At KeolisAmey Docklands (KAD), we operate and maintain the Docklands Light Railway, keeping London moving safely and efficiently. Technology and data are critical to our operation - and protecting them is non‑negotiable. Our Information Security team plays a vital role in safeguarding our systems, supporting compliance, and ensuring resilience across the business.
The Role
We are looking for an Information Security Analyst to support the delivery of our cyber security strategy and protect the organisation from evolving threats. Reporting to the Information Security Manager, you will play a key role in monitoring threats, responding to incidents, and strengthening our security posture across both IT and operational environments. This is an excellent opportunity for a security professional who enjoys hands‑on technical work, cross‑functional collaboration, and continuous improvement.
What You'll Do
- Support the development and implementation of information security policies, procedures and standards
- Monitor security tools (SIEM, endpoint protection, etc.) and investigate security alerts and incidents
- Conduct security assessments, audits, and risk analyses to identify vulnerabilities
- Collaborate with IT and business teams to implement effective security controls
- Assist in incident response activities (containment, eradication, recovery)
- Contribute to disaster recovery and business continuity planning
- Deliver security awareness training to promote a strong security culture
- Support internal/external audits, penetration testing, and compliance reviews
- Maintain accurate security documentation, risk registers and treatment plans
- Work with third‑party suppliers to assess and manage security risks
- Stay up to date with emerging threats and recommend improvements
What You'll Need
Essential
- Experience in an Information Security / Cyber Security role
- Relevant certification such as CISSP, CISM, CompTIA Security+ or CEH
- Knowledge of security frameworks (e.g. ISO 27001, NIST, CIS Controls)
- Understanding of network security principles and technologies
- Experience with tools such as SIEM, IDS/IPS, firewalls, endpoint protection
- Experience conducting security assessments and risk analysis
- Strong analytical and problem‑solving skills
- Ability to manage and respond to security incidents
- Excellent communication skills, with the ability to explain technical concepts clearly
Desirable
- Experience in a regulated or critical infrastructure environment
- Familiarity with GDPR and data protection regulations
- Exposure to penetration testing and vulnerability management tools
What We Offer
- Opportunity to work in a critical transport infrastructure environment
- Exposure to enterprise‑level security operations and frameworks
- Collaborative working across KAD, TfL, Keolis and Amey
- Ongoing professional development and certification support
- A role with real impact - helping protect systems supporting millions of journeys
If you're passionate about cyber security and ready to take on a role where your work truly matters, we'd love to hear from you.