> Markdown version of [/jobs/ext/2140489-information-assurance-analyst](https://www.wearedevelopers.com/jobs/ext/2140489-information-assurance-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Assurance Analyst - **Company:** Sanderson Recruitment Plc - **Location:** London, UK - **Salary:** £141,700.0 - £153,400.0 - **Contract:** Temporary contract - **Skills:** Cyber Security, Information Systems, Disaster Recovery, Information Systems Security Architecture Professional, SC Clearance, Performance Monitor - **Published:** August 20, 2026 - **Apply:** https://www.careerboard.com/pt/en/find-jobs-in-United-Kingdom/-F3E2B45BAF45E24154/ ## About the Role * Experience within Information Assurance, Governance, Risk, Compliance, Quality Assurance, or related disciplines. * Strong understanding of quality assurance principles and methodologies. * Experience monitoring compliance against policies, processes, and standards. * Ability to assess, analyse, and improve operational processes and controls. * Strong understanding of governance and assurance practices. * Experience producing reports, metrics, and management information. * Excellent communication and stakeholder engagement skills. * Strong analytical and problem-solving capabilities. * Experience working within regulated, security-conscious, or highly governed environments. * Active SC Clearance. Desirable Skills & Experience * Experience supporting government departments, public sector organisations, or other highly regulated environments. * Knowledge of Information Assurance frameworks and governance requirements. * Experience with: + Business Continuity Management (BCM) + Disaster Recovery Planning + Operational Resilience + Risk Management Frameworks + Internal Audit Activities + Control Assessments + Process Improvement Programmes * Familiarity with: + ISO 27001 + ISO 22301 + NIST Cybersecurity Framework + Cyber Assessment Framework (CAF) + ITIL + Governance, Risk and Compliance (GRC) tools Preferred Certifications The following certifications would be advantageous but are not essential: * ISO 27001 Lead Auditor or Lead Implementer * CISSP (Certified Information Systems Security Professional) * CISM (Certified Information Security Manager) * CRISC (Certified in Risk and Information Systems Control) * ISO 22301 Business Continuity Certifications * CIA (Certified Internal Auditor) * ITIL Foundation or higher * IRM Risk Management Certifications ## Description We are seeking two experienced Information Assurance Analysts to support Business-as-Usual (BAU) Information Assurance activities across a portfolio of government-facing projects delivered by a leading consultancy. This role is ideal for professionals with experience in Information Assurance, Governance, Risk, Compliance, Quality Assurance, or Operational Resilience who are passionate about maintaining high standards of security, compliance, quality, and resilience within complex and regulated environments. As an Information Assurance Analyst, you will play a key role in supporting assurance programmes, monitoring compliance with policies and standards, maintaining governance controls, and driving continuous improvement initiatives. Working closely with delivery, security, operations, risk, and quality teams, you will help ensure services remain compliant, resilient, and aligned to client and organisational objectives. The successful candidate will be expected to operate as a trusted advisor, influence stakeholders, support informed decision-making, and contribute to the ongoing enhancement of assurance practices across multiple government projects. Key Responsibilities Information Assurance & Compliance * Support the delivery of Information Assurance activities across operational and project environments. * Monitor compliance with organisational policies, procedures, standards, and regulatory requirements. * Conduct assurance reviews and quality assessments to identify areas of risk and non-compliance. * Assist with audit preparation, evidence gathering, and remediation tracking. * Support governance and assurance reporting across multiple workstreams. Quality Assurance Management * Support and enhance quality assurance frameworks, methodologies, and processes. * Review operational processes to ensure adherence to established standards and controls. * Monitor performance against agreed quality measures and KPIs. * Identify trends and recurring issues that may impact compliance, quality, or service delivery. * Recommend and implement quality improvements to strengthen operational effectiveness. Business Continuity & Operational Resilience * Support Business Continuity and Disaster Recovery (BCDR) activities. * Contribute to continuity planning, testing, and resilience assessments. * Assist with the review and maintenance of recovery plans and procedures. * Help ensure critical services meet resilience and recovery objectives. Continuous Improvement * Lead and contribute to process improvement initiatives across multiple teams. * Identify opportunities to improve assurance, governance, and quality management practices. * Promote best practice and continuous improvement methodologies. * Support the development of new assurance processes and operating models. Stakeholder Management * Collaborate with security, operations, delivery, risk, compliance, and governance teams. * Engage with stakeholders to promote quality standards and assurance objectives. * Provide guidance and support to colleagues on assurance and compliance matters. * Facilitate workshops, reviews, and assurance activities where required. Reporting & Analysis * Analyse assurance, compliance, and quality-related data to identify trends and risks. * Produce reports, dashboards, metrics, and management information. * Present findings and recommendations to stakeholders and senior leadership. * Track actions and support remediation plans through to completion. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Convincing Product teams to Adopt Gitops in a Large Org](https://www.wearedevelopers.com/videos/1936-convincing-product-teams-to-adopt-gitops-in-a-large-org) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [System Resilience: Surviving the Software Storm](https://www.wearedevelopers.com/videos/874-system-resilience-surviving-the-software-storm) ## Related Articles - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)