This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Whitehall Resources require a Security Business Analyst to work with a key client on a 3-month initial contract. We are seeking an experienced Security Business Analyst to join the Enterprise Security function as part of the Security Transformation and Performance team. The Security Transformation and Performance team leads the security transformation portfolio, providing overarching visibility, performance insight, and structure across planning, prioritisation, and delivery, and supporting leadership engagement across governance, risk, and compliance forums. Within this context, the Security Business Analyst will play a key role in enabling clarity, consistency, and focus across security initiatives, helping ensure the organisation remains aligned to the highest-value work and that leadership decisions are supported by robust analysis and insight.
Job Responsibility:
Deliver high-quality business analysis support across ES initiatives
Engage with senior security and business stakeholders to elicit, analyse, and document business, functional, and non-functional requirements
Partner with Security Project Managers, taking ownership of analytical clarity across initiatives while supporting delivery planning and execution. Responsibilities include shaping initiatives, clarifying scope, and refining user stories, acceptance criteria, and supporting documentation to enable effective team delivery
Translate security strategy, risk drivers, compliance obligations, and performance objectives into structured analysis artefacts
Facilitate in-person workshops and working sessions to drive shared understanding of objectives, dependencies, risks, and outcomes
Collaborate with enterprise and security architects, technical leads, and delivery teams to support roadmap development and solution design
Support improved portfolio visibility and performance management by ensuring initiatives are consistently represented, clearly scoped, and traceable to strategic priorities
Contribute analysis and insight that supports leadership reporting, governance forums, and decision-making
Act as a trusted analytical partner through clear communication, sound judgement, and pragmatic problem-solving
Requirements:
Proven experience working as a Business Analyst on cybersecurity, information security, or technology risk initiatives
Strong analytical skills with the ability to decompose complex security and technology challenges into clear, actionable requirements
Demonstrable experience in: Requirements elicitation, analysis, and documentation
Definition and refinement of user stories, use cases, and acceptance criteria
Process mapping, gap analysis, and current- to target-state definition
Stakeholder engagement across technical and non-technical audiences, including senior stakeholders
Ability to structure and prioritise work independently across multiple concurrent initiatives
Comfortable operating at pace in a fast-evolving environment, quickly establishing credibility and delivering across multiple concurrent initiatives with a strong focus on risk, compliance, and assurance
Nice to have:
Hands-on experience using Jira and Confluence to manage requirements and support delivery teams
Experience facilitating in-person workshops and presenting analysis to senior stakeholders
Familiarity with recognised security frameworks and standards (e.g. ISO 27001, NIST, CIS Controls)
Experience working as part of a globally distributed organisation