Connecting to LinkedIn...

Connecting to LinkedIn...

W1siziisijiwmtqvmdkvmzavmtavndevmzevmzkxl3n0b2nrx3bob3rvx2pvynnfynv0dg9ux29ux2tlewjvyxjkxzgwmdu4mtgxlmpwzyjdlfsiccisinrodw1iiiwimtkymhgxmjuwiyjdxq

Information Security Specialist (GRC)

Job Title: Information Security Specialist (GRC)
Contract Type: Permanent
Location: Bedfordshire, Bedfordshire
Industry:
Salary: £55000 - £65000 per annum + benefits
Start Date: ASAP
REF: J5949
Contact Name: Bonnie Chuong
Contact Email: bonniec@montash.com
Job Published: about 1 year ago

Job Description

Montash has been retained by a FTSE 100 travel provider to source for an experienced Information Security Specialist to join their Governance, Risk and Compliance team.

You'll be responsible for maintaining the confidentiality, availability and integrity of my client's information and information systems. This will be achieved through identification and recommendation of risk mitigation treatment plans and as a subject matter specialist to support the needs of the organisation

Key Responsibilities:

  • Supports the ongoing alignment of Information Security strategy to business objectives
  • Delivers robust governance processes in the delivery of my client's IT capabilities
  • Manages an effective information security risk management capability that assess and reduces risk to an acceptable level
  • Implements an ongoing information security compliance programme that delivers assurance of control performance
  • Provide a focal point within within for information security expertise

Key Skills:

  • Strong background in IT and more recent experience as a security practitioner
  • Experience and knowledge of leading information security risk assessments
  • Proven experience in writing Information Security policies, procedures and standards
  • Experience in taking an organisation though alignment, assessment or delivery of an industry recognised security standard such as ISO or COBIT
  • Ability to harness the commitment and contribution of team members outside of direct span of control
  • Demonstrable experience in creating a sustainable compliance capability
  • Excellent written and oral communication skills
  • Ability to conduct and direct research into governance, risk and compliance capabilities and progression
  • Ability to present ideas in 'non-technical' business-friendly accessible language
  • Ability to effectively prioritise and execute tasks in a high-pressure environment

Qualifications

  • Certified Information Systems Security Professional (CISSP)
  • Certified Information systems Auditor (CISA)
  • Certified Risk and Information Systems Control (CRISC)

If this role is of interest to you - please apply now!

Social Stream

Latest News

W1siziisijiwmtcvmdkvmjkvmdgvmtmvmjkvmjgyl1vudgl0bgvkigrlc2lnbiaomjuplmpwzyjdlfsiccisinrodw1iiiwimzgwedewmcmixv0

Are PSLs a Blocker or an Enabler?

2017-10-02 11:00:00 +0100

The use of a Preferred Supplier List (PSL) was intended to support and strengthen relationships and performance between organisations and their third party suppliers. As the technical landscape continues to evolve at rapid rate recruitment and demand for new skills becomes more intense. Are PSLs still the solution or an obstacle to sourcing the right talent? The traditional PSL A dedicated list of partners intended to guarantee quality and availability ...

W1siziisijiwmtcvmdkvmjevmdgvndmvmduvmtmxl1vudgl0bgvkigrlc2lnbiaomjmplmpwzyjdlfsiccisinrodw1iiiwimzgwedewmcmixv0

Why do we punish the victims of hacking?

2017-09-21 09:00:00 +0100

Hacks occur every 39 seconds, with 95% of them targeting governments, retailers and the tech industry. If the hackers are caught, they'll face prison time under the Computer Misuse Act. More often than not, the businesses who are victims of those attacks expose themselves to punishment of their own. The laws that determine the duty of protection owed to businesses and their customers is both vague and broad, making them question just how much protection...