Senior Information Security Analyst We usually respond within three days Senior Information Security Analyst Location: Manchester City Centre Who We Are Join our team of passionate Zutonites and help transform the car finance experience with simplicity and integrity. Since our journey began in 2006, we’ve grown to a team of over 550 people — all driven by a shared purpose: to make buying a car transparent and hassle-free. We know how important cars are in people’s everyday lives — for work, family and freedom — and that’s why we’re proud to help hundreds of thousands of customers every year. From day one, we’ve been redefining what success looks like, creating something special at Zuto: a business that leaves a lasting, positive legacy. If you’re looking for an engineering environment where you can genuinely own problems, challenge existing approaches and help shape how we build technology, you’ll fit right in. We’re transforming our architecture and embracing AI-assisted development, giving our engineers the freedom and tools to move quickly, experiment and build better solutions. The Role As our Senior Information Security Analyst, you’ll play a key role in protecting Zuto’s technology, data and customers while helping us continue to mature our overall security posture. This is a blended technical security and governance role. One day you could be investigating an alert within our SIEM or responding to a security incident; the next, you could be assessing a supplier, supporting an ISO 27001 audit or discussing a control decision with senior stakeholders. You'll act as a senior point of reference for colleagues across the business, combining strong technical knowledge with a practical, risk-based approach to security. We’re looking for someone who can distinguish genuine risk from noise, make sound decisions and help us continuously improve rather than simply identify problems. What You'll be Doing Security Operations & Incident Response Managing day-to-day security alerts, requests and tickets through to resolution, ensuring SLAs are achieved. Acting as a senior responder for security incidents, supporting investigation, containment and resolution. Vulnerability & Threat Management Owning the end-to-end vulnerability management lifecycle, from scanning and validation through to prioritisation, remediation and reporting. Managing internal and external penetration testing and working with Engineering teams to resolve findings. Identity, Cloud & Technical Security Assuring Identity and Access Management controls including MFA, privileged access, RBAC and joiner/mover/leaver processes. Supporting periodic access reviews and recertification. Providing security input into cloud architecture, network segmentation, logging and encryption. AI & Emerging Talent Assessing the security implications of new and emerging technologies, including AI and machine-learning tools. Helping ensure appropriate data-handling safeguards and human oversight are built into AI adoption. What you'll need We’re looking for someone with genuine breadth across technical information security and governance, risk and compliance. You'll need: Substantial experience working within an Information or Cyber Security role. Strong hands-on technical capability across several areas such as: SIEM & log analysis Endpoint Detection & Response Vulnerability management AWS/cloud security Identity & Access Management Email & network security Practical experience taking a senior role in security incident investigation and response. Experience overseeing infrastructure and cloud vulnerability management programmes. Working knowledge of ISO 27001 and experience demonstrating control effectiveness. Nice to Have Experience within UK financial services, consumer credit, lending or another FCA-regulated environment. Knowledge of security frameworks such as NIST CSF, CIS Controls or NCSC CAF. Scripting or automation experience using tools such as PowerShell, Power Automate, JSON or query languages. Qualifications A degree in a computer-related subject or equivalent professional experience within cyber security would be beneficial. Why Join Zuto? At Zuto, we don’t just talk about supporting our people, we live it. Here’s what makes being a Zutonite so special: Financial Wellbeing Pension scheme, life assurance & income protection Free independent financial advice Lifestyle, restaurant & shopping discounts Cycle to work scheme Physical & Mental Wellbeing GP Anytime service for you and your family Health cash back plan & access to wellbeing apps Discounted gym memberships and free digital fitness classes Family Friendly Enhanced caregiver leave (primary & secondary) Flexible and shared parental leave Fertility and foster-friendly policies Culture & Perks Birthdays off and volunteer days Bring your dog to work and enjoy free in-office massages Regular social events from team nights out to hikes, to sports clubs and more Regular gifting and celebrations throughout the year Apply Today Be part of a certified B Corp that’s changing car finance for good and have fun while doing it. Zuto is committed to nurturing a progressive and inclusive culture and provides equal employment opportunities. No applicant or Zutonite is discriminated against based on age, disability, gender reassignment, marriage and civil partnership, pregnancy, race, religion or belief, sex, or sexual orientation. Department Technology Locations Manchester Head Office Remote status Hybrid Yearly salary 60,000 Employment type Full-time Manchester Head Office Workplace & culture We’re all about enjoying our journey as Zutonites. From company wide events to team nights out – awards evenings to our internal recognition scheme, we ensure our Zutonites are recognised for values driven and achievements.
Junior Information Security Analyst (GRC) - Engine by Starling
Starling
Information Security Analyst
FundApps
Lead Information Security Analyst, GRC
Cirrus Logic
Information Security Analyst - SecOps Detection
Starling
Group Information Security Risk Analyst
Arrow Global Group
Information Security Analyst - 15 month FTC
Cutover