Information Security Compliance Analyst

Company: edenpeople
Apply for the Information Security Compliance Analyst
Location: Swindon
Job Description:

Take a step forward and let Edenred surprise you.

Every day, we deliver innovative solutions to improve the life of millions of people, connecting employees, companies, and merchants all around the world.

We know there are hundred ways for you to grow. With us, you will expand your skills in a multicultural, challenging, and dynamic environment.

Dare to join Edenred and get ready to thrive in a global company that will offer you endless opportunities.

Edenred is all about meritocracy. You come as you are, and you contribute. Indeed, the Edenred Group recognizes, recruits and develops all talents and singularities.

We are committed to preventing all forms of discrimination and to providing all our candidates with equal opportunities regardless of their gender and gender expression, disability, origin, religious belief and sexual orientation or any other criteria.

Information Security Compliance Analyst

Salary: Up to £45,000 per annum + Bonus

Swindon/London – Hybrid

Objective

You will support the Information Security function across PayTech by coordinating and improving compliance activities, helping ensure that security controls remain effective, evidenced, and aligned to regulatory, client, and internal requirements. The role partners with business, technology, audit, and group stakeholders to drive practical compliance outcomes across PCI DSS, DORA, and other regulatory and risk frameworks, internal control assurance, security awareness compliance, and client due diligence activity.

Crucial to this role is helping maintain PayTech’s ability to demonstrate that security controls operate in practice, not only on paper, and that identified gaps are tracked, escalated, and supported through to closure. The role also helps improve confidence in PayTech’s security posture by supporting internal audit requirements and responding to client security questionnaires and audits in a structured, repeatable way.

Responsible for

  • The Compliance Analyst is responsible for supporting the day-to-day operation of PayTech’s security compliance activities. This includes maintaining evidence and documentation, assisting with PCI DSS readiness, coordinating responses to internal audit and client assurance requests, owning the security awareness programme and activities, liaising with our learning teams and wider group functions to maintain the content and ensure it’s delivery, and helping track remediation actions across the business. The role works closely with the rest of the PayTech information security team, technology teams, and group functions to ensure that compliance activity leads to measurable risk reduction and operational improvement.
  • Promote the use of standard frameworks and consistent evidence practices so that PayTech can meet immediate PCI DSS and audit obligations while improving compatibility with wider regulatory, group, and client assurance expectations. This includes maintaining clear records and minutes, repeatable processes, and practical reporting that supports internal governance and external assurance activity.

What you will be doing

  • Support and coordinate PCI DSS compliance activity, including evidence collection, control tracking, action follow-up, and audit readiness reviews.
  • Assist with internal audit requirements by gathering evidence, coordinating with control owners, tracking findings, and supporting timely remediation closure.
  • Support responses to client security questionnaires, due diligence requests, and client-led audits by coordinating inputs, maintaining standard response packs, and improving consistency of answers.
  • Maintain and improve compliance documentation, including policies, procedures, standards, evidence libraries, control descriptions, and meeting records.
  • Track security awareness compliance activities, including completion reporting, support for awareness campaigns, policy attestations, and follow-up of non-compliance.
  • Conduct scheduled compliance checks and sample reviews to help confirm that required controls and processes are operating as expected.
  • Support risk and exception management by ensuring issues are logged, documented accurately, escalated where required, and reviewed through the proper governance forums.
  • Work with technology, engineering, operations, legal, compliance, finance, and group teams to provide clear guidance on evidence expectations and policy requirements.
  • Produce reporting and dashboards on compliance status, audit actions, awareness completion, and outstanding remediation items.
  • Contribute to continuous improvement of compliance processes so that audit and assurance activity becomes more efficient, repeatable, and less dependent on manual chasing.

Key Result Areas

  • PCI DSS and Control Assurance: Help ensure PCI DSS obligations are supported through well-maintained evidence, control tracking, and readiness for formal assessment activity. The role supports the reduction of audit-visible process gaps by improving documentation quality and follo

#J-18808-Ljbffr…

Posted: October 8th, 2026