CO_UK Alfa Financial Software Limited
Information Security Analyst (ISO 27001 and ISO 27018) Ready to do the best work of your life? Join us, and bring everything you have to solve the most fulfilling problems on the market. As a Gold accredited Investor in People we have everything you need to propel your career to new heights. Inclusion is the beating heart of Alfa so whoever you are, you can show up as your best self everyday - be that from home, from our offices, or a little bit of both. We've got the tech, we've got the opportunities, all we're missing is you. Alfa is looking to recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit/Compliance functions. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means information security isn't a back office function here, it's central to how our clients trust us with their business. If you want your work to genuinely matter, this is that kind of role. What we'll do together You'll help maintain and continuously improve our Information Security Management System (ISMS), keeping our policies and procedures sharp and our compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute to how we analyse and mitigate risk. On the audit and compliance side, you'll actively participate in ISO 27001 and ISO 27018 audits, build clear documentation for regulatory and audit requirements, support internal and external audits and regulatory inspections, and compile the evidence that keeps it all standing up to scrutiny. How we'll work together You'll be part of a collaborative Information Security team, working closely with colleagues across the business to communicate complex requirements clearly, whether that's to engineers, auditors or leadership. The tools we'll use - Ticketing systems (Jira preferred) and knowledge management platforms (Confluence preferred) - will be part of your everyday toolkit, alongside the frameworks and standards that underpin everything we do, ISO 27001, ISO 27018, and an awareness of others like NIST and CSA STAR. What you'll bring to the team A Bachelor's degree from a top university A solid understanding of information security principles and practice, and hands on experience with ISO 27001 compliance methodologies and audit procedures You're analytical, a strong problem solver, and detail oriented with excellent organisational skills. You write clear documentation and reports, and can translate complex requirements for stakeholders at every level You'll have at least 2 years' experience in a related role Experience in a regulated industry, familiarity with other information security frameworks and assurance reports, and exposure to Jira and Confluence will all give you a head start - but they're not dealbreakers What we'll do for you Flexible hybrid working 25 days' annual leave plus bank holidays and flexible cultural days Pension contribution match up to 6% Private health insurance and access to a private GP Enhanced maternity, paternity and adoption leave with family friendly policies Income protection Life, disability and worldwide travel insurance Interest free loans of up to £10,000 after probation Wellhub access to gyms, classes and wellbeing apps Support pursuing membership of professional bodies 5 days per year for conferences or training 3 paid days of volunteering per year About Alfa With over 500 employees worldwide, Alfa is a leading provider of software and services to the global auto and equipment finance industries. Alfa Systems, our technology platform, is at the heart of some of the world's largest asset finance companies - consolidating multiple client systems onto a single platform, supporting retail and corporate business for auto, equipment, wholesale and dealer finance across jurisdictions, with integrated workflow and automated processing built in. With over 30 current clients across 26 countries, Alfa has delivered successful projects since 1990 and is expanding rapidly across Europe, North America and beyond. We listed on the London Stock Exchange in 2017. We are Alfa, a leading provider of software and services to the global asset finance industry. Our class leading technology platform, Alfa Systems, is at the heart of some of the world's largest and most innovative providers of asset and auto finance, such as Santander, John Deere, Mercedes Benz and Toyota. Established in 1990 and with over 470 employees worldwide, we are headquartered in London with projects all over Europe, the Americas and Asia Pacific.
