Protect the railway that keeps the East Midlands moving.
At East Midlands Railway, every journey matters. Millions of customers rely on us to travel safely, reliably and sustainably across the region. Behind every train departure, customer interaction and operational decision sits a complex technology landscape that must be protected from an ever-evolving cyber threat environment.
We're looking for an experienced and passionate Lead Information Security Analyst to help safeguard our people, systems and operations.
This is more than a technical security role. It's an opportunity to lead cyber resilience across a critical national infrastructure organisation, shaping security strategy, influencing stakeholders at every level and protecting the services that our customers depend on every day.
Why this role matters
As our Lead Information Security Analyst, you'll play a pivotal role in strengthening EMR's cyber security capability. You'll lead security operations, manage incident response activities, develop security controls and drive a security-first culture across the business.
From threat hunting and vulnerability management to advising senior leaders on emerging risks, you'll be at the forefront of protecting our organisation from cyber threats while enabling innovation and business change.
What you'll be doing
1. Leading and developing a team of Information Security Analysts
2. Managing and optimising key security technologies including SIEM, XDR, anti-virus, email security and vulnerability management platforms
3. Driving proactive threat hunting and threat intelligence activities
4. Leading cyber incident response and working closely with Security Operations Centre partners
5. Identifying, assessing and helping mitigate information security risks across the organisation
6. Supporting security governance through ISO27001-aligned controls, policies and procedures
7. Providing expert security advice on new technologies, projects and operational systems
8. Supporting operational technology (OT) cyber security initiatives across our fleet and wider railway environment
9. Promoting a positive security culture and increasing cyber awareness throughout EMR
10. Producing insightful reporting, KPIs and trend analysis to inform decision-making at all levels
What we're looking for
You'll be an experienced cyber security professional who combines strong technical expertise with the ability to influence and engage stakeholders across the business.
You'll bring:
11. Significant experience in a senior Information Security or Cyber Security role
12. Strong knowledge of security operations, risk management and security governance
13. Experience working with ISO27001 controls, policies and frameworks
14. Hands-on experience with enterprise security technologies and security monitoring platforms
15. Excellent analytical and problem-solving skills
16. Strong communication skills with the ability to explain complex security concepts to both technical and non-technical audiences
17. A proactive, organised and customer-focused approach
Professional certifications such as ISC2 CISSP and ISACA CISM are highly desirable.
Why join EMR?
We are proud to be One Team at East Midlands Railway.
With more than 2,600 colleagues, our people are at the heart of everything we do. We have been recognised as a Top Employer ten times and hold Gold accreditation from Inclusive Employers, reflecting our commitment to creating a workplace where everyone can thrive and bring their authentic selves to work.
In return, you'll receive:
18. Competitive salary
19. Defined Benefit Pension Scheme
20. Free standard leisure travel on EMR, Transport UK and LNER services
21. Friends and Family discounted travel on the EMR network
22. 75% discount on national leisure rail travel for you, your partner and dependants
23. Up to 32 days annual leave
24. Ongoing professional development opportunities
25. The chance to make a real impact within a critical public service organisation
Diversity & Inclusion
At EMR, we are committed to building a workforce that reflects the communities we serve.
We recognise that women and people from ethnic minority backgrounds are currently under-represented within our workforce. We actively encourage applications from these groups and welcome talented individuals from all backgrounds, experiences and perspectives.
If you're passionate about cyber security, leadership and protecting a business that connects communities across the East Midlands, we'd love to hear from you.