At a Glance
- Tasks: Strengthen IT risk and compliance frameworks while overseeing system acquisitions and risk management.
- Company: Join a leading organisation focused on IT governance and security.
- Benefits: Enjoy 25 days annual leave, flexible hybrid working, and professional development opportunities.
- Other info: Collaborative environment with opportunities to engage with senior stakeholders.
- Why this job: Make a real impact in cybersecurity and IT governance with a proactive team.
- Qualifications: Experience in IT risk or compliance, strong communication skills, and a relevant degree preferred.
The predicted salary is between 40000 - 50000 ÂŁ per year.
We’re looking for a skilled IT Technical Risk Analyst to join our team, based in or around Bristol, with a flexible hybrid model (4 days from home, 1 day in the office). In this role, you’ll play a key part in strengthening our IT risk and compliance framework—overseeing system acquisition processes, driving risk mitigation strategies, and supporting the ongoing development of the Priory ISMS.
You’ll also coordinate third‑party risk management and lead compliance monitoring activities, ensuring the organisation consistently meets its internal standards, regulatory requirements, and broader governance objectives. This is a great opportunity to make a tangible impact in a role that combines technical insight with strategic oversight.
What you’ll be doing
- You’ll play a key role in strengthening our IT governance, risk, and compliance framework. This includes evolving the ISMS, leading internal compliance activities, analysing audit data, and supporting security incident response with clear risk assessments and reporting.
- You’ll oversee IT risk management processes—maintaining the risk register, tracking mitigation actions, and supporting reporting across cybersecurity, resilience, and third‑party risk.
- Working closely with IT, Legal, Procurement, and business teams, you’ll also support system acquisitions, bids, and due diligence from a security perspective.
- In addition, you’ll manage software governance and application risk, ensuring effective controls, clear ownership, and timely remediation.
- Reporting to the Group CISO, you’ll contribute to the development of the IT GRC function while promoting strong information security practices across the organisation.
What you’ll bring to the role
- You’ll bring a strong understanding of information security, risk, and compliance in a regulated environment, with hands‑on experience of frameworks such as ISO 27001, NIST, Cyber Essentials, and GDPR.
- You’ll have proven experience in IT risk or compliance roles, including risk assessments, audits, gap analysis, and maintaining risk registers.
- You’re comfortable working in project‑based environments and managing multiple priorities to deliver accurate, high‑quality outputs.
- Strong communication skills are essential, with the ability to engage confidently with senior stakeholders and collaborate across technical and non‑technical teams.
- You’ll be organised, detail‑focused, and proficient in MS Office tools, with the ability to quickly pick up new systems.
- You’ll also bring a proactive mindset and a genuine interest in cybersecurity and IT governance, with a relevant degree or professional qualification preferred.
What we will give you in return: 25 days Annual Leave +
IT Technical Risk Analyst employer: Priory
Contact Detail:
Priory Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IT Technical Risk Analyst
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their IT risk management strategies and be ready to discuss how your skills align with their needs. We want you to shine!
✨Tip Number 3
Practice your responses to common interview questions, especially those related to risk assessment and compliance. Mock interviews with friends can help you feel more confident and articulate during the real deal.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are genuinely interested in joining our team.
We think you need these skills to ace IT Technical Risk Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the IT Technical Risk Analyst role. Highlight your experience with frameworks like ISO 27001 and NIST, and showcase any relevant projects you've worked on. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about IT risk and compliance. Share specific examples of how you've contributed to similar roles in the past. Remember, we love a good story that shows your personality!
Showcase Your Communication Skills: Since strong communication is key for this role, make sure to demonstrate your ability to engage with both technical and non-technical teams in your application. Use clear and concise language, and don’t shy away from showing your collaborative spirit!
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to keep track of your application status. Plus, we love seeing applications come directly from our site!
How to prepare for a job interview at Priory
✨Know Your Frameworks
Make sure you brush up on key frameworks like ISO 27001, NIST, and Cyber Essentials. Be ready to discuss how you've applied these in your previous roles, as this will show your practical understanding of IT risk and compliance.
✨Prepare for Scenario Questions
Expect questions that ask you to analyse risk scenarios or compliance challenges. Think of specific examples from your past experience where you successfully mitigated risks or improved compliance processes, and be ready to share those stories.
✨Engage with Stakeholders
Since strong communication skills are essential, practice articulating complex technical concepts in a way that non-technical stakeholders can understand. This will demonstrate your ability to collaborate effectively across teams.
✨Show Your Proactive Mindset
Be prepared to discuss how you stay updated on cybersecurity trends and best practices. Share any personal projects or continuous learning efforts that showcase your genuine interest in the field, as this will resonate well with the interviewers.