Information Security Analyst (ISO 27001 and ISO 27018) Ready to do the best work of your life? Join us, and bring everything you have to solve the most fulfilling problems on the market. As a Gold accredited Investor in People we have everything you need to propel your career to new heights. Inclusion is the beating heart of Alfa so whoever you are, you can show up as your best self everyday - be that from home, from our offices, or a little bit of both. We've got the tech, we've got the opportunities, all we're missing is you. Alfa is looking to recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit/Compliance functions. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means information security isn't a back office function here, it's central to how our clients trust us with their business. If you want your work to genuinely matter, this is that kind of role. What we'll do together You'll help maintain and continuously improve our Information Security Management System (ISMS), keeping our policies and procedures sharp and our compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute to how we analyse and mitigate risk. On the audit and compliance side, you'll actively participate in ISO 27001 and ISO 27018 audits, build clear documentation for regulatory and audit requirements, support internal and external audits and regulatory inspections, and compile the evidence that keeps it all standing up to scrutiny. How we'll work together You'll be part of a collaborative Information Security team, working closely with colleagues across the business to communicate complex requirements clearly, whether that's to engineers, auditors or leadership. The tools we'll use - Ticketing systems (Jira preferred) and knowledge management platforms (Confluence preferred) - will be part of your everyday toolkit, alongside the frameworks and standards that underpin everything we do, ISO 27001, ISO 27018, and an awareness of others like NIST and CSA STAR. What you'll bring to the team A Bachelor's degree from a top university A solid understanding of information security principles and practice, and hands on experience with ISO 27001 compliance methodologies and audit procedures You're analytical, a strong problem solver, and detail oriented with excellent organisational skills. You write clear documentation and reports, and can translate complex requirements for stakeholders at every level You'll have at least 2 years' experience in a related role Experience in a regulated industry, familiarity with other information security frameworks and assurance reports, and exposure to Jira and Confluence will all give you a head start - but they're not dealbreakers What we'll do for you Flexible hybrid working 25 days' annual leave plus bank holidays and flexible cultural days Pension contribution match up to 6% Private health insurance and access to a private GP Enhanced maternity, paternity and adoption leave with family friendly policies Income protection Life, disability and worldwide travel insurance Interest free loans of up to £10,000 after probation Wellhub access to gyms, classes and wellbeing apps Support pursuing membership of professional bodies 5 days per year for conferences or training 3 paid days of volunteering per year About Alfa With over 500 employees worldwide, Alfa is a leading provider of software and services to the global auto and equipment finance industries. Alfa Systems, our technology platform, is at the heart of some of the world's largest asset finance companies - consolidating multiple client systems onto a single platform, supporting retail and corporate business for auto, equipment, wholesale and dealer finance across jurisdictions, with integrated workflow and automated processing built in. With over 30 current clients across 26 countries, Alfa has delivered successful projects since 1990 and is expanding rapidly across Europe, North America and beyond. We listed on the London Stock Exchange in 2017. We are Alfa, a leading provider of software and services to the global asset finance industry. Our class leading technology platform, Alfa Systems, is at the heart of some of the world's largest and most innovative providers of asset and auto finance, such as Santander, John Deere, Mercedes Benz and Toyota. Established in 1990 and with over 470 employees worldwide, we are headquartered in London with projects all over Europe, the Americas and Asia Pacific.
CO_UK Alfa Financial Software Limited
Senior Data Privacy Analyst Ready to do the best work of your life? Join us, and bring everything you have to solve the most fulfilling problems on the market. As a Gold accredited Investor in People we have everything you need to propel your career to new heights. Inclusion is the beating heart of Alfa so whoever you are, you can show up as your best self everyday - be that from home, from our offices, or a little bit of both. We've got the tech, we've got the opportunities, all we're missing is you. Alfa is looking to recruit a Senior Data Privacy Analyst to join our Information Security team. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means Data Privacy here isn't theoretical, it's live, global and genuinely varied. You'll start by getting deep into Alfa's obligations as a Controller, then grow into a dual-focus role spanning Data Privacy where Alfa acts as both Controller and Processor and Information Security. If you're the type who enjoys researching unfamiliar territory and turning it into practical guidance for a whole organisation, this is built for you. What we'll do together You'll manage the day to day Data Privacy programme, drafting and reviewing policies and documents, conducting supplier and Data Processing Agreement/Addendum (DPA) reviews, and running Data Protection Impact Assessments (DPIAs). You'll compile Records of Processing Activities, help draft International Data Transfers under UK and EU GDPR, and play a real part in promoting a positive Data Privacy culture across Alfa. As Alfa or our clients move into new geographical jurisdictions, you'll research and share findings with the wider Data Protection team. You'll compile audit schedules across internal, external and client led activity, participate in and eventually lead audit sessions, record findings and track remediation. You'll perform Data Privacy risk assessments in line with Alfa's risk methodology, monitor risks arising from audit activity, and support internal and client audit requests with solid evidence collation. How we'll work together You'll report into the Data Protection Officer, working closely with colleagues across Information Security, legal and client facing teams as you build out a genuinely cross functional view of privacy and security. The tools we'll use UK and EU GDPR frameworks, DPIAs, DPAs and Records of Processing Activities will be part of your everyday toolkit, alongside Alfa's risk assessment and treatment methodology and the audit processes that keep our clients confident in how we handle their data. What you'll bring to the team A strong academic record to degree level. Ability to manage your own workload and hit deadlines without close supervision. IAPP CIPP/E and CIPM certifications (or equivalent demonstrable experience), solid knowledge of UK and EU GDPR, and 4 years' prior Data Privacy experience. IAPP CIPP/US or working knowledge of Data Privacy legislation outside Europe gives you a head start, as does prior consulting experience across a range of clients or industries, but neither is a deal breaker. What we'll do for you Flexible hybrid or remote working. 25 days' annual leave plus bank holidays and flexible cultural days. Pension contribution match up to 6%. Your choice of a Windows or Mac laptop. Private health insurance and access to a private GP. Enhanced maternity, paternity and adoption leave with family friendly policies. Income protection. Life, disability and worldwide travel insurance. Interest free loans up to £10,000 after probation. Wellhub access to gyms, classes and wellbeing apps. Support pursuing membership of professional bodies: 5 days per year for conferences or training, 3 paid days of volunteering per year.
