IT Risk Manager


Premium Job From Spring Group Plc

Recruiter

Spring Group Plc

Listed on

26th June 2019

Location

Staines

Salary/Rate

Negotiable

Salary Notes

Negotiable

Type

Contract

Start Date

ASAP

This job has now expired please search on the home page to find live IT Jobs.

IT Risk Manager - 6 months - Staines

Large corporate client is looking for an experienced IT Risk Manager who will be accountable for managing and overseeing the IT Risk framework for their area of responsibility. You will be required to provide support and reporting to the Director of IT Risk and Assurance by partnering closely with Enterprise Risk Management, other risk teams, stakeholders, Internal/External Audit, and with other areas of the Information Security team.

Experience/ Skills:

- Experienced professional in the field of Information risk management with experience in leadership or management positions

- This role is more risk focused, hence experience in Risk Management, Risk Reporting to senior level, Security Management Systems (ISMS) type technologies, Risk Frameworks and Methodologies is critical for the role.

- Can demonstrate financial and business acumen and experience running a large operational team in complex regulatory environments, delivering a mix of regulatory and contractual requirements and strategies for compliance.

- Will ideally be certified in some of the following: Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM).

- You are an effective communicator capable of collaborating and building credibility with others who serve as key stakeholders or subject matter experts

- Strong resource management, planning, and project management skills.

- Proficient understanding of GRC processes, tool implementation and usage

- Organisational awareness and a collaborative attitude in order to build successful relationships and lead teams that will be dispersed across geographies

- Ability to influence diverse stakeholders to address identified risks, with excellent stakeholder management skills

- Knowledge of applicable internal and/or external regulatory policies, standards, procedures and controls (e.g. International Organisation for Standardisation (ISO) 27000, National Institute of Standards and Technology (NIST), Control Objectives for Information and Related Technology (COBIT), Cyber Essentials, Centre for Protection of National Infrastructure (CPNI), OWASP Top 10, SANS Top 20 Critical Controls, Information Security Forum (ISF)), and relevant IT Risk frameworks.

- Understanding of power utilities, retail energy, and oil and gas industry trends and emerging threats.

Spring Technology acts as an employment agency for permanent recruitment and an employment business for the supply of temporary workers. The Spring Group UK is an Equal Opportunities Employer.

By applying for this role your details will be submitted to Spring. Our Candidate Privacy Information Statement explains how we will use your information - please copy and paste the following link in to your browser: www.spring.com/candidate-privacy-information-statement

You are currently using an outdated browser.

Please consider using a modern browser such as one listed below: