Information Security Engineer
Role details
Job location
Tech stack
Job description
The Information Security team is responsible for ensuring that JCB has the correct level of security integrity to protect our systems, information, personal data and people from cyber-attacks and unauthorised access. We are looking for a hands-on Cyber Security Engineer to join our on-site Information Security team. This role is vital in ensuring the security and resilience of our IT systems. You will work closely with infrastructure, application, and operations teams to ensure existing systems are improved and new systems are implemented to continuously improve our security posture.
WHAT DOES THIS ROLE INVOLVE DAY TO DAY?
- Lead and support various IT security projects, ensuring secure, timely, and effective project delivery
- Lead and support on various business projects that need IT Security input such as architecture or design
- Managing and maintaining cybersecurity tools to ensure strong, up-to-date defences across our on-prem and cloud and SaaS environments
- Collaborate with internal IT and third-party teams to embed security into all aspects of our operations
- Lead on Incident Response activities and feed into wider process for continuous improvements
- Advise on security implications of new technologies and contributing to long-term strategic decisions such as the Roadmap and Risk Register
- Monitor and respond to security alerts, incidents, and vulnerabilities in real-time - seek out ways to improve
- Assist with Security and Internal investigations
- Support compliance with ISO 27001, NIST, and Cyber Essentials Plus.
- Providing day-to-day support on security-related issues and ensuring changes follow robust change control processes
- Maintain and enforce security policies, procedures, and standards.
- Assist with internal and external audits and remediation activities.
- Seek out and exploit opportunities for improvement to the group's overall security posture.
Requirements
Good communication skills