At a Glance
- Tasks: Support information security governance and compliance while gaining hands-on experience in a dynamic environment.
- Company: Join Crown Agents Bank, a leading UK bank transforming payments in emerging markets.
- Benefits: Enjoy hybrid working, competitive salary, private medical insurance, and generous pension contributions.
- Other info: Collaborate with experienced professionals and develop expertise across multiple security disciplines.
- Why this job: Kickstart your career in information security with real impact and growth opportunities.
- Qualifications: Degree-level education or equivalent; interest in security qualifications is a plus.
The predicted salary is between 30000 - 40000 € per year.
Crown Agents Bank is a vastly growing and regulated UK bank that connects emerging and frontier markets to the rest of the world, using FX and payments technology. We are transforming the way payments and FX move through emerging markets, reducing friction so that more money gets to those who need it.
Role Purpose:
The Information Security Analyst is a broad and varied role within the firm's CISO function, offering structured exposure across information security governance, regulatory compliance, security awareness and operational support. Working closely with members of the CISO team, the role holder will contribute to a wide range of security activities — including security operations, regulatory framework compliance (ISO 27001, DORA, NYDFS), vendor risk management, security awareness programmes and governance reporting.
Role Responsibilities:
- Governance & Reporting
- Administer ISGF and ORC meeting logistics including preparing agendas, collating papers, recording minutes and tracking actions to completion.
- Maintain the CISO organisational RACI, ensuring it is kept current as team structure and responsibilities evolve.
- Compile and distribute the master CISO security reporting pack, collating inputs from all service areas into a consistent, accurate and timely governance view.
- Maintain and update technology roadmap tracking documents, collating status updates and producing progress summaries for review.
- Support preparation of Board, ExCo and governance forum presentations and papers.
- Policies, Standards & Compliance
- Manage the security policies and standards library, tracking review schedules, chasing approvals and maintaining version control.
- Maintain the ISO 27001 evidence library, coordinating evidence collection cycles and supporting internal and external audit preparation.
- Administer DORA compliance tracking, gathering evidence, maintaining registers and flagging gaps for senior review.
- Support NYDFS Part 500 compliance activities including maintaining evidence packs and tracking annual certification requirements.
- Own Cyber Essentials and SWIFT CSP evidence gathering and submission processes.
- Administer the Risk & Controls Register within Vanta and RiskConnect, keeping control status and evidence current.
- Support Financial Audit and Internal Audit activities through evidence provision, scheduling and action tracking.
- Security Awareness
- Administer the annual mandatory security training programme, tracking completion rates, chasing non-completions and producing completion reports.
- Execute phishing simulation campaigns, analysing results, producing reports and coordinating follow-up training for at-risk users.
- Own the security awareness communications calendar, producing and distributing content for firm-wide awareness campaigns.
- Coordinate Executive & Board training logistics, scheduling and record-keeping.
- Coordinate specialist security training activities, managing scheduling, attendance tracking and training records.
- Vendor Risk Administration
- Administer vendor onboarding activities, running security questionnaire processes, tracking responses and maintaining the vendor register.
- Support vendor annual review cycles, coordinating evidence collection, scheduling review meetings and updating vendor risk records.
- Operations Support
- Assist the Operational Security Engineer with routine security operations tasks including ticket handling, tool administration and evidence gathering.
- Contribute to automation of routine tasks, helping to identify, document and test repeatable processes suitable for scripting or workflow tooling.
Qualifications:
- Degree-level education or equivalent; a subject with an information security, technology or analytical component is beneficial but not required.
- An interest in pursuing professional security qualifications (e.g. CompTIA Security+, CISMP, BCS Information Security) is expected.
- 0–2 years of professional experience; prior exposure to an information security, compliance, risk or technology environment is advantageous but not essential.
- Strong organisational skills with the ability to manage multiple parallel tasks, track deadlines and maintain accurate records.
- Proficient in Microsoft 365 (Word, Excel, PowerPoint, SharePoint); familiarity with security or GRC tooling such as Vanta or RiskConnect is a plus.
- Clear written communication skills, with the ability to produce well-structured reports and documentation.
- Attentive to detail with a methodical approach to evidence gathering, record-keeping and process execution.
- Genuine interest in information security as a career, with a desire to grow within the CISO function over time.
Additional Information:
- Hybrid working (3 days in office)
- Contributory personal pension plan: - Minimum: Employee 2% and Employer 7%. Employer matches contributions in 1% increments to a maximum of: Employee 5% and Employer 10%
- Life Assurance – 4 times annual salary
- Group Income Protection
- Private Medical Insurance – this may include cover for partner and or children at company cost. Cover includes Optical, Dental and Audiology
- Discretionary Bonus
- Competitive Annual Leave
- 2 Volunteering Days
- Benefit Hub
Information Security Analyst in London employer: Crown Agents Bank
Crown Agents Bank is an exceptional employer, offering a dynamic work environment that fosters professional growth and development in the field of information security. With a strong commitment to employee well-being, the bank provides a comprehensive benefits package, including a contributory pension plan, private medical insurance, and generous annual leave, all while promoting a collaborative culture that values innovation and teamwork. Located in the heart of the UK, employees enjoy a hybrid working model that balances office presence with flexibility, making it an ideal place for those looking to build a meaningful career in a rapidly evolving sector.
StudySmarter Expert Advice🤫
We think this is how you could land Information Security Analyst in London
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their values and how they align with your skills as an Information Security Analyst. This will help you stand out and show you're genuinely interested in joining their team.
✨Tip Number 3
Practice common interview questions and scenarios related to information security. Think about how you'd handle specific challenges or compliance issues. The more prepared you are, the more confident you'll feel during the interview.
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who take that extra step to engage with us directly.
We think you need these skills to ace Information Security Analyst in London
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the Information Security Analyst role. Highlight relevant skills and experiences that align with the job description, especially in areas like compliance and security operations.
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how your background makes you a great fit for Crown Agents Bank. Keep it concise but impactful.
Showcase Your Attention to Detail:In the world of information security, attention to detail is key. Make sure your application is free from typos and errors. A well-structured application reflects your organisational skills and professionalism.
Apply Through Our Website:We encourage you to apply through our website for the best experience. It’s straightforward and ensures your application gets to the right people. Plus, you’ll find all the info you need about the role there!
How to prepare for a job interview at Crown Agents Bank
✨Know Your Security Standards
Familiarise yourself with key security frameworks like ISO 27001, DORA, and NYDFS. Be ready to discuss how these standards apply to the role and how you can contribute to compliance efforts.
✨Showcase Your Organisational Skills
Prepare examples that demonstrate your ability to manage multiple tasks and track deadlines. Highlight any experience you have with documentation or project management tools, as this will be crucial in the role.
✨Communicate Clearly
Practice articulating your thoughts clearly and concisely. Since the role involves producing reports and documentation, being able to communicate effectively will set you apart from other candidates.
✨Express Your Passion for Information Security
Let your enthusiasm for a career in information security shine through. Discuss any relevant coursework, certifications, or personal projects that showcase your commitment to growing in this field.