IT Security Analyst

Xeinadin Group, City Centre, Manchester

IT Security Analyst

Salary not available. View on company website.

Xeinadin Group, City Centre, Manchester

  • Full time
  • Permanent
  • Onsite working

Posted 1 day ago, 21 Aug | Get your application in today.

Closing date: Closing date not specified

Job ref: e8376faa9a394dce8ef80f1d9d47c37e

Location ref: City Centre, Manchester

Full Job Description

IT Security Analyst

Xeinadin Group

Manchester, United Kingdom

Permanent

Application Date: 2026-08-19

Vacancy ID: 24685428

Employment Type: Full time

Salary: Competitive

Vacancy Details

Vacancy Name

IT Security Analyst

Vacancy Number

VN2342

Employment Type

Permanent

Duration

N/A

Location

  • City: Manchester
  • Country: United Kingdom

Company Description

Xeinadin was established in 2019 when a number of leading business advisory and accountancy practices across the UK and Ireland came together to re-imagine the future of accountancy. Our collective mission to provide locally forged, trusted business advice to SMEs through forward-thinking, close-knit relationships remains pivotal to our growth. It's our people who drive our business forward, and we offer them future-focused career opportunities whilst supporting individual specialisms. Our regional offices of over 3000 colleagues operate collaboratively, combining collective expertise to maximise potential.

Role Description

The IT Security Analyst is responsible for protecting the organisation's information systems, data, and technology assets. This role combines information security governance, risk, and compliance responsibilities with hands-on technical security operations. The successful candidate will help design, implement, monitor, and continuously improve security controls to ensure confidentiality, integrity, and availability of information, while supporting compliance with regulatory and contractual requirements.

Key Responsibilities

Information Security & Governance

  • Develop, implement, and maintain information security policies, standards, and procedures
  • Ensure alignment with recognised frameworks (e.g. ISO 27001, NIST, CIS)
  • Support information security risk assessments and maintain the risk register
  • Assist with internal and external audits, certifications, and compliance reviews
  • Promote security awareness and deliver staff training and guidance
  • Provide/contribute Management Information on Information Security in the form of MI Pack

Security Operations

  • Monitor security systems (SIEM, endpoint protection, email security, firewalls) and respond to alerts
  • Investigate and respond to security incidents, including root-cause analysis and remediation
  • Manage vulnerability scanning, penetration testing follow-ups, and patching coordination
  • Support and review access and access control policies, including privileged access controls
  • Monitor Threat Intelligence to ensure threats to Xeinadin devices and systems are mitigated in a timely manner

Technical Security Controls

  • Implement, support and manage security tools such as EDR, DLP, MFA, encryption, and secure email gateways
  • Review system configurations to ensure secure baseline standards
  • Work with infrastructure, cloud, and application teams to embed security by design

Data Protection & Privacy

  • Support data classification, handling, and retention policies
  • Assist with GDPR and data protection compliance activities
  • Respond to data security incidents and support breach reporting processes

Collaboration & Advisory

  • Act as a security subject-matter expert for IT projects and change initiatives
  • Provide security advice to stakeholders, vendors, and third-party suppliers
  • Support third-party risk assessments and security questionnaires
  • Review and risk assess IT and system changes to prevent vulnerabilities, misconfigurations, or downtime, ensuring the security posture remains intact.

Key Requirements

Essential

  • Proven experience in an IT security or information security role
  • Strong understanding of information security principles and risk management
  • Hands-on experience with security monitoring and incident response
  • Knowledge of Microsoft 365 and cloud security controls (e.g. Azure AD, Defender)
  • Familiarity with regulatory and compliance requirements
  • Ability to communicate technical risks clearly to non-technical audiences
  • Ability to report information security to support decision making, monitor performance and assist in driving strategy.

