Information Security Assurance Analyst
- Location: Remote
- Job Type: Full-time – Permanent
- Salary: £40,000 - £50,000
Information Security Assurance Analyst playing a pivotal role in maintaining and enhancing our clients security posture. This position involves conducting control assessments to ensure compliance with regulations and standards, improving control processes, and facilitating audit and assessment requests.
Day-to-day of the role:
- Control Assessment Activities:
- Schedule and coordinate control assessments with various stakeholders.
- Evaluate the design and effectiveness of both technical and non-technical security controls.
- Maintain up-to-date documentation of security control assessments and remediation activities.
- Organize control evidence and author notifications of deviations to inform relevant parties.
- Produce risk analysis reports and communicate findings to leadership.
- Provide support in documenting security requirements for information systems and services.
- Control Improvement Activities:
- Update and enhance procedures and business processes.
- Develop tests for operating effectiveness with control owners.
- Propose enhancements to existing controls and assist in regular reporting on control assessment activities.
- Audit and Assessment Facilitation:
- Manage third-party due diligence requests and serve as the primary liaison for resolving actions.
- Prepare for and assist with internal and external audits.
- Program Effectiveness Enhancement:
- Identify and implement process improvements.
- Assist in training team members on control assessment methodologies.
- Ensure critical vendors have robust Business Continuity and Disaster Recovery (BCDR) plans and conduct regular assessments.
Required Skills & Qualifications:
- Proven experience in information security, particularly in control assessments and audit facilitation.
- Strong understanding of cybersecurity and privacy controls, and their application in a business environment.
- Excellent organizational skills and the ability to manage multiple tasks simultaneously.
- Strong communication skills, capable of effectively articulating risk and compliance issues to leadership and stakeholders.
- Experience with security frameworks and compliance regulations.
- Ability to work collaboratively across various departments to enhance security measures.
=
If you would like to apply for this position please apply online or for more information please contact me on