At a Glance
- Tasks: Support information security and data protection compliance in a fast-paced environment.
- Company: Join Interact, a leading enterprise-grade intranet software provider with a global presence.
- Benefits: Competitive salary, flexible working options, and opportunities for professional growth.
- Why this job: Make a real impact on data security while working with top global brands.
- Qualifications: 2-3 years in information security, strong communication skills, and hands-on experience with compliance frameworks.
- Other info: Dynamic team culture with a focus on continuous improvement and career development.
The predicted salary is between 36000 - 60000 £ per year.
Interact provides enterprise-grade intranet software that connects over three million employees to leading global names like Levi's, Domino’s, Teva Pharmaceuticals, and Technicolor. Our team of customer-focused problem solvers are passionate about helping organizations to communicate better. We do this together by constantly working to improve every service and product we offer. With offices in Manchester, New York, Dubai, Tulsa, Warsaw and Manila, we operate across North America, EMEA, and Australia.
In this role you will be working in a fast-paced agile environment, responsible for supporting the Information Security Risk Manager & Data Protection Officer to maintain a corporate-wide, global information risk management program, information security best practice and data protection regulation compliance. You will be working closely with key stakeholders to understand the business and identify the challenges with current processes, monitor adherence with our compliance programs, and, with the support of your manager and other key business functions, be involved in the development of the business towards continual improvement of our security and compliance positions.
A Little About You
- 2–3 years minimum in an information security or data protection role
- Detailed report writing skills
- Hands-on experience with at least one certification cycle (ISO 27001, SOC 2, etc.) from start to finish
- Demonstratable experience managing or influencing stakeholders at a senior level
- Involvement in penetration testing activities and remediations
- Experience handling real security incidents or data breaches
- Strong awareness of the GDPR, either through training from working within a business that processes personal data or independent learning
- Strong practical understanding of security and compliance frameworks, such as ISO27001, SOC 2 type II and Cyber Essentials Plus
- Practical working knowledge of Defender, Intune, Entra, Purview, AWS and Azure
- Ability to pragmatically balance security risk against business need
- Maintenance and creation of the Risk Register, ROPA & DPIAs
- Curious and proactive
- Approachable and calm
- Excellent communication skills
- Keen to learn
- Technically well rounded
- Can work autonomously
- Commercially aware
Desirable But Not Essential
- Knowledge of GRC tools such as Drata and Safebase
- Knowledge of Security and Awareness training tools, campaign creation etc.
- SaaS background
- Good understanding of Risk Management and continuous improvement practices
About The Role
- Creating, reviewing and improving the security policies
- Implement and maintain Information Security Management System (ISO27001 certification)
- Contribute to activities towards certification/compliance to security standards and regulations (ISO 27001, SOC 2, Cyber Essentials, etc.)
- Experience of undergoing audits
- Support progress on business continuity plans and policy
- Build and maintain relationships with technical and business stakeholders
- Leading regular risk assessments and internal process audits
- Working with internal teams and stakeholders to manage risks, suggest solutions, and resolving issues
- Support and lead with evidence collation for audits
- Conduct vendor/supplier reviews in line with Internal Policy
- Assist with security questionnaires for prospects and/or customers
- Maintain and improve information security awareness within the business
- Conduct monitoring activities as required with the UK GDPR and other data protection laws
- Work with regulator investigations as required in Article 36
- Point of contact to our employees and individuals about data processing activities
- Supporting the business maintaining the Security tickets through prompt follow-up and resolution, in collaboration with teams and other stakeholders
- Management of penetration testing remediations
Information Security and Data Protection Analyst in Manchester employer: Interact Software
Contact Detail:
Interact Software Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security and Data Protection Analyst in Manchester
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at events. A friendly chat can open doors that applications alone can't.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Knowing about their projects and values will help you connect your skills to what they need.
✨Tip Number 3
Showcase your hands-on experience! Be ready to discuss specific examples from your past roles, especially around security incidents or compliance challenges you've tackled.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you're genuinely interested in joining our team.
We think you need these skills to ace Information Security and Data Protection Analyst in Manchester
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security and Data Protection Analyst role. Highlight your relevant experience, especially in information security and data protection, and don’t forget to mention any certifications you have like ISO 27001 or SOC 2.
Showcase Your Skills: In your application, be sure to showcase your detailed report writing skills and your hands-on experience with security frameworks. We want to see how you’ve managed stakeholders and handled real security incidents, so give us the juicy details!
Be Proactive: Demonstrate your curiosity and proactive nature in your written application. Mention any initiatives you've taken in previous roles to improve security practices or compliance, as this shows us you're not just reactive but also forward-thinking.
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!
How to prepare for a job interview at Interact Software
✨Know Your Stuff
Make sure you brush up on your knowledge of information security frameworks like ISO 27001 and SOC 2. Be ready to discuss your hands-on experience with these standards, as well as any penetration testing activities you've been involved in. This will show that you’re not just familiar with the theory but have practical insights to share.
✨Showcase Your Communication Skills
Since this role involves working closely with stakeholders, it’s crucial to demonstrate your excellent communication skills. Prepare examples of how you've effectively managed or influenced senior-level stakeholders in the past. This will highlight your ability to convey complex information clearly and build strong relationships.
✨Be Proactive and Curious
Exhibit your proactive nature by discussing instances where you identified security risks or compliance gaps before they became issues. Show your curiosity by asking insightful questions about the company’s current processes and challenges. This will reflect your eagerness to contribute to continual improvement.
✨Prepare for Scenario Questions
Expect scenario-based questions that assess your problem-solving skills in real security incidents or data breaches. Think of specific examples from your past experiences where you successfully handled such situations, detailing your thought process and the outcomes. This will demonstrate your practical understanding of risk management.