Chief Information Security Officer (CISO) - Remote
Posted 10 days ago
Job Viewed
Job Description
As the CISO, your remit will include defining the information security vision, strategy, and roadmap, and overseeing its execution. You will lead and manage the information security team, including security operations, risk management, compliance, and incident response functions. Key responsibilities involve developing and enforcing security policies, standards, and procedures; conducting risk assessments; implementing security controls; and managing third-party risk. You will be the primary point of contact for all security-related matters, advising the executive team and board of directors on security posture and emerging threats. Experience in managing large-scale security incidents, developing business continuity and disaster recovery plans, and implementing security awareness training programs is essential. A deep understanding of cybersecurity frameworks (e.g., ISO 27001, NIST), data privacy regulations (e.g., GDPR), and various security technologies (SIEM, EDR, DLP, firewalls) is required. This is a premier opportunity for a seasoned security leader to drive strategic security initiatives within a dynamic and forward-thinking company, operating entirely remotely and shaping the future of its cybersecurity posture.
- Develop and execute the overall information security strategy.
- Lead and manage the information security department.
- Establish and maintain security policies, standards, and procedures.
- Oversee risk assessments and implement security controls.
- Manage the incident response and business continuity planning.
- Ensure compliance with cybersecurity regulations and frameworks.
- Advise executive leadership on security matters and emerging threats.
- Foster a strong security-aware culture across the organisation.
- Manage relationships with vendors and third-party security providers.
- Oversee security awareness training and education programs.
Business Information Security Officer
Posted 1 day ago
Job Viewed
Job Description
Business Information Security Officer
The Business Information Security Officer (BISO) will act as the strategic bridge between client business units and the SOC, embedding security requirements into business processes, guiding risk based decisions, and ensuring regulatory compliance while enabling business outcomes. You will advise senior stakeholders, translate technical risk into business terms, and lead business facing security programmes across regulated and complex environments.
**Please note, to be considered for this role, you must be eligible for SC clearance**
**What you'll be doing:**
Responsibilities
+ Lead business facing security integration: translate security requirements into business processes, define security acceptance criteria for projects and ensure requirements are implemented.
+ Act as primary security liaison to business leaders: prepare executive briefings, present security posture and influence prioritisation and budget decisions.
+ Conduct and own business focused risk assessments, maintain unit risk registers, and drive risk treatment plans tied to business impact metrics.
+ Implement and govern security controls and compliance frameworks (e.g., ISO 27001, NIST, GDPR) within business units; support audits and remediation tracking.
+ Coordinate incident response and business continuity for incidents that affect operations; lead post incident business impact reviews and remediation verification.
+ Develop business aligned security programmes and roadmaps, support security tool selection in business context, and measure program effectiveness.
+ Drive security culture: deliver tailored awareness, embed secure ways of working, and mentor business stakeholders to improve risk literacy.
**What experience you'll bring:**
Required Qualifications (Must have)
+ 6+ years' experience in information security with business facing responsibilities; 3+ years in business liaison or stakeholder management roles.
+ Demonstrable experience conducting business risk assessments, developing risk treatment plans and supporting audit/compliance activities.
+ Strong business acumen, ability to build executive relationships and translate technical risk into business impact.
+ Professional certifications: CISSP required; CISA or CISM preferred.
Preferred Qualifications
+ Experience in regulated sectors (finance, healthcare, public sector) and familiarity with information security regulations.
+ ITIL or service management background to coordinate operational controls (BISO Job Spec - Certifications Required).
+ Prior experience leading security programme implementations and measuring business KPIs.
Success Metrics (6-12 months)
+ Business stakeholder satisfaction ≥ target for security engagement and advisory services.
+ Reduction in incidents impacting business operations by X% vs baseline and improved mean time to contain (set X per business unit).
+ Compliance rates for targeted controls in business units ≥ target (e.g., 95% remediation within SLA).
