About Origo We are a leading FinTech company based in Edinburgh, dedicated to improving the operational efficiency of the UK’s financial services industry. Established in 1989, we work collaboratively with financial services companies to develop solutions and services to transform operational efficiencies for all market participants, ultimately improving financial outcomes for the consumer. We also work with Government and other industry bodies to continually deliver and maintain sustainable, cost-effective fintech services – including pensions dashboard. All our solutions enable financial organisations to save time, money and resources, enabling exceptional customer outcomes. Our team of experts have extensive knowledge and experience in the financial services sector and are passionate about delivering solutions that make a difference. The Role We are seeking an Information Security & Business Continuity Analyst to join our team. This role is crucial in ensuring the security and integrity of our information systems and data. You will be responsible for implementing and maintaining security measures to protect our organisation's assets from cyber threats and ensuring compliance with industry standards. Key Responsibilities Assist in the planning and implementation of security controls and testing to ISO27001 standards, including developing and enforcing security policies and best practices to ensure compliance. Perform business impact analyses (BIA) across key technology processes, systems and facilities and identify any gaps that may exist in critical information gathered and recorded. Support the IS Manager in Disaster Recovery (DR), and Business Continuity (BC) planning activity, ensuring that alternate facilities are provisioned and ready in the event of a disaster. Threat Management – assist with threat assessment and work with business units in articulating impact and mitigations to reduce attack surface. Plan, schedule, conduct and report on systems security audits, ensuring any corrective/preventive actions identified are tracked to a satisfactory conclusion. Document and report enterprise risk and compliance issues according to required timelines. Assist with the management, planning & preparation of third-party external penetration testing. Assist in preparation and review of corrective action plans associated with penetration test/vulnerability management findings. Perform internal penetration testing to assess the security of web applications and infrastructure. Provide support and guidance to staff undertaking security awareness training. Track staff completion of training modules and manage license levels. Effectively respond to security incidents. Essential knowledge, skills and experience Demonstrable experience across multiple cyber security domains including risk management, compliance, vulnerability management, and incident management. Must have a good understanding of Information Security methodologies, standards and technologies, including ISO27001. Previous experience working in an Information Security, Business Continuity or Enterprise Risk role. Good communication skills with the ability to multi-task and prioritise workloads. Knowledge of IT with an understanding of system architecture inter-dependencies, with the ability to communicate effectively with IT personnel. Strong documentation, analytical and presentation skills. Ability to work on own initiative. Applicants must have the Right to Work in the UK. Desirable knowledge, skills and experience Qualifications such as CompTIA Security, CEH or ISO27001 Lead Implementer. Experience of senior management engagement and relationship management. Experience in dealing with Information Security incidents. Experience conducting penetration tests and working with vulnerability management tools. Benefits This role offers a fantastic package. The salary on offer will be competitive, commensurate with your skills and experience. On top of this there is a generous benefits package, which includes: Annual performance related bonus 11% non-contributory pension Excellent holiday entitlement Critical illness cover Private medical insurance Group life cover (4 x annual salary) A very useful flexible benefits package which allows you to choose your preferred options from a selection including additional holidays, bicycle leasing scheme, golf/sports club membership, travel passes, etc. Origo is a Disability Confident Employer We believe that a diverse workforce brings unique perspectives and ideas. We welcome applications from candidates of all backgrounds. Applicants must have the Right to Work in the UK.