National AI Awards 2025Discover AI's trailblazers! Join us to celebrate innovation and nominate industry leaders.

Nominate & Attend

Information Security Analyst

Origo
Edinburgh
2 weeks ago
Create job alert

About Origo


We are a leading FinTech company based in Edinburgh, dedicated to improving the operational efficiency of the UK’s financial services industry.


Established in 1989, we work collaboratively with financial services companies to develop solutions and services to transform operational efficiencies for all market participants, ultimately improving financial outcomes for the consumer.


We also work with Government and other industry bodies to continually deliver and maintain sustainable, cost-effective fintech services – including pensions dashboard. All our solutions enable financial organisations to save time, money and resources, enabling exceptional customer outcomes.


Our team of experts have extensive knowledge and experience in the financial services sector and are passionate about delivering solutions that make a difference.


The Role


We are seeking an Information Security & Business Continuity Analyst to join our team. This role is crucial in ensuring the security and integrity of our information systems and data. You will be responsible for implementing and maintaining security measures to protect our organisation's assets from cyber threats and ensuring compliance with industry standards.


Key Responsibilities


  • Assist in the planning and implementation of security controls and testing to ISO27001 standards, including developing and enforcing security policies and best practices to ensure compliance.
  • Perform business impact analyses (BIA) across key technology processes, systems and facilities and identify any gaps that may exist in critical information gathered and recorded.
  • Support the IS Manager in Disaster Recovery (DR), and Business Continuity (BC) planning activity, ensuring that alternate facilities are provisioned and ready in the event of a disaster.
  • Threat Management – assist with threat assessment and work with business units in articulating impact and mitigations to reduce attack surface.
  • Plan, schedule, conduct and report on systems security audits, ensuring any corrective/preventive actions identified are tracked to a satisfactory conclusion.
  • Document and report enterprise risk and compliance issues according to required timelines.
  • Assist with the management, planning & preparation of third-party external penetration testing.
  • Assist in preparation and review of corrective action plans associated with penetration test/vulnerability management findings.
  • Perform internal penetration testing to assess the security of web applications and infrastructure.
  • Provide support and guidance to staff undertaking security awareness training. Track staff completion of training modules and manage license levels.
  • Effectively respond to security incidents.


Essential knowledge, skills and experience


  • Demonstrable experience across multiple cyber security domains including risk management, compliance, vulnerability management, and incident management.
  • Must have a good understanding of Information Security methodologies, standards and technologies, including ISO27001.
  • Previous experience working in an Information Security, Business Continuity or Enterprise Risk role.
  • Good communication skills with the ability to multi-task and prioritise workloads.
  • Knowledge of IT with an understanding of system architecture inter-dependencies, with the ability to communicate effectively with IT personnel.
  • Strong documentation, analytical and presentation skills.
  • Ability to work on own initiative.
  • Applicants must have the Right to Work in the UK.


Desirable knowledge, skills and experience


  • Qualifications such as CompTIA Security+, CEH or ISO27001 Lead Implementer.
  • Experience of senior management engagement and relationship management.
  • Experience in dealing with Information Security incidents.
  • Experience conducting penetration tests and working with vulnerability management tools.



Benefits


This role offers a fantastic package. The salary on offer will be competitive, commensurate with your skills and experience. On top of this there is a generous benefits package, which includes:


  • Annual performance related bonus
  • 11% non-contributory pension
  • Excellent holiday entitlement
  • Critical illness cover
  • Private medical insurance
  • Group life cover (4 x annual salary)
  • A very useful flexible benefits package which allows you to choose your preferred options from a selection including additional holidays, bicycle leasing scheme, golf/sports club membership, travel passes, etc.


Origo is a Disability Confident Employer


We believe that a diverse workforce brings unique perspectives and ideas. We welcome applications from candidates of all backgrounds.


Applicants must have the Right to Work in the UK.

Related Jobs

View all jobs

Information Security Analyst

Information Security Analyst

Information Security Analyst (London)

Information Security Analyst (University placement)

Senior Information Security Analyst, SOC (Manchester)

Senior Information Security Analyst

National AI Awards 2025

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

How to Present Cyber Security Solutions to Non-Technical Audiences: A Public Speaking Guide for Job Seekers

Cyber security is no longer just an IT issue—it’s a board-level priority. Whether you’re applying for a role in penetration testing, security operations, risk management, or compliance, your ability to clearly explain cyber threats and solutions to non-technical stakeholders is vital. This guide will help cyber security job seekers develop one of the most in-demand soft skills in the industry: public speaking. You’ll learn how to simplify complex concepts, structure effective presentations, use storytelling and analogies, and handle common stakeholder questions with confidence.

Cyber Security Jobs Employer Hotlist 2025: 50 UK Companies Actively Hiring Right Now

Bookmark this guide—refreshed every quarter—so you always know who’s really expanding their cyber security teams. Ransomware payouts broke records in 2024, the UK’s new Cyber Security Bill imposed mandatory breach disclosure, and the National Cyber Force’s move to Samlesbury has super‑charged the northern skills market. Result? Demand for security architects, SOC analysts, penetration testers, cloud‑security engineers, threat hunters & GRC specialists is at an all‑time high in 2025. Below you’ll find 50 organisations that have posted UK‑based cyber security vacancies or announced head‑count growth during the past eight weeks. They’re organised into five quick‑scan categories. For every employer you’ll see: Main UK hub Example live or recent vacancy Why it’s worth a look (tech stack, culture, mission) Search any company on CyberSecurityJobs.tech to view current ads, or set a free alert so fresh openings land straight in your inbox.

Return-to-Work Pathways: Relaunch Your Cyber Security Career with Returnships, Flexible & Hybrid Roles

Re-entering the workforce after a career break can feel especially challenging in a fast-moving field like cyber security. Whether you stepped away for parenting, caregiving or another life chapter, the UK’s cyber security sector now offers a range of return-to-work pathways—from structured returnships to flexible and hybrid roles. These programmes value the transferable skills and resilience you’ve developed during your break, pairing you with mentorship, upskilling opportunities and supportive networks to ease your transition back into cyber security. In this article, tailored for parents and carers, you’ll discover how to: Understand the growing demand for cyber security talent in the UK Translate your organisational, communication and problem-solving skills into cyber security roles Tackle common re-entry challenges with practical solutions Refresh your technical knowledge through targeted learning Access returnship and re-entry programmes specific to cyber security Find roles that accommodate family commitments—whether hybrid, flexible or full-time Balance your career relaunch with caring responsibilities Master applications, interviews and networking in cyber security Draw inspiration from real returner success stories Whether you aim to return as an analyst, penetration tester, security engineer or compliance specialist, this guide will equip you with the steps and resources to reignite your cyber security career.