4,502 Security Specialists jobs in the United Kingdom

Information Security Analyst

Sanderson

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

Information Security Analyst – NIST Implementation


Rate - £500 Inside IR35 (Total to umbrella)

Duration – 6 months

Location – twice a week on site into London

Role Description:

As a Senior Information Security Analyst, you will be instrumental in executing the company's Information Security strategies and initiatives, focusing on supporting the Governance, Risk, and Compliance (GRC) function and implementing the NIST Cyber Security Framework (CSF) throughout the organization. You will lead day-to-day GRC activities, including designing security controls, enforcing requirements from the Group Information Security Framework, and proactively managing non-compliance issues and mitigating Information Security risks.


About You :

  • You will be developing and implementing an information security controls catalogue, policies, and procedures aligned with the NIST Cyber Security Framework (CSF).
  • Conducting assessments to identify material gaps, analyzing potential risks, and monitoring progress on maturity uplifting across security functions.
  • Supporting compliance activities with the Group Information Security Framework, Cyber Essentials, and PCI DSS attestation.
  • Collaborating with the wider organization to integrate control testing and risk management activities into the existing governance framework.
  • Assisting cross-functional teams and business units in integrating security measures into business operations.
  • Facilitating regular reviews and updates of control and risk management processes to remain effective and responsive to emerging threats and changes in the organizational landscape.
  • Documenting and visualizing reports for governance forums, providing insights and recommendations to inform decision-making and risk management strategy across the business.


Essential Skills:

  • Minimum of 4 years of experience in information security with a solid understanding of Information Security control and governance frameworks.
  • Practical experience of implementing NIST CSF in the financial services sector is highly desirable.
  • Proven track record of security transformation and delivery of security projects, particularly within a federated organisation.
  • Strong knowledge of Information Security and compliance frameworks, including NIST CSF, ISO 27001, Cyber Essentials, PCI DSS, and DORA, and the ability to design controls that align with these standards.
  • Ability to analyse data and generate reports using tools like Excel and Power BI, and experience with data visualisation and interpretation.
  • Skills in creating and maintaining comprehensive documentation, including control matrices, design process flows, and standard operating procedures.
  • Strong communication and interpersonal skills, with the ability to convey complex security concepts to non-technical stakeholders.
  • Bachelor’s degree in Information Security, Computer Science, or a related field. A Master’s degree is a plus.
  • Relevant certifications such as CISSP, CCSP, CRISC, CISM, or ISO 27001 Lead Implementer are highly desirable.
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst

London, London Sanderson

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

Information Security Analyst – NIST Implementation


Rate - £500 Inside IR35 (Total to umbrella)

Duration – 6 months

Location – twice a week on site into London

Role Description:

As a Senior Information Security Analyst, you will be instrumental in executing the company's Information Security strategies and initiatives, focusing on supporting the Governance, Risk, and Compliance (GRC) function and implementing the NIST Cyber Security Framework (CSF) throughout the organization. You will lead day-to-day GRC activities, including designing security controls, enforcing requirements from the Group Information Security Framework, and proactively managing non-compliance issues and mitigating Information Security risks.


About You :

  • You will be developing and implementing an information security controls catalogue, policies, and procedures aligned with the NIST Cyber Security Framework (CSF).
  • Conducting assessments to identify material gaps, analyzing potential risks, and monitoring progress on maturity uplifting across security functions.
  • Supporting compliance activities with the Group Information Security Framework, Cyber Essentials, and PCI DSS attestation.
  • Collaborating with the wider organization to integrate control testing and risk management activities into the existing governance framework.
  • Assisting cross-functional teams and business units in integrating security measures into business operations.
  • Facilitating regular reviews and updates of control and risk management processes to remain effective and responsive to emerging threats and changes in the organizational landscape.
  • Documenting and visualizing reports for governance forums, providing insights and recommendations to inform decision-making and risk management strategy across the business.


