Vacancy Name
IT Security Analyst
Employment Type
Permanent
Location Country
United Kingdom
Company Description
Xeinadin was established in 2019 when a number of leading business advisory and accountancy practices across the UK and Ireland came together to re-imagine the future of accountancy. Our collective mission to provide locally forged, trusted business advice to SMEs through forward-thinking, close-knit relationships remains pivotal to our growth. It's our people who drive our business forward, and we offer them future-focused career opportunities whilst supporting individual specialisms. Our regional offices of over 3000 colleagues operate collaboratively, combining collective expertise to maximise potential.
Description
The IT Security Analyst is responsible for protecting the organisation’s information systems, data, and technology assets. This role combines information security governance, risk, and compliance responsibilities with hands-on technical security operations.
The successful candidate will help design, implement, monitor, and continuously improve security controls to ensure confidentiality, integrity, and availability of information, while supporting compliance with regulatory and contractual requirements.
Key Responsibilities
Information Security & Governance
Develop, implement, and maintain information security policies, standards, and procedures
Ensure alignment with recognised frameworks (e.g. ISO 27001, NIST, CIS)
Support information security risk assessments and maintain the risk register
Assist with internal and external audits, certifications, and compliance reviews
Promote security awareness and deliver staff training and guidance
Provide/contribute Management Information on Information Security in the form of MI Pack.
Security Operations
Monitor security systems (SIEM, endpoint protection, email security, firewalls) and respond to alerts
Investigate and respond to security incidents, including root-cause analysis and remediation
Manage vulnerability scanning, penetration testing follow-ups, and patching coordination
Support and review access and access control policies, including privileged access controls.
Monitor Threat Intelligence to ensure threats to Xeinadin devices and systems are mitigated in a timely manner.
Technical Security Controls
Implement, support and manage security tools such as EDR, DLP, MFA, encryption, and secure email gateways
Review system configurations to ensure secure baseline standards
Work with infrastructure, cloud, and application teams to embed security by design
Data Protection & Privacy
Support data classification, handling, and retention policies
Assist with GDPR and data protection compliance activities
Respond to data security incidents and support breach reporting processes
Collaboration & Advisory
Act as a security subject-matter expert for IT projects and change initiatives
Provide security advice to stakeholders, vendors, and third-party suppliers
Support third-party risk assessments and security questionnaires
Review and risk assess IT and system changes to prevent the introduction of vulnerabilities, misconfigurations, or downtime, ensuring the security posture remains intact.
Key Requirements
Essential
Proven experience in an IT security or information security role
Strong understanding of information security principles and risk management
Hands-on experience with security monitoring and incident response
Knowledge of Microsoft 365 and cloud security controls (e.g. Azure AD, Defender)
Familiarity with regulatory and compliance requirements
Ability to communicate technical risks clearly to non-technical audiences
Ability to report information security to support decision making, monitor performance and assist in driving strategy.
Additional Requirements
Desirable
Experience with ISO 27001 or similar frameworks
Knowledge of PowerShell, scripting, or automation for security tasks
Experience in professional services, financial services, or regulated environments
Exposure to third-party risk management
Benefits
Benefits
Company Pension Scheme
25 days of annual leave + bank holidays
Additional annual leave days from certain levels of seniority
Ability to buy up to 5 days of annual leave to reach a maximum of 30 days per annum
Business closure over Christmas*
Life Assurance x4 annual salary
Enhanced family leave policies
Enhanced Company Sick Pay
Employee Assistance Programme – 24/7 support, free and confidential
Corporate Discounts Platform
Flexible Benefits platform with ability to opt-in to various insurances (level of seniority dependent & self-funded at corporate rates) such as:
Critical Illness Cover
Cash plan
Cycle to work
Eye care
Dental
subject to exceptions and business needs