information security manager


Premium Job From innocent drinks

Recruiter

innocent drinks

Listed on

17th November 2021

Location

London

Type

Permanent

Start Date

ASAP

This job has now expired please search on the home page to find live IT Jobs.

innocent started with a simple mission: to make drinks that make it easy to do yourself some good. In 1999 we concocted a few smoothies in our kitchen and tested them on people at a music festival; today we're blending every type of fruit & veg under the sun and selling drinks right across Europe. We have great ambitions: to show the world that you can build a successful business that cares about more than just profit, and to leave things better than we find them. We're proud to call ourselves Europe's favourite little healthy drinks company, but we're still growing. And that means we need more brilliant people who share our ambition, to join in with the next, most exciting, part of our story.

what you'll be doing

As the Information Security Manager you will develop, plan, direct and control our security operations centre. Ensure the monitoring, analysis and escalation of incidents are done in a timely manner. Critical to this role is communication and performance management, providing clear direction; setting strategy; developing processes and distilling technical reports for consumption by non-technical audiences. Manage a diverse stakeholder list of internal customers, senior leadership team members, partners, and IT, Legal, Public Relations contacts to disseminate relevant information and actions. You will question information that others would take on face value and remain inquisitive to improve the likelihood of your team fully chasing down incidents to confident closure.

 

 

The role is ideal for someone who already has experience managing a small information security team and wants the challenge of developing, forging, and championing information security with a global reach.

 

Responsible for:

 

The information security of innocents eco -system which spans over UK, Europe, and Asia. Leading, developing and managing the centralised team of security analysts.

Primarily responsible for directing security event monitoring, management, and response of incidents. Cyber intelligence to identify potential threats delivering strategic reports and strategies to minimise the impact of the threat and input into the risk management process.

Threat management, threat modelling, identify threat vectors and develop use cases for security monitoring and inputting into our risk management processes

Ensuring compliance to policy, process, and procedure and ensure documentation is available for audits.

Revising and develop SLA's and processes to strengthen the current Security Operations Framework, review policies and highlight any challenges

Responsible for overall use of resources and initiation of corrective action where required for Security Operations Center

Ensuring daily management, administration & maintenance of security devices to achieve operational effectiveness

Creation of reports, dashboards, metrics for SOC operations and presentation to Senior Management.

Maintain and deliver information security awareness and training to the entire business.

Ensure all vulnerability testing is carried out and reported in a timely manner. As well as reviewing the completion of any corrective measures needed.

Communicate to the wider business using non-technical language concerning events, risks and processes and liaise with our security partners within The Coca Cola Company.

you'll have

Experience working in Cyber Security, IT Operations and Incident Management;

Experience managing and developing a small security team;

Ability to distil technical reports quickly and accurately for consumption by non-technical audiences;

Has CompTIA Security +, CISMP, SSCP or equivalent certification and is working towards either CISSP, CISM,  CSX-P or equivalent;

Understanding of the Cyber Kill Chain, MITRE ATT&CK and other information security defence and intelligence frameworks;

A working knowledge of Microsoft Azure technologies, GDPR, SOX and ISO27001 and SOC type 2 reports;

Excellent attention to detail;

Confidence to question and challenge.

you'll get

This is a fantastic opportunity to continue to help build our security capability as we adapt our technology operations model.

As well as the standard stuff you get for turning up for work, we have some great clubs, a free breakfast and as many smoothies as you can shake a stick at. 

If you think you have everything we're looking for and more, then we'd love to hear from you. You'll need to get your skates on though, as applications close soon.

Dolly Parton may have worked Nine to Five but you don't have to. We're open to a chat about flexible working. No promises, but we reckon that if it's good for you, then it's good for us.

We're all about building a workplace for the future here at innocent, we believe in equal opportunities and we celebrate diversity. We're an inclusive workplace, where everyone is welcome, everyone can be natural, and be the best versions of themselves.

You'll help us to keep doing business the right way - keeping innocent an inclusive and inspiring place to work, using our B Corp status to inspire wider change, and reinforcing our culture of staying little as we grow big.

No agencies please.

You are currently using an outdated browser.

Please consider using a modern browser such as one listed below: