At a Glance
- Tasks: Support the development of information security systems and ensure compliance with regulations.
- Company: Join a forward-thinking company focused on information security and compliance.
- Benefits: Hybrid work model, competitive salary, and opportunities for professional growth.
- Why this job: Make a real difference in protecting data and ensuring compliance across the organisation.
- Qualifications: Degree level qualified with experience in information security and relevant certifications.
- Other info: Dynamic role with opportunities to engage with stakeholders at all levels.
The predicted salary is between 36000 - 60000 £ per year.
As an Information Security Compliance Analyst, you will support the development and maintenance of the EMEA information security management system, ensuring compliance with Global EIT strategy, EMEA business needs, and relevant legislation (e.g. NIS 2, AI Act, GDPR). Maintain ISO 27001:2022 certification and ensure adherence to health, safety, financial, and privacy regulations.
What are we looking for?
- Degree level qualified or equivalent - essential.
- CISM and/or CISSP or other relevant certification is highly desirable.
- ISO 27001:2022 Lead Implementer/Auditor certification is highly desirable.
- Demonstrable experience in an Information Security, IT Governance, Risk and Compliance based role, including maintaining and continually improving an ISO 27001 compliant management system.
- Experience of information security management and/or security awareness.
- Good knowledge of industry standard frameworks and best practices – ISO 27001: 2022, NIS2, AI Act etc. and their practical application in a corporate environment to ensure all elements of integrity, availability and confidentiality are adhered to.
- Extensive experience conducting information security risk assessments, reporting risks.
- Experience of developing, implementing, managing, and maintaining Information Security policies, guidance, & procedures.
- Experience of risk management and maintaining risk registers.
- Knowledge & experience of risk assessments against third-party organisations based on IT control frameworks such as ISO 27001 (essential) and ISO 31000 (desirable).
- Practical experience of conducting gap analysis, testing information security processes, procedures, plans and support audits to achieve compliance with Information Security standards.
- Practical experience of establishing and maintaining data classification standards within a corporate environment.
- Experience in developing and executing an Information Security awareness training across multi-business units.
- Experience with ensuring corporate compliance with UK/EMEA data protection legislation such as DPA and GDPR.
- Good knowledge of a broad range of IT technology platforms, products, services.
- Stakeholder management experience at both a technical and non-technical to Executive level.
- Excellent Business/customer facing experience.
If you are interested please apply or send your CV to luke.sandilands@cpl.com.
Information Security Compliance Analyst employer: Cpl Life Sciences
Contact Detail:
Cpl Life Sciences Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Compliance Analyst
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its compliance practices. Show them you know your stuff about ISO 27001 and relevant legislation. We want to see that you’re not just a fit on paper but also in practice!
✨Tip Number 3
Practice your responses to common interview questions, especially around risk management and security policies. We recommend doing mock interviews with friends or using online platforms to get comfortable.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who take that extra step to connect with us directly.
We think you need these skills to ace Information Security Compliance Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV reflects the skills and experiences that match the job description. Highlight your qualifications in information security, compliance, and any relevant certifications like CISM or CISSP. We want to see how you fit into our team!
Showcase Your Experience: When writing your application, focus on your practical experience with ISO 27001 and risk assessments. Share specific examples of how you've maintained compliance and improved security processes. This helps us understand your hands-on capabilities.
Be Clear and Concise: Keep your application straightforward and to the point. Use bullet points for key achievements and avoid jargon unless it's industry-standard. We appreciate clarity as it makes it easier for us to see your strengths.
Apply Through Our Website: We encourage you to apply directly through our website for a smoother process. It helps us keep track of applications better and ensures you don’t miss out on any important updates from us!
How to prepare for a job interview at Cpl Life Sciences
✨Know Your Standards
Make sure you’re well-versed in ISO 27001:2022 and other relevant frameworks like NIS2 and the AI Act. Brush up on how these standards apply practically in a corporate environment, as you’ll likely be asked about your experience with compliance and risk management.
✨Showcase Your Experience
Prepare to discuss specific examples from your past roles where you maintained or improved an ISO 27001 compliant management system. Highlight any risk assessments you've conducted and how you’ve developed security policies or training programmes.
✨Stakeholder Savvy
Be ready to talk about your experience managing stakeholders at various levels. Think of examples where you communicated complex information security concepts to non-technical audiences, as this will demonstrate your ability to bridge the gap between technical and business needs.
✨Ask Insightful Questions
Prepare thoughtful questions about the company’s current information security challenges and their approach to compliance. This shows your genuine interest in the role and helps you assess if the company aligns with your career goals.