**Who we are:**
We're a business with a global reach that empowers local teams, and we undertake hugely exciting work that is genuinely changing the world. Our advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects.
Our inclusive work environment prioritises mutual respect, accountability, and continuous learning for all our people. This approach fosters collaboration, well-being, growth, and agility, leading to a more diverse, innovative, and competitive organisation. We are also proud to share that we have a range of Inclusion Networks such as: the Women's Business Network, Cultural and Ethnicity Network, LGBTQ+ & Allies Network, Neurodiversity Network and the Parent Network.
For more information on Diversity, Equity and Inclusion please click here: Creating Inclusion Together at NTT DATA UK | NTT DATA ( we'll offer you:**
We offer a range of tailored benefits that support your physical, emotional, and financial wellbeing. Our Learning and Development team ensure that there are continuous growth and development opportunities for our people. We also offer the opportunity to have flexible work options.
You can find more information about NTT DATA UK & Ireland here: are an equal opportunities employer. We believe in the fair treatment of all our employees and commit to promoting equity and diversity in our employment practices. We are also a proud Disability Confident Committed Employer - we are committed to creating a diverse and inclusive workforce. We actively collaborate with individuals who have disabilities and long-term health conditions which have an effect on their ability to do normal daily activities, ensuring that barriers are eliminated when it comes to employment opportunities. In line with our commitment, we guarantee an interview to applicants who declare to us, during the application process, that they have a disability and meet the minimum requirements for the role. If you require any reasonable adjustments during the recruitment process, please let us know. Join us in building a truly diverse and empowered team.
Back to search Email to a friend Apply now
Information Security Engineer
Posted 1 day ago
Job Viewed
Job Description
In this role of significant responsibility, you will
operate at the cutting edge of technology, protecting the business from cyber threats. You will design, implement, and maintain security solutions that protect networks, systems, and data. You will identify vulnerabilities, harden systems, respond to threats, and ensure compliance with security best practices and industry standards, including ISO27001.
In order to be suitable for this role you must have demonstrable hands-on expertise with monitoring and securing enterprise class technology estates. You will have proven experience with Cyber Security best practice including the NIST Cloud Security guidelines. You will support ISO 27001 compliance and have strong documentation skills. Experience in the Telco sector and knowledge of the UK Telecom Security Act would be advantageous to your application, as would CISSP and/or CISM accreditation.
You will develop and maintain the information security architecture and will have proven experience with compliance, vulnerability management, network security, cloud security (AWS & Azure), firewalls and intrusion detection systems. You will monitor networks and systems for security breaches, enhance the performance of SecOps tools, perform regular threat analysis and act as a subject matter expert for mitigating cyber risks.
This is an outstanding opportunity for an accomplished Information Security Engineer to join a market leading business that invests heavily in its staff and offers an impressive range of benefits, including a 15% bonus.
#J-18808-Ljbffrn
Information Security Manager
Posted 1 day ago
Job Viewed
Job Description
#J-18808-Ljbffrn
Information Security Manager
Posted 1 day ago
Job Viewed
Job Description
Direct message the job poster from Your Next HirenGrowth Partner & Talent Advisor serving SAAS scale-ups
Information Security Manager (hands on)nJob role:
Cyber Security Specialist, Information Security LeadnIf you’re a cyber specialist who thrives in high-trust, high-stakes environments where discretion, resilience and autonomy matter this one’s for you.nWe’re supporting a global firm operating across multiple international offices, known for its elite clientele and meticulous standards.nAs their first dedicated cyber hire, you’ll lead the end-to-end security function from strategy and tooling to compliance and incident response embedding a culture of cyber excellence throughout the business.nWhat you’ll be doing:nLeading the cyber security roadmap and risk strategynSecuring infrastructure across cloud and on-prem environments (Microsoft 365, Azure, Linux)nManaging firewalls, VPNs, encryption, and endpoint protectionnDriving awareness training and phishing prevention company-widenOwning policy, compliance, and audits (GDPR, CCPA, ISO)nActing as first responder for cyber incidents and threat monitoringnThe environment:nCloud + hybrid infrastructure (Microsoft 365, Entra, Purview, Azure)nMix of Windows, Linux, and virtualised environmentsnCompliance frameworks: ISO27001, GDPR, SOC2nSecurity tooling: Defender, Sentinel, Secure Score, custom scriptsnFully autonomous remit with director-level supportnWho we’re looking for:n10+ years in IT with strong cyber specialismnHands-on operator with strategic oversightnComfortable leading in a high-standards, discreet environmentnInterviews happening this monthnReady to shape the cyber function from scratch in a truly unique setting?nDrop me a message for details or to refer someone confidentially.nSeniority level
Seniority level Mid-Senior levelnEmployment type
Employment type Full-timenJob function
Job function Information TechnologynIndustries Computer and Network SecuritynReferrals increase your chances of interviewing at Your Next Hire by 2xnGet notified about new Information Security Manager jobs in
London, England, United Kingdom .nInformation Security Manager - ISO 27001, InfoSec, Microsoft Purview,
London, England, United Kingdom 4 days agonChief Information Security Officer – Managing Director
London, England, United Kingdom 2 weeks agonInformation Security Manager - London (Hybrid)
Security & Information Officer (Defence)
Greater London, England, United Kingdom 2 weeks agonCyber/ Information Security Third Party Risk Manager
Information Technology Governance Manager
London, England, United Kingdom 22 hours agonLondon, England, United Kingdom 2 weeks agonCroydon, England, United Kingdom 2 weeks agonLondon, England, United Kingdom 4 days agonLondon, England, United Kingdom 2 weeks agonIlford, England, United Kingdom 3 weeks agonLondon, England, United Kingdom 1 month agonAssociate/Vice President, Relationship Manager - Commodity Finance (Metals & Agri Team)
London, England, United Kingdom 2 weeks agonHampton, England, United Kingdom 5 days agonLondon, England, United Kingdom 1 week agonLondon, England, United Kingdom 21 hours agonLondon, England, United Kingdom 4 days agonSunbury-On-Thames, England, United Kingdom 16 hours agonLondon, England, United Kingdom 3 days agonCyber Security Assistant Manager/Manager
London, England, United Kingdom 3 days agonLondon, England, United Kingdom 1 week agonLondon, England, United Kingdom 1 month agonInformation Security Consultant (3rd party security assurance)
London, England, United Kingdom 2 weeks agonInformation Security Analyst - Audit, Compliance & Cybersecurity
London, England, United Kingdom 3 weeks agonVP - Cybersecurity Technical Delivery Manager
London, England, United Kingdom 2 weeks agonLondon, England, United Kingdom 2 weeks agonLondon, England, United Kingdom 22 hours agonLondon, England, United Kingdom 6 days agonInformation Security Analyst - Audit, Compliance & Cybersecurity
London, England, United Kingdom 1 week agonWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffrn
Information Security Manager
Posted 1 day ago
Job Viewed
Job Description
Information Security Manager
role at
Crown Agents Bank .nCompany DescriptionnCrown Agents Bank is a growing and regulated UK bank that connects emerging and frontier markets to the rest of the world, using FX and payments technology. We are transforming the way payments and FX move through emerging markets, reducing friction so that more money gets to those who need it. Our solutions help fix pain points in emerging markets, connecting hard-to-reach regions to global financial infrastructure and providing access to the best prices and fastest, most reliable settlement. FX and cross-border payments can be complex and expensive; Crown Agents Bank wraps its relationships and network around innovative digital capabilities and cross-border transaction banking solutions to enable fintechs, corporates, governments, development organisations and banks to move money to, from, and across hard-to-reach markets.nJob DescriptionnAbout the RolenThe Information Security Manager will play a crucial role in protecting the confidentiality, integrity, and availability of our systems and data. You’ll work across the business to support secure delivery of projects, conduct thorough risk assessments, oversee third-party security engagements, and contribute to shaping our evolving security posture. This is a technically hands-on role ideal for someone who combines strategic thinking with practical delivery.nKey ResponsibilitiesnSecurity in Projects: Advise and support project teams to embed security best practices throughout the project lifecycle.nPenetration Testing: Scope, manage, and track remediation of penetration testing and vulnerability assessments.nApplication Security: Maintain application security processes, standards and guidelines. Translate application security policies into security requirements and work closely with engineers.nRisk Assessments: Conduct and document security risk assessments on changes, threats, vulnerabilities, and new initiatives.nThird-Party Risk: Perform third-party vendor risk assessments and ongoing security reviews.nSolution Due Diligence: Assist in identifying and assessing new security technologies and vendors.nIncident Management: Lead or support the response to security incidents, including investigation, containment, root cause analysis, and reporting. Work with internal teams to continuously improve incident response processes.nSecurity Frameworks: Support compliance and alignment with ISO 27001, Cyber Essentials, SWIFT, NIST CSF and other relevant frameworks.nStakeholder Communication: Communicate effectively with engineers, product managers, operations teams, senior management, and auditors about information security posture, risks, and mitigation strategies.nQualificationsnExtensive experience in information security roles, ideally in a regulated environment.nBachelor's degree or higher in Computer Science.nCISSP certification is essential; additional certifications (e.g. CEH, OSCP, AWS Security) are a plus.nExperience with ISO 27001, Cyber Essentials, NIST CSF and preferably SOC 2 or SWIFT frameworks.nStrong understanding of security in software development and application security (OWASP, SDLC, DevSecOps).nHands-on technical skills (AWS, DevSecOps pipelines, security vendor configuration, scripting for automation) and experience with tools like Tenable, Mimecast, Akamai, Sophos, and MDR tools.nExcellent communication skills for engaging both technical and non-technical stakeholders.nInnovative mindset with a passion for staying current in the evolving cyber landscape.nExperience working in or with regulated financial institutions is desirable.nAdditional InformationnWhy Join Us?nBe part of a small, agile, and collaborative team where your impact is direct and visible.nOpportunity to work on cutting-edge financial services and security projects.nCompetitive salary and benefits, including training and development support.nHybrid working arrangements and a culture that values innovation and initiative.nBenefits IncludenHybrid workingnContributory personal pension plan: employee 2% and employer 7%, with employer matches up to 10% total.nLife Assurance – 4x annual salarynGroup Income ProtectionnPrivate Medical Insurance with possible cover for dependents; includes Optical, Dental and AudiologynDiscretionary BonusnCompetitive Annual Leaven2 Volunteering DaysnBenefit HubnReferrals increase your chances of interviewing at Crown Agents Bank.nGet notified about new Information Security Manager jobs in London, England, United Kingdom.
#J-18808-Ljbffrn
Information Security Analyst
Posted today
Job Viewed
Job Description
We are Vitesse – the treasury and payment partner of choice for insurance.
Formed in 2014 by a team of proven FinTech entrepreneurs, we are an FCA-regulated business providing global claim funds management and payment solutions. Operating one of the largest banking and payment settlement networks in the world, we give our customers direct access to 200 countries and currencies. Through a single integration, insurers can use this network to pay claims in as fast as 45 seconds and deliver a superior claimant experience. Our market-leading treasury proposition provides insurers with transparency and control over their claim funds, even when delegated to third-parties, allowing them to have their money in the right place, at the right time, to make that all-important payment when customers need it most.
With over 260 employees across our London headquarters, Europe, and the US, $93m Series C funding secured, our US licence approved and exceeding £15bn in processed transactions, we are only just getting started.
We are collaborative, customer centric and work with integrity, whilst partnering with some of the biggest insurance leaders including Lloyd’s of London and Many Pets. We take huge pride in our company culture, ensuring that everyone has a part to play, an opportunity to be heard, be involved, and the ability to make a real difference. As we continue to scale up, we want like-minded humans to join us on this exciting journey. Are you ready?
Your Mission:
We are seeking a skilled and motivated Information Security Analyst to join our team, reporting into the CISO. You will play a crucial role in safeguarding our organisations digital assets and infrastructure from cyber threats. You will be responsible for analysing security measures, identifying vulnerabilities, and help implement effective solutions to mitigate risks.
This role has a requirement for the jobholder to be part of an out of hours call-out rota, which will usually be 1 in 4 or 5 weeks, in addition to being available for short-term assignments in the US to support our North American business.
The role will require at least 2 days onsite in our London office.
The ideal candidate will have a strong understanding of information security principles, excellent analytical skills, and the ability to adapt to evolving threats in the cybersecurity landscape.
Your Responsibilities:
Governance: Risk / Compliance / Assurance:
- Monitor security systems including intrusion detection, firewalls, and SIEM. Collaborate with our external SOC to detect and respond to security incidents in a timely manner.
- Participate in incident response activities, including incident triage, containment, eradication, and recovery efforts.
- Conduct thorough investigations of security incidents and provide detailed reports on findings and recommendations for remediation.
- Help contribute to regular security assessments and audits to identify vulnerabilities and weaknesses in systems, networks, devices, and applications.
- Serve as a subject matter expert on security-related matters, providing guidance and support to other teams and departments as needed, and as reported through the help desk system.
- Collaborate with IT teams and other stakeholders, contributing to the design and implementation of security controls and measures to protect against cyber threats.
- Stay up to date with the latest security trends, technologies, and best practices, and provide recommendations for continuous improvement.
- Assist with the management of security awareness training and workshops for employees to educate them about security risks and best practices for maintaining a secure work environment.
- Participate in the development and maintenance of disaster recovery plans to ensure the organisation's ability to respond to and recover from security incidents.
- Collaborate with internal teams during due diligence exercises to ensure that key security controls are documented as part of each submission.
Requirements
- Certifications such as CISSP, CISM, or CompTIA Security+, certifications are highly desirable.
- Proven experience working in information security, with a good understanding of security principles, protocols, and technologies.
- Experience with information security standards including ISO 27001, NIST and Cyber Essentials.
- Experience with security assessment tools and techniques, including vulnerability scanning and penetration testing.
- Good understanding of Microsoft Azure, Office 365 and Microsoft E5 security tooling.
- Strong analytical and problem-solving skills, with the ability to analyse complex systems and identify security risks and vulnerabilities.
- Excellent communication and interpersonal skills, with the ability to effectively convey technical information to non-technical stakeholders.
- Ability to work independently and collaboratively in a fast-paced environment, with a strong sense of accountability and attention to detail.
- Sound judgment and decision-making abilities, especially in high-pressure situations requiring quick and accurate assessments.
- High ethical standards and a commitment to maintaining confidentiality.
Benefits
- 25 days Holiday per year (increasing by 1 day per years' service, up to 30 days) + Bank Holidays
- Hybrid working arrangements – minimum 2 days in the office, Tuesday - Thursday
- Contributory pension scheme
- Enhanced Parental leave
- Cycle to Work Scheme
- Private Medical Insurance with AXA
- Unlimited access to therapy sessions through our partner, Oliva
- Discounted Gym membership through Gympass
- Financial Coaching with Octopus Wealth
- 2 days of volunteering leave per year
- Sabbatical after 5 years’ service
- Life Assurance - MetLife (UK employees only)
- Ongoing Learning and Development to support you reach your career goals
We are Vitesse – the payment provider of choice for the insurance and treasury industry.
Formed in 2014 by a team of proven FinTech entrepreneurs, we are an FCA regulated payments business that is driven to be the payment partner of choice for the insurance market, by providing global payment services and treasury optimisation. Operating one of the largest domestic banking and payment settlement networks in the world, we give our customers direct access to more than 170 countries and territories, covering over 110 currencies. Through a single integration, insurers can use this network to pay claims in as fast as 45 seconds, delivering a better customer experience to their claimants. Our market-leading treasury optimisation service brings complete control and transparency to insurers and allows them to have their money in the right place, at the right time, to make that all important payment - fast, and when their customers need it most.
With now over 160 employees across Europe and our London headquarters, $26m series B funding in 2022 in the bag and approaching £8bn in processed transactions, we are only just getting started.
We are collaborative, customer centric and work with integrity, whilst partnering with some of the biggest insurance leaders including Lloyd’s of London and Many Pets. We take huge pride in our company culture, ensuring that everyone has a part to play, an opportunity to be heard, be involved, and the ability to make a real difference.
As we continue to scale up, we want like-minded humans to join us on this exciting journey. Are you ready?
Vitesse at our best – our values
The Vitesse values are a true reflection of what it takes to thrive in our business, so it’s important to us that any employee who joins our business is aligned with these 3 attributes
Confident Humility
We don’t do ego and we know that unless we all win, none of us win. We admit when we’re wrong, ask for help and always think about the wider business before ourselves.
Driven to Succeed
We see the opportunity ahead of us and we won’t stop until we fulfil the potential we know we have. We hold ourselves to high standards and deliver high quality outcomes for Vitesse and our customers.
Tenacious Responsibility
We take ownership for our actions and decisions, and face into the challenges that come our way. We are committed to seeing things through to completion, even in the face of adversity.
We are an Equal Opportunity Employer We are committed to creating an inclusive environment that enables everyone to perform at their best, where we recognise the rights of all individuals to mutual respect and where there is an unbiased acceptance of others. Our policies and practices aim to promote an environment that is free from all forms of Unfair discrimination and values the diversity of all people. At the heart of our policy, we seek to treat people fairly and with dignity and respect.
Be The First To Know
About the latest Ciso Jobs in London !
Information Security Management Specialist
Posted 7 days ago
Job Viewed
Job Description
As our Information Security Management Specialist (m/f/d) , you'll provide experienced support in the implementation and management of the Information Security Management System (ISMS) framework in alignment of current ISO 27001 standard and guidelines. With a focus on cybersecurity, this role involves leading risk assessments, ensuring alignment with industry standards and regulations, and following information security practices and policies.
What you will do
- Contribute to implementation, maintenance along with continuous improvement and associated instructional documentation of ISMS and its controls in line with the requirements of ISO 27001:2022 and similar standards. li>Ensure compliance and maintenance of ISO 27001:2022 standard as well as all Information Security requirements with respect to laws, regulations, client requirements, NTT DATA and Group requirements including active participation in internal and external ISMS audits.
- Support in information security audits, performed by organization or third-party personnel.
- Ensure that IT systems are assessed against Information Security criteria and operate in compliance with the instructional Information Security documentation.
- Conduct company-wide gap assessment of ISMS clauses and control implementation.
- Ensure vulnerability management, tracking and reporting.
- Collaborate with the IT department to set Information security standard for Cyber Security li>Support in preparing management Information Security reports and dashboards.
- Review and respond to customer Service Agreements/RFPs/RFIs with respect to Information Security related clauses/questionnaires.
- Actively participate in Information Security External certification audits, internal audits, and gap assessments.
- Perform other security related task as required.
What we are looking for
- Bachelor’s degree or equivalent in Information Technology or Computer Science degree or related field. < i>Information Security certifications such as ISO 27001 Lead Auditor/Implementer, CISM, CISA, CRISC, CISSP, CEH, COBIT or equivalent preferred.
- Fluent in English, Multilingual skills are an advantage.
- Skilled proficiency in conducting risk assessments, analyzing security controls, and policy management.
- Excellent communication and interpersonal skills for collaborating with various stakeholders.
- Strong project management skills for handling security initiatives.
- Strong familiarity with aspects related to information security.
