Security Analyst
Job in
Greater London, London, Greater London, W1B, England, UK
Listing for:
Rail Delivery Group
Full Time
position
Listed on 2026-02-28
Job specializations:
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Data Security
Salary/Wage Range or Industry Benchmark: 60000 - 80000 GBP Yearly
GBP
60000.00
80000.00
YEAR
Job Description & How to Apply Below
Location: Greater LondonClosing Date for Applications
19th March 2026
What is the purpose of this job?The Security Analyst will support the RDG Security Manager in delivering security assurance across projects undertaken by RDG and its member organisations. The role will help ensure that appropriate, risk‑based information security requirements are embedded throughout the project lifecycle and that agreed controls are effectively implemented.
The post holder will assist in identifying, assessing, and improving cyber security risks associated with RDG information services and shared industry systems. They will support the work of the Rail Cyber Security Committee and provide clear, evidence‑based input to RDG Executive and member governance groups on information security performance, risk, and improvement activity.
The role will contribute to defining and maintaining information security requirements for RDG’s programmes to transform ticketing and industry information systems, ensuring security-by-design principles are applied consistently.
The Security Analyst will also support the delivery of key cyber security initiatives, including the Third-Party Security Compliance Standard and the Supply Chain Management Project, and play an active role in supporting the implementation and ongoing delivery of the Rail Cyber Security Strategy.
What can I expect to do in this job?This isn’t an exhaustive list, but things you can expect to be involved with include:
Supporting the development and ongoing use of methods to assess information security risk across RDG services, building on existing practices and advisory activity.Working with internal teams and third‑party suppliers to identify, assess, and manage cyber security risks, including supporting the development and tracking of remediation plans.Contributing to the delivery of remediation projects and other initiatives designed to reduce and monitor cyber security risk.Supporting the management of information security incidents in collaboration with third party service providers and RDG service management teams.Working with member organisations and governance groups to support the development of business cases that improve RDG’s overall security posture.Helping define, coordinate, and maintain cyber security reporting for RDG Executive, Strategic Boards, and member governance forums, ensuring reporting is clear, risk-based, and actionable.Supporting the Rail Cyber Security Committee in coordinating industry activity and delivery of the Rail Cyber Security Strategy.Working collaboratively across the rail industry, including with Train and Freight Operating Companies, suppliers, and government stakeholders.Supporting the Chief Information Security Officer in assessing supply chain security maturity, risks, threats, and performance, and applying recognised cyber security good practice.Carrying out business impact assessments, aligned to RDG’s information systems architecture, to help prioritise proportionate security controls for systems, digital assets, and interfaces.Assisting with the coordination, reporting, and delivery of vulnerability assessments across RDG services and key suppliers.Working with internal stakeholders and suppliers to ensure information security principles, including Security by Design and Privacy by Default, are embedded into projects from the outset.Supporting the delivery of information security awareness and training for RDG staff and members where required.Helping to foster a positive security culture within RDG and promoting RDG cyber security services across the wider industry.Proactively proposing and contributing to multi-disciplinary initiatives that address cyber risk across ticketing, passenger information, and back‑end services.Providing concise, risk-focused cyber security updates to RDG Board and Strategic Boards to support effective decision‑making.Supporting RDG’s coordination with government and national cyber bodies, particularly in relation to regulatory change, supply chain resilience, and emerging cyber threats.Who will my key contacts be?Alan Cain – Chief Information Security Officer
Daniel Major – Security Manager
What experience,…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here: