Cyber Governance and Compliance Analyst

Purpose of the Role
An exciting remote-based opportunity has arisen for a Cyber Governance & Compliance Analyst to join our Technology team, reporting to the Chief Information Security Officer to ensure our cyber risk management and governance frameworks are effectively implemented and maintained. Youb will collaborate closely with the Cyber Governance, Education, and Awareness Analyst to develop and enhance our cyber risk posture.
What you will do
This is an overview and not an exhaustive list of responsibilities. Collaborating with your Line Manager, you will develop your own objectives but focus on all of the following and more:
- Support with maintaining information and Cyber Security governance artefacts (Policies, Business Standards, Cyber Metrics).
- Assist Operational Teams with processes and procedures, providing reviews, advice, and contributions to procedural documents.
- Support in developing, maintaining and updating Cyber Education and Awareness content.
- Conduct ad-hoc reviews and oversight of operational access management processes to ensure effectiveness.
- Effectively leverage the Everywhen risk framework to identify, analyse and manage cyber risk within the estate reflecting in-depth knowledge and experience.
- Manage and assist in completing cyber due-diligence requests for clients and internal stakeholders.
- Manage and assist in cyber security assessments for new mergers and acquisitions.
- Apply assurance processes to accurately identify and register cyber risks.
- Collaborate with the IT Governance function to identify significant areas of IT risk.
- Tracking, management and reporting of risk, control and deviation remediation activities.
- Update the risk register of information assets with risks associated with each asset.
- Maintain the risk register of exceptions, assess and record the risk associated with any exceptions.
Who we are looking for
This is an opportunity for an individual with experience in cybersecurity governance, risk manager or compliance roles in an IT setting ideally for an insurance provider/broker but at the very least in the financial services market. You will need to have:
- A degree in Cybersecurity, Information Technology, Information Systems, or a related field. Relevant qualifications such as CISA, CISSP or CISM would also be desirable.
- Cyber security experience within a large complex corporate regulated environment and familiarity with cybersecurity regulations and frameworks (e.g., NIST, CIS, GDPR) and their application.
- Strong understanding of cybersecurity principles, threats, and risk management practices.
- Proficiency in security tools and technologies.
- Knowledge of data protection and privacy laws relevant to the organisation.
We are seeking a someone with a passion and propensity for Information/Cyber Security who can work under pressure, prioritise and manage their own workload where deadlines can change, whilst doing so with a high level of autonomy, integrity and assertiveness. Excellent analytical and problem-solving skills are required together with strong communication skills across all mediums. You will need to demonstrate the ability to work collaboratively, build relationships with stakeholders at all levels, be proactive and manage multiple tasks in a fast paced environment.
In return you will be welcomed and supported by our Ardonagh family and be joining an organisation that cares about you as a person and your wellbeing. Some of the other benefits are:
- Holiday entitlement of 26 days plus bank holidays, increasing with length of service
- Opportunity to progress your career across the entire Ardonagh family
- Award-winning learning & development offering and support to obtain professional qualifications to enhance your knowledge and career prospects
- Pension scheme for when you feel it’s time to retire
- 24-hour Employee Assistance support for you and your family’s physical and mental wellbeing
- Corporate perks such as discounted gym memberships, cinema tickets, shopping, Eyecare vouchers, cycle to work and much more
- One day paid volunteering to give back to our communities
- Ardonagh Community Trust (ACT) - raising funds for charity with donation matching in your local community
- The Spotlight Awards, where we celebrate the best of the Ardonagh Group and all the bright talent across our business.
We offer genuine potential for both personal and professional development, come and be part of our story and help us shape our future. So, what are you waiting for? Apply today and one of our team will be in touch.
#LI-Remote
#LI-NT1
#AIB
Everywhen is an equal opportunities employer, with a growing and thriving diversity, equity and inclusion strategy; we are committed to a working environment that is free from discrimination, is inclusive, and empowers our people to bring their whole self to work and reach their full potential.
If your application is successful, we will conduct relevant employment checks prior to you commencing employment with us. These will include verifying your recent employment, address, credit history and a standard criminal record check.
Please note: We may close a vacancy prior to the publish end date if the required quality or number of applications has been received.
Note to recruiters and employment agencies: We will not pay for unsolicited CVs from recruiters and employment agencies unless we have a signed agreement and have requested assistance, in writing, for a specific opening.
- Department
- Information Technology
- Role
- Cyber & Information Security
- Locations
- Homebased
- Remote status
- Fully Remote
- Employment Types
- Permanent, Full Time
- Salary
- Dependent on Experience
- Job Reference
- 342927
About Everywhen
Our journey is a story of continuous growth and evolution.
As the UK-based broking and advisory heart of the Ardonagh Group, Everywhen unites a nationwide network with a strong local touch — powered by over 4,500 talented individuals across more than 140 hubs.