Risk Analyst (Information Security)
Risk Analyst (Information Security)

Risk Analyst (Information Security)

Ipswich Full-Time 36000 - 60000 £ / year (est.) No home office possible
Go Premium
X

At a Glance

  • Tasks: Join us as a Risk Analyst to drive our security risk posture and support global teams.
  • Company: AXA XL is a leader in solving complex risks for businesses worldwide.
  • Benefits: Enjoy flexible working arrangements, family-friendly leave, and a commitment to diversity.
  • Why this job: Be part of an innovative team that values sustainability and social impact.
  • Qualifications: Master's degree in a relevant field with 5 years of experience in Risk Management or Information Security.
  • Other info: We promote an inclusive culture where everyone can thrive and contribute.

The predicted salary is between 36000 - 60000 £ per year.

The RAMP Analyst is an expanding role and entails driving AXA XL's security risk posture. The role includes working with multiple subject matter experts on a wide variety of topics to determine if temporary exceptions to the Information Security Policy are acceptable. Strong communication skills are a must as the candidate will be working with colleagues globally.

The Risk Analyst will work under the responsibility of the Head of IS Services and Risk Management or delegate. The responsibilities of the role will focus on the Risk Acknowledgement and Mitigation Plan (RAMP) process that handles the exceptional noncompliance to the policies and include the following:

  • Support the business and IT stakeholders in the creation of RAMPs
  • Ensure that created RAMPs are properly formatted and complete to be able to go through the RAMP process without issues & delays
  • Communicate weekly on the RAMPs that are new or need a review in the RRG
  • Animate the weekly RAMP Review Group
  • Maintain a proper audit track on all RAMP associated decisions and act as a secretary for RRG meetings
  • Manage and maintain the RAMPs register, a consistent record of all RAMPs raised, their current status, expiry date and details of any mitigation to be carried out and by whom
  • Ensure that all Risks Acknowledgement go through due process in a timely manner
  • Become familiar with changes to the policy and supporting standards, so that all RAMPs reference the correct risk and RAMP metrics can accurately reflect the overall status.
  • Produce monthly reporting to the local IT, Security and Risk governance on the residual risk that were acknowledged / accepted and the most important monitored risks
  • Act as a champion for Information Security when dealing with areas of the business, providing assistance with the raising of information risks and explaining current policy as required

We’re looking for someone who has these abilities and skills:

  • Master’s degree in Computer Science, Engineering, or related field with a minimum of 5 years of professional experience in Risk Management (Required) and/or Information Security (Preferred)
  • Expert in synthesizing and clearly communicating complex information to all audiences up to C-Level leaders (Required)
  • Experience in articulating risks in business language and advising on the appropriate risk management action (Required)
  • Excellent attention to detail and the ability to create clear, concise and engaging presentations breaking down difficult problems (Required)
  • Expert analytical and reporting skills (Required)
  • Excellent interpersonal and collaborative skills (Required)
  • Expert in Microsoft Office (Word, Excel, PowerPoint, SharePoint) (Required)
  • Experience in multinational companies (Required)
  • Strong knowledge of Risk management (Required)
  • Strong knowledge of Risk management frameworks (ISO 3100X, NIST 800-30/37/39, ENISA, EBIOS, OCTAVE, FAIR) (Required)
  • Effective knowledge of Information Security frameworks (Mitre ATT&CK, NIST, ISO 2700X …) (Preferred)
  • Experience in information security management reporting and related methodologies (Preferred)
  • Information Security and/or Information Technology industry certification (CISSP, CISM, or equivalent) (Preferred)

AXA XL, the P&C and specialty risk division of AXA, is known for solving complex risks. For mid-sized companies, multinationals and even some inspirational individuals we don’t just provide re/insurance, we reinvent it.

AXA XL is committed to equal employment opportunity and will consider applicants regardless of gender, sexual orientation, age, ethnicity and origins, marital status, religion, disability, or any other protected characteristic.

At AXA XL, we know that an inclusive culture and a diverse workforce enable business growth and are critical to our success. That’s why we have made a strategic commitment to attract, develop, advance and retain the most diverse workforce possible, and create an inclusive culture where everyone can bring their full selves to work and can reach their highest potential.

