Security Analyst - Risk

Reference: exkq3dt9bfo3162o5rs4

We are seeking a Security Analyst – Risk to support the identification, assessment and management of information security and technology risks across the organisation. The successful candidate will work with stakeholders across business and technical teams to help maintain a clear understanding of the risk landscape, support informed decision-making and promote effective security practices.

Key responsibilities will include conducting security risk assessments for projects, systems, suppliers and business processes; documenting risks, controls, assumptions and remediation actions; and monitoring the progress of agreed treatment plans. You will contribute to the review and development of security policies, standards and procedures, helping to ensure they remain aligned with relevant regulatory obligations and recognised industry frameworks. The role will also involve supporting third-party and supply-chain risk reviews, assisting with audit and assurance activities, preparing risk reports and dashboards, and escalating material issues where appropriate. You will help provide practical advice on security controls and contribute to awareness activities that strengthen risk ownership throughout the organisation.

Applicants should have experience in information security, technology risk, governance, compliance or a related field, together with an understanding of risk assessment methodologies and security control frameworks such as ISO 27001, NIST or CIS. Familiarity with regulatory requirements, supplier assurance, vulnerability management and security principles across cloud and on-premises environments would be advantageous. Strong analytical, organisational and communication skills are essential, along with the ability to interpret complex information, challenge constructively and explain security risks to both technical and non-technical audiences. Relevant qualifications in information security, risk management or audit are desirable, as is experience using governance, risk and compliance tools.

COMPETITIVE SALARY
Added 25/08/2026
Reference: exkq3dt9bfo3162o5rs4

Other similar jobs

Vice President, Enterprise Risk Management & Legal Entity Risk

Added 25/08/2026

We are seeking a Vice President, Enterprise Risk Management & Legal Entity Risk to provide strategic leadership across the enterprise risk framework and legal entity governance environment. This senior role will oversee the identification, assessment, monitoring and management of key risks, ensuring that risk practices support business objectives, regulatory expectations and sustainable growth. The successful candidate will serve as a trusted adviser to senior leaders and governance committees, providing clear, independent insight into the organisation’s risk profile and emerging exposures. Key responsibilities include leading the development and ongoing enhancement of the enterprise risk management framework, risk appetite statement, policies, standards...

Learn more

Technical Specialist (cyber related), Operational Risk and Resilience, R&CGI Operational Risk and Resilience Team - Insurance Directorate

Added 24/07/2026

We are seeking a highly skilled Technical Specialist with a strong focus on cyber-related issues to join our Operational Risk and Resilience Team within the Insurance Directorate. In this role, you will be responsible for identifying, assessing, and mitigating cyber risks that could impact the organization's operational resilience. You will work closely with cross-functional teams to develop and implement strategies aimed at enhancing the cybersecurity posture and ensuring compliance with relevant regulations and industry standards. Your expertise will be critical in conducting risk assessments, analyzing potential threats, and recommending appropriate risk management solutions. The ideal candidate will have a solid...

Learn more

Senior Information Security Risk Analyst

Added 09/09/2026

We are seeking a Senior Information Security Risk Analyst to support the identification, assessment and management of technology and information security risks across a complex environment. This role will work closely with stakeholders across technology, compliance, audit and business functions to strengthen risk governance, improve resilience and promote effective security practices. The successful candidate will provide expert advice on risk matters and help ensure that security risks are understood, appropriately owned and managed within agreed tolerance levels. Responsibilities will include conducting information security and technology risk assessments; evaluating controls against internal policies, regulatory expectations and recognised industry frameworks; maintaining risk...

Learn more

Group Information Security Risk Analyst

Added 01/09/2026

We are seeking a Group Information Security Risk Analyst to support the identification, assessment and management of information security risks across a diverse, international environment. In this role, you will work with technology, business and control owners to maintain a clear view of the organisation’s risk profile and help ensure that security risks are managed within agreed policies, frameworks and risk appetite. You will contribute to a consistent, practical and risk-based approach to information security governance. Key responsibilities will include conducting risk assessments for systems, processes, projects, suppliers and emerging technologies; reviewing security controls and documenting gaps; maintaining risk registers,...

Learn more

Certification and Assurance - Senior Security/Technology Risk Analyst

Added 20/08/2026

We are seeking a skilled and experienced Senior Security/Technology Risk Analyst to join our dynamic team. In this role, you will be responsible for identifying, assessing, and managing risks associated with technology and security across various platforms. You will conduct thorough risk assessments, ensuring compliance with regulatory requirements and internal policies. This includes evaluating the effectiveness of existing security controls and making recommendations for enhancements to safeguard our systems and data. You will also collaborate with cross-functional teams to implement security best practices and promote a culture of risk awareness within the organization. The ideal candidate will possess a deep...

Learn more

Certification and Assurance - Senior Security/Technology Risk Analyst

Added 13/08/2026

We are seeking a highly skilled Senior Security/Technology Risk Analyst to join our dynamic team. In this role, you will be responsible for assessing and mitigating security risks associated with technology and information systems. You will conduct thorough risk assessments, develop risk management strategies, and ensure compliance with industry standards and regulations. The ideal candidate will possess a deep understanding of security frameworks and have experience in implementing security controls across diverse environments. Your duties will include collaborating with cross-functional teams to identify and evaluate security vulnerabilities, conducting audits and assessments, and providing expert guidance on best practices. You will...

