Skip to main content

Information Security Third Party Assurance Analyst

Centrica
Full time
Apply now
CENTRICA LONDON 23 WIS03588

Description

Join us, be part of more.

We’re so much more than an energy company. We’re a family of brands revolutionising how we power the planet. We're energisers. One team of 21,000 colleagues that's energising a greener, fairer future by creating an energy system that doesn’t rely on fossil fuels, whilst living our powerful commitment to igniting positive change in our communities. Here, you can find more purpose, more passion, and more potential. That’s why working here is #MoreThanACareer. We do energy differently - we do it all. We make it, store it, move it, sell it, and mend it.

An opportunity to play your part We’re looking for an Information Security Third Party Assurance Analyst to help keep Centrica, our customers and our colleagues safe by making sure the suppliers we work with meet the right security, privacy and compliance standards. This is a brilliant opportunity to get close to the action across Procurement, Legal, Information Security, Technology GRC and our supplier partners, reviewing assurance activity, spotting potential risks and helping turn complex information into clear, practical decisions. You’ll support supplier onboarding, due diligence, reassessments and ongoing assurance throughout the supplier lifecycle, while tracking remediation plans and making sure risks are managed in the right way. If you enjoy connecting the dots, building strong relationships and bringing a bit of calm, clarity and curiosity to the world of third-party security, this role is a great chance to make a real impact at Centrica.

Location: UK-based hybrid role, Occasional travel to site.

Day to day

  • Operate the third-party security assessment process for procurement and business requests, making supplier assurance clear, consistent and easy to navigate.
  • Conduct supplier due diligence assessments by reviewing supplier responses, evidence, assurance reports and supporting documentation against Centrica’s information security, privacy, risk and contractual requirements.
  • Identify, assess and document third-party security, privacy and technology risks, including control gaps, deviations, concessions and remediation actions.
  • Support supplier onboarding, reassessment and ongoing assurance activity across the supplier lifecycle, with a focus on critical and high-risk suppliers and a strong eye on emerging cyber threats and good practice.
  • Produce clear, evidence-based risk assessments, reports and recommendations that support business owners, governance forums and risk-based decision making.
  • Build strong relationships with Procurement, Legal, Privacy, Information Security, Technology GRC, Service Owners, Project Delivery Teams and suppliers, while helping improve assurance processes, documentation and standards.

What are the must haves?

  • Experience in Information Security, Cyber Security, Risk, Compliance or Assurance, with a good understanding of how to balance strong controls with practical business needs.
  • Hands-on experience conducting supplier, vendor or third-party security assessments, including reviewing documentation, assurance reports and control evidence.
  • A solid understanding of information security frameworks and standards such as ISO 27001, NIST, Cyber Essentials and SOC reporting.
  • Strong analytical, organisational and problem-solving skills, with the ability to spot risks, join the dots and keep assurance activity moving in the right direction.
  • Confident communication skills, with the ability to explain technical and risk-based information clearly to both technical and non-technical audiences.
  • Experience using Governance, Risk and Compliance platforms such as Risk Ledger, Workiva, ServiceNow or similar tools, with strong stakeholder management skills and experience supporting contract reviews or supplier onboarding being a real bonus.

What's in it for you?

  • Enjoy a generous market salary, along with fantastic growth opportunities and a vibrant work environment!
  • Power up your pay with a 15% Employee Energy Allowance, surpassing the government's price cap!
  • Secure your future with our comprehensive pension plan, designed for peace of mind.
  • Elevate your health with our fully-funded company healthcare plan, prioritizing your well-being.
  • Recharge with a generous 25-day holiday allowance, plus public holidays, and even purchase up to 5 extra days for extended relaxation!
  • Experience unparalleled work-life balance with an exceptional selection of flexible benefits, from tech treats and eco-friendly car leases to travel insurance for your adventures!

Why should you apply?

We’re not a perfect place – but we’re a people place. Our priority is supporting all of the different realities our people face. Life is about so much more than work. We get it. That’s why we’ve designed our total rewards to give you the flexibility to choose what you need, when you need it, making sure that you and your family are supported not only financially, but physically and emotionally too. Visit the link below to discover why we’re a great place to work and what being part of more means for you.

https://www.morethanacareer.energy/centrica

If you're full of energy, fired up about sustainability, and ready to craft not only a better tomorrow, but a better you, then come and find your purpose in a team where your voice matters, your growth is non-negotiable, and your ambitions are our priority.


Help us, help you. We would love for you to share any information about yourself throughout our recruitment process so that we can better understand you and help shape your journey.

Information Security Third Party Assurance Analyst

Apply now