Risk Assessment & Management: Conduct comprehensive information security risk assessments, identifying vulnerabilities and recommending mitigation strategies aligned with ISO27005 standards. Security Framework Implementation: Develop, implement, and maintain security policies and procedures in line with industry standards and best practices. Consultancy Services: Provide expert guidance and consultation to internal stakeholders on information security issues, risk management, and compliance. Governance & Compliance: Ensure compliance with relevant legal, regulatory, and industry requirements. Participate in internal and external audits as needed. Collaboration: Work with IT, DevOps, and business teams to integrate security measures into all processes and systems, promoting a culture of security awareness. Continuous Improvement: Stay up-to-date with the latest cybersecurity trends, threats, and technologies. Proactively identify opportunities to enhance our security posture. Must-Have Qualifications and Experience
Information Security Expertise: Proven experience as an Information Security Specialist with a strong understanding of risk assessment and management. Risk & Governance Knowledge: In-depth experience with risk and governance frameworks, specifically ISO27005. Consultancy Skills: Strong interpersonal and communication skills, with a proven ability to advise and influence stakeholders at all levels. Nice-to-Have Skills
DevSecOps: Experience with integrating security practices within DevOps environments. Certifications: Professional security certifications such as CISSP, CISM, or equivalent are highly advantageous. Salary & Benefits:
Competitive Salary: £60,000 - £75,000 per annum, depending on experience. Bonus: 15% annual performance bonus. Pension: 12% employer contribution when you contribute 3%. Professional Development: Opportunities for certifications and ongoing training to support your career growth.
#J-18808-Ljbffr