Information Security Risk & Compliance Analyst at AAB managing compliance with ISO 27001, supporting enterprise risk assessments and enhancing information security systems.
Responsibilities
Key duties & responsibilities****As part of AAB's Business Protection Team:
Support the maintenance and continual improvement of the Information Security Management System in accordance with ISO 27001 requirements.
Assist in preparing for internal and external ISO 27001 audits.
Monitor compliance with policies and procedures and follow up on findings or non-conformities
Help maintain ISMS documentation, including asset registers, risk assessments and Statements of Applicability (SoA)
Provide guidance and support with third-party security assessments
Contribute to enterprise risk assessments, control testing and follow up actions.
Assist with risk, compliance and regulatory queries from the wider AAB team.
Support other regulatory compliance process checks and reviews
Requirements
Experience within a risk, information security, compliance or internal audit environment, ideally in a professional services business
Knowledge of ISO27001
High level of integrity, confidentiality and attention to detail
Willingness to engage all levels of seniority across the business and escalate issues appropriately
Forward thinking and effective use of technology
Structured, organised and a good communicator.
Benefits
We want you to feel supported inside and outside of work. That’s why we offer a benefits package designed for your wellbeing, lifestyle, and career. ****
Time Off & Family Support
Annual leave (plus public holidays), with the option to buy or carry over leave
Paid volunteering day to support causes that matter to you
Health & Wellbeing
Private Medical Insurance (PMI) for you and the option to cover family members
Employee Assistance Programme (EAP) for 24/7 mental health and wellbeing support
Death in Service benefit
Financial Security
Competitive pension scheme
Life assurance policies to support you and your family
Flexible & Agile Working
Hybrid working model
Agile working culture that supports flexible hours and smarter working
Modern office spaces designed for collaboration, focus, and wellbeing
****
***Disclaimer***** *Unsolicited CVs sent to AAB by Recruitment Agencies will not be accepted for this position. AAB operates a direct sourcing model and where agency assistance is required, the Talent Acquisition team will engage directly with our recruitment partners.*****
Security Engineer focused on enhancing cloud security at Ramp, ensuring safe management of financial data. Collaborating with cross - functional teams to remediate security issues and deploy secure solutions.
Senior Information Security Analyst at Banco ABC Brasil securing digital assets and ensuring compliance with industry standards. Collaborating with teams to enhance cybersecurity measures and manage incidents.
Sales Enablement Manager at Upwind Security crafting compelling narratives for technical audiences. Collaborating across teams to enhance market readiness and impact through influential content.
Talent Acquisition Partner owning recruitment cycles and enhancing Upwind's culture through AI - driven strategies in a fast - growing startup. Proactively sourcing global Go - To - Market roles while partnering closely with hiring managers.
Principal Associate in Capital One’s Cyber Division managing Information Security for Financial Services. Supporting stakeholders with analysis, reporting, and execution of cyber initiatives within the FS ISO Command Center.
IT Security Expert developing and maintaining a scalable hybrid multicloud network architecture across multiple European locations. Managing security and connectivity solutions in Azure and AWS environments.
Senior Information Governance Security Consultant at Civica improving information governance and cyber security for public and private sector clients. Leading security engagements and consultancy for resilience, compliance, and risk management.
Manager of IS Architecture & Compliance supporting security and compliance initiatives at Connecticut Children's health system. Partnering with teams to implement controls and assess risks across IT and business functions.
Associate Manager in Accenture's Global Protection & Security Team for Central Europe. Advising on physical safety, crisis management, and threat analyses in a dynamic, international environment.
Cybersecurity Learning Specialist at Avaron developing digital learning solutions to promote secure behaviors across a global cybersecurity organization. Focusing on pedagogical methods for effective learning experiences.