CrawlJobs Logo

Cyber Compliance Analyst

britishairways.com Logo

British Airways

Location Icon

Location:
United Kingdom , London

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

This role sits within British Airways’ Digital directorate, as part of the Cyber Compliance function. The team plays a critical role in identifying, assessing and managing BA's Cyber Safety and Security Cyber compliance programmes across the airline, ensuring our systems, data and operations remain secure in an increasingly complex threat landscape. In a safety-critical, highly regulated global airline, effective cyber compliance is essential to maintaining operational resilience, protecting customer trust and safeguarding the British Airways brand.

Job Responsibility:

  • Gather and maintain current evidence set to support compliance requirements (PCI DSS, SWIFT) and NIST maturity scoring for British Airways
  • Interpret security controls accurately with regard to system security posture, including configuration of systems with regard to technical security
  • Developing a thorough understanding of each of the relevant regulations that the business needs to adhere to
  • Monitor, track and report results of assessments and effective implementation of mitigation plans
  • Work closely with cross-functional teams (Internal & External Audit, IAG Tech, Cyber Assurance Leads) to support other Cyber compliance Activities
  • Develop, maintain and present reports, KPIs, and Dashboards
  • Develop and enhance our Identity Governance practices
  • Facilitate audit activity and evidence collection for critical identity services
  • Proactive involvement in creating awareness of Compliance programs across British Airways
  • Help build a more compliance and risk-aware culture
  • Management of ISMS (Information Security Management Systems)

Requirements:

  • Strong team working capabilities and can-do approach
  • Strong stakeholder management skills
  • Ability to rationalise and present compliance data to stakeholders to enable decision making
  • Ability to work to deadlines, prioritise tasks
  • Excellent communication and interpersonal skills
  • Proactive investigator, working collaboratively and constructively with multiple stakeholders to gather evidence
  • Experience of leading PCI maintenance programmes is highly desired
  • Experience of identity governance and assurance using AWS IAM, Entra and Sailpoint is highly desired
  • Experience working in aviation, safety-critical or critical national infrastructure environments is highly desirable
  • Relevant cyber compliance qualifications and/or certifications
What we offer:
  • Staff travel including unlimited basic and premium standby tickets on British Airways flights
  • Up to 30 discounted ‘Hotline’ airfares per year for yourself, friends, and family
  • Market-leading defined contribution (DC) pension
  • Flexible benefits including critical illness cover, childcare vouchers, cycle to work, additional life insurance cover, private medical insurance, dental plan, and healthcare cash plan
  • Electric car scheme
  • Gymflex membership
  • Heathrow Express tickets with a 75% discount

Additional Information:

Job Posted:
March 19, 2026

Expiration:
April 02, 2026

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Cyber Compliance Analyst

Cyber Information Assurance Analyst SME

The Cyber Information Assurance Analyst SME supports the customer by performing ...
Location
Location
United States , Ft. Meade
Salary
Salary:
131000.00 - 155000.00 USD / Year
chickasaw.com Logo
Chickasaw Nation Industries, Inc (CNI)
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Must possess appropriate level of certifications for this position as required by the contract
  • Required DOD Top Secret Clearance with SCI eligibility
  • Bachelor's Degree and a minimum of ten plus (10+) years of experience in systems security, or equivalent combination of education/experience
Job Responsibility
Job Responsibility
  • Performs extensive assessments of systems and networks within the networking environment or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy
  • Establishes strict program control processes to ensure mitigation of risks and supports obtaining certification and accreditation of systems
  • Assists in the implementation of the required government policy and makes recommendations on process tailoring
  • Supports the formal Security Test and Evaluation required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports
  • Periodically conducts of a review of each system's audits and monitors corrective actions until all actions are closed
What we offer
What we offer
  • Medical
  • Dental
  • Vision
  • Company Life Insurance
  • Short-Term and Long-Term Disability Insurance
  • 401(K) Immediate Vesting
  • Professional Development Assistance
  • Legal Aid Assistance Program
  • Family Planning / Fertility Assistance
  • Personal Time Off
  • Fulltime
Read More
Arrow Right

