Who are we?
Europa Worldwide Group is an ambitious and independently owned logistics business. We operate across three divisions - Europa Road, Europa Air & Sea, and Europa Warehouse – and our continued success has earned us a place in The Sunday Times Top Track 250 for three consecutive years.
With 15 sales offices across the UK and Ireland, plus a strong and expanding international footprint in Europe, and countries such as, Hong Kong, China, India, and Dubai, we’re investing heavily in our people, our infrastructure, and our future.
If you’re looking to be part of a forward-thinking organisation where your contribution genuinely makes an impact, Europa is a place where you can grow and thrive.
We are looking for
The Information Security Analyst plays a crucial role in protecting Europa Worldwide Group's information assets and maintaining customer trust. By ensuring that policies, controls, evidence and compliance activities remain effective and auditable, the role directly supports the maintenance of our ISO/IEC 27001 certification and wider security assurance programme. The successful candidate will help demonstrate compliance to customers, regulators and auditors while contributing to the continual improvement of Europa's security and data protection maturity. Their work helps ensure the organisation can operate securely, fulfil contractual and regulatory obligations, and continue to build confidence with customers, suppliers and partners.
What can we offer in return?
- Competitive salary of between £40k - £45k depending on experience.
- Hybrid Working.
- Convenient Onsite Amenities: Free car parking and an onsite canteen for your convenience.
- Generous Time Off: Benefit from 25 days of annual leave.
- Enhanced Family Leave: Benefit from enhanced maternity, paternity, and adoption pay.
- Benefits portal: where you access a wide range of exclusive discounts, company benefits, wellbeing resources and much more.
- Wellbeing Focus: Access our employee wellbeing programme for your overall health and happiness.
- Referral Rewards: Generous referral bonus when you refer a friend to work with us!
- Work-Life Balance: Thrive in a fantastic working culture that promotes an excellent work-life balance.
- Recognition Programs: Celebrate your contributions with our charity 50-50 and long service awards
What you will be doing:
Information Security Management System (ISMS):
- Support the maintenance and continual improvement of the ISO/IEC 27001 Information Security Management System.
- Maintain security policies, standards, procedures and supporting documentation. ➢ Ensure ISMS records remain accurate, complete and audit ready.
- Track corrective actions, improvement opportunities and non-conformities through to completion.
- Support internal and external audits through evidence gathering, coordination and follow-up activities.
- Monitor compliance with security policies and control requirements.
Governance, Risk and Compliance:
- Assist with risk assessments and the maintenance of information security risk registers and control monitoring.
- Monitor regulatory, legal and contractual requirements relevant to information security and privacy.
- Support the implementation and maintenance of security controls aligned to ISO 27001, Cyber Essentials Plus and NIST frameworks.
- Produce compliance reports, dashboards and management information for stakeholders.
Third-Party Risk Management:
- Support supplier due diligence and assurance activities.
- Review supplier security documentation including certifications, policies and questionnaires. ➢ Track supplier remediation actions and risk treatment activities.
- Assist with the ongoing monitoring of third-party security posture and breach intelligence. Audit & Assurance:
- Coordinate evidence collection across operational and technical teams.
- Maintain audit artefacts and compliance records.
- Support certification audits, surveillance audits and customer assurance requests.
Security Awareness & Engagement:
- Support the delivery of information security awareness and training initiatives.
- Promote secure working practices across the business.
- Assist in the creation of communications, guidance documents and awareness campaigns.
- Act as an advocate for information security and data protection across all business functions.
Data Protection & Privacy:
- Support the Data Protection Officer with privacy and compliance initiatives.
- Assist with GDPR-related activities, assessments and record keeping.
- Support investigations relating to security incidents and personal data breaches.
- Help maintain information relating to privacy risks and mitigation activities.
Continuous Improvement:
- Identify opportunities to improve security processes, controls and operational efficiencies.
- Assist with developing metrics and reporting to demonstrate security performance.
- Contribute to departmental projects and strategic security initiatives.
- Undertake any other duties reasonably required by the Information Security & Cyber Operations Manager consistent with the level and scope of the role.
Our Ideal Person:
- A minimum of 2-3 years of an Information Security Analyst background.
- Good understanding of ISO/IEC 27001 and Information Security Management Systems (ISMS) ➢ Experience supporting compliance, audit and assurance activities, including evidence gathering and documentation management.
- Knowledge of Cyber Essentials Plus, security control frameworks and information security best practices.
- Working knowledge of UK GDPR and information privacy principles.
- Highly organised, with strong attention to detail and the ability to manage multiple priorities.
- Strong analytical skills with the ability to interpret information, identify risks and maintain accurate records.
- Excellent written and verbal communication skills, with the ability to engage effectively with stakeholders at all levels.
- Ability to build and maintain effective working relationships across technical and non-technical teams.
- Demonstrates ownership, accountability and a pragmatic approach to security and compliance challenges.
- Proactive and collaborative, demonstrating curiosity, initiative and a continuous improvement mindset, with a commitment to promoting good security practices across the business.
Europa Worldwide Group do not accept agency CV submissions unless specifically requested/ engaged with the role by the Internal Talent Team. Please do not submit speculative CV’S to our Talent Team, Colleagues, Hiring Managers, or any branches/locations directly. Europa will not be responsible for any fees related to CV’s received in this unsolicited manner.
Please note - if you submit your CV, you are giving Europa Worldwide Group Ltd, and its subsidiaries consent to hold your personal data. All applications will be dealt with according to General Data Protection Regulations. Europa Worldwide Group are committed to equality of opportunity for all staff, and applications from individuals are encouraged regardless of age, disability, sex, gender reassignment, sexual orientation, pregnancy and maternity, race, religion or belief and marriage and civil partnerships.
Please note that an offer of employment is subject to the completion of a satisfactory pre-employment checks.
Pay: £40,000.00-£45,000.00 per year
Benefits:
- Canteen
- Casual dress
- Company pension
- Enhanced maternity leave
- Enhanced paternity leave
- Free parking
- On-site parking
- Referral programme
- Sick pay
- Work from home
Application question(s):
- Do you have experience working with ISO 27001 standards and compliance requirements?
Experience:
- Information security: 2 years (required)
Work Location: In person