CrawlJobs Logo

Risk & Information Security Associate Analyst

Albourne

Location Icon

Location:
Cyprus, Nicosia

Category Icon
Category:
IT - Administration

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

We are looking for a highly organized, detail-oriented Risk & Information Security Associate Analyst to support the Chief Information Security Officer and Organizational Risk Manager, who holds a dual role overseeing both domains. This is a unique opportunity for someone interested in developing foundational expertise in both information security and organizational risk management. The successful candidate will be expected to operate with a high degree of autonomy, as they will be working in a different time zone from the Chief Information Security Officer and Organizational Risk Manager. Strong self-management, initiative, and sound decision-making are essential. There will also be occasions where the candidate will be required to adjust their working hours to ensure sufficient overlap with the manager for collaboration, reporting, and alignment on priorities.

Job Responsibility:

  • Monitor and report on the effectiveness of information security controls
  • Support the identification, tracking, and resolution of security incidents or weaknesses
  • Assist in maintaining security metrics and dashboards for internal reporting
  • Contribute to the assessment of operational, technology, and third-party risks
  • Assist in evaluating controls and proposing mitigation strategies aligned with risk appetite
  • Participate in internal audits and control testing, ensuring timely remediation of findings
  • Help maintain and enforce security and risk management policies and procedures
  • Support compliance with relevant data protection, privacy, and information security regulations
  • Coordinate periodic user access reviews and assist with awareness initiatives
  • Work across departments to gather risk-related information and support secure business operations
  • Liaise with IT, Legal, HR, and other teams to identify and escalate potential security or risk issues
  • Serve as a point of contact for basic security and risk queries
  • Operate autonomously, managing daily responsibilities with minimal supervision
  • Adapt work hours as necessary to ensure overlap with the CISO and Organizational Risk Manager, located in a different time zone
  • Proactively communicate status updates, issues, or concerns as they arise
  • Stay updated on emerging risks, cybersecurity trends, and evolving regulatory landscapes
  • Contribute to the ongoing refinement of the company’s information security and risk frameworks
  • Recommend and implement process improvements to enhance risk posture and operational efficiency

Requirements:

  • 2–3 years of professional experience
  • Excellent organizational skills with the ability to manage multiple workstreams and meet deadlines in a dynamic environment
  • Strong written and verbal communication skills, including the ability to prepare concise, well-structured documents and interact professionally across all levels of the business
  • Meticulous attention to detail, particularly in preparing audit materials, compliance documentation, and reviewing access controls
  • Proactive and self-motivated, able to work independently and across time zones without direct daily supervision
  • Comfortable handling sensitive and confidential information with discretion
  • Interest in technology, cybersecurity, and enterprise risk
  • Basic understanding of information security principles and frameworks (e.g., ISO 27001, NIST)
  • Ability to interpret and work with structured information (e.g., policies, risk registers, audit plans)
  • Capable of coordinating inputs from multiple stakeholders and compiling them into coherent outputs (e.g., committee papers, training summaries, client DDQs)
  • Personable and confident when engaging with colleagues from across the business
  • Curious and intellectually agile – open to learning new tools, frameworks, and ways of working
  • Ethical and accountable – operates with integrity and takes responsibility for meeting commitments
  • Values-driven – appreciates the importance of a strong risk and security culture in a regulated business environment

Nice to have:

  • Experience in risk management, information security, compliance, IT governance, or related fields
  • Previous exposure to information security or operational risk audits
  • Understanding of third-party risk management
  • Awareness of current trends in AI and its applications in cybersecurity or risk mitigation
  • Familiarity with legal or regulatory requirements affecting information security and enterprise risk management
  • Prior experience drafting or maintaining policies and procedures
  • Familiarity with ISO 27001 and similar frameworks
What we offer:
  • Support for professional qualifications (such as CFA and CAIA)
  • Career growth and tools for ongoing learning and development
  • Medical insurance for you and your dependents
  • Provident fund
  • Yearly bonus dependent upon performance and company growth
  • Opportunity for international travel (i.e., short periods of secondment to other Albourne offices)
  • 5 additional service recognition holidays in surplus to standard annual leave
  • Albourne Training Days (minimum of 40 hours per year)
  • Free office parking
  • A supportive, diverse, and multi-cultural work environment
  • The freedom to work independently, solve problems, and creatively complete tasks within deadlines
  • Opportunities for career progression, both horizontally and vertically, once you’ve mastered your current role
  • An open-plan office with kitchen facilities and a communal entertainment area
  • Fun social activities to foster team bonding
  • Charity Day—an annual opportunity to work on a cause you’re passionate about
  • Company-wide support for fitness, mental health, and wellness, with sessions available for employees to engage in these activities

Additional Information:

Job Posted:
December 17, 2025

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Risk & Information Security Associate Analyst

Senior Third-Party Security Risk Analyst

As a Senior Third-Party Security Risk Specialist at Ledger, you will play a vita...
Location
Location
France , Paris
Salary
Salary:
Not provided
https://www.ledger.com Logo
Ledger
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master degree in Information Security, Cybersecurity, or a related field
  • 5+ years of progressive experience in third-party risk management, with a strong background in audit, risk management, compliance, or a related control function within a complex organization
  • Proven project management skills with the ability to manage complex, cross-functional projects and maintain comprehensive documentation
  • In-depth knowledge of security frameworks and standards (e.g., ISO 27001, NIST Cybersecurity Framework) and experience in applying them to third-party risk management and regulatory requirements
  • Excellent analytical and problem-solving skills with a focus on identifying root causes and developing effective solutions
  • Strong communication and interpersonal skills, including the ability to influence and negotiate with vendors and stakeholders at all levels
Job Responsibility
Job Responsibility
  • Conduct comprehensive security assessments of third-party vendors, including reviewing their security policies, procedures, and controls
  • Proactively identify and evaluate potential security/privacy risks associated with a particular focus on those that could impact Ledger's reputation, financial stability, and customer trust
  • Develop and implement risk mitigation strategies to address identified vulnerabilities
  • Lead the collaboration with vendors to remediate security gaps and ensure compliance with Ledger's stringent security requirements
  • Establish and maintain a robust vendor security monitoring program, driving continuous improvement in vendor security posture and compliance
  • Develop, implement, and continuously improve Ledger's third-party security risk management program, including policies, standards, procedures, and tools
  • Prepare reports and presentations on vendor security risks and mitigation efforts to senior management, stakeholders, and the Comex
  • Participate in audits as part of the Privacy audit program according to the agreed annual audit plan
What we offer
What we offer
  • Equity: Employees are the foundation of our success, and we award stock options so you can share in that success as we grow
  • Flexibility: A hybrid work policy
  • Social: Annual company outing for Ledgerdary Days, plus frequent social events, snacks and drinks
  • Medical: Comprehensive health insurance policy offering extensive medical, dental and vision care coverage
  • Well-being: Personal development, coaching & fitness with our dedicated partners
  • Vacation: Five weeks of paid leave per year, in addition to national holidays and rest & relaxation (RTT) days
  • High tech: Access to high performance office equipment and gadgets
  • Transport: Ledger reimburses part of your preferred means of transportation
  • Discounts: Employee discount on all our products
  • Fulltime
Read More
Arrow Right

Senior Third-Party Security Risk Analyst

As a Senior Third-Party Security Risk Specialist at Ledger, you will contribute ...
Location
Location
France , Paris
Salary
Salary:
Not provided
https://www.ledger.com Logo
Ledger
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master degree in Information Security, Cybersecurity, or a related field
  • 5+ years of progressive experience in third-party risk management, with a strong background in audit, risk management, compliance, or a related control function within a complex organization
  • Proven project management skills with the ability to manage complex, cross-functional projects and maintain comprehensive documentation
  • In-depth knowledge of security frameworks and standards (e.g., ISO 27001, NIST Cybersecurity Framework) and experience in applying them to third-party risk management and regulatory requirements
  • Excellent analytical and problem-solving skills with a focus on identifying root causes and developing effective solutions
  • Strong communication and interpersonal skills, including the ability to influence and negotiate with vendors and stakeholders at all levels.
Job Responsibility
Job Responsibility
  • Conduct comprehensive security assessments of third-party vendors, including reviewing their security policies, procedures, and controls
  • Proactively identify and evaluate potential security/privacy risks associated with a particular focus on those that could impact Ledger's reputation, financial stability, and customer trust
  • Develop and implement risk mitigation strategies to address identified vulnerabilities
  • Lead the collaboration with vendors to remediate security gaps and ensure compliance with Ledger's stringent security requirements
  • Establish and maintain a robust vendor security monitoring program, driving continuous improvement in vendor security posture and compliance
  • Develop, implement, and continuously improve Ledger's third-party security risk management program, including policies, standards, procedures, and tools
  • Prepare reports and presentations on vendor security risks and mitigation efforts to senior management, stakeholders, and the Comex
  • Participate in audits as part of the Privacy audit program according to the agreed annual audit plan.
What we offer
What we offer
  • Equity: Employees are the foundation of our success, and we award stock options so you can share in that success as we grow
  • Flexibility: A hybrid work policy
  • Social: Annual company outing for Ledgerdary Days, plus frequent social events, snacks and drinks
  • Medical: Comprehensive health insurance policy offering extensive medical, dental and vision care coverage
  • Well-being: Personal development, coaching & fitness with our dedicated partners
  • Vacation: Five weeks of paid leave per year, in addition to national holidays and rest & relaxation (RTT) days
  • High tech: Access to high performance office equipment and gadgets
  • Transport: Ledger reimburses part of your preferred means of transportation
  • Discounts: Employee discount on all our products.
  • Fulltime
Read More
Arrow Right

Email Security Analyst

The Info Security Tech Sr Analyst is responsible for leading efforts to prevent,...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Technical and analytical expertise and experience (preferred 3+ years’ Information Technology/ Cybersecurity experience)
  • Understanding of and demonstrated experience with the tools and sources available to conduct email and threat analysis
  • Cross-functional understanding of email operations, security practices and the user experience
  • Ability to organize and appropriately prioritize multiple, ongoing tasks via efficient time management and forecasting
  • Project management skills a plus
  • Ability to work independently, as well as in team situations, to help internal and external customers achieve desired results
  • Strong written and verbal communication and presentation skills
Job Responsibility
Job Responsibility
  • Actively monitor and research cyber threats with a direct or indirect impact to the Citi brand
  • Analyze and provide oversight of analysis of email threats and controls
  • Develop and manage processes to track identified incidents to resolution
  • Develop metrics and reports as needed
  • Triage information received from vendors and process that information through previously defined internal workflows
  • Manage meetings with internal stakeholders to address open issues and identify process improvements
  • Actively engage in liaison activities with intelligence communities, industry associations, peer institutions, and information sharing communities
  • Apply developed communication and diplomacy skills to guide and influence decision makers
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients, and assets, by driving compliance with applicable laws, rules, and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing, and reporting control issues with transparency
  • Keep up to date with the ever-changing cyber security landscape to remain relevant and knowledgeable through internal and external certifications
  • Fulltime
Read More
Arrow Right

Security Analyst

As a Security Analyst, you will be a key player in our IT security team, focusin...
Location
Location
United States , Tallahassee
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Lead the technical execution of security-related projects, focusing on system hardening and network security
  • Engage in effective communication and collaboration with various teams to meet specific security standards
  • Utilize your expertise in firewalls, Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS), and encryption to ensure secure configurations
  • Conduct comprehensive vulnerability assessments and devise relevant remediation strategies
  • Manage security tools and provide support for incident response, ensuring the seamless integration of security platforms
  • Ensure strict adherence to Criminal Justice Information Services (CJIS) and State of Florida regulations
  • Work closely with Governance, Risk, and Compliance (GRC) teams to address audit gaps
  • Document and provide training on cybersecurity solutions and processes with a focus on CJIS and State regulations
  • Reengineer security processes for improved efficiency and compliance
  • Stay informed about emerging threats and technologies, providing support for cybersecurity issues
Job Responsibility
Job Responsibility
  • Lead the technical execution of security-related projects, focusing on system hardening and network security
  • Engage in effective communication and collaboration with various teams to meet specific security standards
  • Utilize your expertise in firewalls, Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS), and encryption to ensure secure configurations
  • Conduct comprehensive vulnerability assessments and devise relevant remediation strategies
  • Manage security tools and provide support for incident response, ensuring the seamless integration of security platforms
  • Ensure strict adherence to Criminal Justice Information Services (CJIS) and State of Florida regulations
  • Work closely with Governance, Risk, and Compliance (GRC) teams to address audit gaps
  • Document and provide training on cybersecurity solutions and processes with a focus on CJIS and State regulations
  • Reengineer security processes for improved efficiency and compliance
  • Stay informed about emerging threats and technologies, providing support for cybersecurity issues
What we offer
What we offer
  • medical, vision, dental, and life and disability insurance
  • eligible to enroll in our company 401(k) plan
  • Fulltime
Read More
Arrow Right
New