Learn more

Cyber Risk Analyst

Added 17/09/2026

We are seeking a Cyber Risk Analyst to support the identification, assessment and management of information security and technology risks across the organisation. The successful candidate will help strengthen the cyber risk framework, improve visibility of the threat landscape and provide clear, practical advice to stakeholders. This role will work closely with technology, security, compliance, audit and business teams to ensure that cyber risks are understood, appropriately prioritised and managed in line with internal policies and regulatory expectations. Key responsibilities will include maintaining risk registers, conducting cyber and information security risk assessments, reviewing control effectiveness and supporting the remediation of...

Learn more

Cyber Risk Analyst

Added 17/09/2026

We are seeking a Cyber Risk Analyst to support the identification, assessment, and management of information and cyber security risks across the organisation. In this role, you will work with technology, business, and security stakeholders to evaluate risks, recommend appropriate controls, and help strengthen the overall cyber risk management framework. You will contribute to risk assessments for systems, applications, suppliers, projects, and business processes, ensuring that security considerations are embedded throughout the organisation. Key responsibilities will include maintaining cyber risk registers, analysing threats and vulnerabilities, reviewing control effectiveness, and tracking remediation activities through to completion. You will support the development...

Learn more

Cyber Risk Analyst

Added 17/09/2026

We are seeking a Cyber Risk Analyst to support the identification, assessment and management of information security and technology risks across the organisation. In this role, you will work with stakeholders across technology, operations, compliance and internal audit to assess cyber risks, maintain accurate risk records and promote effective risk management practices. You will help ensure that security risks are understood, prioritised and addressed in line with business objectives, regulatory expectations and established policies. Your responsibilities will include conducting cyber and technology risk assessments; reviewing control effectiveness; identifying gaps and recommending practical remediation actions; maintaining risk registers, issues logs and...

Learn more

Cyber Risk Analyst

Added 17/09/2026

We are seeking a Cyber Risk Analyst to support the identification, assessment, and management of information and cyber security risks across the organisation. In this role, you will work with technology, security, compliance, and business teams to maintain a clear view of the cyber risk landscape and help ensure that appropriate controls are designed, implemented, and monitored. You will contribute to risk assessments for systems, applications, suppliers, projects, and business processes, providing practical recommendations that support informed decision-making. Your responsibilities will include maintaining risk registers, reviewing control effectiveness, tracking remediation activities, and preparing clear reports for risk and governance forums....

Learn more

Business Information Risk Analyst

Added 11/09/2026

We are seeking a Business Information Risk Analyst to support the identification, assessment and management of information and technology risks across a complex business environment. In this role, you will work with stakeholders across business operations, technology, security, compliance and audit to help ensure that information assets are protected and that risk is managed within agreed appetite and regulatory expectations. You will contribute to a proactive risk culture by providing clear, practical advice and promoting consistent risk management practices. Key responsibilities will include maintaining risk and control registers, supporting risk assessments, reviewing business processes and identifying potential vulnerabilities, control weaknesses...

Learn more

Cybersecurity Risk Analyst

Added 01/09/2026

We are seeking a Cybersecurity Risk Analyst to help identify, assess and manage information security risks across technology, business and third-party environments. In this role, you will support the development and maintenance of risk management practices that protect sensitive information, systems and services. You will work with stakeholders across the organisation to understand evolving threats, evaluate control effectiveness and promote practical, risk-based security improvements. Your responsibilities will include conducting cybersecurity risk assessments, documenting findings and recommending appropriate remediation actions. You will monitor risk registers, track mitigation activities and prepare clear reports for senior stakeholders and governance forums. You will also...

Learn more

Junior Cyber Risk and Assurance Analyst

Added 01/09/2026

We are seeking a motivated Junior Cyber Risk and Assurance Analyst to support the development, maintenance and continuous improvement of cyber security risk and assurance activities. This is an excellent opportunity for someone at the early stage of their cyber security career who is keen to build practical experience across governance, risk management, compliance and security assurance. You will work with colleagues across technology, risk and business functions to help identify, assess and manage cyber security risks in a structured and consistent way. Key responsibilities will include supporting cyber risk assessments, maintaining risk registers and action plans, and assisting with...

Learn more

IT Risk & Controls Analyst

Added 25/08/2026

We are seeking an IT Risk & Controls Analyst to support the effective identification, assessment and management of technology-related risks across the organisation. This role will help strengthen the control environment by assessing whether IT processes, systems and activities are designed and operating effectively, while providing practical recommendations to address weaknesses and improve resilience. Key responsibilities will include supporting risk and control assessments, maintaining risk and control documentation, and coordinating the review and testing of IT general controls, application controls and key technology processes. You will assist with internal and external audit activities, track remediation plans, validate evidence, and monitor...

Learn more

Cyber Assurance & Risk Analyst

Added 24/08/2026

Are you passionate about safeguarding digital assets and ensuring robust cyber risk management? We are seeking a skilled Cyber Assurance & Risk Analyst to join our dynamic team. In this role, you will be responsible for assessing and enhancing the organisation's cybersecurity posture by identifying risks, developing mitigation strategies, and ensuring compliance with relevant frameworks and standards. You will collaborate closely with IT, operations, and compliance teams to conduct risk assessments, support internal and external audits, and monitor the effectiveness of security controls. Your key duties will include evaluating existing information security policies, recommending improvements, and assisting with the implementation...

Learn more
Required for two factor authentication
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.