Cyber Security Analyst
Job description
About Baringa
Baringa is a global consulting firm that partners with leaders to drive change and create value. With deep industry expertise, and enabled by advanced technology, the firm helps clients to deliver with greater confidence and certainty. With over 2,000 people across the UK, Europe, North America, Asia and Australia, the firm combines global insight with local understanding.
The firm works across energy and resources, financial services, government and public sector, consumer products and retail, pharmaceuticals and life sciences, manufacturing, and technology, media and telecoms, with capabilities spanning strategy, transformation and operational excellence - all powered by advanced technology, data, AI and digital innovation.
Clients value Baringa's collaborative approach and the way its teams integrate seamlessly - all working with a shared understanding of what matters most. The firm is known for its kind, curious experts who listen closely and care deeply about client success as they help clients transform energy markets, modernise financial platforms, expand telecoms and digital networks through advanced data analytics, enable digital services in government, and unlock growth in consumer sectors.
Certified as a *Great Place to Work* around the world, Baringa has been recognised by the *Financial Times* in 22 categories of its UK Leading Management Consultants rankings, and by *Forbes* for four consecutive years as one of the World's Best Management Consulting Firms.
About the role
Baringa is seeking a Cyber Security Analyst who will own the end-to-end management of information security governance, risk, and compliance activities across the firm. You will lead the interpretation and application of complex security frameworks, regulations, and standards to guide the business in meeting its strategic objectives. This role requires you to develop a complete understanding of Baringa's technology and information systems to enable informed decision-making and robust security outcomes. You will own the response to Requests for Proposals and audits, driving security due diligence and third-party assurance activities with precision and thoroughness. The successful candidate will actively identify, articulate, and mitigate current and emerging security threats and cyber risks to the organization. You will also lead the design, delivery, and maintenance of security awareness programs to foster a pervasive cyber-conscious culture across the company. This position is pivotal in aligning the organizational security strategy and infrastructure with the broader business and information technology strategy. Ultimately, you will ensure seamless management of company compliance with information security policies, standards, contractual obligations, and guidance.
What you'll do
Lead a complete understanding of Baringa's technology landscape and information systems to underpin security governance.
Own the response to Requests for Proposals and audits, including supplier security due diligence and third-party audit and assurance activities.
Identify, analyze, and communicate current and emerging security threats and cyber risks to relevant stakeholders.
Lead a program of awareness-raising and training to deliver compliance and foster a cyber-conscious culture across the entire company.
Actively define, implement, and maintain corporate security policies, standards, and procedures to ensure operational excellence.
Align the organizational security strategy and infrastructure with the overall business and information technology strategy.
Manage company compliance with information security policies, standards, contractual obligations, and guidance through business managers and champions.
Lead the production of technical security Management Information (MI) in support of governance and vulnerability management engagements.
Lead client engagement for security-related queries, ensuring clear communication and effective issue resolution.
Provide subject matter expertise to support the definition, implementation, and maintenance of robust security controls.
Drive the development and maintenance of security documentation, including risk assessments, security frameworks, and policy libraries.
Contribute to the enhancement of security processes, tools, and technologies to improve the overall security posture of the organization.
Support the identification and assessment of security requirements for new and existing systems and initiatives.
Champion the adoption of security best practices and standards across all teams to ensure consistent and effective implementation.
Requirements
Demonstrate a strong understanding of information security management principles, practices, and frameworks.
Possess excellent analytical and problem-solving skills to assess complex security issues and develop effective solutions.
Show proven ability to communicate effectively with stakeholders at all levels, both technically and non-technically.
Exhibit strong project management skills, including the ability to manage multiple priorities and deadlines in a fast-paced environment.
Bring experience in managing security compliance, risks, and controls within a regulated environment.
Hold a solid understanding of security technologies, including but not limited to firewalls, intrusion detection systems, and encryption.
Demonstrate knowledge of security frameworks such as ISO 27001, NIST, or CIS controls and their application in practice.
Commit to adhering to Baringa's standards for confidentiality, integrity, and availability of information assets.