Information Security Analyst in London

Information Security Analyst in London

London Full-Time On-site
N

Overview

In this role you will support the Information Security Management System (ISMS) and drive ongoing security governance and risk activities. You will work with a small team to improve security controls, policies and metrics while preparing for audits and assurance requests. You will also contribute to Business Continuity and Operational Resilience, helping teams plan, test, and recover from disruptions. This position offers exposure to governance, risk, audits, incident management and resilience initiatives with a clear path to broaden your information security and GRC experience.

Pay / Benefits

  • Tailored benefits supporting wellbeing
  • Learning and development opportunities
  • Flexible work options
  • Remote-friendly role with occasional London visits

Responsibilities

  • Support operation and continual improvement of the ISMS aligned with ISO 27001
  • Assist security risk assessments, control reviews and remediation activities
  • Maintain information security policies, standards and procedures
  • Support internal/ external audits and customer assessments
  • Assist with information security incidents investigations and root cause analysis
  • Track security risks, vulnerabilities and corrective actions
  • Support third-party security due diligence and supplier assurance
  • Contribute to security awareness and training
  • Produce security metrics, dashboards and reports for governance forums
  • Act as a point of contact for information security queries
  • Support maintenance and improvement of Business Continuity Management framework aligned with ISO 22301
  • Coordinate BIAs with business functions
  • Help develop and maintain Business Continuity Plans and recovery procedures
  • Support crisis management, major incidents and recovery activities
  • Coordinate resilience exercises and simulations
  • Track testing, lessons learned and corrective actions
  • Support reviews of continuity documentation and recovery arrangements
  • Contribute to resilience risk assessments and compliance activities
  • Promote business continuity awareness across the organisation
  • Maintain risk registers and action trackers; prepare governance materials; support assurance requests; contribute to KPIs and KRIs

Key requirements

  • Experience or exposure in Information Security, GRC, Risk/Audit, Business Continuity or Operational Resilience
  • Good understanding of information security principles, controls and risk management
  • Understanding of ISO 27001 and information security governance
  • Understanding of Business Continuity and ISO 22301 concepts
  • Ability to produce clear reports, metrics and governance documentation
  • Strong analytical, organisational and problem-solving skills
  • Attention to detail and stakeholder engagement
  • Good working knowledge of Microsoft 365
  • Practical ISMS or Business Continuity programme experience is useful but not essential
  • Analytical mindset
  • Clear communication with stakeholders
  • Detail-oriented and organised
  • ISO 27001 governance and ISMS
  • Risk assessment and remediation
  • Incident management and root cause analysis

Information Security Analyst in London employer: NTT DATA

NTT DATA is an exceptional employer that values its employees by fostering a collaborative and innovative work culture in the heart of London. With a strong emphasis on professional development, we offer numerous growth opportunities and training programs to enhance your skills in desktop support and customer service. Join us to be part of a dynamic team where your contributions are recognised and rewarded, making a meaningful impact in the tech industry.

N

Contact Details:

NTT DATA Recruitment Team