Cyber Defense Analyst

The cyber defense analyst for Services within the Business, Functions and Techno...
Location
Location
Mexico , Ciudad De Mexico
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Ensure business and technology remain within risk tolerance for all applicable Cybersecurity risk appetites and sustain it with the consistent operating model
  • Enhance current vulnerability management (VTM) operating model in line with BFT Risk Governance organization with Path-to-appetite and reporting
  • Timely escalate to CISO Leadership and Businesses and ensure VTM risk treatment responses are entered in a timely fashion
  • Support Vulnerability Organization to improve the quality and integrity of VTM/GEM reports
  • Continue supporting vulnerability management Uplift Program activities and reduce risk while reducing stakeholders’ pain-points (data/reporting, false positives, processes)
  • Perform root cause analysis of VA Issues and identification of repeated offenders for high risk vulnerabilities
  • Conduct security reviews to check for security compliance to Bank’s requirements
  • Identify areas of repeating SIRT incidents, related trending and work with technology team and ISO contacts in reducing repeat volume instances
  • Identify opportunities for improving SIRT workflow efficiencies and developing reporting which better reports on root causes for bringing down repeat instance volumes
  • Work with SIM and ISO community to facilitate the adherence of SIRT reporting timelines as per defined within SIRT standard, as well as identify deviations and its cause
Job Responsibility
Job Responsibility
  • Ensure business and technology remain within risk tolerance for all applicable Cybersecurity risk appetites and sustain it with the consistent operating model
  • Enhance current vulnerability management (VTM) operating model in line with BFT Risk Governance organization with Path-to-appetite and reporting
  • Timely escalate to CISO Leadership and Businesses and ensure VTM risk treatment responses are entered in a timely fashion
  • Support Vulnerability Organization to improve the quality and integrity of VTM/GEM reports
  • Continue supporting vulnerability management Uplift Program activities and reduce risk while reducing stakeholders’ pain-points (data/reporting, false positives, processes)
  • Perform root cause analysis of VA Issues and identification of repeated offenders for high risk vulnerabilities
  • Conduct security reviews to check for security compliance to Bank’s requirements
  • Identify areas of repeating SIRT incidents, related trending and work with technology team and ISO contacts in reducing repeat volume instances
  • Identify opportunities for improving SIRT workflow efficiencies and developing reporting which better reports on root causes for bringing down repeat instance volumes
  • Work with SIM and ISO community to facilitate the adherence of SIRT reporting timelines as per defined within SIRT standard, as well as identify deviations and its cause
  • Fulltime
Read More
Arrow Right

Cyber Security-Fraud Analyst

The L2 Support Fraud Detection Senior Analyst is a pivotal team member responsib...
Location
Location
India , Chennai
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Tools: Octoflow, Mosaic
  • conduct investigations and reporting using Octoflow and Mosaic platforms
  • provide recommendations based on analytics derived from these tools
  • support secure integration of APIs and web services within fraud detection platforms
  • liaise with developers to validate and enhance security features in applications
  • analyse and correlate logs using SIEM solutions to identify and remediate suspicious activity
  • respond to real-time alerts and participate in threat hunting operations
  • integrate threat intelligence feeds into operational systems
  • regularly update detection mechanisms in response to emerging risks
  • lead and document the resolution of escalated fraud incidents
Job Responsibility
Job Responsibility
  • Conduct investigations and reporting using Octoflow and Mosaic platforms
  • provide recommendations based on analytics derived from these tools
  • support secure integration of APIs and web services within fraud detection platforms
  • liaise with developers to validate and enhance security features in applications
  • analyse and correlate logs using SIEM solutions to identify and remediate suspicious activity
  • respond to real-time alerts and participate in threat hunting operations
  • integrate threat intelligence feeds into operational systems
  • regularly update detection mechanisms in response to emerging risks
  • lead and document the resolution of escalated fraud incidents
  • collaborate with cross-functional teams for swift containment, investigation, and recovery
What we offer
What we offer
  • Inclusive and respectful work environment
  • positions open to people with disabilities.
  • Fulltime
Read More
Arrow Right

Cyber Controls Lead Analyst / Business Risk Officer

The Business Risk Officer is a strategic professional who stays abreast of devel...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6-10 years relevant work experience in Business Risk & Controls
  • MS Excel, MS Access, SAS, SQL, Visual Basic a plus
  • 5+ years’ experience in financial services
  • Consistently demonstrates clear and concise written and verbal communication skills
  • Effective organizational influencing skills required
  • Third party vendor management preferred
  • Demonstrated ability to lead global team efforts
  • Excellent problem solving skills
  • Ability to see the big pictures with high attention to critical details
  • Demonstrated ability to develop and implement strategy and process improvement initiatives.
Job Responsibility
Job Responsibility
  • Responsible for managing and supporting multiple risk and control programs for the organization including defining the strategy, approach, processes, quality, tools and reporting that provide global risk management consistency and excellence
  • Establishes quarterly audit process of attributes to ensure proper calculation and control
  • Works closely with business partners on findings and makes recommendations on improving practices
  • Develops procedural implementation and change management process with Operations and Reporting team to ensure proper governance and controls exist
  • Examines procedures for consistency and gaps relative to regulations in addition to impacts on customer experience
  • Conducts internal testing of dispute processes to ensure control
  • Monitors exceptions to dispute policy and identifies drivers of exceptions
  • Leverages data to examine impacts to Customer Experience and Regulatory breaks
  • Has the ability to operate with a limited level of direct supervision
  • Can exercise independence of judgement and autonomy
  • Fulltime
Read More
Arrow Right

