Keyloop bridges the gap between dealers, manufacturers, technology suppliers and car buyers.
We empower car dealers and manufacturers to fully embrace digital transformation. How? By creating innovative technology that makes selling cars better for our customers, and buying and owning cars better for theirs.
Β
We use cutting-edge technology to link our clientsβ systems, departments and sites. We provide an open technology platform thatβs shaping the industry for the future. We use data to help clients become more efficient, increase profitability and give more customers an amazing experience.Β Want to be part of it?
Β
Role Summary
The Information Security Analyst is responsible for managing Keyloopβs information security processes, standards, and tooling outside of SOC operations. This role ensures compliance with industry standards and certifications such as SOC 2, ISO 27001, and PCI DSS, supports secure process design, and drives remediation activities across the organisation.
The analyst works closely with Security Engineering, IT, and business teams to identify vulnerabilities, manage security tooling, contribute to projects, and produce actionable reports and insights to enhance the overall security posture
Key Responsibilities
β’ Policy, Standards & Process Management
β’ Develop, maintain, and enforce information security policies, standards, and guidelines.
β’ Support implementation of secure processes across IT and business functions.
β’ Ensure alignment of policies and processes with SOC 2, ISO 27001, PCI DSS, and other relevant compliance frameworks.
β’ Conduct regular reviews and updates to ensure currency and effectiveness.
β’ Vulnerability Management & Remediation
β’ Manage vulnerability scanning tools and coordinate scans across systems, applications, and networks.
β’ Triage, prioritise, and track remediation of identified vulnerabilities.
β’ Collaborate with Security Engineering, IT, and business teams to ensure timely and effective remediation.
β’ Produce reports on vulnerabilities, trends, and risk exposure for leadership and stakeholders.
β’ Security Tooling & Operations
β’ Manage and optimise security tools outside of the SOC, including endpoint security, configuration management, identity and access tools, and cloud security monitoring.
β’ Ensure security tooling is configured, updated, and integrated with relevant IT and business systems.
β’ Provide guidance and support to teams in the use of security tools and automation.
β’ Project Engagement & Advisory
β’ Participate in IT, security, and business projects to provide security expertise and risk guidance.
β’ Conduct security impact assessments for new initiatives, systems, and technologies.
β’ Collaborate with project teams to embed security into design and operational workflows.
β’ Reporting, Insights & Remediation
β’ Produce reports and dashboards on security metrics, compliance posture, and risk exposure.
β’ Translate insights into actionable recommendations and remediation plans.
β’ Track and communicate remediation progress and escalate issues where required.
β’ Support decision-making by providing security risk insights to SecEng, IT, and business stakeholders.
β’ Compliance & Certifications
β’ Support the organisation in achieving and maintaining certifications such as SOC 2, ISO 27001, and PCI DSS.
β’ Assist in internal and external audits by providing evidence and documentation.
β’ Ensure continuous alignment of security operations with regulatory and industry requirements.
β’ Continuous Improvement
β’ Stay current with emerging threats, vulnerabilities, and security best practices.
β’ Recommend improvements to processes, tooling, and reporting to enhance security maturity.
β’ Contribute to the development of Keyloopβs security culture and capability.
Required Experience & Qualifications
β’ 3β5 years of experience in information security, compliance, or related roles.
β’ Experience with vulnerability management, security tooling, and compliance frameworks (SOC 2, ISO 27001, PCI DSS).
β’ Exposure to process design and secure operations in IT and business environments.
β’ Experience supporting security projects and driving remediation initiatives.
β’ Skills & Competencies
β’ Technical Skills
β’ Information security policies, standards, and controls
β’ Vulnerability management and remediation tracking
β’ Security tooling configuration and optimisation
β’ Compliance frameworks and audit support
β’ Reporting, metrics, and data-driven insights
β’ Soft Skills
β’ Strong analytical and problem-solving abilities
β’ Effective communication and stakeholder management
β’ Ability to work across technical and business teams
β’ Detail-oriented with strong organizational and documentation skills
β’ Proactive and adaptable in a dynamic environment
Why join us?
Weβre on a journey to become market leaders in our space β and with that comes some incredible opportunities. Collaborate and learn from industry experts from all over the globe. Work with game-changing products and services. Get the training and support you need to try new things, adapt to quick changes and explore different paths. Join Keyloop and progress your career, your way.
Β
An inclusive environment to thrive
Weβre committed to fostering an inclusive work environment. One that respects all dimensions of diversity.Β We promote an inclusive culture within our business, and we celebrate different employees and lifestyles β not just on key days, but every day.
Β
Be rewarded for your efforts
We believe people should be paid based on their performance so our pay and benefits reflect this and are designed to attract the very best talent. We encourage everyone in our organisation to explore opportunities which enable them to grow their career through investment in their development but equally by working in a culture which fosters support and unbridled collaboration.
Keyloop doesnβt require academic qualifications for this position. We select based on experience and potential, not credentials.
We are also an equal opportunity employer committed to building a diverse and inclusive workforce.Β We value diversity and encourage candidates of all backgrounds to apply.