Additional Requirements

Desirable

  • Experience with ISO 27001 or similar frameworks
  • Knowledge of PowerShell, scripting, or automation for security tasks
  • Experience in professional services, financial services, or regulated environments
  • Exposure to third-party risk management

Remuneration & Benefits

  • Company Pension Scheme
  • 25 days of annual leave + bank holidays
  • Additional annual leave days from certain levels of seniority
  • Ability to buy up to 5 days of annual leave to reach a maximum of 30 days per annum
  • Business closure over Christmas
  • Life Assurance x4 annual salary
  • Enhanced family leave policies
  • Enhanced Company Sick Pay
  • Employee Assistance Programme - 24/7 support, free and confidential
  • Corporate Discounts Platform
  • Flexible Benefits platform with ability to opt-in to various insurances such as Critical Illness Cover, Cash plan, Cycle to work, Eye care, Dental (subject to exceptions and business needs)

#s1-Gen

responsibilities with hands-on technical security operations. The successful candidate will help design, implement, monitor, and continuously improve security controls to ensure confidentiality, integrity, and availability of information, while supporting compliance with regulatory and contractual requirements. Key Responsibilities Information Security & Governance
  • Develop, implement, and maintain information security policies, standards, and procedures Ensure alignment with recognised frameworks (e.g. ISO 27001, NIST, CIS) Support information security risk assessments and maintain the risk register Assist with internal and external audits, certifications, and compliance reviews Promote security awareness and deliver staff training and guidance Provide/contribute Management Information on Information Security in the form of MI Pack. Security Operations Monitor security systems (SIEM, endpoint protection, email security, firewalls) and respond to alerts Investigate
  • and respond to security incidents, including root-cause analysis and remediation
  • Manage vulnerability scanning, penetration testing follow-ups, and patching coordination Support and review access and access control policies, including privileged access controls. Monitor Threat Intelligence to ensure threats to Xeinadin devices and systems are mitigated in a timely manner. Technical Security Controls Implement, support and manage security tools such as EDR, DLP, MFA, encryption, and secure email gateways Review system configurations to ensure secure baseline standards Work with infrastructure, cloud, and application teams to embed security by design Data Protection & Privacy Support data classification, handling, and retention policies Assist with GDPR and data protection compliance activities Respond to data security incidents and support breach reporting processes Collaboration & Advisory Act as a security subject-matter expert for IT projects and change
  • initiatives
  • Provide security advice to stakeholders, vendors, and third-party suppliers Support third-party risk assessments and security questionnaires Review and risk assess IT and system changes to prevent the introduction of vulnerabilities, misconfigurations, or downtime, ensuring the security posture remains intact. Key Requirements Essential Proven experience in an IT security or information security role Strong understanding of information security principles and risk management Hands-on experience with security monitoring and incident response Knowledge of Microsoft 365 and cloud security controls (e.g. Azure AD, Defender) Familiarity with regulatory and compliance requirements Ability to communicate technical risks clearly to non-technical audiences Ability to report information security to support decision making, monitor performance and assist in driving strategy. Additional Requirements Desirable Experience with ISO 27001

    or similar frameworks Knowledge of PowerShell, scripting, or automation for security tasks Experience in professional services, financial services, or regulated environments Exposure to third-party risk management Model Hybrid Salary Competitive Benefits Benefits Company Pension Scheme 25 days of annual leave + bank holidays Additional annual leave days from certain levels of seniority Ability to buy up to 5 days of annual leave to reach a maximum of 30 days per annum Business closure over Christmas Life Assurance x4 annual salary Enhanced family leave policies Enhanced Company Sick Pay Employee Assistance Programme - 24/7 support, free and confidential Corporate Discounts Platform Flexible Benefits platform with ability to opt-in to various insurances (level of seniority dependent & self-funded at corporate rates) such as: Critical Illness Cover Cash plan Cycle to work Eye care Dental
  • subject to exceptions and business needs

Direct job link

https://www.jobs24.co.uk/job/it-security-analyst-127237698