Operational Due Diligence Associate Analyst

We are looking for an ODD Associate Analyst to help analyze, review, and monitor...
Location
Location
United States , Stamford
Salary
Salary:
75000.00 - 85000.00 USD / Year
Albourne
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong academic background (Degree or equivalent qualification)
  • 1-2 years relevant prior work experience, with knowledge or experience of one or some of the following areas - fund operations, fund administration, prime brokerage, audit, legal, compliance, technology & information security
  • Possession of professional qualifications (e.g. CAIA, CFA, ACA) or interest in obtaining relevant professional qualifications
  • High level of writing proficiency
  • Experience of report writing
  • Systems literacy (Microsoft Excel, Word, PowerPoint, Outlook, Co-Pilot)
  • Proactive self-starter, proficient time management and multi-tasking
  • Professional demeanor and strong interpersonal skills
  • Attention to detail
  • Ability to travel as required
Job Responsibility
Job Responsibility
  • Assist with evaluating assigned alternative investment funds and managers across all asset classes
  • Conduct with fellow Due Diligence Analysts onsite interviews with fund managers to discuss operational risks, internal controls and information systems, as well as verifying existence of assets
  • Deploy skills and experience to contribute to these meetings and to prepare clear and concise written notes to summarise the findings
  • Review and interpret financial statements, offering documents, and other fund literature
  • Upon that review and interpretation, produce research deliverables for clients within the scheduled deadline
  • Conduct reference checks with service providers for completion of the relevant reports
  • Liaise with clients and fund managers with respect to ODD inquiries
  • Assist with producing detailed written reports with an analysis of operational risk and internal controls
  • Ensure client deliverables are prepared, reviewed, and delivered on a timely and accurate basis
  • Ongoing monitoring of assigned funds and updating written reports to reflect changes to the operational risk for those funds
What we offer
What we offer
  • Comprehensive Compensation and Benefits Package
  • Fully paid Medical and Dental PPO
  • Fully paid Basic Life and AD&D
  • 401k & FSA
  • Hybrid work schedule
  • Everyday Wellness, weekly yoga and fitness
  • Free Gym Membership near the office
  • 30 days paid time off each year including Vacation and Holidays
  • Fulltime
Read More
Arrow Right
New

Security Operations Analyst

Location
Location
India , Bengaluru
Salary
Salary:
Not provided
take2games.com Logo
Take-Two Interactive Software, Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years of experience in a Security Operations Center, incident response team, or cyber defense role
  • Hands-on experience with SIEM/SOAR platforms (e.g., Splunk, XSOAR and XSIAM) and endpoint detection solutions (e.g., CrowdStrike, SentinelOne)
  • Deep understanding of cybersecurity fundamentals, threat detection techniques, and attack frameworks such as MITRE ATT&CK
  • Comfortable analyzing logs and events from various systems including network devices, endpoints, cloud environments, and identity providers
  • Familiarity with scripting or automation (e.g., Python, PowerShell) to enhance investigation and response workflows is a plus
  • Experience with workflow and ticketing tools like ServiceNow or Jira for incident documentation and coordination
  • Strong written and verbal communication skills — able to clearly document findings, articulate risk, and support incident coordination across teams
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Security, or Cybersecurity Engineering are a plus
  • One or more relevant certifications such as: CompTIA: Network+, Security+, CySA+, PenTest+, Cloud+ and Cloud Security: AWS Security Specialty, Google Professional Cloud Security Engineer and Microsoft Azure Security Engineer Associate are plus
Job Responsibility
Job Responsibility
  • Perform real-time security event monitoring, triage, and analysis across multiple platforms, using SIEM and EDR tools
  • Analyze log and telemetry data from diverse sources (e.g., firewalls, endpoint protection, IDS/IPS, application logs) to detect and respond to potential threats
  • Investigate and respond to security incidents, performing root cause analysis and supporting containment, eradication, and recovery efforts across endpoints, servers, cloud, and network environments
  • Conduct proactive threat hunting using behavioral analytics, threat intelligence, and hypothesis-driven queries to detect stealthy or novel attack techniques
  • Support the SOC's daily operational cadence, including participating in shift handoffs, reviewing detection effectiveness, and maintaining situational awareness of the global threat landscape
  • Contribute to the development and refinement of incident response processes, detection rules, and SOC playbooks
  • Collaborate with threat intelligence, engineering, and infrastructure teams to develop detection use cases and improve overall SOC effectiveness
  • Help shape SOC dashboards, reports, and playbooks that enhance visibility and response across business units and geographies
What we offer
What we offer
  • Discretionary bonus
  • Provident fund contributions
  • 1+5 medical insurance + top up options and access to Practo online Doctor consultation App
  • Employee assistance program
  • 3X CTC Life Assurance
  • 3X CTC Personal accident insurance
  • childcare services
  • 20 days holiday + statutory holidays
  • Gym reimbursement up to INR1150 per month
  • wellbeing program with the chance to earn up to $93 per annum
Read More
Arrow Right

