Cyber Governance Analyst

Lanes Group· Group 6,5,4
Apply Now ↗
📍 Leeds, England, United KingdomFull time

About this role

Lanes Group Ltd is a leading nationwide utility services provider with c.5000 dedicated employees. Our diverse subsidiaries drive our success across various sectors, contributing to a remarkable turnover of over £650 million. We are committed to excellence and innovation, ensuring we provide industry leading services to our clients and stakeholders. Join us to be part of a dynamic and growing team that values diversity and fosters professional growth.

Department:

IT works closely with operational and support teams across the UK, providing the technology, systems, and infrastructure that enable the business to operate efficiently, securely, and effectively.

The team is responsible for maintaining, securing and supporting business-critical applications, networks, devices, and digital services, while driving technology improvements and innovation across the organisation.

Through responsive support, robust security practices, and continuous development of IT solutions, the team helps ensure employees have the tools and technology they need to perform at their best.

Purpose of the role:

Cyber Security Analyst

Location: Leeds/London/Midlands (hybrid work pattern)

Hours: Full-time, Monday to Friday (37.5 hours per week), with flexible working options. 

We are seeking a Cyber Governance Analyst to support the development and maintenance of our governance, risk, and compliance activities. The successful candidate will play a key role in ensuring the organisation remains compliant with Cyber Essentials, ISO 27001, and GDPR requirements, while also running wider security awareness initiatives. This role is best suited to someone with a strong eye for detail, excellent documentation skills, and an interest in building a career within information security governance. Occasional travel to regional sites is required, therefore a UK driving licence is essential.

Key Responsibilities:

  • Coordinate the maintenance of ISO 27001 compliance, audits, and documentation.
  • Coordinate Cyber Essentials certification, gathering evidence and tracking remediation actions.
  • Maintain accurate logs and reports for backup checks, access reviews, and other compliance processes.
  • Produce reports and metrics for management on compliance status and risks.
  • Track and assess third-party and supply-chain security risks. Build and run security awareness training plans, manage communications and security culture across the organisation.
  • Provide governance input to IT and business projects, ensuring security requirements are considered from the outset.
  • Manage the security and IT risk registers, chairing the monthly risk meeting and ensuring action and remediations as agreed.
  • Support business continuity, disaster recovery and major incident response and process.
  • Support building a well-rounded security team, providing guidance and maturity across IT.

Key Requirements

Skills & Experience:

  • 2–5 years’ experience in IT, compliance, or data-related roles.
  • Familiarity with Microsoft Azure and Entra ID from a compliance/security perspective.
  • Exposure to security frameworks such as ISO 27001 or Cyber Essentials.
  • Certifications (e.g., CompTIA Security+, ISO 27001 Lead Implementer, CISMP) either gained or being worked towards.
  • Experience maintaining policies, evidence, risk registers or compliance documentation would be advantageous.
  • Strong attention to detail and documentation skills.
  • Analytical mindset with the ability to author and interpret policies and standards.
  • Effective communicator, able to explain security requirements across different teams.
  • Organised and capable of handling multiple tasks simultaneously.
  • Proactive, inquisitive and willing to develop knowledge across the wider cyber security discipline.

Living the Company Values

By embedding our companies core values and purpose into each role, ensures that every employee, regardless of their role or level, understands how their individual development and contributions align with our purpose of ‘improving today for a better tomorrow’

Each role and value has an alignment to set proficiency levels and expectations; this role holder is expected to:

  • Leading: Acts as a role model, shaping the learning agenda and influencing change.
  • Agile: Anticipates learning needs, adjusts quickly to changing operational contexts.
  • Nurturing: Supports the development of others through coaching and structured development plans.
  • Engaging: Inspires and motivates learners, builds trust and credibility
  • Safe & Secure: Ensures all learning is aligned to safety and compliance standards.

Your Contribution to the company:

  • Strive to be always positive and constructive
  • Adhere to all company policies
  • Straight talking about the facts of the situation – open discussions are the best way to find solutions
  • Help others through communicating clearly
  • Deliver on commitments
  • Ensure that any ideas that may enhance the productivity or systems of the company are brought to the attention of Senior Management, or your colleagues
  • Deliver our Company Values understanding that by working together in unity we are ‘Stronger Together

Equality, Diversion & Inclusion

At Lanes Group, we are dedicated to fostering a diverse and inclusive workplace where everyone feels valued and empowered. We believe that our differences make us stronger and are committed to providing equal opportunities for all employees. We welcome and encourage applications from individuals of all backgrounds, including those from underrepresented groups. Join us in our commitment to creating a more inclusive and diverse world.

Frequently Asked Questions

Is the salary disclosed for the Cyber Governance Analyst position at Lanes Group?
The salary for this Cyber Governance Analyst role at Lanes Group is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Cyber Governance Analyst position at Lanes Group located?
This Cyber Governance Analyst role at Lanes Group is based in Leeds, England, United Kingdom. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Cyber Governance Analyst role at Lanes Group full-time or part-time?
This is listed as a Full time position. It is posted as a Cyber Governance Analyst role in the Group 6,5,4 department at Lanes Group.
Which team or department does the Cyber Governance Analyst at Lanes Group belong to?
This Cyber Governance Analyst position is part of the Group 6,5,4 department at Lanes Group. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Cyber Governance Analyst position at Lanes Group?
Click the "Apply Now" button on this page. You will be redirected to Lanes Group's official application portal hosted on workable where you can submit your application directly.
When was the Cyber Governance Analyst job at Lanes Group posted?
This Cyber Governance Analyst position at Lanes Group was posted on Sep 28, 2026. Apply as soon as possible — early applications are often reviewed first.
Cyber Governance Analyst
Lanes Group
Apply for this role ↗

You'll be redirected to Lanes Group's official application page on workable.