Information Security Compliance & Risk Specialist
Role details
Job location
Tech stack
Job description
Develop & maintain the MCA's Information Security Management System (ISMS) and all underpinning documentation, including stakeholder engagement & compliance checks.
Be responsible for the delivery of information security risk management processes, across all asset types, providing risk-based advice & guidance to asset owners across the business and carrying out regular reviews of the MCA's risk/threat landscape.
Be the coordinator for annual compliance reviews and audits, managing the implementation of remediation action.
Managing the development & delivery of the security training and awareness plan for the business. Person specification
Requirements
You will need the following experience:
Experience in the development, maintenance and management of policies and processes.
Experience in risk management including communicating risk to technical and non- technical stakeholders, of varying levels, through varying mediums.
Experience in threat analysis including context, identifying existing or emerging threat to assets and using that to inform security decisions.
Strong understanding of a range of security standards/regulations (eg ISO 27001, NIST 800, GovS007, UK GDPR etc) across all areas of information security, and how these can be applied to deliver effective/appropriate/proportionate controls across all areas to minimize impacts of security incidents.
Experience of building relationships and influencing stakeholders, working collaboratively and inclusively, sharing information and knowledge to achieve common aims.
The base pay is £44,241. In addition to this, the role includes a Digital and Data allowance of up to £14,756
The value of allowance awarded will be based on an assessment of your skills and experience as demonstrated through the selection process. Behaviours
- We'll assess you against these behaviours during the selection process: Working Together
- Communicating and Influencing
- Changing and Improving
Technical skills
We'll assess you against these technical skills during the selection process: Information Risk Assessment & Risk Management (Skill Level: Practitioner) Applied Security Capability (Skill Level: Practitioner)
Benefits & conditions
Alongside your salary of £44,241, Maritime and Coastguard Agency contributes
£12,816 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides.
Learning and development tailored to your role An environment with flexible working options A culture encouraging inclusion and diversity
A Civil Service pension with an employer contribution of 28.97%
For this recruitment campaign we will be working with TRIA Consulting (our recruitment partners) please can all applications be submitted via their website.
The sift is due to take place from the 2nd and 3rd of December
Interviews/assessments will take place from the 9th, 11th and 12th of December.
This interview will be conducted via face to face at our Southampton office. Further details will be provided to you should you be selected for interview. Security
Successful candidates must undergo a criminal record check.
Successful candidates must meet the security requirements before they can be appointed. The level of security needed is security check
People working with government assets must complete baseline personnel security standard checks.
Further information on nationality requirements Diversity and Inclusion
The Civil Service is committed to attract, retain and invest in talent wherever it is found. To learn more please see the Civil Service People Plan (opens in a new window) and the Civil Service Diversity and Inclusion Strategy(opens in a new window).