Our client is seeking a detailoriented and driven Security Analyst to join their IT team. In this role the analyst will play a key part in strengthening customer trust by responding to security questionnaires supporting external audits and helping maintain compliance with leading industry standards such as SOC 2 and ISO 27001.
This position offers the opportunity to collaborate across multiple departmentsincluding engineering legal sales and executive leadershipto ensure that the organizations security posture is not only well communicated but also continuously improved. Its an exciting chance to contribute to a company where security is a core pillar of customer confidence and business success.
Tasks
- Respond promptly and accurately to customer and vendor security questionnaires due diligence requests and RFPs ensuring timely support throughout the sales and procurement processes.
- Maintain and continuously update reusable documentationincluding CAIQ SIG security whitepapers and policy summariesto improve efficiency in future responses.
- Oversee the management of Sprinto the organizations compliance automation platform ensuring its data remains current and aligned with compliance objectives.
- Support the planning and documentation of evidence for thirdparty audits including but not limited to SOC 2 and ISO 27001 assessments.
- Track remediation actions identified through audits or internal assessments and assist in coordinating their timely resolution.
- Work closely with crossfunctional teams to document and maintain uptodate security controls internal policies and operational procedures.
- Stay informed on evolving regulatory requirements compliance obligations and security best practices to help enhance the organizations security posture.
- Maintain a wellorganized inventory of compliance artifacts certifications and attestations for internal and external reference.
- Participate in internal risk assessments and conduct vendor security evaluations to uphold the organizations thirdparty risk management standards.
- Contribute to companywide security awareness efforts and training programs fostering a culture of security across all departments.
Requirements
- 5 years of experience in information security security compliance GRC or related fields.
- Familiarity with security frameworks and standards such as SOC 2 ISO 27001 NIST or CIS.
- Strong written communication skills with the ability to clearly explain technical concepts to
nontechnical stakeholders. - Experience completing security questionnaires or responding to customer compliance inquiries.
- Detailoriented and organised with the ability to manage multiple requests and deadlines.
- Proactive collaborative and comfortable working across departments.
- Bonus: experience with tools like Sprino or similar GRC platforms.
Benefits
Permanent contract
Full remote working model
Flexible hours
Great team of people
Step 1: Interview with one of our recruiters to get to know you better
Step 2: Interview with the Hiring Manager
Step 3: Technical Test
Step 4: Technical Interview