At a Glance
- Tasks: Join our global Cybersecurity team to enhance cyber governance and risk management.
- Company: Dynamic company in Farringdon, London, focused on innovation and security.
- Benefits: Competitive salary, flexible working, generous holiday allowance, and wellbeing support.
- Other info: Exciting opportunities for career growth and professional development.
- Why this job: Make a real impact in cybersecurity while developing your skills in a supportive environment.
- Qualifications: Experience in information security compliance and strong communication skills required.
The predicted salary is between 50000 - 60000 £ per year.
The role will play a critical part in our global Cybersecurity team, focused on cyber governance, reporting, assurance, risk monitoring, risk mitigation, audit and cyber education of our people across the organisation. This is a global role based in Farringdon.
Information Security Management System (ISMS)
- Support Cyber teams in delivering effective governance and assurance across the global organisation.
- Evaluate security controls and practices in place, recommending improvements and ensuring compliance to relevant standards and regulations.
- Maintain accurate documentation of security controls, policies and procedures.
- Collaborate with IT and SecOps / SOC teams to enhance compliance.
Awareness and Training
- Assist with the delivery of cybersecurity awareness initiatives, including foundational training, awareness workshops, newsletters, phishing simulations and other communications to foster a positive security culture across the organisation.
Third-Party/Vendor Risks Management
- Assist in assessing and managing third-party risks to ensure vendors meet Pentland's cyber due diligence requirements.
Compliance and Audit
- Support compliance activities, including assistance with internal and external audit assessments.
Cyber Risk Management
- Support the identification, prioritisation and communication of cybersecurity risks to ensure effective ownership and management.
- Conduct regular risk assessments (e.g. maturity gaps) to address changes in the business environment or threat landscape.
Qualifications
- Proven experience in information security compliance roles.
- Strong communication skills with the ability to convey technical concepts in plain language to diverse audiences.
- Great written 'tone of voice', articulating sometimes dry subjects in a relatable and accessible manner.
- The role is customer facing and will need to run awareness workshops, so an outgoing and confident demeanor is required.
- Familiarity with information security frameworks such as ISO 27001, NIST CSF, CIS Critical Security Controls and other relevant technical control frameworks.
- Ideally, the candidate should possess or be working towards one of the following certifications: CISA, CISM, CGRC, CRISC, CGEIT, GRCP, or any other GRC-related certifications.
Benefits
Alongside a competitive salary and discretionary bonus, we offer a comprehensive benefits package designed to support your wellbeing, flexibility, and life outside work. This includes generous holiday allowance with the option to buy more, hybrid and flexible working, enhanced family leave, pension and financial protection, wellbeing support, travel schemes, and generous discounts across Pentland Brands and selected retail partners.
Information Security Analyst employer: Pentland Brands
Contact Detail:
Pentland Brands Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Analyst
✨Tip Number 1
Network like a pro! Reach out to folks in the cybersecurity field, attend meetups or webinars, and connect on LinkedIn. The more people you know, the better your chances of hearing about job openings before they even hit the market.
✨Tip Number 2
Show off your skills! Create a personal project or contribute to open-source initiatives related to information security. This not only boosts your portfolio but also gives you real-world experience to chat about during interviews.
✨Tip Number 3
Prepare for those interviews! Research common questions for InfoSec roles and practice your responses. Don’t forget to brush up on your knowledge of frameworks like ISO 27001 and NIST CSF, as they might come up in conversation.
✨Tip Number 4
Apply through our website! We’ve got loads of opportunities waiting for you, and applying directly can sometimes give you an edge. Plus, it shows you’re genuinely interested in being part of our team!
We think you need these skills to ace Information Security Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security Analyst role. Highlight your experience in information security compliance and any relevant certifications you have. We want to see how your skills align with our mission!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how you can contribute to our global Cybersecurity team. Keep it engaging and relatable, just like we do at StudySmarter.
Showcase Your Communication Skills: Since this role involves running awareness workshops, it's crucial to demonstrate your strong communication skills. Use clear and concise language in your application to show us you can convey technical concepts in an accessible way.
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of your application and ensures you don’t miss out on any important updates from us!
How to prepare for a job interview at Pentland Brands
✨Know Your Cybersecurity Frameworks
Familiarise yourself with key information security frameworks like ISO 27001 and NIST CSF. Be ready to discuss how these frameworks apply to the role and share examples of how you've used them in past experiences.
✨Communicate Clearly and Confidently
Since the role involves running awareness workshops, practice explaining technical concepts in simple terms. Use relatable examples to demonstrate your ability to engage diverse audiences and foster a positive security culture.
✨Showcase Your Risk Management Skills
Prepare to discuss your experience with risk assessments and how you've identified and prioritised cybersecurity risks in previous roles. Highlight any specific tools or methodologies you’ve used to manage these risks effectively.
✨Be Ready for Compliance Questions
Expect questions about compliance activities and audit processes. Brush up on your knowledge of internal and external audits, and be prepared to share how you've contributed to compliance efforts in your past positions.