IT Security Manager


Premium Job From Mercer Bridge Limited

Recruiter

Mercer Bridge Limited

Listed on

29th March 2017

Location

Stevenage

Type

Permanent

Start Date

ASAP

This job has now expired please search on the home page to find live IT Jobs.

IT Security Manager

Purpose:

Working within a small enthusiastic team, the primary responsibility of the IT Security Manager is to ensure that information technology security is considered as part of the delivery of I.S systems and services across this international business.

This role is designed to ensure a healthy focus and vision is applied to security whilst also bringing a passion for the implementation of change. Through collaborative working relations we are looking for clear, well defined processes. This coupled with creative and motivational methods of delivering continuous improvement, ensure that all of the business units engage and comply with the overall I.S governance policies.

Key Accountabilities:

                               Ensure that the security policy is maintained in line with business and group wide requirements.

                               Build and maintain quality relationships across the IT functions of international businesses and the IT Shared Service Centre, to facilitate project delivery, business change and compliance.

                               Own the lifecycle of delivery/change from inception and design through to completion and transition into business as usual. Track and demonstrate progress at all stages.

                               Maintain a level of compliance appropriate to our organisational level of risk acceptance. Demonstrate to stakeholders that appropriate controls are in place and own/create actions plans to manage improvement or change where necessary.

                               Maintain an audit based continuous improvement program to track and deliver security improvements across all businesses.

                               Act as subject matter expert on matters of Security relating to legal and regulatory compliance. Advise stakeholders on how to achieve the relevant controls and assist with solutions to support them.

                               Ensure the services and suppliers are challenged commercially to deliver the best cost/risk model.

                               Where necessary ensure that processes are documented and communicated in language that is relevant and understandable to international and/or non-technical audiences.

                               Ensure all proposed technical solutions maintain security and integrity of the infrastructure.

                               Look for opportunities to inform, engage or train others to make the best use of problem and change management. Lead problem management/change reviews in order to drive improvement.

                               Manage security incidents and breaches to ensure any impact is contained and relevant information obtained to facilitate analysis and improvement plans.

                               Deliver to initiatives as needed, and be in a position to demonstrate and track progress to stakeholders.

                               Manage projects to time, cost, and quality. Make use of the project management methodology to ensure change and delivery is controlled as necessary.

                               Maintain a quality security service to customers. In exploring solutions, help them to ensure that the relevant security challenges and the significant of data are considered as part of exploring and planning

solutions, including those provided by third parties.

                               Raise the profile of security within the organisation by being proactively involved with stakeholders and customers. Provide consultation and/or education as needed and drive the adoption of security as a value add / best practice.

                               Ensure key documents that record permissions and exceptions are maintained for review for example third party connectivity.

                               Facilitate the I.S involvement in annual external audit.

                               Manage the risk of unavailability of services by ensuring that Disaster Recovery and Business continuity planning are considered as part of implementation and change, and that constant review and testing takes place to ensure solutions are effective and meet requirements.

                               Any other duties relating to the remit of a role of this standing as required by the needs of the business.

                               Visit remote sites as and when required within the context of the role.

This is a first class opportunity to develop your career in information security.

You are currently using an outdated browser.

Please consider using a modern browser such as one listed below: