217 Security Risks jobs in London
Information Security Analyst | Risk Management
Posted 1 day ago
Job Viewed
Job Description
Job Description. We are seeking a proactive and detail-oriented Information Security Analyst to help safeguard our clients’ digital assets and IT infrastructure. The ideal candidate will be responsible for monitoring security events, responding to incidents, and supporting continuous security risk management, compliance initiatives, and vulnerability assessments. This is a hands-on role for professionals with strong experience in threat detection, SIEM tools, cyber risk analysis, and security best practices. You will work closely with security teams to prevent breaches, enhance cyber resilience, and ensure policy enforcement across the enterprise.nResponsibilities
Monitor, analyse, and respond to security alerts using SIEM platforms (e.g., Splunk, Sentinel).nConduct incident investigations, root cause analyses, and escalate critical threats.nSupport vulnerability scans, patch assessments, and mitigation planning.nMaintain security policies, procedures, and compliance documentation.nAssist in security audits, risk assessments, and internal/external reporting.nCollaborate with IT and compliance teams to strengthen the organization’s security posture.nPerform regular reviews of access controls, firewall logs, and endpoint security events.nStay up-to-date with evolving threats, tools, and security frameworks (e.g., NIST, ISO 27001).nRequirements & Details
Experience:
RequirednEmployment:
Full-timenSalary:
£45,000 – £70,000 yearlynBenefits:
Job Benefits • Competitive salary and bonus structure • Hybrid or remotenAbout MastarRec:
We are seeking a proactive and detail-oriented Information Security Analyst to help safeguard our clients’ digital assets and IT infrastructure. The ideal candidate will be responsible for monitoring security events, responding to incidents
#J-18808-Ljbffrn
Senior Information Security Analyst
Posted 1 day ago
Job Viewed
Job Description
The ideal candidate will be responsible for a wide range of security operations, including threat detection, incident response, vulnerability management, and security architecture reviews. You will play a crucial role in protecting our client's digital assets and sensitive data from evolving cyber threats. This involves developing and implementing security policies, procedures, and controls to ensure compliance with industry best practices and regulatory requirements.
Responsibilities:
- Monitor security alerts and events from various sources, including SIEM, IDS/IPS, and endpoint protection platforms.
- Investigate and respond to security incidents in a timely and effective manner, including root cause analysis and remediation.
- Conduct regular vulnerability assessments and penetration tests to identify security weaknesses.
- Develop and maintain security documentation, including policies, standards, and guidelines.
- Collaborate with IT and development teams to integrate security best practices into the software development lifecycle.
- Stay abreast of the latest security threats, trends, and technologies.
- Provide security awareness training to employees.
- Contribute to the continuous improvement of the information security program.
- Participate in security audits and compliance reviews.
- Evaluate and recommend new security technologies and solutions.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent practical experience).
- Proven experience (5+ years) in information security, with a focus on threat detection and incident response.
- Strong understanding of security frameworks such as ISO 27001, NIST, and GDPR.
- Experience with SIEM tools (e.g., Splunk, QRadar), EDR solutions, and network security technologies.
- Excellent analytical and problem-solving skills.
- Strong communication and interpersonal skills, with the ability to explain complex technical concepts to non-technical stakeholders.
- Relevant security certifications such as CISSP, CISM, or GIAC are highly desirable.
Senior Information Security Analyst
Posted 2 days ago
Job Viewed
Job Description
Key Responsibilities:
- Conduct comprehensive security risk assessments and vulnerability analyses.
- Develop and implement security policies, standards, and procedures.
- Manage and monitor security information and event management (SIEM) systems.
- Respond to and investigate security incidents, providing detailed post-incident reports.
- Collaborate with IT teams to ensure security is integrated into system design and deployment.
- Oversee the implementation of security awareness training programs for employees.
- Stay abreast of the latest security threats, trends, and technologies.
- Manage third-party security risks and ensure vendor compliance.
- Contribute to the development and execution of disaster recovery and business continuity plans.
- Mentor junior security analysts and provide technical guidance.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. A Master's degree is a plus.
- Minimum of 5 years of experience in information security, with a proven track record in risk management and incident response.
- In-depth knowledge of security frameworks (e.g., NIST, ISO 27001).
- Proficiency in SIEM tools, intrusion detection/prevention systems, and firewalls.
- Strong understanding of network security, cryptography, and cloud security.
- Excellent analytical and problem-solving skills.
- Ability to communicate complex security concepts to both technical and non-technical audiences.
- Relevant security certifications such as CISSP, CISM, or CEH are highly desirable.
Security Risk Analyst
Posted 8 days ago
Job Viewed
Job Description
Security Risk Analyst – 6-month contract – London/Remote – Inside IR35
My Customer is looking for a Security Risk Analyst to join their Governance, Risk & Compliance (GRC) team. You will play a key role in strengthening their risk management processes, working primarily with Archer and other GRC tools to support risk assessment, compliance, and governance activities.
In this role, you will be responsible for identifying, assessing, and tracking security risks across assets, systems, and third parties, ensuring compliance with internal standards, policies, and regulatory frameworks.
Key Skills from the Security Risk Analyst:
- Strong background in Security Risk and Governance with hands-on experience in Archer (experience with other GRC tools is also valuable).
- Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO (phone number removed)), and compliance requirements (GDPR, PCI DSS, SOX).
- Strong written communication skills, able to produce clear technical reports and risk documentation.
- Excellent stakeholder management, able to collaborate across technical and non-technical teams.
- Beneficial certifications: CISSP, CISA, CISM (or equivalent).
- ISO27001 / ISMS Accredited qualifications would be beneficial
- Experience working in financial sector would be beneficial
- Experience in ensuring internal IT system compliance against agreed standards
Key Responsibilities of the Security Risk Analyst:
- Maintain and improve the security risk assessment framework, procedures, and workflows.
- Manage and update security questionnaires to align with compliance requirements, industry standards, and regulations.
- Conduct asset-level and third-party/vendor risk assessments.
- Analyse and document inherent and residual risks, providing clear recommendations.
- Produce detailed technical reports highlighting findings, control gaps, and proposed remediation plans.
- Drive remediation
- Perform periodic and ad-hoc risk assessments in line with organisational policies.
The Security Risk Analyst is required onsite in London, once a week.
Apply now to speak with VIQU IT in confidence about the Security Risk Analyst role. Or reach out to Connor Smal via the VIQU IT website.
Do you know someone great? We’ll thank you with up to £1,000 if your referral is successful (terms apply).
For more exciting roles and opportunities like this, please follow us on LinkedIn @VIQU IT Recruitment.
Security Risk Analyst
Posted 8 days ago
Job Viewed
Job Description
Security Risk Analyst – 6-month contract – London/Remote – Inside IR35
My Customer is looking for a Security Risk Analyst to join their Governance, Risk & Compliance (GRC) team. You will play a key role in strengthening their risk management processes, working primarily with Archer and other GRC tools to support risk assessment, compliance, and governance activities.
In this role, you will be responsible for identifying, assessing, and tracking security risks across assets, systems, and third parties, ensuring compliance with internal standards, policies, and regulatory frameworks.
Key Skills from the Security Risk Analyst:
- Strong background in Security Risk and Governance with hands-on experience in Archer (experience with other GRC tools is also valuable).
- Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO (phone number removed)), and compliance requirements (GDPR, PCI DSS, SOX).
- Strong written communication skills, able to produce clear technical reports and risk documentation.
- Excellent stakeholder management, able to collaborate across technical and non-technical teams.
- Beneficial certifications: CISSP, CISA, CISM (or equivalent).
- ISO27001 / ISMS Accredited qualifications would be beneficial
- Experience working in financial sector would be beneficial
- Experience in ensuring internal IT system compliance against agreed standards
Key Responsibilities of the Security Risk Analyst:
- Maintain and improve the security risk assessment framework, procedures, and workflows.