Essential Skills:

  • Minimum of 4 years of experience in information security with a solid understanding of Information Security control and governance frameworks.
  • Practical experience of implementing NIST CSF in the financial services sector is highly desirable.
  • Proven track record of security transformation and delivery of security projects, particularly within a federated organisation.
  • Strong knowledge of Information Security and compliance frameworks, including NIST CSF, ISO 27001, Cyber Essentials, PCI DSS, and DORA, and the ability to design controls that align with these standards.
  • Ability to analyse data and generate reports using tools like Excel and Power BI, and experience with data visualisation and interpretation.
  • Skills in creating and maintaining comprehensive documentation, including control matrices, design process flows, and standard operating procedures.
  • Strong communication and interpersonal skills, with the ability to convey complex security concepts to non-technical stakeholders.
  • Bachelor’s degree in Information Security, Computer Science, or a related field. A Master’s degree is a plus.
  • Relevant certifications such as CISSP, CCSP, CRISC, CISM, or ISO 27001 Lead Implementer are highly desirable.
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst

Prism Digital

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

Information Security Analyst | ISO27001, Rapid7, Protecht | Global Trading Platform


  • £60–70k base + 10% bonus
  • Hybrid in Coventry with monthly travel to London
  • Security certification support & career development built-in


Help shape a high-stakes security program as a hands-on GRC Analyst supporting a global financial institution’s banking expansion. You’ll be central to their mission of scaling a modern InfoSec environment, balancing regulatory rigor, ethical standards and BAU resilience.

You’ll focus on third-party security assessments, metrics reporting, and supporting certification frameworks including ISO27001 and SOC2. Expect close collaboration across risk, technology and compliance stakeholders. All while operating at pace, with visibility and trust from the top down.


What you’ll bring:

  • 3+ years in an InfoSec or IT security role within a regulated or financial firm
  • Security certifications: SSCP, Security+, or equivalent
  • Strong GRC foundation: Able to interpret risk frameworks and speak the language of ISO, SOC2, NIST, etc.
  • Comfortable with security tooling and metrics-driven reporting
  • Confident communicator: Translate acronyms into action, and engage stakeholders with clarity and purpose
  • Ethical mindset: understand when to escalate, when to challenge, and how to own your area


What you’ll be doing:

  • ISO27001 & SOC2 governance: day-to-day support of the ISMS, remediation tracking, risk reviews
  • Third-party risk assessments: conduct supplier security reviews aligned to appetite and regulatory frameworks
  • Security awareness training: drive phishing simulations and curate internal content via Proofpoint
  • BAU InfoSec operations: ticket triage, KPI reporting, risk dashboards, vulnerability and patch monitoring
  • Compliance tooling: operate and report using platforms like Protecht, Panorays, Rapid7, and Armis
  • Banking enablement: key InfoSec input into a major new market launch


Tech & tools you’ll use:

  • Protecht – Enterprise risk & audit platform
  • Panorays – Third-party risk management
  • Rapid7, Armis – Vulnerability & asset visibility
  • Proofpoint – Phishing simulations and awareness content
  • Microsoft Purview – Data governance and policy enforcement
  • Azure (beneficial) – Cloud IAM, logging, and security monitoring


Why this role?

  • High-impact GRC project work tied to new market expansion
  • Strong internal security culture: backed by a collaborative team and engaged InfoSec leadership
  • A clear opportunity to stretch across awareness, compliance, and operational domains


Information Security Analyst | ISO27001, Rapid7, Protecht | Global Trading Platform

This advertiser has chosen not to accept applicants from your region.

Information Security Analyst

EH1 2HU Edinburgh, Scotland £50000 Annually WhatJobs

Posted today

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is seeking a proactive and skilled Information Security Analyst to join their growing cybersecurity team based in Edinburgh, Scotland, UK . This role is vital in protecting the organization's digital assets and ensuring the confidentiality, integrity, and availability of information systems. You will be responsible for monitoring security systems, analyzing security threats and vulnerabilities, and implementing appropriate countermeasures. Key duties include conducting security audits, performing risk assessments, and developing and maintaining security policies and procedures. The analyst will also be involved in incident response activities, investigating security breaches, and providing post-incident analysis to prevent future occurrences. Experience with security information and event management (SIEM) tools, intrusion detection/prevention systems (IDS/IPS), and vulnerability assessment tools is essential. The ideal candidate will possess a strong understanding of network security principles, cryptography, and common security threats. Excellent analytical and problem-solving skills are required, along with the ability to work effectively under pressure. Certifications such as CompTIA Security+, CISSP, or CISM are highly desirable. A Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field, coupled with at least 3 years of experience in information security, is preferred. Strong communication skills are needed to effectively report findings and recommendations to both technical and non-technical stakeholders. This is an excellent opportunity to contribute to a robust security posture within a dynamic organization and to develop your career in the critical field of cybersecurity.
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst

BD1 1BG Bradford, Yorkshire and the Humber £50000 Annually WhatJobs

Posted today

Job Viewed

Tap Again To Close

Job Description

full-time
Our client, a reputable organization, is seeking a proactive and skilled Information Security Analyst to join their team. This role operates on a hybrid model, combining remote work flexibility with essential on-site collaboration at their offices in Bradford, West Yorkshire, UK . You will be instrumental in protecting the organization's information assets by identifying vulnerabilities, implementing security measures, and responding to security incidents. This position requires a keen eye for detail, a deep understanding of cybersecurity threats, and the ability to work effectively in a team environment.

Key Responsibilities:
  • Monitor security alerts and events from various security tools (SIEM, IDS/IPS, firewalls, etc.) and investigate potential security incidents.
  • Conduct vulnerability assessments and penetration testing to identify weaknesses in systems and applications.
  • Assist in the development and implementation of security policies, procedures, and standards.
  • Respond to and manage security incidents, including containment, eradication, and recovery efforts.
  • Provide security awareness training to employees and promote a security-conscious culture.
  • Configure and maintain security technologies, such as firewalls, endpoint protection, and intrusion detection systems.
  • Perform regular security audits and compliance checks against relevant frameworks (e.g., ISO 27001, GDPR).
  • Collaborate with IT teams to implement security best practices across infrastructure and applications.
  • Stay up-to-date with the latest cybersecurity threats, trends, and technologies.
  • Assist in the development and maintenance of incident response plans and disaster recovery strategies.
  • Analyze security metrics and provide reports on the organization's security posture.
  • Manage user access controls and permissions to ensure data confidentiality and integrity.
  • Participate in security reviews of new systems and applications.
Qualifications:
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent practical experience.
  • Proven experience as an Information Security Analyst or in a similar cybersecurity role.
  • Strong understanding of network security principles, common vulnerabilities, and attack vectors.
  • Experience with SIEM tools, firewalls, IDS/IPS, and endpoint security solutions.
  • Knowledge of cybersecurity frameworks and compliance standards.
  • Excellent analytical and problem-solving skills, with the ability to think critically under pressure.
  • Strong communication and interpersonal skills, with the ability to explain technical concepts to non-technical audiences.
  • Relevant industry certifications such as CompTIA Security+, CISSP, CEH are highly desirable.
  • Ability to work independently and as part of a team in a hybrid environment.
  • Familiarity with cloud security concepts is a plus.
  • Experience with scripting or programming languages is beneficial.
This is a fantastic opportunity for a dedicated cybersecurity professional to contribute to a secure digital environment and grow their career within a supportive and dynamic organization.
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst

SR1 2AU Sunderland, North East £35000 Annually WhatJobs

Posted today

Job Viewed

Tap Again To Close

Job Description

full-time
Our client, a rapidly expanding fintech company, is seeking a vigilant and skilled Information Security Analyst to bolster their cybersecurity defenses. This role is based in Sunderland, Tyne and Wear, UK , and offers a hybrid working arrangement, providing flexibility between office and remote work. The Information Security Analyst will be instrumental in protecting the company's digital assets and sensitive data from evolving cyber threats. Responsibilities include monitoring security alerts, investigating potential breaches, and implementing security measures to prevent unauthorized access. You will conduct vulnerability assessments and penetration testing, analyze security logs, and develop incident response plans. Staying abreast of the latest security trends, threats, and technologies is crucial. The ideal candidate will possess a strong understanding of network security, cryptography, security frameworks (e.g., ISO 27001, NIST), and security best practices. Experience with security information and event management (SIEM) tools, firewalls, intrusion detection/prevention systems (IDS/IPS), and endpoint security solutions is essential. A Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field is preferred, along with relevant security certifications (e.g., CompTIA Security+, CISSP). A minimum of 3 years of experience in information security or a related IT security role is required. Excellent analytical, problem-solving, and communication skills are necessary to effectively identify risks and communicate security recommendations to both technical and non-technical stakeholders. This is an exciting opportunity to join a growing organization and play a vital role in safeguarding its critical information infrastructure.
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst

