Information Security GRC Analyst

Hove, United Kingdom

LegalAndGeneral

Legal & General are a leading UK financial services provider, offering life insurance, pensions, retirement and investment services. Get a quote today.

View all jobs at LegalAndGeneral

Apply now Apply later

Company Description

Securing pensions over the long term can be a challenge for many businesses. Our ambition at Legal & General Retirement Institutional (LGRI) is to help companies and pension scheme trustees honour their defined benefit pension promises to their employees. We’re helping companies settle their pension liabilities so they can focus on growing their businesses, as well as helping to support their members’ financial security in retirement. And we’re investing for the long term to back our pension promises. In the last 30 years we’ve written more UK business than any other insurer, and we currently look after more than half a million pension policyholders. We're the UK’s longest-serving active bulk annuity provider, and a market-leading, multi-award-winning business.   

Job Description

We have a fantastic opportunity for an Information Security GRC Analyst to join us in Hove on a 12 month fixed-term contract!

You'll support the Head of Information Security and Information Security Manager in working in a supportive team to provide oversight of all Information and Cyber Security Governance, Risk and Compliance activities and issues for the Legal & General Retirements Institutional (LGRI) global pension risk transfer (PRT) business and Business as Usual (BAU) tasks.

If you have a passion for promoting InfoSec awareness and GRC standards, then this could be the ideal opportunity for you!

    What you'll be doing:

    • Understanding security control requirements, as defined in Legal & General’s security policies, standards and IT control framework, and translating them into architecture patterns and solution designs to help advise Project Managers and Developers across the business
    • Producing monthly reports to executive and senior management boards detailing the overall security posture and management of Information Security within the division.
    • Leading the LGRI Information Security awareness campaigns, generating both broad and focused individual and group targeted information and training campaigns. Working with Group Technology Security to ensure an overall narrative, analysing results and feedback and recommending changes to future risk, strategy, and policies to improve LGRI’s overall security maturity and posture
    • Assisting in the evaluation of third-party suppliers' security due diligence questionnaires and assisting business partner contracts and security questionnaires during tender and bid processes
    • Managing and owning the production of periodic metrics and control assurances, recording evidence provided and completing control frameworks

    Qualifications

    Who we're looking for:

    • A good understanding of general security practices such as encryption, IAM, security information and event management etc. and supporting technologies
    • Prior experience in delivering highly technical and innovative security engineering / design products
    • You'll also enjoy collaborating with a variety of colleagues at different seniority levels
    • Experience with report writing, creating metrics, or risk management would be great
    • If you have an analytical mindset with an enthusiasm for Information Security then we want to hear from you!

    Whatever your role, we reward performance and behaviour with a package that looks after all the things that are important to you. Here are some of the benefits we offer: 

    • The opportunity to participate in our annual, performance-related bonus plan and valuable share schemes  
    • Generous pension contribution  
    • Life assurance   
    • Private medical insurance (permanent employees only) 
    • At least 25 days holiday, plus public holidays, 26 days after 2 years’ service. There’s also the option to buy and sell holiday 
    • Competitive family leave 
    • Participate in our electric car scheme, which offers employees the option to hire a brand-new electric car through tax efficient salary sacrifice 
    • There are the many discounts we offer – both for our own products and at a range of high street stores and online   
    • In 2023, some of our workspaces were redesigned. Our offices are great spaces to connect and collaborate and have your wellbeing at the heart 

    Additional Information

    Legal & General is a leading financial services group and major global investor, named Britain’s Most Admired Company in 2023, for the second year running. Rated top in our sector and top for inspirational leadership, we have a strong heritage and an exciting future.

    We aim to build a better society for the long term by investing our customers’ money in things that make life better for everyone.

    If you join us, you’ll be part of a welcoming culture, with opportunities to collaborate with people of diverse backgrounds, views and experiences. Guided by leaders with integrity who care about your future and wellbeing. Empowered through initiatives which support people to develop their careers and excel.

    We strive to be open, mindful and inclusive, so are always willing to discussing flexible working arrangements and reasonable accommodations for candidates with specific needs.

    If you’re open to find out more, we'd love to hear from you.

    Apply now Apply later
    • Share this job via
    • or

    * Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

    Job stats:  6  2  0

    Tags: Compliance Encryption Governance IAM Risk management Strategy

    Perks/benefits: Competitive pay Flex hours Health care Medical leave Salary bonus

    Region: Europe
    Country: United Kingdom

    More jobs like this

    Explore more InfoSec / Cybersecurity career opportunities

    Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.