- Strong knowledge of ISO 27001 and further relevant standards.
What we offer you
- An agile company culture with short decision-making paths and plenty of opportunities to show personal initiative
- Flexible working time models and mobile working (depending on your role)
- Allowance for the use of public transport and job bikes
- Allowance for the use of health and wellness
- Individual training and development opportunities
- Numerous other additional benefits such as birthday vouchers, employee advisory program, employee referral scheme, lunch allowance, company events, etc.
We look forward to hearing from you!
About the Global Data Centers division of NTT DATA
Global Data Centers is a division of NTT DATA. Our global platform is one of the largest in the world. NTT is ranked as one of the top three leaders worldwide by IDC in their Colocation and Interconnection Services MarketScape, spanning more than 20 countries and regions including North America, Europe, Africa, India and APAC.
As a neutral operator, we offer access to multiple cloud providers, a large variety of Internet Exchanges and telecommunication network providers including our own IPv6 compliant, tier 1 global IP network. Our clients benefit from tailored infrastructure and experience consistent best practices in design and operations across all of our reliable, scalable and customizable data centers.
Working at NTT Global Data Centers
At NTT Global Data Centers, we stand as one of the largest data center providers, dedicated to powering the digital infrastructure of tomorrow. Innovation is in our DNA. We thrive on pushing boundaries, exploring new possibilities, and embracing emerging technologies to continuously ensuring that every interaction, every solution, and every outcome exceeds our clients’ expectations. Our values are the guiding principles that shape our culture, define our identity, and propel us forward as one of the industry leaders.
Interested in becoming part of an agile international team and actively shaping the digital infrastructure of tomorrow?
Join our team by submitting your application today!
Junior Information Security Consultant
Posted 13 days ago
Job Viewed
Job Description
Junior Information Security Consultant - Canary Wharf/London - Hybrid - To 35,000
Global client has a fantastic opportunity for a Junior Information Security Consultant to work with their existing team to manage the portfolio of security controls, this includes level 1 triage of alerts and performing daily checks across multiple security systems, manage and maintain technical controls to meet specific security requirements and implement approved configuration changes.
As a Junior Information Security Consultant you will work with information security leadership to deploy agreed changes to security requirements and address identified security risks, raise information security awareness and support training activities, assist in the coordination and completion of information security operations documentation, collaborate on IT projects to ensure that security issues are addressed throughout the project life cycle, advise security administrators on normal and exception-based processing of security authorization requests, research and evaluate new threats and advises on any necessary communication or extra controls to counter these, manage ServiceNow tickets assigned to (members of) the security team and escalate when deadlines are likely to be missed, Incident Detection and Response, ie provide 1st and 2nd line support and analysis during and after a security incident whilst ensuring guidelines for the recording of security incidents are followed.
As a Junior Information Security Consultant you will have the ability to demonstrate a knowledge and appreciation of the current IT threats and security measures, this requires a combination of good business awareness and technical IT knowledge or experience, ideally have 2+ years of relevant work experience, some knowledge of IT security should be demonstrated though either the work experience or qualifications, possess knowledge and understanding of information risk concepts and principles, as a means of relating business needs to security controls, have technical knowledge of mainstream operating systems (mainly Microsoft Windows) and understanding of security technologies, such as network security appliances, identity and access management (IAM) systems, anti-malware solutions and desktop security tools, basic knowledge of network infrastructure and risk assessment methods and technologies.
This is a superb career opportunity with an organisation that offers a salary of upto 35,000 plus bonus upto 10%, salary review to 10%, hybrid and a great benefits package that includes: Pension (NYK contribute 7% of salary (up to a max of 10% based on employee contributions), Healthcare, Employee Assistance Programme / Interest free travel season ticket loan (upon completion of probation / Gym Membership / Medical cover / Health Cash Plan etc.
