Information Security Analyst
You'll focus on cyber governance, reporting, assurance, risk monitoring, risk mitigation, audit and cyber education of our people across the organisation.
We’re Pentland Brands: a global family business behind some of the world’s most iconic active and lifestyle brands. We bring integrity, energy and ambition to our work, setting high standards and striving to deliver great outcomes without ego.
With over 1,500 team members worldwide, we’re proud of our diverse, inclusive culture where everyone is encouraged to speak up, challenge thinking, create breakthroughs and collaborate openly. Our people are what set us apart, and we’re committed to creating an environment where everyone can thrive.
Reports to: Information Security Manager
Location: Farringdon, London
Hours: 36.5 hours per week, Monday to Friday (4.30pm finish on a Friday)
The InfoSec Analyst Mission:
The role will play a critical part in our global Cybersecurity team, and will be focused on cyber governance, reporting, assurance, risk monitoring, risk mitigation, audit and cyber education of our people across the organisation. This is a global role based in Farringdon.
How you'll drive success:
Information Security Management System (ISMS)
Support Cyber teams in delivering effective governance and assurance across the global organisation.
Evaluate security controls and practices in place, recommending improvements and ensure compliance to relevant standards and regulations.
Maintain accurate documentation of security controls, policies and procedures
Collaborate with IT and SecOps / SOC teams to enhance compliance.
Awareness and Training
Assist with the delivery of cybersecurity awareness initiatives, including foundational training, awareness workshops, newsletters, phishing simulations and other communications to foster a positive security culture across the organisation.
Third-Party/Vendor Risks Management
Assist in assessing and managing third-party risks to ensure vendors meet Pentland's cyber due diligence requirements.
Compliance and Audit
Support compliance activities, including assistance with internal and external audit assessments.
Cyber Risk Management
Support the identification, prioritisation and communication of cybersecurity risks to ensure effective ownership and management.
Conduct regular risk assessments (e.g., DPIA, maturity gaps) to address changes in the business environment or threat landscape.
What you'll need to thrive:
Proven experience in information security compliance roles.
Strong communication skills with the ability to convey technical concepts in plain language to diverse audiences.
Great written ‘tone of voice’, articulating sometimes dry subjects in a relatable and accessible manner.
The role is customer facing and will need to run awareness workshops, so an outgoing and confident demeanor is required.
Familiarity with information security frameworks such as ISO 27001, NIST CSF, CIS Critical Security Controls and other relevant technical control frameworks.
Ideally, the candidate should possess or be working towards one of the following certifications: CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), CGRC (Certified in Governance, Risk and Compliance), CRISC (Certified in Risk and Information Systems Control), CGEIT (Certified in the Governance of Enterprise IT), GRCP (GRC Professional Certification), or any other GRC-related certifications.
Alongside a competitive salary and discretionary bonus, we offer a comprehensive benefits package designed to support your wellbeing, flexibility, and life outside work. This includes generous holiday allowance with the option to buy more, hybrid and flexible working, enhanced family leave, pension and financial protection, wellbeing support, travel schemes, and generous discounts across Pentland Brands and selected retail partners. You can find full details of our benefits and perks on our UK Benefits page.
The Interview Process
We want our interview process to feel clear, straightforward, and supportive. If your experience and expectations look like a strong match for the role, here’s what you can expect next:
Talent Team Intro Call - A 30-minute video call with our Talent Team to get to know each other, talk through the role and your experience, and answer any questions you have.
Experience Interview - A more in-depth interview (usually online) with the hiring manager to explore your skills, experience and approach, and how these align with the role, our principles, and our ways of working.
Final Interview - A final in-person interview at our office, focused on deeper discussion and practical application, giving you the chance to meet more of the team and see Pentland Brands in action.
- Department
- Global IT & Security
- Locations
- Farringdon, London
- Remote status
- Hybrid
- Employment type
- Full-time