EH1 1AA Edinburgh, Scotland £50000 annum (plus WhatJobs

Posted today

Job Viewed

Tap Again To Close

Job Description

full-time
Our client, a leading financial services organization, is looking for a skilled and vigilant Information Security Analyst to join their expanding security team based in Edinburgh, Scotland, UK . This role is integral to protecting the company's digital assets and sensitive data from evolving cyber threats. The Information Security Analyst will be responsible for monitoring security systems, investigating security incidents, implementing security controls, and contributing to the development of robust security policies and procedures. This hybrid role allows for effective collaboration with on-site teams while offering flexibility. The ideal candidate will possess a strong understanding of cybersecurity principles, threat landscapes, and risk management frameworks. You will work within a dedicated team focused on maintaining the confidentiality, integrity, and availability of information systems.

Key Responsibilities:
  • Monitor security alerts and events from various security tools (SIEM, IDS/IPS, firewalls, etc.).
  • Investigate and respond to security incidents, performing root cause analysis.
  • Implement and manage security controls and technologies to protect against cyber threats.
  • Conduct vulnerability assessments and penetration testing.
  • Develop and maintain security policies, standards, and procedures.
  • Assist in security awareness training for employees.
  • Review and analyze system logs for suspicious activities.
  • Collaborate with IT teams to ensure secure system configurations and deployments.
  • Stay current with emerging security threats, vulnerabilities, and technologies.
  • Participate in security audits and compliance activities.
  • Contribute to incident response planning and execution.
  • Provide expert advice on information security best practices.

Qualifications:
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Minimum of 3-5 years of experience in information security or cybersecurity roles.
  • Strong knowledge of security principles, networking protocols, and common attack vectors.
  • Experience with SIEM tools, intrusion detection/prevention systems, and firewalls.
  • Familiarity with vulnerability management and penetration testing methodologies.
  • Understanding of relevant security frameworks (e.g., ISO 27001, NIST).
  • Relevant security certifications such as CISSP, CompTIA Security+, CEH are a plus.
  • Excellent analytical and problem-solving skills.
  • Strong communication and interpersonal skills, with the ability to explain technical concepts to non-technical audiences.
  • This is a hybrid role, requiring presence at our Edinburgh, Scotland, UK office on a regular basis.
Join our proactive security team and play a vital role in safeguarding our organization's digital future.
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Security specialists Jobs in United Kingdom !

Information Security Analyst

DE1 1AA Derby, East Midlands £40000 Annually WhatJobs

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is seeking a vigilant and skilled Information Security Analyst to join their growing IT security team, based in Derby, Derbyshire, UK . This hybrid role offers a flexible working arrangement, combining remote work with essential on-site collaboration. You will be responsible for monitoring, analysing, and responding to security threats and incidents to protect the organisation's information assets. This involves managing and maintaining security tools, conducting vulnerability assessments, and implementing security controls. The Information Security Analyst will play a crucial role in developing and executing security policies and procedures, ensuring compliance with industry standards and regulations. You will be involved in threat intelligence gathering, security awareness training, and assisting with security audits and investigations. A key responsibility will be to identify potential security weaknesses and recommend appropriate remediation measures to mitigate risks. The ideal candidate will possess a strong understanding of cybersecurity principles, network security, and common threat vectors. Experience with security information and event management (SIEM) systems, intrusion detection/prevention systems (IDPS), and endpoint detection and response (EDR) solutions is highly desirable. Excellent analytical, problem-solving, and communication skills are essential. The ability to work independently and as part of a collaborative team, coupled with a proactive approach to security challenges, is required. A relevant degree in Computer Science, Information Security, or a related field, or equivalent professional experience, is expected. Relevant certifications such as CompTIA Security+, CEH, or CISSP are a plus. If you are passionate about protecting digital assets and looking for an exciting hybrid career opportunity, we encourage you to apply.
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst

LE1 5AA Leicester, East Midlands £40000 Annually WhatJobs

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is seeking a vigilant and detail-oriented Information Security Analyst to join their remote team. This crucial role involves safeguarding the company's digital assets by monitoring security systems, identifying vulnerabilities, and implementing robust security measures. You will play a key part in maintaining the confidentiality, integrity, and availability of our information systems.

