CrawlJobs Logo

Risk & Information Security Associate Analyst

Cyprus, Nicosia · Job Posted December 17, 2025
Apply Position
Job Link Share

Job Description

We are looking for a highly organized, detail-oriented Risk & Information Security Associate Analyst to support the Chief Information Security Officer and Organizational Risk Manager, who holds a dual role overseeing both domains. This is a unique opportunity for someone interested in developing foundational expertise in both information security and organizational risk management. The successful candidate will be expected to operate with a high degree of autonomy, as they will be working in a different time zone from the Chief Information Security Officer and Organizational Risk Manager. Strong self-management, initiative, and sound decision-making are essential. There will also be occasions where the candidate will be required to adjust their working hours to ensure sufficient overlap with the manager for collaboration, reporting, and alignment on priorities.

Job Responsibility

  • Monitor and report on the effectiveness of information security controls
  • Support the identification, tracking, and resolution of security incidents or weaknesses
  • Assist in maintaining security metrics and dashboards for internal reporting
  • Contribute to the assessment of operational, technology, and third-party risks
  • Assist in evaluating controls and proposing mitigation strategies aligned with risk appetite
  • Participate in internal audits and control testing, ensuring timely remediation of findings
  • Help maintain and enforce security and risk management policies and procedures
  • Support compliance with relevant data protection, privacy, and information security regulations
  • Coordinate periodic user access reviews and assist with awareness initiatives
  • Work across departments to gather risk-related information and support secure business operations
  • Liaise with IT, Legal, HR, and other teams to identify and escalate potential security or risk issues
  • Serve as a point of contact for basic security and risk queries
  • Operate autonomously, managing daily responsibilities with minimal supervision
  • Adapt work hours as necessary to ensure overlap with the CISO and Organizational Risk Manager, located in a different time zone
  • Proactively communicate status updates, issues, or concerns as they arise
  • Stay updated on emerging risks, cybersecurity trends, and evolving regulatory landscapes
  • Contribute to the ongoing refinement of the company’s information security and risk frameworks
  • Recommend and implement process improvements to enhance risk posture and operational efficiency

Requirements

  • 2–3 years of professional experience
  • Excellent organizational skills with the ability to manage multiple workstreams and meet deadlines in a dynamic environment
  • Strong written and verbal communication skills, including the ability to prepare concise, well-structured documents and interact professionally across all levels of the business
  • Meticulous attention to detail, particularly in preparing audit materials, compliance documentation, and reviewing access controls
  • Proactive and self-motivated, able to work independently and across time zones without direct daily supervision
  • Comfortable handling sensitive and confidential information with discretion
  • Interest in technology, cybersecurity, and enterprise risk
  • Basic understanding of information security principles and frameworks (e.g., ISO 27001, NIST)
  • Ability to interpret and work with structured information (e.g., policies, risk registers, audit plans)
  • Capable of coordinating inputs from multiple stakeholders and compiling them into coherent outputs (e.g., committee papers, training summaries, client DDQs)
  • Personable and confident when engaging with colleagues from across the business
  • Curious and intellectually agile – open to learning new tools, frameworks, and ways of working
  • Ethical and accountable – operates with integrity and takes responsibility for meeting commitments
  • Values-driven – appreciates the importance of a strong risk and security culture in a regulated business environment

Nice to have

  • Experience in risk management, information security, compliance, IT governance, or related fields
  • Previous exposure to information security or operational risk audits
  • Understanding of third-party risk management
  • Awareness of current trends in AI and its applications in cybersecurity or risk mitigation
  • Familiarity with legal or regulatory requirements affecting information security and enterprise risk management
  • Prior experience drafting or maintaining policies and procedures
  • Familiarity with ISO 27001 and similar frameworks

What we offer

  • Support for professional qualifications (such as CFA and CAIA)
  • Career growth and tools for ongoing learning and development
  • Medical insurance for you and your dependents
  • Provident fund
  • Yearly bonus dependent upon performance and company growth
  • Opportunity for international travel (i.e., short periods of secondment to other Albourne offices)
  • 5 additional service recognition holidays in surplus to standard annual leave
  • Albourne Training Days (minimum of 40 hours per year)
  • Free office parking
  • A supportive, diverse, and multi-cultural work environment
  • The freedom to work independently, solve problems, and creatively complete tasks within deadlines
  • Opportunities for career progression, both horizontally and vertically, once you’ve mastered your current role
  • An open-plan office with kitchen facilities and a communal entertainment area
  • Fun social activities to foster team bonding
  • Charity Day—an annual opportunity to work on a cause you’re passionate about
  • Company-wide support for fitness, mental health, and wellness, with sessions available for employees to engage in these activities

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Risk & Information Security Associate Analyst

8 matching positions

Senior Associate Information Security Analyst

As a Security Managed Services Engineer (L2) at NTT DATA, your role will be to e...
Location
Location
India , Mumbai
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience with managed services handling security infrastructure and working knowledge of ticketing tools, preferably ServiceNow
  • Proficiency in active listening, with techniques like paraphrasing and probing for further information
  • Excellent planning skills, able to anticipate and adjust to changing circumstances
  • Strong ability to communicate and engage across different cultures and social groups
  • Adaptability to changing conditions and flexibility in approach
  • Client-focused mindset, always putting their needs and positive experience first
  • A positive outlook and the ability to work well under pressure
  • Willingness to put in longer hours when necessary
  • Bachelor's degree or equivalent qualification in IT/Computing, or relevant work experience
Job Responsibility
Job Responsibility
  • Monitor, identify, investigate, and resolve technical incidents and problems
  • Handle client requests or tickets with technical expertise
  • Manage work queues, perform operational tasks, and update tickets with resolution actions
  • Log incidents promptly and provide second-level support
  • Execute changes responsibly, flagging risks and mitigation plans
  • Work closely with automation teams to optimize efforts and automate routine tasks
  • Audit incident and request tickets for quality
  • Contribute to trend analysis reports to identify automation opportunities
  • Assist L1 Security Engineers with triage and troubleshooting
  • Support project work when required
  • Fulltime
Read More
Arrow Right

Information Security Analyst

Are you a pragmatic, detail driven security professional who enjoys turning stan...
Location
Location
United Kingdom , Nottingham
Salary
Salary:
35000.00 - 40000.00 GBP / Year
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Working knowledge of ISO/IEC 27001 (risk, audit cycles, controls, evidence)
  • Understanding of PCI DSS requirements and SAQ/attestation processes
  • Awareness of NCSC best-practice guidance (cloud, phishing, access control, incident management, etc.)
  • Experience producing clear, concise reports and presenting to stakeholders
  • Ability to translate technical findings into practical remediation actions
  • Strong communication skills and confidence working with IT, suppliers, and business teams
  • An organised, methodical approach with great attention to detail
Job Responsibility
Job Responsibility
  • Maintain and update ISMS policies, standards, and procedures
  • Coordinate internal and external audits (including Gambling Commission security audits) from planning to closure
  • Run the risk management process, keeping registers and treatment plans accurate
  • Support PCI DSS compliance activities and associated evidence collection
  • Manage and track vulnerability scanning and remediation across systems
  • Assist with incident response, triage, evidence collection, and post-incident reviews
  • Work with IT and MSPs to improve security controls, alert quality, logging, and SIEM coverage
  • Conduct supplier due diligence and review third-party security documentation
  • Deliver targeted security awareness training and publish practical guidance
  • Produce monthly and quarterly reports on risk, vulnerabilities, audits, and incidents
What we offer
What we offer
  • Help@Hand – 24/7 access to GPs, mental health support, and more for you and your family
  • Thrive App – NHS-approved mental wellbeing support
  • Buzz Brights Apprenticeships & Buzz Learning – access to 100s of online courses
  • Buzz Brilliance Awards – employee recognition scheme
  • Annual Bonus, depending on company performance
  • 5 weeks annual leave plus public holidays (pro-rated for part-time roles)
  • Holiday Buy Scheme – purchase an extra week of holiday (eligibility applies)
  • 50% staff discount on bingo tickets, food, and soft drinks
  • Refer a Friend Scheme
  • Life Assurance & Pension Scheme
  • Fulltime
Read More
Arrow Right

Security risk analyst - Issue and policy exception

We are looking for a highly skilled and motivated analyst to join the policy exc...
Location
Location
India , Hyderabad
Salary
Salary:
Not provided
amgen.com Logo
Amgen
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree required (MIS, Information Systems, IT, Cybersecurity, or related field preferred)
  • 5–8 years of experience in Governance, Risk & Compliance (GRC), IT risk, information security compliance, or internal audit
  • Minimum 2-4+ years of experience in an IT ticket-based support environment
  • Candidate must be proficient at Microsoft office tools such as Outlook, Excel and suite of Microsoft Tools
  • Strong analytical, problem-solving, and documentation skills
  • Ability to communicate complex concepts to non-technical stakeholders
  • Understanding security controls as they apply to GRC (Governance, Risk, and Compliance) across the enterprise
  • Ability to analyze metrics and generate executive-level reporting and insights
  • Adaptability to a dynamic and fast-paced environment
  • Strong organizational and time management skills
Job Responsibility
Job Responsibility
  • Day to day queue management for the policy exception and issue records
  • Host weekly office hours calls for stakeholder support and the advancement of the records
  • Perform initial ticket triage to ensure healthy records for further processing
  • Monitor tickets and investigate the instances of delay in processing
  • Escalate conditions or concerns to management and leads regularly
  • Communicate in a brief manner via email/text and reliably update the associated tickets for good document practice
  • Fulltime
Read More
Arrow Right

Information Security Analyst

We are looking for a Information Security Analyst to serve as a technical leader...
Location
Location
Salary
Salary:
Not provided
deel.com Logo
Deel
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in cybersecurity
  • Experience with security tools like SIEM, SOAR, EDR, SWG, DLP, CSPM, ZTNA, MDM, IdP, and others
  • Familiarity with cybersecurity frameworks and best practices, such as MITRE, NIST, CIS, and others
  • Experience collaborating with internal and external stakeholders for cyber security events/incidents
  • Have strong interpersonal and communication skills
  • Stay up to date with the latest security technologies and attack techniques
  • Experience with conducting security assessments and configuration reviews
  • Understand and have experience with at least one of the public cloud technologies (Eg AWS, GCP, Azure)
  • Ability to write query and have scripting or programming experience
  • Excellent English in both verbal and written
Job Responsibility
Job Responsibility
  • Own and lead incident response process and actively investigate events generated by security systems, observed and reported suspicious activities with precision and efficiency
  • Perform digital forensics where applicable
  • Prioritize alerts based on risk and collaborate with stakeholders for remediation
  • Administration of SIEM including data ingestion, log management, create and tune alerts to ensure relevancy, accuracy and effectiveness of detection capabilities
  • Tune detection rules to reduce "noise" and false positives to ensure high-fidelity alerts
  • Develop and maintain SOPs related to security operations
  • Build incident response playbooks to standardize workflows and drive effective remediation of security threats
  • Update detection rules to spot new Indicators of Compromise (IoCs) associated with emerging threat actors
  • Actively perform threat hunting and help setting guardrails to prevent threats
  • Design, implement, and maintain comprehensive security dashboards and generate periodic reports to track Security Operations Center (SOC) performance and key risk indicators
What we offer
What we offer
  • Stock grant opportunities dependent on your role, employment status and location
  • Additional perks and benefits based on your employment status and country
  • The flexibility of remote work, including optional WeWork access
  • Fulltime
Read More
Arrow Right
New

