×
Register Here to Apply for Jobs or Post Jobs. X

Analyst, Information Security GRC

Job in Manchester, Greater Manchester, M9, England, UK
Listing for: Fitch Ratings
Full Time position
Listed on 2026-09-14
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
Analyst, Information Security GRC

Location:

Manchester, UK | Work Arrangement:
Hybrid | Department:
Information Security About the Role Fitch is seeking an Information Security GRC Analyst to support the delivery and ongoing development of its Cyber Security Awareness and Education program. This role helps employees understand cyber risks and build secure working habits through engaging communications, training, phishing simulation activities, campaigns, reporting, and program administration. This is an excellent opportunity for someone early in their cyber security, communications, learning and development, risk management, or employee engagement career who is interested in the human side of cyber security.

The successful candidate will work closely with Information Security, Employee Communications, Learning and Development, Technology, HR, and business stakeholders to make security guidance clear, practical, and relevant for employees across a global organization. Responsibilities:
Support the planning, coordination, and delivery of cyber security awareness campaigns, including Cyber Security Awareness Month and targeted awareness initiatives throughout the year. Support awareness communications such as newsletters, articles, email campaigns, intranet posts, manager updates, event invitations, and reminder messages. Translate technical cyber security topics into clear, accessible, and employee-friendly messaging. Support the security awareness training lifecycle, including content updates, testing, launch coordination, completion tracking, reminders, and evidence retention.

Assist with targeted, role-based, regional, and regulatory training activities, including stakeholder reviews, approvals, and supporting documentation. Support phishing simulation campaigns, including preparation, testing, audience coordination, communications, reporting, and post-campaign follow-up. Compile and maintain program metrics, including training completion, campaign engagement, phishing simulation outcomes, reporting rates, and communication performance. Support the preparation of dashboards, leadership updates, meeting materials, and program reports.

Maintain organized records of approvals, communications, process documentation, evidence, and supporting materials. Coordinate with stakeholders across Information Security, Technology, Communications, HR, Learning and Development, Facilities, and business teams. Assist with virtual and in-person awareness events, including speaker coordination, event briefs, calendar invites, promotional materials, volunteer coordination, and post-event follow-up.

Qualifications:

Experience in cyber security awareness, human risk, training, communications, and employee education. Strong written communication skills, with the ability to make complex topics clear, simple, and engaging. Good attention to detail and the ability to manage multiple tasks, deadlines, and stakeholders. Strong organizational skills and confidence maintaining trackers, documentation, and structured records. Ability to work collaboratively with technical and non-technical colleagues across different teams and regions.

Comfortable using Microsoft Office tools, including Word, PowerPoint, Excel, Outlook, Teams, and SharePoint. Willingness to learn about phishing, social engineering, data protection, identity and access management, secure working practices, AI-related risks, and emerging cyber threats. Ability to handle sensitive information responsibly and maintain confidentiality. A proactive, curious, and improvement-focused mindset.

Preferred Experience:

Experience with cyber security awareness programs, phishing simulations, security training platforms, employee engagement campaigns. Experience drafting internal communications, newsletters, articles, presentations, training materials. Experience coordinating campaigns, events, workshops, stakeholder reviews, approval processes. Familiarity with reporting metrics and dashboards. Basic understanding of cyber security topics such as password security, multi-factor authentication, data handling, AI-related risks, and incident management. Experience working in a regulated, financial services, professional services, or global corporate environment.

What We Offer:

You will have the opportunity to contribute to a global cyber security awareness program, work with stakeholders across the business, and develop practical experience in cyber security, communications, training, reporting, and…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary