Senior Security Analyst

Senior Security Analyst

Full-Time 60000 - 80000 £ / year (est.) Home office (partial)
Blumberg Capital Company

At a Glance

  • Tasks: Manage and optimise Addepar’s Information Security and Risk Program while driving governance initiatives.
  • Company: Join a global data and AI platform empowering investment professionals worldwide.
  • Benefits: Hybrid work model, competitive salary, and opportunities for professional growth.
  • Other info: Diverse and inclusive workplace with excellent career advancement opportunities.
  • Why this job: Make a real impact on security and risk management in a dynamic tech environment.
  • Qualifications: Experience in information security, strong analytical skills, and familiarity with control frameworks.

The predicted salary is between 60000 - 80000 £ per year.

Addepar is a global data and AI platform empowering investment professionals to turn complex financial information into actionable intelligence. Addepar unifies portfolio, market and client data in a total portfolio view and delivers AI-powered insights within investment and client workflows. More than 1,400 firms in nearly 60 countries use Addepar to manage and advise on nearly $9 trillion in assets.

The Role

We are currently seeking a Senior Information Security & Risk Analyst to join our Information Security & Risk team as part of the expanding team within our Edinburgh, UK location. The successful candidate will have the opportunity to help take Addepar’s Information Security and Governance programs to the next level. The Information Security & Risk ('ISR') organization at Addepar is focused on establishing clear, simple and consistent control frameworks, and providing effective oversight of information security and technology activities. This organization plays a critical role in helping to balance risk‑taking activities and decisions with opportunities to manage risk. The successful candidate will be skilled in supporting high‑impact governance, risk and compliance programs that align to the size and maturity of our business. This is a hybrid role and will be 2 days per week in our Edinburgh office. Applicants must have, and maintain, the right to work in the United Kingdom from the first day of employment. Please note that visa sponsorship is not available for this role.

What You’ll Do

  • Assist in the management of Addepar’s Client Due Diligence Program through the composition and maintenance of security collateral.
  • Drive a more optimized Information Security and Risk Program, aligned with industry standard frameworks such as the NIST Cybersecurity Framework.
  • Lead independent risk assessments of our environment focusing on our platform and its supporting third party and internally developed software, infrastructure, and tools.
  • Support build‑out of an enterprise metrics program and risk reporting framework to communicate risk to senior management.
  • Partner with control owners, engineers and other teams to facilitate reviews of new products and services, to ensure risks are identified, communicated, and mitigated.
  • Support SOC2 reviews including project management, planning, and coordination across Addepar teams and external auditors.
  • Maintain Addepar Information Security & Risk policies and standards, aligning to business and Client needs.
  • Assist efforts on Data Governance and ensuring the right access controls are in place to support the program.
  • Drive improvements and execution of risk and governance awareness programs.
  • Work as part of a global operating team across multiple timezones.

Who You Are

  • Extensive experience managing, consulting, auditing, or working in the fields of Information security or Technology Risk required.
  • AWS Cloud Security experience preferred.
  • Demonstrate strong analytical, communication, and problem solving skills.
  • Experience identifying and communicating key risks related to cloud implementations and architectures.
  • Ability to manage multiple high‑visibility and high‑impact projects while maintaining superior results.
  • Familiarity with control frameworks (e.g. NIST Cybersecurity Framework, NIST 800‑53, ISO) and SOC2 audit compliance.

In addition to our core values, Addepar is proud to be an equal opportunity employer. We seek to bring together diverse ideas, experiences, skill sets, perspectives, backgrounds and identities to drive innovative solutions. We commit to promoting a welcoming environment where inclusion and belonging are held as a shared responsibility. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

Senior Security Analyst employer: Blumberg Capital Company

Addepar is an exceptional employer, offering a dynamic work culture that fosters innovation and collaboration within the rapidly evolving field of information security. Located in Edinburgh, employees benefit from a hybrid work model, competitive growth opportunities, and a commitment to diversity and inclusion, making it an ideal environment for professionals looking to make a meaningful impact in the investment management sector.

Blumberg Capital Company

Contact Details:

Blumberg Capital Company Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Security Analyst

Tip Number 1

Network like a pro! Reach out to folks in the industry, especially those at Addepar. A friendly chat can open doors and give you insights that a job description just can't.

Tip Number 2

Prepare for the interview by diving deep into Addepar's values and mission. Show us how your skills align with our goals, especially in information security and risk management.

Tip Number 3

Practice your responses to common interview questions, but keep it natural. We want to see your personality shine through while discussing your experience in managing security risks.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, it shows you're genuinely interested in joining our team.

We think you need these skills to ace Senior Security Analyst

Information Security
Risk Management
Governance
Compliance
NIST Cybersecurity Framework
AWS Cloud Security
Analytical Skills

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Senior Security Analyst role. Highlight your experience in information security and risk management, especially any work with frameworks like NIST or SOC2. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how you can contribute to our team at Addepar. Be sure to mention any relevant projects or achievements that showcase your expertise.

Showcase Your Analytical Skills:In your application, don’t forget to highlight your analytical and problem-solving skills. We’re looking for someone who can manage high-impact projects, so share examples of how you've tackled complex challenges in the past.

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team at Addepar!

How to prepare for a job interview at Blumberg Capital Company

Know Your Security Frameworks

Familiarise yourself with the NIST Cybersecurity Framework and other relevant control frameworks like ISO and SOC2. Be ready to discuss how you've applied these in your previous roles, as this will show your understanding of industry standards and your ability to align with Addepar's needs.

Showcase Your Analytical Skills

Prepare examples that highlight your analytical and problem-solving skills, especially in relation to risk assessments and cloud security. Think of specific situations where you identified key risks and how you communicated them effectively to stakeholders.

Demonstrate Project Management Experience

Since you'll be managing high-visibility projects, come equipped with stories that illustrate your project management capabilities. Discuss how you prioritised tasks, coordinated with teams, and ensured successful outcomes in past roles.

Emphasise Communication Skills

Effective communication is crucial in this role. Prepare to explain complex security concepts in simple terms, as you'll need to partner with various teams. Practice articulating your thoughts clearly and confidently to make a strong impression.