Business Risk Group Manager

Citigroup Global Markets Inc. seeks a Business Risk Group Manager for its Tampa,...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
December 16, 2025
Flip Icon
Requirements
Requirements
  • Bachelor’s degree, or foreign equivalent, in Cybersecurity, Information Security, or related field and 10 years of progressive, post-baccalaureate experience as a Business Risk Manager, Operational Risk Manager, Information Security Fraud Analyst, or related position involving business operation and compliance risk management with focus on third-party engagement and data security in the global financial services industry
  • Assessment of information securities systems, identification of gaps, and implementation and documentation of remedies and mitigation actions
  • Vendors monitoring for regulatory compliance and issues management
  • Comprehensive understanding of Regulatory compliance and industry standards including GDPR, DORA, CCPA and other global regulations
  • Knowledge of Information Security standards (SOC2, ISO 27001)
  • Reporting Tools: MS Excel, SharePoint, MS Teams, Visio, MS PowerPoint
  • At least 6 years of experience must include Contract and SLA reviews, Manager Control Assessment, and Evaluation of vendors and fraud risks posed by the products and services offered
Job Responsibility
Job Responsibility
  • Monitor and lead the creation of service level agreements (SLA) and contracting activities that involve Information Security (IS) to ensure compliance with relevant laws and regulations
  • Use the expertise in IS area to ensure all applicable control measures are implemented in business engagements
  • Identify potential IS risks during new engagement onboarding process and ensure appropriate stakeholders are aware and held accountable for those risks
  • Ensure contracts and SLAs entered with suppliers meet the organization's standards
  • Assist in assessment of new and amended contract and SLA clauses by reviewing applicable laws, regulations and internal measures for sensitive data protection
  • Provide a robust first line of defense against policy breach and minimize operational risks for Citi Global Markets business
  • Develop corrective action language for IS gaps and ensure risk closure meets Citi requirements or industry best practices
  • Monitor critical and high-risk third-party relationships and those third parties that have access to Citi’s confidential information
  • Identify third parties that have an elevated fraud risk associated with the product and services they provide and collaborate with appropriate stakeholders to remediate that risk
  • Support business stakeholders’ compliance with legal and regulatory requirements such as the General Data Protection Regulation (GDPR), Digital Operational Resilience Act (DORA), California Consumer Privacy Act (CCPA), and other global privacy regulations
What we offer
What we offer
  • medical
  • dental & vision coverage
  • 401(k)
  • life insurance
  • accident and disability insurance
  • wellness programs
  • paid time off packages including vacation, sick leave, and paid holidays
  • Fulltime
Read More
Arrow Right

Identity and Access Management Analyst

The Identity and Access Management Analyst is responsible for fulfilling access ...
Location
Location
Philippines , City of Taguig
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree holder and minimum of 4+ years of experience in an Information Security role or related field with service delivery and customer relationship management
  • Complex application or system knowledge
  • Interprets the principle of Information Security concepts and policies and ability to apply into day-to-day work
  • Demonstrate an understanding of the risk associated with cyber security and the controls set in place to manage risk in identity and access management
  • Proven use of discretion and sound judgment on handling of information with subject to sensitivity
  • Flexibility to work in various shift to provide on-call, holiday and/or weekend support on a periodic frequency
  • Proven capability to work within a team, seeks the input of others and greets change with optimism, curiosity and resilience, ability to manage multiple priorities and adjust to evolving work needs
  • Understand and relates own goals to Citi, business' and teams', create SMART goals and demonstrate accountability to achieve them
  • Consistently demonstrate clear and concise written and verbal communication in the English language as well as sensitive to audience diversity
  • Strong analytical skills and proven ability to use (Citi) Lean methodology to identify process improvements
Job Responsibility
Job Responsibility
  • Fulfill access requests within a variety of banking applications and infrastructure systems
  • Manage user roles and access privileges within compliance of set information security policies and standards
  • Support operations including weekends and public holidays on a rotational basis, as well as assigned on-call emergency support
  • Handle all kinds complex requests and issues independently by having a good understanding of security administration processes, practices, and policies
  • Lead resolution of severity issue, identify root cause and come up with corrective action plan to prevent recurrence while providing update to relevant parties
  • Represent IAM Service Delivery in compliance calls and walkthroughs with audit
  • provide related audit deliverables in timely manner and ability to analyze and make the right judgment over accuracy, completeness, soundness of information being provided
  • Creates, maintains and performs annual review of Process Control Manual documents associated with specific systems assigned
  • Ensure completion of Marketplace requests, troubleshooting incident issues, closure of compliance-related action items and housekeeping tasks are done within operational and controls thresholds at an individual and team level
  • Understand Continuity of Business and supports its application to IAM processes by maintaining resources like process control document up-to-date, ISA accesses, etc. within applications in scope of support
  • Fulltime
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.