Junior Information Security Analyst

DVF Recruitment
London, UK
7 days ago
Apply on find.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Working hours
Regular working hours
Job source

Tech stack

Microsoft Word Microsoft Excel CompTIA Security+ Cyber Security Microsoft Office Microsoft PowerPoint Information Security Management System

Job description

48,000LondonPermanentThe FirmJoin a leading law firm with a strong reputation for delivering high-quality legal services to clients across a range of sectors. As the firm continues to strengthen its information security and risk capabilities, it is looking for an Information Security Analyst to join its Information Security and Risk & Compliance function.This is an excellent opportunity for someone looking to develop their career within Information Security Governance, Risk and Compliance (GRC), with exposure to ISO 27001, risk management, supplier assurance, audits and information security governance within a professional services environment.The RoleAs an Information Security Analyst, you will support the ongoing development and maintenance of the firm’s Information Security Management System (ISMS) and wider governance framework.You will work closely with stakeholders across the firm, supporting information security governance, risk management, supplier assurance, client due diligence, audit preparation, policy management, reporting and security awareness activities.Key ResponsibilitiesSupport the administration and continual improvement of the firm’s Information Security Management System (ISMS).Assist with ISO 27001 certification, surveillance and internal audit activities.Coordinate the collection of audit evidence and support remediation tracking.Support the management and maintenance of information security policies, standards, procedures and supporting documentation.Maintain information security risk, treatment, action and exception tracking records.Coordinate client information security due diligence questionnaires and assurance requests.Support third-party supplier assurance and risk assessment activities.Assist with the production of information security metrics, dashboards and management reporting.Support ISMS objectives and wider governance reporting.Assist with security awareness, communications and training initiatives across the firm.Maintain information security governance documentation, registers and tracking mechanisms.Work collaboratively with stakeholders across the business to support information security and compliance requirements.About YouWe’re looking for someone with an interest in developing a career within Information Security, GRC, Risk & Compliance.You will ideally have:An understanding of information security, risk management and governance principles.Strong organisational and administrative skills.Excellent written and verbal communication skills.Excellent attention to detail and a methodical approach to work.The ability to manage multiple priorities and meet deadlines.Strong analytical and problem-solving skills.Good working knowledge of Microsoft Office, including Word, Excel, PowerPoint and Outlook.The ability to build effective relationships with stakeholders at all levels.A self-motivated approach and willingness to learn and develop within Information Security and Risk & Compliance.Desirable

Requirements

ExperienceExperience or knowledge in any of the following would be advantageous:ISO 27001 or other information security frameworks.Supporting audits, compliance activities or governance processes.Working within Information Security, Risk, Compliance, Governance or a related function.Supplier assurance and third-party risk management.Producing reports, dashboards or management information.Relevant qualifications or certifications such as ISC2 Certified in Cybersecurity (CC), CompTIA Security+, ISO 27001 Foundation or similar.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on find.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:24 min

Estimating project expenditures with Azure Pricing Calculator

Radu Vunvulea Radu Vunvulea · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:58 min

Mitigating diverse browser quirks and unsupported clipboard metadata formats

Markus Over Markus Over

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

Videos

See all

Related articles

See all