Social network you want to login/join with:
Information Security Analyst, Northampton
Client: Cloud Decisions
Location: Northampton, United Kingdom
Job Category: Other
EU work permit required: Yes
Job Views: 5
Posted: 31.05.2025
Expiry Date: 15.07.2025
Job Description:
Upto £57,500 + Enterprise Benefits (Life Ins/Medical/Pension)
Fully Remote (UK only)
***Please Note: NOT A CYBER SEC TECHNICAL ROLE***
Be part of their high growth Information Security plans as they build the team to x4.
Cloud Decisions has partnered with a leading UK enterprise technology group, one of the top 10 largest employee-owned businesses in the UK, and a major player in global insurance across 100+ countries.
They are hiring an Information Security Assurance Analyst to oversee Controls & Compliance with security regulations and standards, working autonomously within a small, high-trust team to build their InfoSec capabilities and ensure regulatory compliance, security maturity, and audit readiness.
Control/Compliance Assessment Duties:
* Schedule and coordinate control assessments with control owners, asset custodians, and third parties.
* Assess design and effectiveness of security controls against policies and standards.
* Maintain documentation of assessments and remediation activities.
* Organize control evidence for accessibility and review.
* Notify deviations in business processes and procedures.
* Author analysis reports on control deficiencies and risks.
* Communicate findings to security leadership.
* Update dashboards and reporting databases.
* Support documentation of security requirements for information systems (System Security Plans).
Compliance/Control Improvement Duties:
* Update and improve business processes and procedures.
* Propose enhancements to controls and procedures.
* Support monthly and quarterly reporting activities.
Audit/Assessment Duties:
* Manage third-party due diligence requests and reporting.
* Assist in audit preparation and response.
Collaboration and Continuous Improvement:
* Identify process improvements.
* Assist in training team members.
* Manage vendor BCDR assessments and capabilities.
Knowledge of DORA, PCDSS, SARBOX is beneficial but not essential.
#J-18808-Ljbffr