Job Summary
Our client has an EE opportunity available for an Information Security Officer based in Selby.
Requirements:
- 7 years’ experience in technology security or risk management roles of which should include:
- 4 years in technology policy writing.
- 4 years’ experience in designing implementing and closing technology general control gaps.
- 3 years’ experience in directly assessing and communicating risk exposures and developing risk mitigation plans.
- 3 years’ experience in coordinating large projects or initiatives.
- 4 years’ experience in people management including coaching and mentoring.
- IT related bachelor’s degree or degree in computer science or IT based practice.
- Professional registration or membership in information security forums would be advantageous.
- Security related certification would be advantageous.
Responsibilities:
- Implement the Technology Strategy and innovation for your area of responsibility.
- Execute analysis and planning activities.
- Research, develop and maintain a knowledge base of the IT threat landscape, security trending, etc.
- Implement the design for your area of responsibility.
- Design and manage a road map for information security.
- Build and measure business relationships with key internal and external stakeholders.
- Provide consulting and engagement services to various business units in the procurement process.
- Establish relevant internal control metrics and audits to measure outcomes and performance related to security.
- Conduct risk and quality management.
- Develop and maintain an internal security audit framework.
- Conduct financial management.
- Provide input into the departmental budget.
- Create awareness of IT security good practices to the IT end user and technical community.