IT Compliance Senior Analyst - Swindon

Posted 27 July 2021
Salary £50000 - £55000 per annum
LocationSwindon
Job type Permanent
ReferenceBBBH120505_1627467582
Contact NameJack Jobling

Job description

IT Compliance Senior Analyst - Swindon


Your role
The IT Compliance Senior Analyst is responsible for supporting internal and external audits, being the interface between auditors and technical teams, interacting with Information Security, Product Teams and other IT Infrastructure to assure that solutions implemented by IT are compliant with corporate policies, standards and regulations. The role is also responsible for monitoring remediation of audit findings up to completion

What you'll be doing
Key Responsibilities
* Monitor audit finding's remediation activities and keep track of escalations and/or risks related to IT Compliance. Thoroughly document compliance events and audit shortcomings.
* Support Compliance Managers on monitoring and reporting current state and trends of IT compliance, especially on PCI related engagements.
* Execute on day-to-day deliverables that support the ongoing compliance needs related to PCI and other standards.
* Liaise with the Information Security staff, System Administrators, Application Developers, Business Units and Internal Audit to identify compliance risks, ensure policies are consistently applied and provide support overall on IT Compliance related issues. Work with other staff and management to review, document and present security risks, remediation and mitigation's.
* Support and sometimes lead IT compliance projects (PCI, SOX and SOC being the most important).
* Support risk assessments initiatives as needed, help establish and promote policies, standards, and guidelines.
* Assist with the design, implementation and administration of IT Compliance solutions in a distributed systems environment.
* Support of corporate initiatives including security awareness, penetration testing, application security testing, vulnerability management and incident response.
Qualifications
* Degree in Computer Science, CIS, Business or equivalent work experience. At least 5 years of Audit Management experience; proven experience with PCI standard and IT Service Management tools (e.g. ServiceNow) is highly desirable.
* CISA or similar certification preferred.
* Must possess strong project management skills, with successful track in business environments with limited formal authority.
* Self-motivated professional, able to deliver goals with minimal supervision.
* Working knowledge of IT infrastructure, including, but not limited to operating systems, networking, storage, communication protocols, vulnerability management
* Solid understanding of IT Compliance and Privacy regulation (EU), risk management (e.g. PCI DSS, GDPR, ISO27001, Cyber Essentials, SOX ).
* Knowledge of Information Security tools is highly desirable.