
Business Analyst, CyberSec
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in United Kingdom.
• Gather, analyze, and document business, functional, non-functional, and security requirements.
• Convert cyber security goals into precise business requirements, user stories, and acceptance criteria.
• Perform impact assessments across business processes, systems, data, access controls, and operational teams.
• Partner with Information Security, Risk, Compliance, Technology, and third-party suppliers to identify risks, dependencies, and control gaps.
• Create maps of current and future-state processes, user journeys, data flows, and system interactions.
• Assist in solution design, testing, implementation planning, business readiness, and post-deployment evaluations.
• Ensure traceability between business outcomes, security controls, risks, testing efforts, and delivered solutions.
• Lead workshops and engage stakeholders from both technical and non-technical backgrounds.
• Provide analytical support for decision-making regarding risk reduction, implementation complexity, operational impact, and delivery goals.
• Demonstrated experience as a Business Analyst in delivering cyber security, information security, technology risk, or regulatory change initiatives.
• Strong skills in requirements gathering, process mapping, and business impact assessments.
• Experience collaborating with cross-functional teams across business, technology, security, risk, and compliance domains.
• Ability to articulate technical security concepts in a way that is accessible and relevant to business needs.
• Excellent stakeholder management, workshop facilitation, and influencing abilities.
• Experience in analyzing systems, data flows, access controls, and operational processes.
• Proactive and inquisitive mindset, with the ability to identify risks, assumptions, and dependencies at an early stage.
• Comfortable working in fast-paced environments and contributing immediately.
• Desirable: familiarity with NIST, ISO 27001, or similar security frameworks and standards.
• Desirable: understanding of cyber risk management, data protection, operational resilience, or identity and access management.
• Desirable: experience in supporting cloud security, secure delivery, or technology transformation programs.
• Desirable: knowledge of Agile delivery environments and testing methodologies.
• Desirable: relevant Business Analysis qualifications such as IIBA, BCS, or equivalent.
• Desirable: cyber security certifications like CISMP, CompTIA Security+, or similar.
• Fully remote working arrangement.
• Opportunity to engage in business-critical cyber security and information security change initiatives.
• Collaboration with senior stakeholders across security, risk, and technology functions.
• Chance to make a substantial impact from day one within a complex transformation program.
PointClickCare
BizFirst LLC
OnHires
Red Pulley, Inc.
Get handpicked remote jobs straight to your inbox weekly.