This role is commutable from London, Home counties, London, Kent, Hertfordshire, Essex, Cambridgeshire, Berkshire, Sussex, Hampshire, Oxfordshire
--- Fusion People are committed to promoting equal opportunities to people regardless of age, gender, religion, belief, race, sexuality or disability. We operate as an employment agency and employment business. You'll find a wide selection of vacancies on our website.
Information Security Management Specialist
Posted 7 days ago
Job Viewed
Job Description
As our Information Security Management Specialist (m/f/d) , you'll provide experienced support in the implementation and management of the Information Security Management System (ISMS) framework in alignment of current ISO 27001 standard and guidelines. With a focus on cybersecurity, this role involves leading risk assessments, ensuring alignment with industry standards and regulations, and following information security practices and policies.
What you will do
- Contribute to implementation, maintenance along with continuous improvement and associated instructional documentation of ISMS and its controls in line with the requirements of ISO 27001:2022 and similar standards. li>Ensure compliance and maintenance of ISO 27001:2022 standard as well as all Information Security requirements with respect to laws, regulations, client requirements, NTT DATA and Group requirements including active participation in internal and external ISMS audits.
- Support in information security audits, performed by organization or third-party personnel.
- Ensure that IT systems are assessed against Information Security criteria and operate in compliance with the instructional Information Security documentation.
- Conduct company-wide gap assessment of ISMS clauses and control implementation.
- Ensure vulnerability management, tracking and reporting.
- Collaborate with the IT department to set Information security standard for Cyber Security li>Support in preparing management Information Security reports and dashboards.
- Review and respond to customer Service Agreements/RFPs/RFIs with respect to Information Security related clauses/questionnaires.
- Actively participate in Information Security External certification audits, internal audits, and gap assessments.
- Perform other security related task as required.
What we are looking for
- Bachelor’s degree or equivalent in Information Technology or Computer Science degree or related field. < i>Information Security certifications such as ISO 27001 Lead Auditor/Implementer, CISM, CISA, CRISC, CISSP, CEH, COBIT or equivalent preferred.
- Fluent in English, Multilingual skills are an advantage.
- Skilled proficiency in conducting risk assessments, analyzing security controls, and policy management.
- Excellent communication and interpersonal skills for collaborating with various stakeholders.
- Strong project management skills for handling security initiatives.
- Strong familiarity with aspects related to information security.
- Strong knowledge of ISO 27001 and further relevant standards.
What we offer you
- An agile company culture with short decision-making paths and plenty of opportunities to show personal initiative
- Flexible working time models and mobile working (depending on your role)
- Allowance for the use of public transport and job bikes
- Allowance for the use of health and wellness
- Individual training and development opportunities
- Numerous other additional benefits such as birthday vouchers, employee advisory program, employee referral scheme, lunch allowance, company events, etc.
We look forward to hearing from you!
About the Global Data Centers division of NTT DATA
Global Data Centers is a division of NTT DATA. Our global platform is one of the largest in the world. NTT is ranked as one of the top three leaders worldwide by IDC in their Colocation and Interconnection Services MarketScape, spanning more than 20 countries and regions including North America, Europe, Africa, India and APAC.
As a neutral operator, we offer access to multiple cloud providers, a large variety of Internet Exchanges and telecommunication network providers including our own IPv6 compliant, tier 1 global IP network. Our clients benefit from tailored infrastructure and experience consistent best practices in design and operations across all of our reliable, scalable and customizable data centers.
Working at NTT Global Data Centers
At NTT Global Data Centers, we stand as one of the largest data center providers, dedicated to powering the digital infrastructure of tomorrow. Innovation is in our DNA. We thrive on pushing boundaries, exploring new possibilities, and embracing emerging technologies to continuously ensuring that every interaction, every solution, and every outcome exceeds our clients’ expectations. Our values are the guiding principles that shape our culture, define our identity, and propel us forward as one of the industry leaders.
Interested in becoming part of an agile international team and actively shaping the digital infrastructure of tomorrow?
Join our team by submitting your application today!