About this Security Risk Analyst (FTC) role at Callsign
An excellent opportunity for an early career professional to move into Security Risk. You will be smart, eager to learn and highly motivated. In return, the role will provide exposure and experience in all elements of Security Risk disciplines at Callsign; Infosec Governance Risk and Compliance (GRC), Third Party Risk, Data Privacy, Business Resilience and Disaster Recovery and Physical Security. The role will be based from our office in the City of London reporting to our VP Security.
This position is offered as a 12 month fixed-term contract with the successful candidate ideally joining in November 2026.
The candidate will already need to hold the right to work in the UK.
Role Overview
You will:
Share responsibility in managing the governance, risk, and compliance frameworks within Callsign, working closely with various departments to deliver a secure, risk-focused environment that adheres to regulatory requirements.
Assess and refine our security policies and standards to keep pace with the changing threat and compliance landscape.
Use your skills to review and document security risks across Callsign's business, including product, platform, and third-party software and services to ensure they are well understood and managed within Callsignʼs risk appetite.
Support with the organising of audits of internal security policies & procedures and the operating effectiveness of controls.
Key Responsibilities
- Support internal and external audits, including tracking audit findings and remediation action through to completion.
- Implementing risk management and information security management system frameworks.
- Mastering/Understanding the principles of security, resilience and privacy by design.
- Manage the assessment and approval of remote working requests.
- Assist with the facilitation of key governance meetings such as the Security Committee and Data Governance Group.
- Support Environmental Social Governance (ESG) initiatives.
- Coordinate the key activities of the Third Party Risk Management program e.g. risk assessment of new and existing third parties
- 3LoD activities
- Help facilitate crisis management exercises
- Manage the logging and completion of compliance requests received from prospective and existing clients
- Develop a solid understanding of data protection, the AI landscape, and best practice as they impact Callsign assisting with privacy related impact assessments
- Support Business Continuity and Disaster Recovery transformation
- Working within a 'cloud-first" and agile business environment.
Requirements
Required Skills/Experience
- Basic understanding and awareness of frameworks such as ISO 27001 and SOC 2.
- A flexible approach to work with a strong work ethic willing to support those around you.
Optional/Desirable
- A BSC or equivalent in Computer Science, IT, Systems Engineering, Risk Management or a related field.
- As a strong communicator you will know how to make sophisticated information clear and impactful - whether in writing or speaking.
- A self-starter with the ability to work independently, prioritise and get things done.
- All of this will be underpinned by your high levels of motivation and your strong interpersonal and organisational skills.
Benefits
Pension scheme with Scottish Widows
Private medical cover with Vitality
Life assurance (4x base salary)
Personal Learning & Development Budget
Cycle to Work Scheme
Company Family Leave
25 days annual leave plus Callsign Bank Holiday
Employee Volunteering Program