Information Security Compliance Analyst
Apply locations: Bristol (Harbourside)
Time type: Full time
Posted on: Posted Yesterday
Time left to apply: End Date: December 9, 2024 (11 days left to apply)
Job requisition id: R6862
Excited to grow your career?
Our purpose is to make it easy for people to save and invest for a better future. We are looking for great people to join us, so please come and invest in YOUR future at Hargreaves Lansdown.
We know that sometimes people can be put off applying for a job if they don't tick every box. If you're excited about working for us and have most of the skills or experience we're looking for, please go ahead and apply. We’d love to hear from you!
About the role
An exciting opportunity has arisen to join our Information Security Compliance team. You will assist in delivering compliance to internal and external standards, frameworks, and attestations. You will also be responsible for the maintenance of documentation and processes necessary to maintain compliance to industry frameworks, including assisting with post internal and external audit finalisation of findings and follow-ups.
What you’ll be doing
* Assisting in meeting compliance requirements within HL, such as PCI-DSS and in line with frameworks such as SWIFT CSCF, CSA CCM and NIST CSF.
* Monitoring of scheduled compliance activities such as Firewall rule reviews, developer security training, colleague policy attestations and collecting and collating evidence of such activities to assist in audit and assessment activities.
* Security Compliance oversight of transformation initiatives and cloud security compliance activities.
* Collating and compiling Management Information to provide assurance to the Head of Infosec and CISO of ongoing security compliance.
* Assisting in creating, reviewing and updating key ISMS documentation.
* Working with risk functions to complete security controls testing and alignment of controls with industry frameworks, performing gap analysis and assisting with remediation activities.
* Maintaining the program of remediation for audit and assessment findings.
* Provide SME support to cloud teams for security compliance requirements.
About you
* Proven experience in a Security Compliance or Information Security role with a strong technical background.
* Experience must have been gained within a regulated industry (preferably Financial Services) with experience of securing cloud environments such as AWS & Azure and understanding compliance requirements for cloud environments.
* Must be experienced in liaising with stakeholders at all levels and be confident in influencing business areas to meet compliance requirements.
* Certified to a recognised industry certification such as CISSP, CCSK, CCAK or equivalent.
* Demonstrable experience of working with compliance and risk management in a NIST CSF or ISO27001 aligned environment, along with PCI-DSS and SWIFT.
* Experience of identifying, articulating, managing and reporting Information Security risks and an understanding of risk management practices, aligned with industry best practice.
Interview process
This will be a two-stage interview process, consisting of an introductory conversation and competency and behavioural based interview.
Working Schedule
The role is based in our Bristol head office, BS1 5HL. This role is permanent, full time, 37.5 hours per week, Monday to Friday. We have returned to the office, however for this role we offer a hybrid flexible working pattern.
Why us?
Here at HL, we’re the UK’s number 1 investment platform for private investors, based in Bristol. For more than 40 years we’ve helped investors save time, tax and money on their investments.
To achieve our mission, we believe we have a workplace like no other, with constant learning, dynamic teams, and a great ethos. We're steered by core values that promote service, quality, innovation, and opportunity in everything we do.
What's on offer?
* Discretionary annual bonus and annual pay review
* 25 days holiday plus bank holidays and 1-day additional Christmas closure
* Option to purchase an additional 5 days holiday
* Flexible working options available, including hybrid working
* Enhanced parental leave
* Pension scheme up to 11% employer contribution
* Sharesave scheme - have a real stake in HL’s future
* Income Protection and Life insurance (4 x salary core level of cover)
* Private medical insurance
* Health care cash plans - including optical, dental, and out patient care
* Help@hand - confidential support including mental health counselling and remote GP
* Wellhub - unlimited access to fitness provider and wellness coach sessions
* Variety of travel to work schemes with bike storage and shower facilities
* In-house barista and deli serving subsidised coffee and sandwiches
* Two paid volunteering days per year
This role may also be available on a flexible working or part time basis – please ask the Recruitment & Onboarding team for more information.
Hargreaves Lansdown is an inclusive employer that values diversity in its workforce. We encourage applications from all individuals without regard to race, religion, gender, sexual orientation, national origin, disability or age.
Please note, we are unable to provide employment sponsorship to candidates.
About Us
Hargreaves Lansdown is the UK's number one platform for private investors. Our purpose is to empower people to save and invest with confidence, and today, we are trusted with more than £120 billion by over 1.7 million clients.
We are a secure, FTSE-listed company, based in the heart of Bristol now with over 2,000 colleagues. We believe we have a workplace like no other, with constant learning, dynamic teams and a great ethos. We're steered by our core values that promote service, quality, innovation, and opportunity in everything we do.
#J-18808-Ljbffr