Engineer the Quantum RevolutionYour expertise can help us shape the future of quantum computing at Oxford Ionics.

View Open Roles

IT Security Analyst

Harmonyfire
Yeovil
2 weeks ago
Create job alert

IT Security Analyst
Location: Yeovil

Since 2017, Harmony Fire has become the 72nd fastest-growing company in Europe, but we’re aiming even higher.
It is our mission to continue that growth with the knowledge that the more we grow the greater the impact we can have — reaching more people, increasing our social impact and creating more progression opportunities for our team.

We are passionate about making a difference and obsessed with quality. Our goal is to build a world where every resident can sleep safely at night, knowing their home is 100% compliant.
By delivering the highest-quality service, championing our values and going above and beyond to succeed, we can achieve our growth mission and make the UK safer, one home at a time.

We do this through our unique methodology:

  • Think – Creating smarter solutions for a safer, more risk-averse future
  • Protect – Applying knowledge to build safer environments
  • Sustain – Building long-term partnerships based on trust and value

We’re now hiring an IT Security Analyst to lead our cyber and data protection efforts across the Harmony Fire Group.
This is a hands-on, high-impact role where you’ll design and manage a full Information Security Management System (ISMS), drive compliance initiatives, and ensure that security is embedded across all systems, processes, and platforms.

Key aspects of the role

  • Design and deploy a full ISMS in line with ISO 27001
  • Lead Cyber Essentials / Cyber Essentials Plus implementation and certification
  • Build security policies, procedures, risk assessments, and documentation from scratch
  • Align company-wide security practices to recognised sector standards
  • Act as the official Data Protection Officer (DPO) for the company
  • Ensure compliance with UK GDPR and the Data Protection Act 2018
  • Manage Data Processing Agreements, DPIAs, privacy notices, and data mapping
  • Handle DSARs and data breach reporting procedures
  • Define and manage penetration testing schedules and remediation processes
  • Select and implement core security tools (e.g. MFA, endpoint protection, email filtering, vulnerability scanning)
  • Establish and manage a security incident response plan
  • Embed security into the SDLC / DevSecOps process with product and engineering teams
  • Deliver staff security training and phishing simulations
  • Maintain documentation for audits, customer reviews, and stakeholder reporting
  • Develop and maintain DRP and BCP in line with ISO 27001
  • Regularly test recovery procedures and ensure RTOs and RPOs are met
  • Work with IT and infrastructure teams to implement, monitor and test failover/recovery plans

Key requirements

  • Experience implementing ISO 27001 and managing an ISMS
  • Strong working knowledge of GDPR and data protection legislation
  • Experience as a DPO or in a privacy/compliance role
  • Demonstrated success with Cyber Essentials / Cyber Essentials Plus
  • Experience commissioning and managing penetration testing
  • Solid foundation in cybersecurity tooling, standards, and cloud infrastructure
  • Excellent written and verbal communication skills
  • Experience with securing SaaS environments and cloud platforms (Azure, AWS, M365)
  • Certifications such as ISO 27001 Lead Implementer, GDPR Practitioner, Cyber Essentials Practitioner, CompTIA Security+ or equivalent

What we look for in our people

  • Athlete’s Grit – You push through challenges and never give up
  • Captain’s Duty – You take responsibility and lead by example
  • Fun-Loving Heart – You bring energy, care and positivity to your work

Why work for Harmony Fire

  • A collaborative and supportive environment in which you can grow
  • A Personal Development Plan tailored to your career
  • Mentoring, training and knowledge-sharing across the team
  • Spacious modern workspaces with great facilities

Benefits

  • Unlimited holiday
  • Performance bonus (up to 50% of annual salary)
  • Enhanced maternity and paternity policies
  • Lunch, snacks, fresh fruit & Takeaway Fridays
  • Cycle to work scheme
  • Private Medical
  • Reward and Recognition trips (including European city breaks)
  • Team social budget and two major company events each year
  • Auto-enrolment pension scheme

Harmony Fire is an equal opportunity employer. We value diversity and are committed to building a team that reflects a variety of backgrounds, perspectives and skills.


#J-18808-Ljbffr

Related Jobs

View all jobs

IT Security Analyst

IT Security Analyst

IT Security Analyst

IT Security Analyst

IT Security Analyst

IT Security Analyst

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Pre-Employment Checks for Cyber Security Jobs: DBS, References & Right-to-Work and more Explained

The cyber security sector in the UK stands at the forefront of protecting national infrastructure, business operations, and personal data from increasingly sophisticated cyber threats. As organisations across all sectors recognise cyber security as a critical business function, employers are implementing the most rigorous pre-employment screening processes in the technology industry to ensure they recruit professionals capable of defending against advanced persistent threats and maintaining the highest standards of security and trustworthiness. Whether you're a penetration tester, security analyst, incident response specialist, or chief information security officer, understanding the comprehensive vetting requirements is essential for successfully advancing your career in this security-critical field. This detailed guide explores the extensive background checks and screening processes you'll encounter when applying for cyber security positions in the UK, from fundamental eligibility verification to the most stringent security clearance requirements and specialised threat intelligence assessments.

Why Now Is the Perfect Time to Launch Your Career in Cyber Security: The UK's Digital Defence Revolution

The United Kingdom faces an unprecedented cyber security challenge that presents an extraordinary career opportunity. With cyber attacks increasing by 300% year-on-year and the average cost of a data breach reaching £4.24 million, Britain urgently needs skilled cyber security professionals to defend its digital infrastructure, protect citizens' data, and maintain national security in an increasingly connected world. If you've been considering a career change or seeking to future-proof your professional trajectory, cyber security represents one of the most secure, well-compensated, and socially impactful career choices available. The convergence of escalating threats, skills shortage, government investment, and regulatory requirements has created a perfect storm of opportunity that shows no signs of abating.

Automate Your Cyber Security Jobs Search: Using ChatGPT, RSS & Alerts to Save Hours Each Week

Cyber roles drop across consultancies, MSSPs, hyperscalers, banks, gov & start-ups every day—often buried in ATS portals or duplicated across boards. The fix is simple: put discovery on autopilot with keyword-rich alerts, RSS feeds & a reusable ChatGPT workflow that triages listings, ranks fit, & tailors your CV in minutes. This copy-paste playbook is built for www.cybersecurityjobs.tech readers. It’s UK-centric, practical, & designed to save you hours each week. What You’ll Have Working In 30 Minutes A role & keyword map spanning SecOps/Detection, DFIR, AppSec, Cloud Security, GRC, Red Team, Threat Intel, IAM/PAM, OT/ICS & Vulnerability Management. Shareable Boolean search strings for Google & job boards to cut noise fast. Always-on alerts & RSS feeds delivering fresh roles to your inbox/reader. A ChatGPT “Cyber Job Scout” prompt that deduplicates, scores fit & outputs tailored actions. A simple pipeline tracker so deadlines & follow-ups never slip.