Information Security Compliance Specialist
Information Security Compliance Specialist

Information Security Compliance Specialist

London Full-Time 36000 - 60000 £ / year (est.) Home office possible
Go Premium
Binalyze

At a Glance

  • Tasks: Ensure compliance with information security standards and manage risk across the organisation.
  • Company: Binalyze is a forward-thinking company focused on redefining the DFIR industry.
  • Benefits: Enjoy 28 days holiday, private medical insurance, and an entertainment allowance.
  • Why this job: Join a passionate team and make a real impact in information security and compliance.
  • Qualifications: Experience in IT security, compliance frameworks, and strong communication skills are essential.
  • Other info: Remote work available; we value diversity and encourage all backgrounds to apply.

The predicted salary is between 36000 - 60000 £ per year.

The Information Security Compliance Specialist ensures that Binalyze’s Information Security Management System (ISMS) and Business Continuity Management System (BCMS), including its systems, processes, and procedures comply with internal policies and external regulatory requirements. The role must maintain a strong knowledge of industry standards and best practices related to information security, compliance, and risk management. The role collaborates with various teams, including engineering, finance, sales, marketing, and people to ensure that information security practices are aligned with company goals and integrated into business operations. The specialist coordinates with external auditors to assess compliance with applicable regulations and provide subject matter expertise to the other teams for projecting Binalyze’s information security practices to external parties and partners.

What you’ll do:

  • Develop and maintain information security policies, procedures, and guidelines in accordance with industry standards and regulatory requirements.
  • Supervise (monitor, assess and communicate) Binalyze’s information security risks management system.
  • Collaborate with the information security team to implement and maintain effective security controls, including secure coding, threat hunting, incident response, system monitoring, and business continuity, and participate in incident response activities.
  • Conduct security assessments and audits to ensure compliance with applicable regulations, such as ISO 27001, ISO 22301, ISO 27701, SOC II, and GDPR.
  • Serve as a liaison with external auditors and regulators to provide evidence of compliance and facilitate audits and assessments.
  • Develop, implement, and maintain a comprehensive risk management framework to identify, assess, and mitigate information security and business continuity risks, ensuring that risks are communicated effectively across the organization and addressed in a timely manner.
  • Develop and deliver information security training and awareness programs to educate employees on information security policies and procedures.
  • Stay up-to-date on the latest information security trends, technologies, and best practices, as well as relevant regulations and laws, and provide recommendations for improving the organization’s security and compliance posture.
  • Manage and supervise Binalyze’s GRC tool and ISMS/BCMS documentation.
  • Ensure alignment between information security controls and business continuity measures, ensuring that both disciplines work together to protect critical assets and ensure operational resilience.

What we’re looking for:

  • Experience: Experience in IT security and compliance, including experience with regulatory compliance frameworks such as ISO 27001, ISO 27701, ISO 22301, SOC2, GDPR, and NIST 800-53. Strong knowledge of information security and business continuity principles, practices, and technologies, including network security, access controls, cryptography, and security operations. Strong understanding of ISMS/BCMS documentation. Experience with security assessments, business continuity tests, audits, and compliance reporting. Related professional certifications such as CISA, ISO/IEC 27001 Lead Auditor, ISO 22301 Lead Implementer, GSEC, and CompTIA Security are preferred.
  • Technical Skills: Deep understanding of information security and business continuity controls, compliance requirements, and regulatory frameworks. Proficiency in managing GRC tools such as Drata and maintaining ISMS/BCMS documentation. Experienced in conducting, responding to, and remediating audits and assessments for security and business continuity.
  • Communication & Collaboration: Exceptional (English) written and verbal communication skills, with the ability to craft clear, persuasive, and comprehensive audit responses, reports, and policies. Adept at translating complex technical concepts into accessible language for non-technical stakeholders, ensuring alignment and understanding across teams. Skilled in writing formal security documentation, policies, and executive-level reports that effectively communicate risk, compliance status, and security recommendations. Strong ability to present security findings, risks, and mitigation strategies in a compelling and structured manner. Works closely with all teams to ensure alignment between security controls and continuity measures.
  • Analytical and Problem-solving skills: Ability to use metrics, risk assessments, and compliance data to inform security and business continuity strategies.
  • Project management: Experience leading projects to enhance both security frameworks and business continuity strategies.
  • Initiative: Proactive in identifying risks related to both information security and business continuity.
  • Adaptability & Resilience: Able to maintain focus and effectiveness under pressure during security incidents or business disruptions. Able to respond to both security incidents and business continuity challenges in real-time.
  • Growth Mindset: Committed to continuous learning and improvement.
  • Remote Working: Demonstrates strong self-management skills for effective remote collaboration.

