IT Security Analyst
CPS Group
Cardiff, United Kingdom
3 days ago
Role details
Contract type
Temporary contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Compensation
£ 45KJob location
Cardiff, United Kingdom
Tech stack
Computer Security
Issue Tracking Systems
Job description
CPS Group is supporting a well-established financial services organisation in Cardiff as they look to appoint an IT Security Analyst on a 12-month fixed term contract. This is an excellent opportunity to join a forward-thinking security team and play a key role in protecting systems, networks and data across both cloud and on-premise environments.
This role is central to maintaining a strong security posture, supporting governance and assurance activities, and embedding effective cyber security risk management across the wider technology function.
The Role
- Reviewing and assuring cyber security controls to ensure effectiveness, coverage and evidence
- Maintaining and improving cyber governance, risk and reporting frameworks
- Supporting cyber risk assessments, issue tracking and remediation activities
- Reviewing and updating security policies, standards, procedures and playbooks
- Supporting internal and external audits, regulatory reviews and assurance activities
- Assisting with incident management governance, including root cause analysis and control improvements
- Working with technology teams to embed effective security risk management and compliance
Requirements
- Experience in cyber security governance, risk or assurance, ideally within a regulated environment
- Proven background in testing and assuring security controls and supporting audits
- Strong experience producing and maintaining security policy and process documentation
- Familiarity with security frameworks such as ISO 27001, NIST or CIS
- Ability to engage effectively with technical and non-technical stakeholders
- Strong written and verbal communication skills with a risk-focused mindset
- Relevant experience or qualifications in IT Security, Cyber GRC or Risk Management