
1001 - 5000 employees
Founded 1995
📋 Compliance
☁️ SaaS
👥 HR Tech
💰 Private equity on 2025-01
Compliance • SaaS • HR Tech
The Citation Group is a global compliance and workplace risk management company that helps businesses protect people, reputations, and the environment. It provides a mix of advisory services (HR and employment law, health & safety, certifications such as ISO/NDIS/SSIP), background screening, cybersecurity advice, and sustainability/waste management, alongside technology products — a compliance platform, e-learning, payroll and identity verification capabilities. The company operates across the UK, Australia, New Zealand and Canada, reports large-scale software usage and client counts, and has grown via acquisitions and investment to expand payroll, digital identity and HR technology offerings.
🕒 August 5
Improve your chances of getting an interview by checking your resume score before you apply.

1001 - 5000 employees
Founded 1995
📋 Compliance
☁️ SaaS
👥 HR Tech
💰 Private equity on 2025-01
Compliance • SaaS • HR Tech
The Citation Group is a global compliance and workplace risk management company that helps businesses protect people, reputations, and the environment. It provides a mix of advisory services (HR and employment law, health & safety, certifications such as ISO/NDIS/SSIP), background screening, cybersecurity advice, and sustainability/waste management, alongside technology products — a compliance platform, e-learning, payroll and identity verification capabilities. The company operates across the UK, Australia, New Zealand and Canada, reports large-scale software usage and client counts, and has grown via acquisitions and investment to expand payroll, digital identity and HR technology offerings.
• Deliver Cyber Essentials and Cyber Essentials Plus assessments in line with IASME and NCSC requirements • Review Cyber Essentials questionnaires and supporting technical evidence • Provide clear, practical guidance to clients throughout the certification process • Conduct vulnerability scans against client environments using industry-standard tools • Analyse vulnerability scan results and produce clear remediation recommendations • Review operating systems, applications and network devices to identify missing security updates • Assess patch management processes and advise clients on improving vulnerability management practices • Assist clients with remediation activities to help them achieve certification • Produce high-quality assessment reports and technical documentation • Maintain accurate records of assessments and certification activities • Keep up to date with Cyber Essentials requirements, emerging cyber threats and industry best practice • Work collaboratively with colleagues across the penetration testing and compliance teams
• Minimum of three years' experience in an IT or cyber security role within the last five years • Good understanding of Windows, macOS and Linux operating systems • Experience with Microsoft 365 administration and security features • Understanding of networking fundamentals including TCP/IP, DNS, firewalls and VPNs • Knowledge of vulnerability management and security best practices • Good understanding of software patching and operating system update processes • Excellent written and verbal communication skills • Strong attention to detail and problem-solving ability • Ability to explain technical concepts to both technical and non-technical audiences • Experience using vulnerability scanning tools such as Nessus, Qualys, OpenVAS or similar • Cyber Essentials Assessor qualification • Experience delivering Cyber Essentials and/or Cyber Essentials Plus assessments • Security+, CISM, CISSP, ISO 27001 Lead Auditor or equivalent certifications • Experience with vulnerability remediation and security consultancy
• Competitive salary • Company pension scheme • 25 days annual leave plus bank holidays • Additional day off for your birthday • Ongoing training and funded professional certifications, including Cyber Essentials Assessor, CREST and Cyber Scheme qualifications • Clear career progression within a growing cyber security consultancy • Exposure to a wide range of organisations across multiple industries • Supportive team environment with opportunities to broaden your technical skills beyond Cyber Essentials
Apply Now🕒 August 4
Product Security Analyst validating web and mobile vulnerabilities for HackerOne’s AI-powered offensive security platform. Reproducing findings, assessing impact, and guiding remediation for enterprise customers.
🇺🇸 United States – Remote
💵 $120k - $155k / year
💰 $49M Series E on 2022-01
⏰ Full Time
🟡 Mid-level
🟠 Senior
🔐 Security Analyst
🦅 H1B Visa Sponsor
🕒 August 4
Information Security Analyst securing ExamWorks’ healthcare services systems, networks, and applications. Managing vulnerabilities, audits, customer security requests, and compliance initiatives.
🕒 August 4
Information Security Analyst securing systems for ExamWorks, a healthcare services provider. Managing vulnerabilities, firewalls, audits, and customer security requests remotely.
🕒 August 4
Senior analyst reviewing IT audits and security assessments for HITRUST, a cybersecurity assurance and certification provider. Ensuring certification quality, assessor consistency, and defensible security validation.
🕒 July 30
Senior Security Analyst protecting CoLab’s AI platform for mechanical engineering teams. Leading cloud detection, incident response, FedRAMP compliance, and continuous monitoring.