AXA XL is an Equal Opportunity Employer.

Risk Analyst (Information Security) employer: XL CATLIN

AXA XL is an exceptional employer located in Ipswich, offering a dynamic and inclusive work culture that prioritises employee growth and development. With robust support for flexible working arrangements, enhanced family-friendly leave benefits, and a commitment to diversity, employees are empowered to thrive both personally and professionally. The company also champions sustainability initiatives, making it a meaningful place to work for those passionate about making a positive impact.
X

Contact Detail:

XL CATLIN Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Risk Analyst (Information Security)

✨Tip Number 1

Familiarise yourself with the specific risk management frameworks mentioned in the job description, such as ISO 3100X and NIST. Being able to discuss these frameworks confidently during your interview will demonstrate your expertise and understanding of the role.

✨Tip Number 2

Brush up on your communication skills, especially in articulating complex information in a business-friendly manner. Practising how to explain technical concepts to non-technical stakeholders can set you apart from other candidates.

✨Tip Number 3

Network with professionals in the information security field, particularly those who have experience in multinational companies. Engaging with them can provide insights into the company culture and expectations, which can be invaluable during interviews.

✨Tip Number 4

Prepare to discuss your experience with creating and managing risk acknowledgement and mitigation plans (RAMPs). Having concrete examples ready will show that you understand the practical aspects of the role and can contribute effectively from day one.

We think you need these skills to ace Risk Analyst (Information Security)

Risk Management
Information Security
Analytical Skills
Attention to Detail
Communication Skills
Presentation Skills
Interpersonal Skills
Collaboration Skills
Microsoft Office Suite (Word, Excel, PowerPoint, SharePoint)
Knowledge of Risk Management Frameworks (ISO 31000, NIST 800-30/37/39, ENISA, EBIOS, OCTAVE, FAIR)
Knowledge of Information Security Frameworks (Mitre ATT&CK, NIST, ISO 27001)
Experience in Multinational Companies
Information Security Management Reporting
Industry Certifications (CISSP, CISM or equivalent)

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in Risk Management and Information Security. Use keywords from the job description, such as 'RAMP process', 'risk management frameworks', and 'analytical skills' to catch the employer's attention.

Craft a Compelling Cover Letter: In your cover letter, explain why you're passionate about the role and how your background aligns with AXA XL's mission. Mention specific experiences that demonstrate your ability to communicate complex information clearly and your expertise in risk management.

Showcase Your Skills: Highlight your proficiency in Microsoft Office and any relevant certifications like CISSP or CISM. Provide examples of how you've used these skills in previous roles to manage risks effectively.

Proofread and Edit: Before submitting your application, carefully proofread all documents for spelling and grammatical errors. A polished application reflects your attention to detail, which is crucial for a Risk Analyst role.

How to prepare for a job interview at XL CATLIN

✨Understand the RAMP Process

Familiarise yourself with the Risk Acknowledgement and Mitigation Plan (RAMP) process. Be prepared to discuss how you would support business and IT stakeholders in creating effective RAMPs, ensuring they are properly formatted and complete.

✨Communicate Clearly

Since strong communication skills are essential for this role, practice articulating complex information in a clear and concise manner. Think about how you can explain risks in business language that resonates with various audiences, including C-Level leaders.

✨Showcase Your Analytical Skills

Prepare to demonstrate your expert analytical and reporting skills. Bring examples of past experiences where you successfully synthesised data and produced insightful reports, particularly in relation to risk management.

✨Be Ready for Technical Questions

Brush up on your knowledge of risk management frameworks and information security standards. Expect questions related to ISO 3100X, NIST, and other relevant frameworks, and be ready to discuss how you've applied these in previous roles.

Risk Analyst (Information Security)
XL CATLIN
Location: Ipswich
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

X
  • Risk Analyst (Information Security)

    Ipswich
    Full-Time
    36000 - 60000 £ / year (est.)
  • X

    XL CATLIN

    1000-5000
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>