- Manage and update security questionnaires to align with compliance requirements, industry standards, and regulations.
- Conduct asset-level and third-party/vendor risk assessments.
- Analyse and document inherent and residual risks, providing clear recommendations.
- Produce detailed technical reports highlighting findings, control gaps, and proposed remediation plans.
- Drive remediation
- Perform periodic and ad-hoc risk assessments in line with organisational policies.
The Security Risk Analyst is required onsite in London, once a week.
Apply now to speak with VIQU IT in confidence about the Security Risk Analyst role. Or reach out to Connor Smal via the VIQU IT website.
Do you know someone great? We’ll thank you with up to £1,000 if your referral is successful (terms apply).
For more exciting roles and opportunities like this, please follow us on LinkedIn @VIQU IT Recruitment.
Lead Information Security Analyst (Remote)
Posted today
Job Viewed
Job Description
Remote Senior Information Security Analyst
Posted 2 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor security alerts and logs from various security tools (SIEM, IDS/IPS, EDR) to identify and investigate potential security incidents.
- Lead and coordinate incident response activities, including containment, eradication, and recovery.
- Perform in-depth forensic analysis of security breaches and develop remediation strategies.
- Develop, implement, and maintain security policies, procedures, and best practices.
- Conduct regular vulnerability assessments and penetration testing.
- Manage and configure security tools and technologies.
- Provide expert guidance on security best practices to IT teams and stakeholders.
- Develop and deliver security awareness training programs.
- Stay current with emerging threats, vulnerabilities, and security technologies.
- Participate in security architecture reviews and provide recommendations.
- Assist in the development and execution of disaster recovery and business continuity plans.
- Create detailed reports on security incidents, findings, and recommendations.
- Bachelor's degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
- Minimum of 6 years of experience in information security, with a focus on threat analysis and incident response.
- Strong understanding of networking protocols, operating systems (Windows, Linux), and common attack vectors.
- Hands-on experience with SIEM platforms (e.g., Splunk, QRadar), EDR solutions, and other security tools.
- Proficiency in security forensics and malware analysis techniques.
- Relevant certifications such as CISSP, CISM, CEH, or GIAC are highly desirable.
- Excellent analytical, problem-solving, and decision-making skills.
- Strong written and verbal communication skills, with the ability to articulate technical issues to both technical and non-technical audiences.
- Ability to work independently and manage complex investigations under pressure in a remote setting.
- Experience with cloud security (AWS, Azure, GCP) is a plus.
Be The First To Know
About the latest Security risks Jobs in London !
Senior Information Security Analyst (Cloud Security)
Posted 2 days ago
Job Viewed
Job Description
Responsibilities:
- Develop, implement, and maintain security policies, standards, and procedures for cloud environments.
- Monitor cloud infrastructure for security vulnerabilities, threats, and incidents using SIEM, IDS/IPS, and other security tools.
- Conduct regular security assessments, penetration testing, and vulnerability scans of cloud applications and infrastructure.
- Respond to and manage security incidents, including investigation, containment, eradication, and recovery.
- Implement and manage identity and access management (IAM) solutions in cloud environments.
- Ensure compliance with relevant security regulations and standards (e.g., ISO 27001, SOC 2, GDPR).
- Collaborate with development and operations teams to embed security into the DevOps lifecycle (DevSecOps).
- Stay informed about the latest cloud security threats, vulnerabilities, and best practices.
- Develop and deliver security awareness training to employees.
- Automate security tasks and processes where possible to improve efficiency.
- Lead security architecture reviews for new cloud deployments and services.
- Contribute to the development of disaster recovery and business continuity plans.
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
- 5+ years of experience in information security, with a significant focus on cloud security (AWS, Azure, or GCP).
- In-depth knowledge of cloud security principles, best practices, and common vulnerabilities.
- Hands-on experience with security tools such as SIEM, vulnerability scanners, firewalls, and IDS/IPS.