Information Security Senior Analyst

Citi, a leading global bank with approximately 200 million customer accounts in ...
Location
Location
United States , Irving
Salary
Salary:
96400.00 - 144600.00 USD / Year
https://www.citi.com/ Logo
Citi
Expiration Date
June 28, 2026
Flip Icon
Requirements
Requirements
  • 3+ years of experience in Information Technology, Cybersecurity, brand protection, or fraud prevention
  • Demonstrated experience with the tools and resources available to conduct email and threat analysis
  • Strong technical and analytical expertise
  • Cross-functional understanding of email operations, security practices, and user experience
  • Familiarity with OSINT (Open Source Intelligence) techniques
  • Demonstrated ability to use approved AI/LLM tools responsibly, including prompt development, critical output validation, and documentation of analyst review in alignment with acceptable-use and governance requirements
  • Excellent written and verbal communication and presentation skills
  • Strong analytical, investigative, and problem-solving skills
  • Ability to organize and prioritize multiple ongoing tasks via efficient time management
  • Ability to work independently as well as in a team to achieve desired results
Job Responsibility
Job Responsibility
  • Actively monitor and research cyber threats, including phishing, that have a direct or indirect impact or threat on Citi, its workforce, or the Citi brand
  • Monitor a wide range of digital channels, including e-commerce platforms, social media, and app stores, for brand abuse
  • Develop and manage processes to track identified incidents to resolution
  • Initiate and manage takedown requests on various platforms for phishing sites and brand impersonation cases
  • Analyze email threats and manage associated controls
  • Identify automation opportunities for repetitive triage, enrichment, and documentation tasks
  • Use approved AI/LLM tools to assist with alert summarization, IOC extraction, and case narrative drafting while critically validating all outputs for accuracy, bias, and trustworthiness prior to operational use
  • Develop and manage weekly, monthly, quarterly, and annual metrics and reports on brand protection activities, trends
  • Triage information received from vendors and process it through defined internal workflows
  • Actively engage in liaison activities with internal stakeholders, intelligence communities, industry associations, and peer institutions
What we offer
What we offer
  • Medical, dental & vision coverage
  • 401(k)
  • Life, accident, and disability insurance
  • Wellness programs
  • Paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays
  • Fulltime
Read More
Arrow Right

Information Security Compliance Analyst

The focus of this Information Security Compliance Analyst role position is to su...
Location
Location
Vietnam , Hanoi
Salary
Salary:
Not provided
optimizely.com Logo
Optimizely
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience working in an Information Security role dealing specifically with governance, risk and compliance areas is preferred
  • Awareness of Information Security Compliance programs such as ISO27001, SOC2 & PCI
  • Ensure that information security control requirements are met from an operational perspective
  • The ability to identify risks, issues and vulnerabilities
  • The ability to work proactively, pragmatically and collaboratively in a fast-paced working environment, balancing multiple concurrent activities
  • Knowledge of responding to Customer related Information Security and Privacy due diligence requests
  • Experience working with contractual agreements within the Compliance area
  • Strong communication skills collaborating with internal teams, enjoy collaborating across departments
  • Calm presence under tight deadlines
  • Self-starter, consistent performer, professional, positive attitude
Job Responsibility
Job Responsibility
  • Help support operational and process driven components of our ISO27001/SOC2/PCI information security program
  • Help drive a program of continual service improvement to ensure ongoing maturity of the global information security program
  • Help support the commercial agreement process by reviewing and providing feedback from a Compliance perspective, escalating risks and concerns where necessary
  • Coordinate, contribute and complete Requests for Proposals (RFPs), Due Diligence Questionnaires (DDQs), Security Questionnaires as well as ad-hoc questionnaires/requests for prospects and existing customers
  • Help maintain and expand the information security and privacy customer response/knowledgebase platform to ensure all information is regularly reviewed, is up to date and relevant across the product portfolio and other related engagements
  • Develop a strong understanding of our Software Service business, and what the products offer
  • Ensure high quality customer facing content, contribute to complex projects individually as well as balancing priorities within the team
  • Identify, communicate and escalate risks associated with customer proposals as well as the information security/compliance program overall
  • Work closely with Compliance Team members, Subject Matter Experts and other stakeholders/internal customers across the business, where necessary
  • Develop knowledge of industry trends, competitive landscape to facilitate improved customer experience
Read More
Arrow Right

Associate SAP Security Analyst

Join Our Team as an Associate SAP Security Analyst, supporting the design, imple...
Location
Location
Australia , Brisbane
Salary
Salary:
Not provided
finxl.com.au Logo
FinXL
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in SAP modules - ERP, S/4HANA, BW, Fiori
  • Experience in IT security principles- authentication, authorisation, confidentiality, integrity
  • Experience in role-based access control - RBAC
  • Experience in SAP GRC -Governance, Risk, and Compliance tools
  • Experience in audit frameworks - SOX, ISO 27001
  • Experience in ticketing systems - ServiceNow, JIRA
  • Bachelor's degree in Information Technology, Computer Science, or related field
  • Experience supporting tickets queue triage and troubleshooting
  • Experience creating and maintaining SAP user roles and authorisations
  • Experience supporting user access management including provisioning, de-provisioning & periodic reviews
Job Responsibility
Job Responsibility
  • Supporting the design, implementation, and maintenance of SAP security solutions across various modules
Read More
Arrow Right

Information Security Compliance Analyst

At Optimizely, we're on a mission to help people unlock their digital potential....
Location
Location
Bangladesh , Dhaka
Salary
Salary:
Not provided
optimizely.com Logo
Optimizely
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience working in an Information Security role dealing specifically with governance, risk and compliance areas is preferred
  • Awareness of Information Security Compliance programs such as ISO27001, SOC2 & PCI
  • Ensure that information security control requirements are met from an operational perspective
  • The ability to identify risks, issues and vulnerabilities
  • The ability to work proactively, pragmatically and collaboratively in a fast-paced working environment, balancing multiple concurrent activities
  • Knowledge of responding to Customer related Information Security and Privacy due diligence requests
  • Experience working with contractual agreements within the Compliance area
  • Strong communication skills collaborating with internal teams, enjoy collaborating across departments
  • Calm presence under tight deadlines
  • Self-starter, consistent performer, professional, positive attitude
Job Responsibility
Job Responsibility
  • Help support operational and process driven components of our ISO27001/SOC2/PCI information security program
  • Help drive a program of continual service improvement to ensure ongoing maturity of the global information security program
  • Help support the commercial agreement process by reviewing and providing feedback from a Compliance perspective, escalating risks and concerns where necessary
  • Coordinate, contribute and complete Requests for Proposals (RFPs), Due Diligence Questionnaires (DDQs), Security Questionnaires as well as ad-hoc questionnaires/requests for prospects and existing customers
  • Help maintain and exand the information security and privacy customer response/knowledgebase platform to ensure all information is regularly reviewed, is up to date and relevant across the product portfolio and other related engagements
  • Develop a strong understanding of our Software Service business, and what the products offer
  • Ensure high quality customer facing content, contribute to complex projects individually as well as balancing priorities within the team
  • Identify, communicate and escalate risks associated with customer proposals as well as the information security/compliance program overall
  • Work closely with Compliance Team members, Subject Matter Experts and other stakeholders/internal customers across the business, where necessary
  • Develop knowledge of industry trends, competitive landscape to facilitate improved customer experience
What we offer
What we offer
  • Best-in-class compensation plans
  • Two annual festival bonuses
  • Recognition and rewards programs
  • Vacations days
  • Annual Work/Service Anniversary Leave
  • Parental leave (both maternity and paternity)
  • Health insurance
  • Reproductive benefits for both parents
  • Volunteering opportunities to make a difference
  • Chance to work alongside our incredible global team
Read More
Arrow Right