IT Security Analyst
Xeinadin Group Manchester, United KingdomIT Security Analyst
Xeinadin Group Manchester, United Kingdom
IT Security Analyst
Vacancy Name
IT Security Analyst
Vacancy No
VN2342
Employment Type
Permanent
Duration
N/A
Location City
Manchester
Location Country
United Kingdom
Company Description
Xeinadin was established in 2019 when a number of leading business advisory and accountancy practices across the UK and Ireland came together to re-imagine the future of accountancy. Our collective mission to provide locally forged, trusted business advice to SMEs through forward-thinking, close-knit relationships remains pivotal to our growth. It's our people who drive our business forward, and we offer them future-focused career opportunities whilst supporting individual specialisms. Our regional offices of over 3000 colleagues operate collaboratively, combining collective expertise to maximise potential.
Description
The IT Security Analyst is responsible for protecting the organisation's information systems, data, and technology assets. This role combines information security governance, risk, and compliance responsibilities with hands-on technical security operations.
The successful candidate will help design, implement, monitor, and continuously improve security controls to ensure confidentiality, integrity, and availability of information, while supporting compliance with regulatory and contractual requirements.
Key Responsibilities
Information Security & Governance
• Develop, implement, and maintain information security policies, standards, and procedures
• Ensure alignment with recognised frameworks (e.g. ISO 27001, NIST, CIS)
• Support information security risk assessments and maintain the risk register
• Assist with internal and external audits, certifications, and compliance reviews
• Promote security awareness and deliver staff training and guidance
• Provide/contribute Management Information on Information Security in the form of MI Pack.
Security Operations
• Monitor security systems (SIEM, endpoint protection, email security, firewalls) and respond to alerts
• Investigate and respond to security incidents, including root-cause analysis and remediation
• Manage vulnerability scanning, penetration testing follow-ups, and patching coordination
• Support and review access and access control policies, including privileged access controls.
• Monitor Threat Intelligence to ensure threats to Xeinadin devices and systems are mitigated in a timely manner.
Technical Security Controls
• Implement, support and manage security tools such as EDR, DLP, MFA, encryption, and secure email gateways
• Review system configurations to ensure secure baseline standards
• Work with infrastructure, cloud, and application teams to embed security by design
Data Protection & Privacy
• Support data classification, handling, and retention policies
• Assist with GDPR and data protection compliance activities
• Respond to data security incidents and support breach reporting processes
Collaboration & Advisory
• Act as a security subject-matter expert for IT projects and change initiatives
• Provide security advice to stakeholders, vendors, and third-party suppliers
• Support third-party risk assessments and security questionnaires
• Review and risk assess IT and system changes to prevent the introduction of vulnerabilities, misconfigurations, or downtime, ensuring the security posture remains intact.
Key Requirements
Essential
• Proven experience in an IT security or information security role
• Strong understanding of information security principles and risk management
• Hands-on experience with security monitoring and incident response
• Knowledge of Microsoft 365 and cloud security controls (e.g. Azure AD, Defender)
• Familiarity with regulatory and compliance requirements
• Ability to communicate technical risks clearly to non-technical audiences
• Ability to report information security to support decision making, monitor performance and assist in driving strategy.
Additional Requirements
Desirable
• Experience with ISO 27001 or similar frameworks
• Knowledge of PowerShell, scripting, or automation for security tasks
• Experience in professional services, financial services, or regulated environments
• Exposure to third-party risk management
Model
Hybrid
Salary
Competitive
Benefits
Benefits
• Company Pension Scheme
• 25 days of annual leave + bank holidays
• Additional annual leave days from certain levels of seniority
• Ability to buy up to 5 days of annual leave to reach a maximum of 30 days per annum
• Business closure over Christmas*
• Life Assurance x4 annual salary
• Enhanced family leave policies
• Enhanced Company Sick Pay
• Employee Assistance Programme - 24/7 support, free and confidential
• Corporate Discounts Platform
Flexible Benefits platform with ability to opt-in to various insurances (level of seniority dependent & self-funded at corporate rates) such as:
• Critical Illness Cover
• Cash plan
• Cycle to work
• Eye care
• Dental
*subject to exceptions and business needs
IT Security Analyst
Vacancy No
VN2342
Employment Type
Permanent
Duration
N/A
Location City
Manchester
Location Country
United Kingdom
Company Description
Xeinadin was established in 2019 when a number of leading business advisory and accountancy practices across the UK and Ireland came together to re-imagine the future of accountancy. Our collective mission to provide locally forged, trusted business advice to SMEs through forward-thinking, close-knit relationships remains pivotal to our growth. It's our people who drive our business forward, and we offer them future-focused career opportunities whilst supporting individual specialisms. Our regional offices of over 3000 colleagues operate collaboratively, combining collective expertise to maximise potential.
