Information Security Compliance Analyst

Information Security Compliance Analyst

31 Oct
|
Robert Half
|
Bristol

31 Oct

Robert Half

Bristol

Job description

Robert Half has partnered on an exclusive basis with a growing professional outsourcing organisation in the Greater Bristol area to recruit and Information Security Compliance Analyst on a permanent basis.

Role Responsibilities;

Policy Development and implementation :

- Develop and maintain information security policies, procedures, team documents and controls aligned with industry standards and regulations.
- Conduct regular policy reviews to ensure adherence to agreed-upon policies
- Provide guidance and support across the Group on information security matter
- Support delivery of the Information Security Awareness For Everyone (SAFE) programme

Risk Management :







- Scope and conduct internal reviews to evaluate the effectiveness of information security controls, creating detailed compliance reports and remediation plans.
- Coordinate with internal and external auditors to prepare for, and respond to, information security assessments.
- Ensure Group IT and Security risk registers are managed effectively.
- Collaborate with business stakeholders to agree, implement, and manage security controls for key business systems and processes.

Third Party Management :

- Using agreed frameworks, assess and monitor the security of third parties
- Ensure that regular, scheduled security assessments are undertaken

Incident Preparation :

Collaborate with internal incident response teams to develop and implement preventive measures, based on incident findings.

Compliance Monitoring and Reporting :

- Maintain accurate and up-to-date documentation related to compliance effort
- Generate status reports for management and regulatory bodies

Continuous Improvement :







- Support the continuous improvement and expansion of our Information Security Management System (ISMS).
- Remain up to date with industry best practice, new technologies and emerging threats.

Skills / experience

- Proven experience in performing IT / Cyber security control reviews
- Minimum of 4 years' experience in IT, information security or programme management positions, with a preference for those involving Governance, Risk, and Compliance (GRC) programmes.
- Broad ranging analyst skills acquired while working on diverse IT and / or business projects
- Solution management experience including requirements analysis, solution proposition, delivery tracking and benefits analysis.
- Experience working with Information security frameworks and compliance standards (e.g. ISO27001, Cyber Essentials Plus,





NIST, SOC2 and PCI-DSS).

Desirable

- Knowledge of a range of technical security controls and their operation
- Understanding of / experience of PCI-DSS controls and implementation
- Good understanding of the Data Protection Act / General Data Protection Regulation
- Strong interest in Information security and technology, and motivated to learn new technologies.
- A bachelor's degree in information security or industry recognised security certifications (e.g. CISSP, CISM, CISA, CRISC, ISO27001 lead implementor, ISO27001 auditor).

Salary / Logistics

- £55,000 - £60,000 basic salary + additional benefits
- Hybrid working (2-3 days a week on site)







Robert Half Ltd acts as an employment business for temporary positions and an employment agency for permanent positions. Robert Half is committed to equal opportunity and diversity.

Suitable candidates with equivalent qualifications and more or less experience can apply. Rates of pay and salary ranges are dependent upon your experience, qualifications and training.

▶️ Information Security Compliance Analyst
🖊️ Robert Half
📍 Bristol

Subscribe to this job alert:
Enter Your E-mail address to receive the latest job offers for: information security compliance analyst
Subscribe to this job alert:
Enter Your E-mail address to receive the latest job offers for: information security compliance analyst