- Proficiency in scripting languages (e.g., Python, Bash) for automation is highly desirable.
- Strong understanding of network security, cryptography, and authentication protocols.
- Experience with incident response and forensics.
- Relevant security certifications (e.g., CISSP, CCSP, AWS Certified Security – Specialty) are a plus.
- Excellent analytical and problem-solving skills.
- Strong communication skills, capable of explaining complex security concepts to both technical and non-technical audiences in a remote setting.
Information Security Manager
Posted 9 days ago
Job Viewed
Job Description
Information Security Manager
Location: London, Hybrid
Salary: Up to 75,000
Reports to: Head of Cyber Security
A well regarded Managed Service Provider is seeking an experienced Information Security Manager to join its team on a permanent basis. This role offers the opportunity to lead and deliver strategic security initiatives across a varied client base, with a strong focus on governance, risk, and compliance.
The successful candidate will have a proven background within an MSP or MSSP environment, hold CISSP certification, and demonstrate deep expertise in GRC frameworks, particularly ISO27001. Experience acting as a virtual Chief Information Security Officer (vCISO) is essential.
This business has made significant investment into its SOC-as-a-Service offering, positioning itself at the forefront of managed security solutions and enabling clients to benefit from cutting-edge threat detection and response capabilities.
Key Responsibilities:
- Serve as a vCISO for clients, providing strategic guidance on security posture and compliance
- Lead the development and implementation of security policies, procedures, and controls
- Manage ISO27001 compliance, including internal and external audits
- Conduct risk assessments and oversee incident response planning
- Collaborate with technical teams to ensure security is embedded across services
- Advise on regulatory requirements and emerging threats
Candidate Profile:
- Extensive experience in information security within an MSP or MSSP
- CISSP certified
- Strong working knowledge of GRC frameworks, including ISO27001
- Demonstrated experience in a vCISO capacity
- Excellent stakeholder engagement and communication skills
- Ability to lead complex security programmes across multiple environments
This role offers flexible working arrangements (hybrid), exposure to a wide range of industries and technologies, and the chance to join a collaborative team within a forward-thinking MSP committed to professional development.
Only candidates with the right to work in the UK will be considered .
London - Hybrid
Paying up to 75,000, depending on experience.
Information Security Manager
Posted 9 days ago
Job Viewed
Job Description
Information Security Manager
Location: London, Hybrid
Salary: Up to 75,000
Reports to: Head of Cyber Security
A well regarded Managed Service Provider is seeking an experienced Information Security Manager to join its team on a permanent basis. This role offers the opportunity to lead and deliver strategic security initiatives across a varied client base, with a strong focus on governance, risk, and compliance.
The successful candidate will have a proven background within an MSP or MSSP environment, hold CISSP certification, and demonstrate deep expertise in GRC frameworks, particularly ISO27001. Experience acting as a virtual Chief Information Security Officer (vCISO) is essential.
This business has made significant investment into its SOC-as-a-Service offering, positioning itself at the forefront of managed security solutions and enabling clients to benefit from cutting-edge threat detection and response capabilities.
Key Responsibilities:
- Serve as a vCISO for clients, providing strategic guidance on security posture and compliance
- Lead the development and implementation of security policies, procedures, and controls
- Manage ISO27001 compliance, including internal and external audits
- Conduct risk assessments and oversee incident response planning
- Collaborate with technical teams to ensure security is embedded across services
- Advise on regulatory requirements and emerging threats
Candidate Profile:
- Extensive experience in information security within an MSP or MSSP
- CISSP certified
- Strong working knowledge of GRC frameworks, including ISO27001
- Demonstrated experience in a vCISO capacity
- Excellent stakeholder engagement and communication skills
- Ability to lead complex security programmes across multiple environments
This role offers flexible working arrangements (hybrid), exposure to a wide range of industries and technologies, and the chance to join a collaborative team within a forward-thinking MSP committed to professional development.
Only candidates with the right to work in the UK will be considered .
London - Hybrid
Paying up to 75,000, depending on experience.