Information Security Analyst
AI in this role
WHO ARE WE
Cognism is the leading provider of European B2B data and sales intelligence. Ambitious businesses of every size use our platform to discover, connect, and engage with qualified decision-makers faster and close more deals. Headquartered in London with global offices, Cognism’s contact data and contextual signals are trusted by thousands of revenue teams to eliminate the guesswork from prospecting.
At Cognism, the security of our data, our systems and our clients' systems is a business priority. Information security is embedded in the way we work, and we are driving a culture where the fastest path is the securest path. As our Information Security team continues to mature, we are now hiring for a GRC Analyst to help us run and strengthen our governance, risk, and compliance programme.
- Support operation of ISO 27001 and SOC 2 frameworks
- Own evidence collection and control tracking
- Take risk-based approach to all work
- Work closely with Engineering, IT Operations, and Compliance
- Build relationships that drive remediation closure
- Grow your GRC career in data-intensive product environment.
Within 12 months, you will have
- Become trusted owner of evidence and control monitoring across ISO 27001 and SOC 2
- Built strong relationships enabling tracked remediation to closure
- Applied risk-based lens to prioritise impactful gaps over low-value items
- Improved at least one recurring security process for speed or efficiency
- Developed working knowledge of AI security and control intersections
What You'll Own
- Support day-to-day GRC programme operations including control monitoring and audit readiness
- Maintain and improve documentation: policies, procedures, risk registers, control mappings
- Support internal and external audits, questionnaires, vendor risk assessments
- Take risk-based approach to prioritising work and effort allocation
- Partner with Engineering, IT Operations, Compliance to track remediation closure
- Build trusted relationships where teams bring problems early
- Identify and implement process improvements for efficiency and automation
- Stay current on emerging risks including AI-related exposures
- Flag AI risk intersections with existing controls and programmes
What We Need
- 1-2 years experience in security, GRC, IT audit, or related risk function
- Working knowledge of ISO 27001 and/or SOC 2 fundamentals
- Detail-oriented: notice inconsistencies and gaps others miss
- Process-driven: build and follow repeatable, well-documented processes
- Strong written and verbal communication skills
- Explain risk and compliance concepts to technical and non-technical audiences
- Comfortable working across Engineering, IT Operations, and Compliance teams
- Build trust and hold risk-based mindset in practice
- Weigh likelihood and impact rather than treat all requirements equally
- Comfortable with ambiguity and willing to ask questions
- Curious about AI: risks, potential, and compliance applications
- AI security and risk working knowledge is strong plus, not mandatory
- Builder mentality: energised by bringing structure to processes
- Pragmatic about sequencing and focused on outcomes over box-ticking
WHY COGNISM
At Cognism, we’re not just building a company - we’re building an inclusive community of brilliant, diverse people who support, challenge, and inspire each other every day. If you’re looking for a place where your work truly makes an impact, you’re in the right spot!
Our values aren’t just words on a page—they guide how we work, how we treat each other, and how we grow together. They shape our culture, drive our success, and ensure that everyone feels valued, heard, and empowered to do their best work.
Here’s what we stand for:
🤝 We Own the Outcome Together.
🤓 We Deeply Understand our Customers.
🏆 We Celebrate Impact Wherever It Comes From.
At Cognism, we are committed to fostering an inclusive, diverse, and supportive workplace. We welcome applications from individuals typically underrepresented in tech, so if this role excites you but you’re unsure if you meet every requirement, we encourage you to apply!
How we rate this
Information Security Analyst at Cognism rates 25 out of 100 for how much of the daily work is AI. That makes it Little AI (AI Level 1 of 4). The level is about AI in the job, not seniority.
Little AI. AI is not part of the work.
- ●●●● Builds AI80 to 100
- ●●●○ Works on AI60 to 79
- ●●○○ Uses AI40 to 59
- ●○○○ Little AI0 to 39
Levels come from how often the tools, models and workflows of the role are named in the posting itself. Open the description and count.
Get new cybersecurity jobs by email
One email a week with the new cybersecurity jobs, each rated for how much AI is in the work. No recruiter spam, unsubscribe in one click.
Free. One email a week. Unsubscribe in one click.
Similar roles
Security roles that involve little AI, at other companies.
What kind of AI work fits you?
Answer 12 practical questions in about three minutes. Get a simple profile, the work it points to, and live roles to explore next.
Find my next step