At a Glance
- Tasks: Ensure cybersecurity compliance and support audits while promoting a strong security culture.
- Company: Respected professional services organisation with a focus on expert consultancy.
- Benefits: Competitive salary, hybrid work, and opportunities for professional growth.
- Other info: Exciting opportunity for career advancement in a supportive environment.
- Why this job: Join a dynamic team and make a real impact in the world of cybersecurity.
- Qualifications: Five years' experience in InfoSec compliance and strong knowledge of ISO 27001.
The predicted salary is between 45000 - 55000 ÂŁ per year.
A fantastic opportunity has arisen for an IT Information Security Analyst to join a respected professional services organisation with a strong heritage in delivering expert consultancy across complex, regulated environments. This role is ideal for someone passionate about cybersecurity compliance, audit readiness, and maintaining robust security standards across the business.
Key Responsibilities
- Security Compliance & Governance
- Support and maintain compliance with ISO 27001, contributing to the operation, monitoring, and continual improvement of the ISMS.
- Ensure alignment with wider frameworks such as NIST CSF, Cyber Essentials / Cyber Essentials Plus, and organisational GRC policies.
- Assist with internal and external audits, evidence gathering, nonâconformity remediation, and compliance documentation.
- Help ensure compliance with legal, regulatory, and contractual requirements relating to data protection, risk, supplier oversight, and information governance.
- Monitoring & Investigation
- Proactively monitor cyber events using SIEM technologies, initiating investigations where anomalies or threats are detected.
- Support deeper incident reviews, escalating where required to senior InfoSec or the SOC.
- Participate in regular vulnerability scanning and technical compliance checks.
- Training & Awareness
- Deliver security awareness activities across the organisation, supporting ISO 27001 competence and awareness controls.
- Promote a strong security culture, encouraging bestâpractice behaviours and reporting of risks.
- Operational Security Activities
- Support vulnerability management, risk assessments, and maintenance of risk registers.
- Assist technical teams in aligning projects and changes with required compliance controls and security baselines.
Ideal Candidate Profile
- Approximately five years' experience in an Information Security Analyst, Cyber Compliance Analyst, or similar InfoSec compliance role.
- Strong working knowledge of ISO 27001, GRC processes, audit cycles, risk management, and documentation control.
- Experience with SIEM, EDR, SDR, and investigative processes.
- Understanding of vulnerability management and penetration testing concepts.
Skills & Attributes
- Confident interpreting and applying standards such as ISO 27001, NIST, and Cyber Essentials.
- Excellent communication skills suited to a professional services environment.
- Highly organised with the ability to maintain accurate compliance evidence, logs, and documentation.
- Able to travel occasionally to client sites.
Qualifications (Desirable)
- ISO 27001 Lead Auditor or Lead Implementer
- NIST CSF Practitioner
- CRISC (Certified in Risk and Information Systems Control)
- CEH (Certified Ethical Hacker)
- CompTIA CySA+
- ISO 27701 Practitioner
- GIAC certifications (e.g., GSEC, GCIH, GMON)
IT Information Security Analyst - Compliance in West Bromwich employer: Adecco
Contact Detail:
Adecco Recruiting Team
StudySmarter Expert Advice đ¤Ť
We think this is how you could land IT Information Security Analyst - Compliance in West Bromwich
â¨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with professionals on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.
â¨Tip Number 2
Prepare for interviews by researching the company and its compliance practices. Be ready to discuss how your experience aligns with their needs, especially around ISO 27001 and risk management. Show them youâre not just another candidate!
â¨Tip Number 3
Practice makes perfect! Conduct mock interviews with friends or use online platforms to refine your answers. Focus on articulating your experience with SIEM technologies and compliance frameworks clearly and confidently.
â¨Tip Number 4
Donât forget to apply through our website! Itâs the best way to ensure your application gets seen. Plus, we love seeing candidates who take that extra step to engage with us directly.
We think you need these skills to ace IT Information Security Analyst - Compliance in West Bromwich
Some tips for your application đŤĄ
Tailor Your CV: Make sure your CV is tailored to the IT Information Security Analyst role. Highlight your experience with ISO 27001, GRC processes, and any relevant compliance work. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity compliance and how your background makes you a great fit for our team. Keep it engaging and relevant to the job description.
Showcase Your Skills: Donât forget to showcase your technical skills, especially with SIEM technologies and vulnerability management. We love seeing candidates who can demonstrate their knowledge and experience in these areas clearly.
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. Itâs super easy, and youâll be able to submit all your documents in one go. Plus, we love seeing applications come directly from our site!
How to prepare for a job interview at Adecco
â¨Know Your Standards
Make sure you have a solid understanding of ISO 27001, NIST CSF, and Cyber Essentials. Brush up on how these frameworks apply to the role and be ready to discuss your experience with them during the interview.
â¨Showcase Your Compliance Experience
Prepare specific examples from your past roles where you've supported compliance efforts or participated in audits. Highlight any challenges you faced and how you overcame them, as this will demonstrate your problem-solving skills.
â¨Be Ready for Technical Questions
Expect questions about SIEM technologies, vulnerability management, and incident response. Review key concepts and be prepared to explain how you've used these tools in your previous positions.
â¨Communicate Clearly
Since this role involves delivering security awareness activities, practice explaining complex security concepts in simple terms. Good communication is key, so think about how you can convey your ideas effectively to non-technical stakeholders.