Responsibilities:
  • Monitor security alerts and events from various security tools (SIEM, IDS/IPS, firewalls).
  • Conduct vulnerability assessments and penetration testing to identify security weaknesses.
  • Investigate security incidents, perform root cause analysis, and recommend remediation steps.
  • Develop and maintain security policies, procedures, and documentation.
  • Implement and manage security controls to protect against threats.
  • Assist in security awareness training for employees.
  • Stay updated on the latest cybersecurity threats, trends, and technologies.
  • Collaborate with IT teams to ensure security best practices are integrated into all systems and processes.
  • Respond to and manage security breaches effectively.
  • Participate in security audits and compliance checks.
Qualifications:
  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • Minimum of 3 years of experience in information security or cybersecurity roles.
  • Strong understanding of network security principles, common vulnerabilities, and threat vectors.
  • Experience with security monitoring tools (e.g., SIEM, endpoint detection and response).
  • Knowledge of security frameworks and standards (e.g., ISO 27001, NIST).
  • Excellent analytical and problem-solving skills.
  • Strong communication and interpersonal abilities.
  • Ability to work independently and collaboratively in a remote environment.
  • Relevant certifications such as CompTIA Security+, CEH, or CISSP are highly desirable.
  • Familiarity with cloud security concepts is a plus.
This is an excellent opportunity for a dedicated cybersecurity professional to contribute to a secure digital environment and grow their career remotely.
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst

ST1 1AA Staffordshire, West Midlands £45000 Annually WhatJobs

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client, a prominent financial services firm, is seeking a vigilant and proactive Information Security Analyst to join their dedicated cybersecurity team. This role, based in our Stoke-on-Trent, Staffordshire, UK office, offers a hybrid working arrangement, combining essential on-site collaboration with the flexibility of remote work. The Information Security Analyst will be responsible for monitoring security systems, detecting and responding to threats, and implementing security best practices to protect the organisation's sensitive data and systems.

Key Responsibilities:
  • Monitor security alerts and logs from various security tools, including SIEM (Security Information and Event Management), IDS/IPS, and endpoint protection platforms.
  • Investigate and respond to security incidents, performing root cause analysis and implementing containment and eradication strategies.
  • Conduct vulnerability assessments and penetration testing to identify and remediate security weaknesses.
  • Assist in the development and enforcement of information security policies, standards, and procedures.
  • Participate in security awareness training programs for employees.
  • Manage and maintain security infrastructure, including firewalls, VPNs, and access control systems.
  • Stay current with the latest cybersecurity threats, vulnerabilities, and industry trends.
  • Collaborate with IT teams to ensure that security is integrated into the system development lifecycle.
  • Prepare regular reports on security posture, incident trends, and risk assessments for management.
  • Contribute to the development and testing of the organization's Business Continuity and Disaster Recovery plans.
Qualifications and Skills:
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent work experience.
  • Minimum of 3 years of experience in an information security role, such as security operations, incident response, or vulnerability management.
  • Strong understanding of cybersecurity principles, frameworks (e.g., NIST, ISO 27001), and best practices.
  • Hands-on experience with SIEM tools, intrusion detection/prevention systems, and endpoint security solutions.
  • Knowledge of networking protocols, operating systems (Windows, Linux), and common security vulnerabilities.
  • Experience with vulnerability scanning tools (e.g., Nessus, Qualys) is desirable.
  • Relevant certifications such as CompTIA Security+, CEH, CISSP are highly valued.
  • Excellent analytical and problem-solving skills, with the ability to work under pressure.
  • Strong communication and collaboration skills, able to articulate technical concepts to both technical and non-technical audiences.
  • Ability to work independently and as part of a team in a dynamic environment.
This is a critical role for protecting our organisation's digital assets. If you are a skilled cybersecurity professional looking for a challenging and rewarding hybrid position, we encourage you to apply.
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Security Specialists Jobs