What we offer: 28 days holiday allowance + wellbeing days + birthday off! Private medical insurance for you and your family. A supportive and collaborative team that’s as passionate as you are. Home office setup support. Great opportunities for growth and development. Entertainment allowance - Netflix / Spotify. Healthy living allowance - Gym membership.

Join Us: If you’re ready to take the lead as the driving force redefining the DFIR industry, we want to hear from you.

Diversity and Inclusion: We are committed to diversity and inclusion, and we encourage candidates from all backgrounds to apply.

Information Security Compliance Specialist employer: Binalyze

Binalyze is an exceptional employer that prioritises employee well-being and professional growth, offering a generous holiday allowance, private medical insurance, and support for home office setups. With a collaborative work culture and a commitment to diversity and inclusion, employees are empowered to thrive in their roles while contributing to meaningful projects in the information security sector. The remote working flexibility allows team members from Estonia, Turkey, and the UK to enjoy a balanced work-life experience while being part of a passionate and supportive team.
Binalyze

Contact Detail:

Binalyze Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Compliance Specialist

✨Tip Number 1

Familiarise yourself with the specific compliance frameworks mentioned in the job description, such as ISO 27001 and GDPR. Understanding these standards will not only help you in interviews but also demonstrate your commitment to the role.

✨Tip Number 2

Network with professionals in the information security field, especially those who have experience with ISMS and BCMS. Engaging in discussions or attending webinars can provide insights and potentially lead to referrals.

✨Tip Number 3

Stay updated on the latest trends and technologies in information security. Being knowledgeable about current events and advancements can give you an edge during interviews and show your proactive approach to learning.

✨Tip Number 4

Prepare to discuss real-world scenarios where you've successfully managed compliance or security risks. Having concrete examples ready can illustrate your problem-solving skills and practical experience to potential employers.

We think you need these skills to ace Information Security Compliance Specialist

Knowledge of ISO 27001, ISO 27701, ISO 22301, SOC2, GDPR, and NIST 800-53
Experience in IT security and compliance
Strong understanding of ISMS/BCMS documentation
Proficiency in managing GRC tools such as Drata
Ability to conduct security assessments and audits
Exceptional written and verbal communication skills
Ability to translate technical concepts for non-technical stakeholders
Skilled in writing formal security documentation and reports
Analytical skills for risk assessments and compliance data
Project management experience in enhancing security frameworks
Proactive risk identification related to information security
Adaptability under pressure during security incidents
Commitment to continuous learning and improvement
Strong self-management skills for remote collaboration

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in IT security and compliance, particularly with frameworks like ISO 27001 and GDPR. Use specific examples to demonstrate your knowledge of information security principles and practices.

Craft a Compelling Cover Letter: In your cover letter, express your passion for information security and compliance. Mention how your skills align with the job requirements and provide examples of past experiences where you successfully managed security risks or compliance audits.

Showcase Communication Skills: Since the role requires exceptional written communication skills, ensure that your application materials are clear, concise, and free of jargon. Highlight any experience you have in writing formal security documentation or reports.

Highlight Continuous Learning: Mention any relevant certifications or training you've completed, such as CISA or ISO/IEC 27001 Lead Auditor. Emphasise your commitment to staying updated on the latest trends and best practices in information security.

How to prepare for a job interview at Binalyze

✨Know Your Standards

Familiarise yourself with the key regulatory frameworks mentioned in the job description, such as ISO 27001 and GDPR. Be prepared to discuss how your experience aligns with these standards and how you can contribute to maintaining compliance.

✨Showcase Your Communication Skills

Since the role requires exceptional communication skills, practice articulating complex security concepts in simple terms. Prepare examples of how you've effectively communicated security policies or audit findings to non-technical stakeholders.

✨Demonstrate Proactivity

Highlight instances where you've proactively identified and mitigated risks in previous roles. This will show your initiative and ability to stay ahead of potential security issues, which is crucial for this position.

✨Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving skills during security incidents or compliance audits. Think through past experiences where you successfully navigated challenges and be ready to share those stories.

Information Security Compliance Specialist
Binalyze
Location: London
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>