Security Governance and Compliance Analyst
Security Governance and Compliance Analyst

Security Governance and Compliance Analyst

Full-Time 40000 - 50000 £ / year (est.) Home office (partial)
Alzheimer's Society

At a Glance

  • Tasks: Support cyber security governance, risk, and compliance activities to protect vital information.
  • Company: Join the Alzheimer’s Society, committed to making a difference in people's lives.
  • Benefits: Enjoy flexible working, strong work-life balance, and professional development opportunities.
  • Other info: We value diversity and encourage under-represented groups to apply.
  • Why this job: Make a real impact on cyber security while collaborating with diverse teams.
  • Qualifications: Detail-oriented with knowledge of security frameworks and strong communication skills.

The predicted salary is between 40000 - 50000 £ per year.

We’re looking for a Security Governance & Compliance Analyst to join our Cyber Security team within the Technology directorate. Reporting to the Security Compliance Manager, you’ll play a key role in supporting the organisation’s cyber security governance, risk, and compliance activities. In this role, you’ll help ensure that effective security policies, standards, and controls are implemented and maintained across the organisation. You’ll contribute to protecting the confidentiality, integrity, and availability of information systems while supporting compliance with recognised standards. Working closely with Security Operations, Cyber Assurance, and wider technology teams, you’ll help embed governance processes across projects, operational services, and third-party relationships, making a real impact on how we manage and reduce cyber risk.

About you

  • You’re detail-oriented, proactive, and passionate about cyber security governance and risk management.
  • You enjoy working collaboratively across teams and can confidently communicate complex security concepts to a range of stakeholders.
  • You’re motivated to continuously learn and stay up to date with evolving cyber security standards, legislation, and best practices.
  • You take ownership of your work and are committed to maintaining high standards of accuracy, compliance, and professionalism.

You’ll have:

  • Experience supporting cyber security governance, risk, and compliance activities.
  • Knowledge of security frameworks and standards such as ISO27001, Cyber Essentials Plus, and PCI-DSS.
  • Understanding of risk management processes and maintaining risk registers.
  • Experience supporting audits, assurance reviews, and certification activities.
  • Ability to interpret and apply security policies, standards, and control frameworks.
  • Strong communication skills with the ability to engage both technical and non-technical stakeholders.
  • Experience working collaboratively across technology and business teams.
  • A commitment to data protection, confidentiality, and organisational policies.

What you’ll focus on:

  • Supporting the development and maintenance of cyber security policies, standards, and procedures.
  • Maintaining and updating the cyber security risk register, ensuring risks are tracked through to resolution.
  • Identifying and assessing risks linked to new systems, projects, and technology changes.
  • Supporting compliance with cyber security standards, regulations, and data protection requirements.
  • Assisting with internal and external audits, certification activities, and assurance reviews.
  • Collecting and managing evidence for compliance and certification purposes.
  • Monitoring adherence to policies and identifying areas for improvement.
  • Supporting third-party and supplier security assurance activities.
  • Producing governance reports, dashboards, and briefings for stakeholders.
  • Communicating cyber security risks and governance issues across the organisation.
  • Promoting awareness of cyber security governance and risk management practices.

Our commitment to Equity, Diversity, Inclusion & Belonging

We need to ensure the voices around our table better reflect and understand the communities we exist to serve. We strongly encourage individuals to apply who have a disability, impairment or health condition or individuals who identify as Black, Asian or from another minority ethnic background, as these groups are currently under-represented at Alzheimer’s Society. We want everyone we work with, as a colleague, volunteer, supporter, or someone we support, to feel included and that they belong at Alzheimer’s Society. Our Equity, Diversity and Inclusion Strategy here along with our internal employee forum and Employee Lived Experience network groups help us promote inclusion and belonging, becoming an engaged and inclusive organisation for all our people.

Giving back to you

Our employees work hard every day to make a true difference in people's lives. We are proud to support them with a range of benefits, recognition and many options for working agilely, all contributing to a strong work life balance. We also have various learning programmes to support you in your development and help you grow to realise your potential and shape a career with Alzheimer’s Society.

Security Governance and Compliance Analyst employer: Alzheimer's Society

At Alzheimer’s Society, we pride ourselves on being an exceptional employer that values equity, diversity, and inclusion. Our collaborative work culture fosters continuous learning and professional growth, ensuring that our employees are equipped to make a meaningful impact in the field of cyber security governance and compliance. With a strong commitment to work-life balance and a range of benefits, we empower our team members to thrive both personally and professionally in a supportive environment.
Alzheimer's Society

Contact Detail:

Alzheimer's Society Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Security Governance and Compliance Analyst

✨Tip Number 1

Network like a pro! Reach out to current employees at the organisation through LinkedIn or other platforms. Ask them about their experiences and any tips they might have for landing the role. It’s all about making connections!

✨Tip Number 2

Prepare for the interview by brushing up on your knowledge of security frameworks like ISO27001 and Cyber Essentials Plus. Be ready to discuss how you’ve applied these in past roles, as this will show you’re not just familiar with the concepts but can also implement them effectively.

✨Tip Number 3

Showcase your communication skills! Practice explaining complex security concepts in simple terms. This is crucial since you’ll need to engage both technical and non-technical stakeholders. Being able to bridge that gap can set you apart from other candidates.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in being part of our team. Let’s make a difference together!

We think you need these skills to ace Security Governance and Compliance Analyst

Cyber Security Governance
Risk Management
Compliance Activities
ISO27001
Cyber Essentials Plus
PCI-DSS
Audit Support
Security Policies Interpretation
Communication Skills
Collaboration Across Teams
Data Protection
Risk Register Maintenance
Governance Reporting
Stakeholder Engagement
Continuous Learning

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in cyber security governance and compliance. We want to see how your skills align with the specific requirements mentioned in the job description.

Showcase Your Passion: Let us know why you’re passionate about cyber security! Share any relevant projects or experiences that demonstrate your commitment to staying updated with evolving standards and best practices.

Be Clear and Concise: When writing your application, keep it clear and to the point. Use straightforward language to explain complex security concepts, as we value strong communication skills that can engage both technical and non-technical stakeholders.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates regarding your application status.

How to prepare for a job interview at Alzheimer's Society

✨Know Your Frameworks

Make sure you brush up on security frameworks like ISO27001, Cyber Essentials Plus, and PCI-DSS. Being able to discuss these in detail will show that you’re not just familiar with them but can also apply them in real-world scenarios.

✨Showcase Your Communication Skills

Prepare to explain complex security concepts in simple terms. Think about examples where you've had to communicate with both technical and non-technical stakeholders. This will demonstrate your ability to bridge the gap between teams.

✨Be Proactive About Risk Management

Come prepared with examples of how you've identified and managed risks in previous roles. Discuss your experience with maintaining risk registers and how you’ve tracked risks through to resolution. This shows your proactive approach to governance.

✨Emphasise Collaboration

Highlight your experience working across different teams. Be ready to share specific instances where collaboration led to successful outcomes in cyber security projects. This aligns with the company’s value of working better together.

Security Governance and Compliance Analyst
Alzheimer's Society

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>