Information Security Officer
Role details
Job location
Tech stack
Job description
- Having an impact on how data is controlled and staying at the forefront of security risks
- Collaborate with all teams within the business
- Dealing with a variety of work - not one day is the same
Our Opportunity
You will be working within the Thales DIS UK Security organization; you will be responsible for ensuring the organizations compliance with regulatory bodies and with customers within the Banking environment.
The key objective of this role is to ensure that Thales DIS UK maintains its physical and logical accreditations by ensuring that the organisation implements and encourages security within the production facilities.
Some of your responsibilities will include:
- Control and Maintain the ISO 27001 Information Security Management System, ensuring compliance to all areas of that standard
- Maintain Security Risk Assessments of all applicable sites as required by ISO 27001
- Ensure compliance with data protection legislation. Promoting awareness as well
- Stay up-to-date of statutory/legal changes impacting on information security, incorporating them into relevant policies and advising staff on their implementation
- Assist with internal and external audit programmes. Ensuring compliance with the Information Security Policy and that the necessary controls are in place to satisfy
- Identify high risk issues and escalate as required
- Investigate IT related complaints and incidents in conjunctions with Security Manager, Security team, and/or other departments. Also providing input for remedial action plans
- Closure of audit and testing non-conformities through the provision of sound remedial actions
- Work with staff to ensure that security considerations are taken into account during design and implementation
- Work with corporate teams to ensure compliance and exchange ideas
- Conduct supplier audits where necessary to ensure standards are adhered to through the supply chain
- Train employees in IT Security controls and best practice
Requirements
Are you a team player? Would you love to expand your knowledge in the security area? Do you have great organisation and time management skills? Got your interest, then look no further…, * It will be desirable but not essential for you will have experience within security areas (either physical or logical)
- It will be desirable but not essential for you to have knowledge of PCI CP.
- It will be desirable but not essential for you to have knowledge of ISO 27001
- You will be a confident Speaker with strong written and verbal skills.
- You will have good organization and good time management
- You will have experience of audits
- You will be able to work well with other teams
Benefits & conditions
Annual leave, Employee discount, Paid volunteer time, Private medical insurance, Cycle to work scheme