Softcat logo

Information Security (GRC) Analyst

Hiring from
United Kingdom
Work type
Hybrid
Posted
Is this job info correct?
Show job description
Would you like to kick start your career in a supportive, collaborative and innovative company?

Do you enjoy working as part of an enthusiastic, passionate, and collaborative team?

Join our Internal Technology Team!

Softcat is an amazing success story and as part of our continued growth we are investing significantly more in a new technology strategy going forward. Softcat's internal Technology Team is undergoing an exciting transformation this evolution aims to provide greater opportunities for our people's professional development and prepare us to execute our more ambitious technology strategy effectively.

Success. The Softcat Way.

As one of the UK's leading IT infrastructure providers and a FTSE 250 listed company, we have built a reputation for excellence. Our strategy is simple – we believe that highly engaged employees are the key to building customer trust and loyalty over the years. This trust and loyalty, combined with our market leading growth and performance, enables us to invest in our technology and services capabilities.

We are looking for an Information Security GRC Analyst to join Softcat's Information Security team. The role will support your learning and career development while giving you practical experience across governance, risk, and compliance. Reporting to the Information Security Manager and working day to day with the Information Security GRC Lead, you will take ownership of defined operational activities, follow established processes and escalate complex or sensitive matters. You will help keep our security controls, records and evidence accurate, effective and audit-ready.

As the Information Security GRC Analyst you'll be responsible for:


  • Support information security governance, risk and compliance activities across the business.
  • Complete due diligence assessments on suppliers using agreed processes and maintain the associated records through to completion.
  • Respond to standard customer assurance questionnaires using approved information and evidence.
  • Maintain security policies, procedures, evidence libraries and compliance records.
  • Support internal audits, control testing and the tracking of corrective actions.
  • Update the Information Security Risk Register and follow up agreed actions.
  • Collect and validate information used in security metrics and reporting.
  • Support ISO 27001 and Cyber Essentials Plus (CE+) compliance activities, including audit preparation, evidence gathering, action tracking and maintaining audit readiness.


We'd love you to have:


  • Some relevant experience in information security, compliance, risk, audit, governance, supplier assurance or a related area.
  • Strong organisational skills, with the accuracy and attention to detail needed to maintain reliable records and evidence.
  • Good written and verbal communication skills.
  • Confident using documents and spreadsheets to maintain records, organise evidence and support reporting.
  • The ability to manage several tasks, follow agreed processes and meet deadlines.
  • A willingness to learn, ask questions and develop a career in information security GRC.


We also acknowledge that the confidence gap and imposter syndrome are a real thing and can get in the way of us meeting fantastic talent, so please don't hesitate to apply – we would love to hear from you!

Work in a way that works for you

We recognise that everyone is different and that the way in which people want to work and deliver at their best is different for everyone too. In this role, we can offer the following flexible working patterns:


  • Hybrid working – 2 days in the office and 3 days working from home
  • Working flexible hours - flexing the times you start and finish during the day
  • Flexibility around school pick up and drop offs


Working with us

Wherever you work, we want you to experience the freedom and autonomy to realise your potential. You will feel supported by a team that celebrates individuality, encourages different perspectives, and embraces every background.

Join us

To become part of the success story, please apply now.

If you have a disability or neurodiversity, we can provide support or adjustments that you may need throughout our recruitment process or any mitigating circumstance you wish for us to consider. Any information you share on your application will be treated in confidence. You can find out more about life at Softcat and our commitments to diversity and inclusion at jobs.softcat.com/jobs/our-culture/

Here at Softcat, we don't prohibit the use of AI (artificial intelligence) in our application process, as we understand how far it can go to creating a truly equitable candidate experience. That being said, as a culture-driven organisation, we believe that the genuine essence of each person is what truly matters, so we highly encourage you to be as authentically you as possible when submitting your application to showcase your true and whole self.

Similar jobs

Apply on LinkedIn