Jobs
My ads
My job alerts
Sign in
Find a job Career Tips Companies
Find

Senior information security analyst

Bristol (City of Bristol)
Hargreaves Lansdown
Information security analyst
Posted: 5 September
Offer description

Overview

Senior Information Security Analyst role at Hargreaves Lansdown. As HL continues its digital journey, we are enhancing our Cloud Assurance capabilities within the Information Security Team. We are seeking a highly skilled Senior Security Analyst with a proven track record in delivering and maintaining Cloud assurance, preferably within a financially regulated enterprise environment or similar.

The Senior Security Analyst is a specialist lead SME role with the primary focus on AWS Cloud Security Assurance, as well as Governance, Risk and supporting Compliance. You will be supporting the Information Security function to ensure HL remains effective in protecting critical information assets within risk appetite. You will be working with a highly skilled and committed Security, Digital IT and Cloud teams. You will play a significant role in our Cloud journey, working with our AWS and Azure Cloud platforms and security toolsets. We offer a commitment to your career development through training, mentoring and internal opportunities.


Responsibilities

* You will be the SME and lead for the technical aspects of Cloud security assurance risk and controls.
* You will oversee and conduct, as necessary, Cloud Compliance assessments for AWS and Azure risk assessments, enforce cloud security policies and standards. Leading the AWS SRC workstream.
* Assisting the Information Security Team in ensuring HL's Information Security Management System remains effective in protecting HL critical information assets within risk appetite.
* Lead assurance activities against Information Security Compliance frameworks, including but not limited to: PCI, NIST, SWIFT, GDPR
* Conducting analysis of cloud-based assets pertaining to information security incidents, audits, and testing while adhering to best practices.
* Lead engagement of Cloud Audits and remediation activities.
* Leading in the identification and reporting of remediation and mitigation activities related to cloud security findings across multiple cloud platforms (AWS and Azure).
* Identifying gaps in cloud security posture and prioritise remediation efforts.
* Building relationships across multiple business functions, locations, and technical stakeholders to accomplish goals. You will help deliver the strategy by emphasising the importance of AWS Well Architected Framework, Shared responsibility model and good cloud governance.
* Delivering a best-in-class service within a high performing Security team
* Leading by example to create a culture of continuous service improvements


Qualifications

* Experience in a regulated environment, preferably Financial Services.
* Previous experience in Information/Cyber Security, with demonstrable experience of Cloud Security tooling, to reduce risks and maintain strong controls in a DevSecOps cloud context
* Highly organised with the ability to prioritise workload
* Excellent verbal and written communication skills
* A willingness to learn as well as to knowledge share.
* Effective interpersonal skills to engage and collaborate with multiple internal and external Stakeholders at all levels.
* Practical work-based experience across the areas of security policy, culture, audit, and risk management.
* Strong knowledge of common, cloud technologies, enterprise, and network architecture.


Certifications

* Certified to advanced security standards, for example CCSK, CCSP, CISSP, CRISC


Hands-on experience

* Carrying out security reviews against recognised security control frameworks such as CSA Cloud Control Matrix, ISO27017/27001, NIST CSF, PCI-DSS, SWIFT, AWS CAF
* Atlassian, IAAC Terraform, Merge Requests
* GIT Ops, Git Hub, Workflow, Wiz, Security Hub, Macie, Audit Manager, Microsoft Compliance Portal/Purview, Microsoft Information Protection (AIP), Azure Security Centre.
* Strong experience with DevOps practices, CI/CD pipelines, and related tools
* Ability to evaluate the adequacy of cloud security controls, and how they are applied in a business context.


Interview process

The interview process for this role will be in two stages. The first stage will incorporate competency-based questions including an assessment of your technical knowledge and transferable skills. For successful candidates, the second stage will be a presentation followed by questions, face-to-face in our Bristol office.


Working Schedule

This role is based in our Bristol head office, BS1 5HL. This is a permanent full-time role, 37.5 hours per week, Monday to Friday. We have returned to the office, however for this role we offer a hybrid flexible working pattern of working in the office and at home.


Why us?

Here at HL, we're the UK's number 1 investment platform for private investors, based in Bristol. For more than 40 years we've helped investors save time, tax and money on their investments.

To achieve our mission, we believe we have a workplace like no other, with constant learning, dynamic teams, and a great ethos. We're steered by core values that promote service, quality, innovation, and opportunity in everything we do.


What\'s on offer?

* Discretionary annual bonus and annual pay review
* 25 days holiday plus bank holidays and 1-day additional Christmas closure
* Option to purchase an additional 5 days holiday
* Flexible working options available, including hybrid working
* Enhanced parental leave
* Pension scheme up to 11% employer contribution
* Sharesave scheme - have a real stake in HL's future
* Income Protection and Life insurance (4 x salary core level of cover)
* Private medical insurance
* Health care cash plans - including optical, dental, and outpatient care
* Help@hand - confidential support including mental health counselling and remote GP
* Wellhub - unlimited access to fitness providers and wellness coach sessions
* Variety of travel to work schemes with bike storage and shower facilities
* Inhouse barista and deli serving subsidised coffee and sandwiches
* Two paid volunteering days per year

Hargreaves Lansdown is an inclusive employer that values diversity in its workforce. We encourage applications from all individuals without regard to race, religion, gender, sexual orientation, national origin, disability or age.

This role may also be available on a flexible working or part time basis - please ask the Recruitment & Onboarding team for more information.

Please note, we are unable to provide employment sponsorship to candidates.

#J-18808-Ljbffr

Apply
Create E-mail Alert
Job alert activated
Saved
Save
Similar job
Senior information security analyst
Bristol (City of Bristol)
Hargreaves Lansdown
Information security analyst
£65,000 a year
Similar job
Senior information security analyst
Bristol (City of Bristol)
Hargreaves Lansdown plc
Information security analyst
Similar job
Information security analyst
Wedmore
Up Closets of North Cincinnati
Information security analyst
See more jobs
Similar jobs
It jobs in Bristol (City of Bristol)
jobs Bristol (City of Bristol)
jobs City of Bristol
jobs England
Home > Jobs > It jobs > Information security analyst jobs > Information security analyst jobs in Bristol (City of Bristol) > Senior Information Security Analyst

About Jobijoba

  • Career Advice
  • Company Reviews

Search for jobs

  • Jobs by Job Title
  • Jobs by Industry
  • Jobs by Company
  • Jobs by Location
  • Jobs by Keywords

Contact / Partnership

  • Contact
  • Publish your job offers on Jobijoba

Legal notice - Terms of Service - Privacy Policy - Manage my cookies - Accessibility: Not compliant

© 2025 Jobijoba - All Rights Reserved

Apply
Create E-mail Alert
Job alert activated
Saved
Save