> Markdown version of [/jobs/ext/339754-information-security-assurance-analyst](https://www.wearedevelopers.com/jobs/ext/339754-information-security-assurance-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Assurance Analyst - **Company:** Energia Group - **Location:** Belfast, UK (Remote available) - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Cyber Security, Domainkeys Identified Mail, Domain-Based Message Authentication Reporting and Conformance (DMARC), Multi-Factor Authentication, Email Filtering, Information Technology Operations, Network Protocols, Open Web Application Security, Web Application Security, TCP/IP, Software Vulnerability Management, Enterprise Data Management, Firewalls (Computer Science), Patch Management, Vulnerability Analysis - **Published:** June 11, 2026 - **Apply:** https://uk.indeed.com/viewjob?jk=24d1c7cba0ec5027 ## About the Role Do you have experience in Vulnerability assessment?, This is a key role, and the successful candidate will possess a strong background in Assurance Activities & Security Operations, which will complement the existing Information Security team. The successful candidate will provide a combination of technical depth with outstanding interpersonal skills and be highly confident in engaging and influencing at all levels whilst driving for results. Selling upwards and peer selling are vital characteristics to this role., * Third level degree in a subject related to the role, or equivalent in either professional certifications, qualifications or experience. * Experience in the Vulnerability management lifecycle, operation and administration of Vulnerability Assessment, Patch Management with knowledge of Secure Web App principles e.g., OWASP Top 10 or SANs 25. * Understanding of Application and Infrastructure Security (firewalls, web / email filtering), network protocols and infrastructure components often involved in pen testing scope (DMZ, TCP/IP, AD / Group Policy, MFA, DMARC / DKIM / SPF) * Experience of penetration testing or involvement in penetration testing engagements * Solid technical understanding of Endpoint Protection / security tooling. * Solid technical understanding of IT Security threats, trends and how they can be mitigated by technical security controls or processes. ## Description The successful candidate will report to the Group Head of Information Security and will be responsible for supporting and contributing to the evolution of Cyber Security within Energia Group and will be a valuable member of the existing Information Security team. The successful candidate will be a highly customer focused individual and will provide advice and guidance to our Operational support teams, Programme / Project teams, Developers (in-house and third party) and our Managed Service Provider to ensure that IT Operations are not impacted and are delivered securely, protecting both customer and corporate data. The role will provide support against Information Security strategic initiatives / programmes, helping to ensure the company is compliant with regulated and non-regulated standards and processes. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [WeAreDevelopers LIVE - Did AI or JS break the web?, Finding gems in the days of AI and One thing developers really need to know ](https://www.wearedevelopers.com/videos/1352-wearedevelopers-live-did-ai-or-js-break-the-web-finding-gems-in-the-days-of-ai-and-one-thing-developers-really-need-to-know) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)