Cyber Security Soc Analyst

The SOC Analyst (L1/L2) and Lead are responsible for proactive monitoring, detec...
Location
Location
India , Chennai
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong knowledge of SIEM platforms and alert investigation
  • Advanced incident response, malware analysis, and RCA expertise
  • Deep knowledge of endpoint and network security tools
  • Threat hunting and forensic investigation capabilities
  • Familiarity with vulnerability management and DLP/email security
  • Experience with threat intelligence platforms and TTP mapping
  • Strong analytical, communication, and documentation skills
  • Guide development of SOC procedures/runbooks and continuous improvement initiatives
  • Administer DLP and email security systems
  • Operate Microsoft Defender for Endpoint, conduct threat hunting via EDR telemetry and memory dumps
Job Responsibility
Job Responsibility
  • Proactive monitoring, detection, investigation, and response to security threats using industry-leading solutions
  • Guide and architect SOC workflows and systems to ensure robust organizational security
  • Threat hunting and forensic investigation
  • Administer DLP and email security systems
  • Operate Microsoft Defender for Endpoint, conduct threat hunting via EDR telemetry and memory dumps
  • Use, configure, and optimize SIEM tools (Splunk, IBM QRadar, Microsoft Sentinel, LogRhythm, ArcSight, Elastic SIEM) for threat identification and alert management
  • Guide development of SOC procedures/runbooks and continuous improvement initiatives
  • Leadership and team management
What we offer
What we offer
  • Inclusive and respectful work environment
  • Positions open to people with disabilities
  • Fulltime
Read More
Arrow Right

Cyber Information Assurance Analyst - Junior Assessor

The Cyber Information Assurance Analyst supports the customer by performing anal...
Location
Location
United States , Ft. Meade, MD
Salary
Salary:
65000.00 - 70000.00 USD / Year
chickasaw.com Logo
Chickasaw Nation Industries, Inc (CNI)
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • The ability to obtain, maintain and access classified information at the TS/SCI level
  • DoD 8570 IAM/IA Technical (IAT) Level II certification
  • Familiarity with STIGs (Security Technical Implementation Guides), Security Requirement Guides (SRGs), Plan of Action and Milestones (POA&Ms) and cybersecurity best practices
  • Understanding of the RMF process, NIST SP 800- 37, NIST SP 800-53, CNSSI 1253
  • Familiarity with relevant tools such as eMASS, STIG Viewer, Nessus, ACAS, SCAP, or HBSS
  • Strong written and verbal communication skills for reporting assessment findings
  • This position requires travel ~85% CONUS & OCONUS
  • Bachelor's Degree and a minimum of one to two (1-2) years of experience in systems security, or equivalent combination of education/experience
Job Responsibility
Job Responsibility
  • Conducts cybersecurity assessments, audits, and inspections for DoD organizations and partners handling DoD information or connecting to the DoDIN
  • Evaluates systems and Defensive Cyberspace Operations using cyber threat emulation and performance-based testing
  • Adheres to policies and processes for each assessment type
  • Supports assessment development and execution to ensure security expertise is properly applied
  • Coordinates logistics, test plans, and scope with the SCA Team Lead
  • Performs vulnerability assessments, capture results using STIG Viewer or designated tools, and document findings in eMASS
  • Analyzes security gaps and provide mitigation recommendations
  • Validates cybersecurity controls, TTPs, STIGs, RMF controls, and compliance with DoD policies and guidelines
  • Provides risk analysis and assessment results for authorization recommendations
  • Participates in daily assessment reviews, in-briefs, and out-briefs, sharing findings with the SCA-R
What we offer
What we offer
  • Medical
  • Dental
  • Vision
  • 401(k)
  • Family Planning/Fertility Assistance
  • STD/LTD/Basic Life/AD&D
  • Legal-Aid Program
  • Employee Assistance Program (EAP)
  • Paid Time Off (PTO) – (11) Federal Holidays
  • Training and Development Opportunities
  • Fulltime
Read More
Arrow Right

