Cyber Risk and Resilience Analyst at Halma plc | GB | Rezi

Cyber Risk and Resilience Analyst at Halma plc

Cyber Risk and Resilience Analyst

Halma plc · GB

Today

Cyber Risk and Resilience Analyst

Halma plc · GB

15 hours ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Cyber Risk and Resilience Analyst role.

Rezi rewrites your resume against Halma plc's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Cyber Risk and Resilience Analyst posting at Halma plc — free, in seconds.

About the Role

As cyber risks evolve, businesses face a complex and expanding threat landscape, making strategic risk management essential. We are seeking a talented Cyber Risk Analyst with a strong background in Cybersecurity Audit and Assurance to identify vulnerabilities within the organization and its portfolio of companies around the world, to improve risk visibility, and implement effective risk mitigation. In this role, you will also be instrumental in ensuring the organization’s technology systems are secure, resilient, and aligned with acceptable risk thresholds.

Responsibilities

  • Conduct comprehensive audit assessments of IT infrastructure, cloud environments, application stacks, and third-party vendor systems to verify control effectiveness.
  • Map internal control frameworks to industry standards and regulatory mandates (e.g., ISO 27001, NIST CSF, SOC 2, HIPAA, GDPR, PCI-DSS).
  • Act as the primary liaison between technical teams and external/internal auditors during annual cyber audits and regulatory examinations.
  • Define, execute, and document technical audit test plans, sampling strategies, and evidence collection workflows to support internal assurance reviews.
  • Work collaboratively with Technology, Audit, and Risk teams, and operating companies, to conduct thorough cybersecurity risk, audit and assurance assessments.
  • Develop and sustain effective relationships with business and functional partners, offering guidance, risk oversight, and educational support.
  • Identify and report on non-compliance with risk frameworks, ensuring that deviations are well-documented and visible.
  • Assist the Audit and Risk Teams in identifying and tracking mitigation actions for any technology and cybersecurity issues.
  • Compile and present regular security reports for stakeholders, summarizing the organization’s security status, incidents, and risk assessments.
  • Monitor and stay informed about new cybersecurity threats, vulnerabilities, and trends in the industry.
  • Integrate this intelligence into the organization’s security strategy.
  • Foster an organization-wide security mindset by providing training and guidance on cybersecurity best practices.

Requirements

  • Strong experience in managing partnerships and fostering trust, with the ability to influence and work collaboratively with various stakeholders.
  • Excellent communication skills, both verbal and written, with the ability to convey complex information effectively, particularly to executive and board-level audiences.
  • Outcome-driven, with a demonstrated ability to foster teamwork across functions.
  • Solid understanding of operational risk management frameworks, including processes for identifying, assessing, and managing risk scenarios.
  • Demonstrable experience with cyber assurance and audit risk assessment.
  • Excellent knowledge of regulatory standards, frameworks, policies and procedures.
  • Proficiency in various technology domains, including systems and software architecture, cloud platforms, networking, IoT, and integration technologies.
  • Experience in consulting and change management, particularly in supporting technology-led transformations within an organization.
  • Curiosity and awareness of rapid developments in technology and security, with the ability to assess how emerging trends may impact the organization.
  • Ability to navigate complex global structures, advocating for and implementing new ideas and innovative solutions.

Skills

  • Cybersecurity Audit
  • Assurance
  • Risk Management
  • IT Infrastructure Auditing
  • Cloud Environment Auditing
  • Application Stack Auditing
  • Third-Party Vendor System Auditing
  • Control Framework Mapping
  • ISO 27001
  • NIST CSF
  • SOC 2
  • HIPAA
  • GDPR
  • PCI-DSS
  • Technical Audit Test Planning
  • Sampling Strategies
  • Evidence Collection
  • Cybersecurity Risk Assessment
  • Risk Oversight
  • Risk Framework Compliance
  • Issue Tracking
  • Security Reporting
  • Threat Intelligence Monitoring
  • Security Strategy Integration
  • Security Awareness Training
  • Systems Architecture
  • Software Architecture
  • Cloud Platforms
  • Networking
  • IoT
  • Integration Technologies
  • Consulting
  • Change Management
  • Technology-Led Transformations
  • Emerging Technology Assessment

Education Level

  • Relevant certifications in cybersecurity (such as CISM, CISSP, CRISC, or CISA) are preferred.

About the Company

  • Help grow a safer, cleaner, healthier future for everyone, every day.