – London/Remote – Inside IR35 My Customer is looking for a SecurityRiskAnalyst to join their Governance, Risk & Compliance (GRC) team. You will play a key role in strengthening their risk management processes, working primarily with Archer and other GRC tools to support risk assessment, compliance, and governance activities. In this role, you will be responsible for identifying, assessing, and tracking security risks across assets, systems, and third parties, ensuring compliance with internal standards, policies, and regulatory frameworks. Key Skills from the SecurityRiskAnalyst: Strong background in SecurityRisk and Governance with hands-on experience in … Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO 270001), and compliance requirements (GDPR, PCI DSS, SOX). Strong written communication skills, able to produce clear technical reports and risk documentation. Excellent stakeholder management, able to collaborate across technical and non-technical teams. Beneficial certifications: CISSP More ❯
london, south east england, united kingdom Hybrid / WFH Options
InfoSec People Ltd
SecurityRiskAnalyst – Up to £55,000 London (Paddington, 3 days per week) + 2 days remote An exciting opportunity to join a FTSE 100 heritage retail brand in their cyber security transformation. A full job spec will be posted shortly, however if you'd like to be considered early, please hit apply and we will … be in touch. We’re not looking for clipboard-tickers or box-checkers. This isn’t an audit role. We want someone who understands how security really interacts with systems, people, and processes, and can explain it clearly. What you’ll do Assess and communicate security risks clearly Work with engineers, architects, and ops to design practical controls … Use threat modelling to identify real-world attack paths Stay ahead of the evolving threat landscape What we’re looking for Strong understanding of risk, and how security interacts with different platforms and projects. Experience with frameworks like ISO, NIST, CIS, PCI, OWASP, OSINT Technical know-how (cloud, apps, networks, or systems) Excellent communicator who can bridge the More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
InfoSec People Ltd
SecurityRiskAnalyst – Up to £55,000 London (Paddington, 3 days per week) + 2 days remote An exciting opportunity to join a FTSE 100 heritage retail brand in their cyber security transformation. A full job spec will be posted shortly, however if you'd like to be considered early, please hit apply and we will … be in touch. We’re not looking for clipboard-tickers or box-checkers. This isn’t an audit role. We want someone who understands how security really interacts with systems, people, and processes, and can explain it clearly. What you’ll do Assess and communicate security risks clearly Work with engineers, architects, and ops to design practical controls … Use threat modelling to identify real-world attack paths Stay ahead of the evolving threat landscape What we’re looking for Strong understanding of risk, and how security interacts with different platforms and projects. Experience with frameworks like ISO, NIST, CIS, PCI, OWASP, OSINT Technical know-how (cloud, apps, networks, or systems) Excellent communicator who can bridge the More ❯
slough, south east england, united kingdom Hybrid / WFH Options
InfoSec People Ltd
SecurityRiskAnalyst – Up to £55,000 London (Paddington, 3 days per week) + 2 days remote An exciting opportunity to join a FTSE 100 heritage retail brand in their cyber security transformation. A full job spec will be posted shortly, however if you'd like to be considered early, please hit apply and we will … be in touch. We’re not looking for clipboard-tickers or box-checkers. This isn’t an audit role. We want someone who understands how security really interacts with systems, people, and processes, and can explain it clearly. What you’ll do Assess and communicate security risks clearly Work with engineers, architects, and ops to design practical controls … Use threat modelling to identify real-world attack paths Stay ahead of the evolving threat landscape What we’re looking for Strong understanding of risk, and how security interacts with different platforms and projects. Experience with frameworks like ISO, NIST, CIS, PCI, OWASP, OSINT Technical know-how (cloud, apps, networks, or systems) Excellent communicator who can bridge the More ❯