Description
The IT Security Analyst is responsible for protecting the organisation's information systems, data, and technology assets. This role combines information security governance, risk, and compliance responsibilities with hands-on technical security operations.
The successful candidate will help design, implement, monitor, and continuously improve security controls to ensure confidentiality, integrity, and availability of information, while supporting compliance with regulatory and contractual requirements.
Key Responsibilities
Information Security & Governance
• Develop, implement, and maintain information security policies, standards, and procedures
• Ensure alignment with recognised frameworks (e.g. ISO 27001, NIST, CIS)
• Support information security risk assessments and maintain the risk register
• Assist with internal and external audits, certifications, and compliance reviews
• Promote security awareness and deliver staff training and guidance
• Provide/contribute Management Information on Information Security in the form of MI Pack.
Security Operations
• Monitor security systems (SIEM, endpoint protection, email security, firewalls) and respond to alerts
• Investigate and respond to security incidents, including root-cause analysis and remediation
• Manage vulnerability scanning, penetration testing follow-ups, and patching coordination
• Support and review access and access control policies, including privileged access controls.
• Monitor Threat Intelligence to ensure threats to Xeinadin devices and systems are mitigated in a timely manner.
Technical Security Controls
• Implement, support and manage security tools such as EDR, DLP, MFA, encryption, and secure email gateways
• Review system configurations to ensure secure baseline standards
• Work with infrastructure, cloud, and application teams to embed security by design
Data Protection & Privacy
• Support data classification, handling, and retention policies
• Assist with GDPR and data protection compliance activities
• Respond to data security incidents and support breach reporting processes
Collaboration & Advisory
• Act as a security subject-matter expert for IT projects and change initiatives
• Provide security advice to stakeholders, vendors, and third-party suppliers
• Support third-party risk assessments and security questionnaires
• Review and risk assess IT and system changes to prevent the introduction of vulnerabilities, misconfigurations, or downtime, ensuring the security posture remains intact.
Key Requirements
Essential
• Proven experience in an IT security or information security role
• Strong understanding of information security principles and risk management
• Hands-on experience with security monitoring and incident response
• Knowledge of Microsoft 365 and cloud security controls (e.g. Azure AD, Defender)
• Familiarity with regulatory and compliance requirements
• Ability to communicate technical risks clearly to non-technical audiences
• Ability to report information security to support decision making, monitor performance and assist in driving strategy.
Additional Requirements
Desirable
• Experience with ISO 27001 or similar frameworks
• Knowledge of PowerShell, scripting, or automation for security tasks
• Experience in professional services, financial services, or regulated environments
• Exposure to third-party risk management
Model
Hybrid
Salary
Competitive
Benefits
Benefits
• Company Pension Scheme
• 25 days of annual leave + bank holidays
• Additional annual leave days from certain levels of seniority
• Ability to buy up to 5 days of annual leave to reach a maximum of 30 days per annum
• Business closure over Christmas*
• Life Assurance x4 annual salary
• Enhanced family leave policies
• Enhanced Company Sick Pay
• Employee Assistance Programme - 24/7 support, free and confidential
• Corporate Discounts Platform
Flexible Benefits platform with ability to opt-in to various insurances (level of seniority dependent & self-funded at corporate rates) such as:
• Critical Illness Cover
• Cash plan
• Cycle to work
• Eye care
• Dental
*subject to exceptions and business needs
Job ID VN2342
More Jobs From Xeinadin Group
Xeinadin Group
Manchester, United Kingdom
Xeinadin Group
Manchester, United Kingdom
Boost your career
Find thousands of job opportunities by signing up to eFinancialCareers today.More Jobs Like This