At a Glance
- Tasks: Develop and maintain a robust information security governance and compliance programme.
- Company: Curinos, a leader in financial technology and analytics.
- Benefits: Flexible working options, unlimited PTO, and comprehensive health benefits.
- Other info: Inclusive culture with opportunities for career development and networking.
- Why this job: Join a dynamic team and make a real impact on information security.
- Qualifications: Experience in information security and knowledge of regulatory requirements.
The predicted salary is between 45000 - 55000 £ per year.
Curinos empowers financial institutions to make better, faster and more profitable decisions through industry-leading proprietary data, technologies and insights. With decades-long expertise in the financial services industry and a relentless focus on the future, Curinos technology and analytics ecosystem allows clients to anticipate customer needs and optimize their go-to market decisions in an increasingly competitive market. Curinos operates under a hybrid modality. This individual may work from the London office or Remotely (UK).
The Information Security Compliance Analyst will play a key role in developing, implementing, and maintaining a robust information security governance, risk management, and compliance program. This role involves assessing and managing risks, ensuring compliance with relevant regulations and standards, and promoting a culture of security awareness across the organization.
Responsibilities
- Assisting with the day-to-day management and maintenance of the Information Security Management System (ISMS), including the development and upkeep of current information security policies, standards, and procedures.
- Designing, developing and conducting audits on internal security controls.
- Conducting risk assessments to identify potential threats and vulnerabilities, including risks associated with projects and new initiatives.
- Reviewing, validating, categorizing and prioritizing potential threats and vulnerabilities into actionable remediation tasks and working with security engineers to ensure SLAs for vulnerability remediation are met.
- Maintaining accurate records, ensuring that risk exceptions and non-conformities are properly documented and managed through formal processes.
- Supporting project management activities by attending project meetings to ensure that security and compliance risks are considered during change management, SDLC and across multiple teams and disciplines.
- Supporting contract reviews, ensuring security and data compliance terms are properly assessed and addressed.
- Assisting with supplier assurance activities, including conducting due diligence on new suppliers, assessing software and services, and reviewing existing suppliers.
- Monitoring and ensuring compliance with relevant regulations, standards, and frameworks (e.g., ISO 27001, NIST800-53R).
- Preparing monthly and quarterly reports to provide feedback and insights to senior leadership.
Desired Skills & Expertise
- Proven experience in information security, with hands-on involvement in supporting and administering an ISMS.
- Experience implementing, managing or using one or more GRC tools.
- High level understanding or working knowledge of IT security concepts, technologies, and systems, such as network protocols and Identity and Access Management (IAM).
- Working knowledge of regulatory requirements such as GDPR, CDPC and information security frameworks such as ISO, CIS, NIST.
- Excellent organizational skills with attention to detail and logical approach to their work.
- A proactive mindset, with the ability to anticipate and address potential risks rather than react to issues after they arise.
- Strong communication skills, with strength in detailed documentation, reporting and follow-up.
Why work at Curinos?
- Competitive benefits, including a range of Financial, Health and Lifestyle benefits to choose from.
- Flexible working options, including home working, flexible hours and part time options, depending on the role requirements.
- Unlimited PTO policy, floating holidays, volunteering days and a day off for your birthday!
- Learning and development tools to assist with your career development.
- Work with industry leading Subject Matter Experts and specialist products.
- Regular social events and networking opportunities.
- Collaborative, supportive culture, including an active DE&I program.
- Employee Assistance Program which provides expert third-party advice on wellbeing, relationships, legal and financial matters, as well as access to counselling services.
Applying
We know that sometimes the 'perfect candidate' doesn't exist, and that people can be put off applying for a job if they don't meet all the requirements. If you're excited about working for us and have relevant skills or experience, please go ahead and apply. You could be just what we need!
If you need any adjustments to support your application, such as information in alternative formats, special requirements to access our buildings or adjusted interview formats please contact us at careers@curinos.com and we’ll do everything we can to help.
Inclusivity at Curinos
We believe strongly in the value of diversity and creating supportive, inclusive environments where our colleagues can succeed. As such, Curinos is proud to be an Equal Opportunity Employer. We do not discriminate on the basis of race, colour, ancestry, national origin, religion, or religious creed, mental or physical disability, medical condition, genetic information, sex (including pregnancy, childbirth, and related medical conditions), sexual orientation, gender identity, gender expression, age, marital status, military or veteran status, citizenship, or other protected characteristics.
Information Security Compliance Analyst employer: Curinos
Contact Detail:
Curinos Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Compliance Analyst
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching Curinos and understanding their values and culture. Tailor your responses to show how your skills align with their mission of empowering financial institutions.
✨Tip Number 3
Practice common interview questions related to information security compliance. Be ready to discuss your experience with ISMS, risk assessments, and regulatory requirements like GDPR and ISO standards.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are genuinely excited about joining our team.
We think you need these skills to ace Information Security Compliance Analyst
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your relevant experience in information security and compliance. We want to see how your skills align with the role, so don’t hold back on showcasing your achievements!
Show Off Your Knowledge: In your application, mention any specific frameworks or regulations you’re familiar with, like ISO 27001 or GDPR. This will demonstrate your understanding of the industry and show us that you’re ready to hit the ground running.
Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use clear language and avoid jargon where possible. We appreciate a logical approach, so structure your thoughts well to make it easy for us to follow.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it’s super easy – just a few clicks and you’re done!
How to prepare for a job interview at Curinos
✨Know Your Stuff
Make sure you brush up on your knowledge of information security concepts, especially those relevant to the role like ISO 27001 and GDPR. Familiarise yourself with the specific regulations and frameworks mentioned in the job description, as this will show that you're serious about compliance and governance.
✨Showcase Your Experience
Prepare to discuss your hands-on experience with ISMS and any GRC tools you've used. Be ready to share specific examples of how you've conducted risk assessments or audits in the past. This will help demonstrate your practical skills and how they align with what Curinos is looking for.
✨Ask Smart Questions
During the interview, don’t hesitate to ask insightful questions about the company’s current security policies or challenges they face. This not only shows your interest but also gives you a chance to highlight your proactive mindset and problem-solving abilities.
✨Communicate Clearly
Strong communication skills are key for this role. Practice articulating your thoughts clearly and concisely, especially when discussing complex topics like risk management or compliance. Good documentation and reporting skills are essential, so make sure you can convey your ideas effectively.