Information Security Analyst

Information Security Analyst

Entry level 30000 - 40000 € / year (est.) Home office (partial)
Crown Agents Bank Ltd.

At a Glance

  • Tasks: Support information security governance, compliance, and awareness while collaborating with a dynamic CISO team.
  • Company: Join a forward-thinking firm dedicated to information security excellence.
  • Benefits: Enjoy hybrid working, competitive pension contributions, private medical insurance, and life assurance.
  • Other info: Flexible work environment with a focus on professional development and teamwork.
  • Why this job: Kickstart your career in information security with hands-on experience and growth opportunities.
  • Qualifications: Degree-level education or equivalent; interest in security qualifications is a plus.

The predicted salary is between 30000 - 40000 € per year.

The Information Security Analyst is a broad and varied role within the firm's CISO function, offering structured exposure across information security governance, regulatory compliance, security awareness and operational support. Working closely with members of the CISO team, the role holder will contribute to a wide range of security activities — including security operations, regulatory framework compliance (ISO 27001, DORA, NYDFS), vendor risk management, security awareness programmes and governance reporting. The role provides direct involvement in how the firm manages its security obligations and responds to an evolving regulatory and threat landscape. The position is designed as a strong foundation for a career in information security, with visibility across the full CISO service catalogue and the opportunity to develop expertise across multiple security disciplines. The role holder will be supported by experienced practitioners across governance, risk, cloud security and security engineering.

Role Responsibilities

  • Governance & Reporting
    • Administer ISGF and ORC meeting logistics including preparing agendas, collating papers, recording minutes and tracking actions to completion.
    • Maintain the CISO organisational RACI, ensuring it is kept current as team structure and responsibilities evolve.
    • Compile and distribute the master CISO security reporting pack, collating inputs from all service areas into a consistent, accurate and timely governance view.
    • Maintain and update technology roadmap tracking documents, collating status updates and producing progress summaries for review.
    • Support preparation of Board, ExCo and governance forum presentations and papers.
    • Manage the security policies and standards library, tracking review schedules, chasing approvals and maintaining version control.
    • Maintain the ISO 27001 evidence library, coordinating evidence collection cycles and supporting internal and external audit preparation.
    • Administer DORA compliance tracking, gathering evidence, maintaining registers and flagging gaps for senior review.
    • Support NYDFS Part 500 compliance activities including maintaining evidence packs and tracking annual certification requirements.
    • Own Cyber Essentials and SWIFT CSP evidence gathering and submission processes.
    • Administer the Risk & Controls Register within Vanta and RiskConnect, keeping control status and evidence current.
    • Support Financial Audit and Internal Audit activities through evidence provision, scheduling and action tracking.
  • Security Awareness
    • Administer the annual mandatory security training programme, tracking completion rates, chasing non-completions and producing completion reports.
    • Execute phishing simulation campaigns, analysing results, producing reports and coordinating follow‑up training for at‑risk users.
    • Own the security awareness communications calendar, producing and distributing content for firm‑wide awareness campaigns.
    • Coordinate Executive & Board training logistics, scheduling and record‑keeping.
    • Coordinate specialist security training activities, managing scheduling, attendance tracking and training records.
    • Administer vendor onboarding activities, running security questionnaire processes, tracking responses and maintaining the vendor register.
    • Support vendor annual review cycles, coordinating evidence collection, scheduling review meetings and updating vendor risk records.
  • Operations Support
    • Assist the Operational Security Engineer with routine security operations tasks including ticket handling, tool administration and evidence gathering.
    • Contribute to automation of routine tasks, helping to identify, document and test repeatable processes suitable for scripting or workflow tooling.

Qualifications

  • Degree‑level education or equivalent; a subject with an information security, technology or analytical component is beneficial but not required.
  • An interest in pursuing professional security qualifications (e.g. CompTIA Security+, CISMP, BCS Information Security) is expected.

Experience

  • 0–2 years of professional experience; prior exposure to an information security, compliance, risk or technology environment is advantageous but not essential.
  • Strong organisational skills with the ability to manage multiple parallel tasks, track deadlines and maintain accurate records.
  • Proficient in Microsoft 365 (Word, Excel, PowerPoint, SharePoint); familiarity with security or GRC tooling such as Vanta or RiskConnect is a plus.
  • Clear written communication skills, with the ability to produce well‑structured reports and documentation.
  • Attentive to detail with a methodical approach to evidence gathering, record‑keeping and process execution.
  • Genuine interest in information security as a career, with a desire to grow within the CISO function over time.

Additional Information

  • Hybrid working (3 days in office)
  • Contributory personal pension plan: Minimum: Employee 2% and Employer 7%. Employer matches contributions in 1% increments to a maximum of: Employee 5% and Employer 10%
  • Life Assurance – 4 times annual salary
  • Group Income Protection
  • Private Medical Insurance – this may include cover for partner and or children at company cost. Cover includes Optical, Dental and Audiology

Information Security Analyst employer: Crown Agents Bank Ltd.

As an Information Security Analyst at our firm, you will be part of a dynamic CISO team that prioritises employee growth and development in a supportive environment. With a strong focus on professional training and a hybrid working model, we offer competitive benefits including a generous pension plan, private medical insurance, and life assurance, ensuring that our employees feel valued and secure. Join us to build a meaningful career in information security while contributing to our commitment to excellence and compliance in a rapidly evolving landscape.

Crown Agents Bank Ltd.

Contact Detail:

Crown Agents Bank Ltd. Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Information Security Analyst

Tip Number 1

Network like a pro! Reach out to folks in the information security field on LinkedIn or at industry events. A friendly chat can open doors that a CV just can't.

Tip Number 2

Prepare for interviews by brushing up on your knowledge of ISO 27001 and DORA compliance. Show us you know your stuff, and we’ll be impressed!

Tip Number 3

Don’t forget to showcase your organisational skills! Be ready to discuss how you manage multiple tasks and keep everything on track—this is key for the role.

Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team.

We think you need these skills to ace Information Security Analyst

Information Security Governance
Regulatory Compliance (ISO 27001, DORA, NYDFS)
Vendor Risk Management
Security Awareness Programmes
Governance Reporting
Evidence Gathering
Audit Preparation

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Information Security Analyst role. Highlight any relevant experience, skills, and qualifications that match the job description. We want to see how you fit into our team!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how your background aligns with our needs. Keep it concise but engaging – we love a good story!

Show Off Your Skills:Don’t forget to showcase your organisational skills and attention to detail in your application. Mention any tools or software you’re familiar with, especially Microsoft 365 or GRC tools like Vanta. We appreciate a methodical approach!

Apply Through Our Website:We encourage you to apply directly through our website for the best chance of getting noticed. It’s super easy, and you’ll be one step closer to joining our awesome team at StudySmarter!

How to prepare for a job interview at Crown Agents Bank Ltd.

Know Your Security Frameworks

Familiarise yourself with key security frameworks like ISO 27001, DORA, and NYDFS. Be prepared to discuss how these frameworks apply to the role and demonstrate your understanding of compliance requirements.

Showcase Your Organisational Skills

Highlight your ability to manage multiple tasks and track deadlines. Bring examples of how you've successfully organised projects or maintained records in previous roles, as this is crucial for the position.

Demonstrate Your Communication Skills

Prepare to discuss how you would produce clear reports and documentation. You might be asked to explain complex security concepts simply, so practice articulating your thoughts clearly and concisely.

Express Your Passion for Information Security

Convey your genuine interest in a career in information security. Share any relevant experiences or courses you've taken, and express your eagerness to grow within the CISO function over time.