Senior Data Privacy Analyst Ready to do the best work of your life? Join us, and bring everything you have to solve the most fulfilling problems on the market. As a Gold accredited Investor in People we have everything you need to propel your career to new heights. Inclusion is the beating heart of Alfa so whoever you are, you can show up as your best self everyday - be that from home, from our offices, or a little bit of both. We've got the tech, we've got the opportunities, all we're missing is you. Alfa is looking to recruit a Senior Data Privacy Analyst to join our Information Security team. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means Data Privacy here isn't theoretical, it's live, global and genuinely varied. You'll start by getting deep into Alfa's obligations as a Controller, then grow into a dual-focus role spanning Data Privacy where Alfa acts as both Controller and Processor and Information Security. If you're the type who enjoys researching unfamiliar territory and turning it into practical guidance for a whole organisation, this is built for you. What we'll do together You'll manage the day to day Data Privacy programme, drafting and reviewing policies and documents, conducting supplier and Data Processing Agreement/Addendum (DPA) reviews, and running Data Protection Impact Assessments (DPIAs). You'll compile Records of Processing Activities, help draft International Data Transfers under UK and EU GDPR, and play a real part in promoting a positive Data Privacy culture across Alfa. As Alfa or our clients move into new geographical jurisdictions, you'll research and share findings with the wider Data Protection team. You'll compile audit schedules across internal, external and client led activity, participate in and eventually lead audit sessions, record findings and track remediation. You'll perform Data Privacy risk assessments in line with Alfa's risk methodology, monitor risks arising from audit activity, and support internal and client audit requests with solid evidence collation. How we'll work together You'll report into the Data Protection Officer, working closely with colleagues across Information Security, legal and client facing teams as you build out a genuinely cross functional view of privacy and security. The tools we'll use UK and EU GDPR frameworks, DPIAs, DPAs and Records of Processing Activities will be part of your everyday toolkit, alongside Alfa's risk assessment and treatment methodology and the audit processes that keep our clients confident in how we handle their data. What you'll bring to the team A strong academic record to degree level. Ability to manage your own workload and hit deadlines without close supervision. IAPP CIPP/E and CIPM certifications (or equivalent demonstrable experience), solid knowledge of UK and EU GDPR, and 4 years' prior Data Privacy experience. IAPP CIPP/US or working knowledge of Data Privacy legislation outside Europe gives you a head start, as does prior consulting experience across a range of clients or industries, but neither is a deal breaker. What we'll do for you Flexible hybrid or remote working. 25 days' annual leave plus bank holidays and flexible cultural days. Pension contribution match up to 6%. Your choice of a Windows or Mac laptop. Private health insurance and access to a private GP. Enhanced maternity, paternity and adoption leave with family friendly policies. Income protection. Life, disability and worldwide travel insurance. Interest free loans up to £10,000 after probation. Wellhub access to gyms, classes and wellbeing apps. Support pursuing membership of professional bodies: 5 days per year for conferences or training, 3 paid days of volunteering per year.