Senior Information Security & Compliance Analyst
- hattersley, england, United Kingdom
- Hybrid
- £60 - £90 Per Hour
Job Description
Senior Information Security & Compliance Analyst
Greater Manchester | Hybrid Working
We're partnering with a leading organisation in the UK water and infrastructure sector to appoint a Senior Information Security & Compliance Analyst.
This is an excellent opportunity for an information security, governance, risk or privacy professional looking to take on a highly visible role within a business supporting Critical National Infrastructure projects across the UK.
Working closely with the Information Security & Compliance Manager, you'll help drive information security, privacy and compliance activities whilst supporting the company's journey towards ISO 27001 certification.
The Role
You'll act as a trusted adviser to stakeholders across the business, helping ensure robust security, privacy and governance controls are embedded into day-to-day operations.
Key responsibilities include:
- Supporting the organisation's ISO 27001 programme and compliance activities
- Conducting risk assessments and maintaining security risk registers
- Reviewing suppliers and third-party security risks
- Supporting security incident management and investigations
- Assisting with business continuity and resilience activitiesDeveloping and maintaining security policies and guidance
- Supporting audits, regulatory reviews and client assurance requests
- Acting as Deputy Data Protection Officer when required
- Maintaining Records of Processing Activities (RoPA)
- Supporting DSAR responses and privacy investigations
- Providing security and privacy advice to stakeholders across the business
About You
We're keen to speak with professionals who have experience in information security, governance, risk, compliance or data protection roles.
You'll ideally bring
- Experience supporting information security or compliance programmes
- Knowledge of ISO 27001, NIST or similar frameworks
- Understanding of UK GDPR and Data Protection legislation
- Experience conducting risk assessments and managing compliance activities
- Strong stakeholder engagement and communication skills
- Experience working within regulated or data-sensitive environments
- ISO 27001 Internal Auditor certification
- Security+, CISM, CIPP or CIPM qualifications
- Business Continuity experience
- Critical National Infrastructure, utilities or infrastructure sector experience
- Knowledge of DLP, records retention or supplier assurance processes
What's On Offer?
- 25 days annual leave plus bank holidays
- Option to purchase additional holiday
- Life assurance
- Health insurance
- Private medical insurance
- Cycle to work scheme
- Retail and lifestyle discounts
Why Apply?
This role offers the chance to play a key role in shaping information security, privacy and governance within an organisation delivering nationally important infrastructure projects.
#J-18808-Ljbffr

