Crown Agents Bank
Information Security Analyst

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Company Description
Crown Agents Bank is a vastly growing and regulated UK bank that connects emerging and frontier markets to the rest of the world, using FX and payments technology. We are transforming the way payments and FX move through emerging markets, reducing friction so that more money gets to those who need it. Emerging markets payments are usually challenging, expensive, unreliable, and opaque. Our solutions help fix these pain points. Ultimately, we connect traditionally hard-to-reach regions to global financial infrastructure, giving access to the best prices and the fastest, most reliable settlement.
FX and cross-border payments are often complex and expensive, especially when operating in emerging markets. Crown Agents Bank (CAB) wraps its deep and trusted relationships and strength of network around innovative digital capabilities and cross-border transaction banking solutions to enable fintech, corporates, governments, development organisations, and banks to move money to, from, and across often hard-to-reach markets.
Job Description
Role Purpose
The Information Security Analyst is a broad and varied role within the firm's CISO function, offering structured exposure across information security governance, regulatory compliance, security awareness, and operational support.
Working closely with members of the CISO team, the role holder will contribute to a wide range of security activities — including security operations, regulatory framework compliance (ISO 27001, DORA, NYDFS), vendor risk management, security awareness programmes, and governance reporting. The role provides direct involvement in how the firm manages its security obligations and responds to an evolving regulatory and threat landscape.
The position is designed as a strong foundation for a career in information security, with visibility across the full CISO service catalogue and the opportunity to develop expertise across multiple security disciplines. The role holder will be supported by experienced practitioners across governance, risk, cloud security, and security engineering.
Role Responsibilities
Governance & Reporting
- Administer ISGF and ORC meeting logistics including preparing agendas, collating papers, recording minutes, and tracking actions to completion.
- Maintain the CISO organisational RACI, ensuring it is kept current as team structure and responsibilities evolve.
- Compile and distribute the master CISO security reporting pack, collating inputs from all service areas into a consistent, accurate, and timely governance view.
- Maintain and update technology roadmap tracking documents, collating status updates and producing progress summaries for review.
- Support preparation of Board, ExCo, and governance forum presentations and papers.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Policies, Standards & Compliance
- Manage the security policies and standards library, tracking review schedules, chasing approvals, and maintaining version control.
- Maintain the ISO 27001 evidence library, coordinating evidence collection cycles and supporting internal and external audit preparation.
- Administer DORA compliance tracking, gathering evidence, maintaining registers, and flagging gaps for senior review.
- Support NYDFS Part 500 compliance activities including maintaining evidence packs and tracking annual certification requirements.
- Own Cyber Essentials and SWIFT CSP evidence gathering and submission processes.
- Administer the Risk & Controls Register within Vanta and RiskConnect, keeping control status and evidence current.
- Support Financial Audit and Internal Audit activities through evidence provision, scheduling, and action tracking.
Security Awareness
- Administer the annual mandatory security training programme, tracking completion rates, chasing non-completions, and producing completion reports.
- Execute phishing simulation campaigns, analysing results, producing reports, and coordinating follow-up training for at-risk users.
- Own the security awareness communications calendar, producing and distributing content for firm-wide awareness campaigns.
- Coordinate Executive & Board training logistics, scheduling, and record-keeping.
- Coordinate specialist security training activities, managing scheduling, attendance tracking, and training records.
Vendor Risk Administration
- Administer vendor onboarding activities, running security questionnaire processes, tracking responses, and maintaining the vendor register.
- Support vendor annual review cycles, coordinating evidence collection, scheduling review meetings, and updating vendor risk records.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Operations Support
- Assist the Operational Security Engineer with routine security operations tasks including ticket handling, tool administration, and evidence gathering.
- Contribute to automation of routine tasks, helping to identify, document, and test repeatable processes suitable for scripting or workflow tooling.
Qualifications
Qualifications
- Degree-level education or equivalent; a subject with an information security, technology, or analytical component is beneficial but not required.
- An interest in pursuing professional security qualifications (e.g., CompTIA Security+, CISMP, BCS Information Security) is expected.
Experience
- 0–2 years of professional experience; prior exposure to an information security, compliance, risk, or technology environment is advantageous but not essential.
- Strong organisational skills with the ability to manage multiple parallel tasks, track deadlines, and maintain accurate records.
- Proficient in Microsoft 365 (Word, Excel, PowerPoint, SharePoint); familiarity with security or GRC tooling such as Vanta or RiskConnect is a plus.
- Clear written communication skills, with the ability to produce well-structured reports and documentation.
- Attentive to detail with a methodical approach to evidence gathering, record-keeping, and process execution.
- Genuine interest in information security as a career, with a desire to grow within the CISO function over time.
Additional Information
- Hybrid working (3 days in office)
- Contributory personal pension plan: Minimum: Employee 2% and Employer 7%. Employer matches contributions in 1% increments to a maximum of: Employee 5% and Employer 10%
- Life Assurance – 4 times annual salary
- Group Income Protection
- Private Medical Insurance – this may include cover for partner and/or children at company cost. Cover includes Optical, Dental, and Audiology
- Discretionary Bonus
- Competitive Annual Leave
- 2 Volunteering Days
- Benefit Hub
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location