Identity and Access Management Analyst

The Identity and Access Management Analyst is responsible for fulfilling access ...
Location
Location
Philippines , City of Taguig
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree holder and minimum of 4+ years of experience in an Information Security role or related field with service delivery and customer relationship management
  • Complex application or system knowledge
  • Interprets the principle of Information Security concepts and policies and ability to apply into day-to-day work
  • Demonstrate an understanding of the risk associated with cyber security and the controls set in place to manage risk in identity and access management
  • Proven use of discretion and sound judgment on handling of information with subject to sensitivity
  • Flexibility to work in various shift to provide on-call, holiday and/or weekend support on a periodic frequency
  • Proven capability to work within a team, seeks the input of others and greets change with optimism, curiosity and resilience, ability to manage multiple priorities and adjust to evolving work needs
  • Understand and relates own goals to Citi, business' and teams', create SMART goals and demonstrate accountability to achieve them
  • Consistently demonstrate clear and concise written and verbal communication in the English language as well as sensitive to audience diversity
  • Strong analytical skills and proven ability to use (Citi) Lean methodology to identify process improvements
Job Responsibility
Job Responsibility
  • Fulfill access requests within a variety of banking applications and infrastructure systems
  • Manage user roles and access privileges within compliance of set information security policies and standards
  • Support operations including weekends and public holidays on a rotational basis, as well as assigned on-call emergency support
  • Handle all kinds complex requests and issues independently by having a good understanding of security administration processes, practices, and policies
  • Lead resolution of severity issue, identify root cause and come up with corrective action plan to prevent recurrence while providing update to relevant parties
  • Represent IAM Service Delivery in compliance calls and walkthroughs with audit
  • provide related audit deliverables in timely manner and ability to analyze and make the right judgment over accuracy, completeness, soundness of information being provided
  • Creates, maintains and performs annual review of Process Control Manual documents associated with specific systems assigned
  • Ensure completion of Marketplace requests, troubleshooting incident issues, closure of compliance-related action items and housekeeping tasks are done within operational and controls thresholds at an individual and team level
  • Understand Continuity of Business and supports its application to IAM processes by maintaining resources like process control document up-to-date, ISA accesses, etc. within applications in scope of support
  • Fulltime
Read More
Arrow Right

Business Analyst IV

We are offering a 6 month contract position for a Business Analyst IV in Sun Pra...
Location
Location
United States , Sun Prairie, Wisconsin
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Exceptional communication skills, both verbal and written
  • Proficient in reporting, able to create detailed and accurate business reports
  • Strong planning skills, capable of organizing and prioritizing multiple tasks
  • Knowledge of policy-making and compliance measures
  • Understanding of planning processes and their implementation in a business setting
  • Quality-focused, with an ability to review and improve business processes
  • Demonstrated leadership skills, with experience in team management
  • Familiarity with the onboarding process and its importance in business operations
  • Knowledge of business regulations and their implementation
  • Strong networking skills, capable of fostering beneficial business relationships
Job Responsibility
Job Responsibility
  • Support the Toxic Combination and Control Improvements projects, providing expertise and guidance to enhance compliance with standards and achieve project goals
  • Collaborate with stakeholders and system teams to identify requirements, analyze gaps between current and future state, and recommend solutions
  • Gather requirements and document complex process flows, identifying opportunities for standardization, increased efficiency, cost reduction, and improved user experience
  • Facilitate testing and onboarding with system teams and required end users, ensuring thorough understanding of user requirements and the availability of relevant and accurate process documentation
  • Implement business processes and continuous improvement initiatives, assessing alignment of current processes, programs, and systems to business requirements
  • Identify and eliminate risks to complex change implementation, planning user acceptance testing, clarifying requirements to developers, and escalating defects/issues as needed
  • Facilitate meetings supporting all phases of assigned projects using appropriate tools and technology
  • Be knowledgeable in Privileged Access Management CyberArk and Toxic Combinations / Segregation of Duties
  • Provide recommendations for improvement and implement procedural changes to ensure technical solutions align with organizational objectives, regulatory standards, and business needs
  • Support coordination and communications to implement solutions to end-users, working closely with system teams to obtain signoffs and necessary approvals
What we offer
What we offer
  • medical, vision, dental, and life and disability insurance
  • eligible to enroll in our company 401(k) plan
  • Fulltime
Read More
Arrow Right