At a Glance
- Tasks: Lead risk management and improve IT security controls across the organization.
- Company: Join a dynamic team focused on IT security in the insurance sector.
- Benefits: Enjoy opportunities for professional growth and impactful projects.
- Why this job: Make a difference in IT security while collaborating with talented professionals.
- Qualifications: Experience in IT risk management, security standards, and excellent communication skills required.
- Other info: Apply ASAP to be part of a forward-thinking team!
The predicted salary is between 48000 - 72000 £ per year.
Deliverable 1: Drive and monitor effective risk management activities across the IT Security Service function to manage and mitigate risk exposure in line with Group policies and procedures, the IT division framework, industry standards and regulatory requirements.
Deliverable 2: Identify, recommend and facilitate the development, implementation and improvement of appropriate IT security controls across the Security Services function to mitigate risks and issues, ensuring that recommended actions are in line with Group IT Strategy and are aligned with Group Risk controls, policies and regulatory requirements.
Deliverable 3: Coordinate and manage Audit activities for IT Security Services and key security service partners to provide consistent and timely responses to audit requirements and to deliver on follow up actions to improve the department’s compliance position.
Deliverable 4: Develop and manage regular reporting of IT Security Service risks, issues, controls and audit position for IT senior managers.
Deliverable 5: Execute and interpret regular MI reporting of IT Security Services and key supplier performance to recommend enhancements and drive the continual improvement of all aspects of the Security Services function.
Deliverable 6: Deliver short term / one-off projects and activities as required by and to the standards and outcomes as agreed with the Line Manager.
-
Recent and demonstrable experience in managing teams/projects in an IT environment
-
Experience of performing risk and control-based reviews, particularly related to security
-
Demonstrable understanding of ISO 27001:2013 and/or other security standards such as ISF Standard of Good Practice and NIST frameworks
-
Demonstrable understanding of COBIT5 or similar security controls frameworks
-
Excellent relationship building and influencing skills
-
Excellent communication skills (written, oral and presentation)
-
Experience in an insurance, investments, and pensions environment
-
IT risk, control, and audit experience, particularly related to security
If you would like to be considered and have experience in the above areas – please submit your application ASAP to Jackie Dean at Jumar for consideration.
IT Security Assurance Lead ISO, NIST, COBIT5, Insurance employer: Jumar Solutions
Contact Detail:
Jumar Solutions Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IT Security Assurance Lead ISO, NIST, COBIT5, Insurance
✨Tip Number 1
Familiarize yourself with the specific IT security frameworks mentioned in the job description, such as ISO 27001:2013 and NIST. Being able to discuss these frameworks in detail during your interview will demonstrate your expertise and alignment with the role.
✨Tip Number 2
Highlight your experience in managing teams and projects within an IT environment. Prepare examples of how you've successfully led initiatives that align with risk management and compliance, as this will resonate well with the responsibilities outlined in the job.
✨Tip Number 3
Build a strong understanding of the insurance sector, particularly how IT security impacts this industry. Being able to speak knowledgeably about the unique challenges and regulations in insurance will set you apart from other candidates.
✨Tip Number 4
Prepare to discuss your relationship-building and influencing skills. Think of specific instances where you've successfully collaborated with stakeholders or improved compliance through effective communication, as these skills are crucial for the role.
We think you need these skills to ace IT Security Assurance Lead ISO, NIST, COBIT5, Insurance
Some tips for your application 🫡
Understand the Job Requirements: Carefully read through the job description to understand the key deliverables and required skills. Make sure to highlight your experience in managing teams/projects in an IT environment, as well as your knowledge of ISO 27001:2013, NIST frameworks, and COBIT5.
Tailor Your CV: Customize your CV to reflect your relevant experience in IT security, risk management, and audit activities. Use specific examples that demonstrate your ability to drive and monitor risk management activities and implement security controls.
Craft a Compelling Cover Letter: Write a cover letter that addresses the key deliverables mentioned in the job description. Explain how your background aligns with the company's needs and emphasize your excellent communication and relationship-building skills.
Highlight Relevant Experience: In your application, make sure to showcase your experience in the insurance, investments, and pensions environment. Provide concrete examples of how you have successfully managed risks and improved compliance positions in previous roles.
How to prepare for a job interview at Jumar Solutions
✨Showcase Your Risk Management Experience
Be prepared to discuss specific examples of how you've driven and monitored risk management activities in previous roles. Highlight your understanding of industry standards and regulatory requirements, especially in relation to IT security.
✨Demonstrate Knowledge of Security Frameworks
Familiarize yourself with ISO 27001:2013, NIST frameworks, and COBIT5. Be ready to explain how these frameworks can be applied to improve IT security controls and mitigate risks within the organization.
✨Highlight Your Communication Skills
Since excellent communication is crucial for this role, practice articulating your thoughts clearly. Prepare to discuss how you've effectively communicated complex security concepts to non-technical stakeholders in the past.
✨Prepare for Audit Coordination Questions
Expect questions about your experience with audit activities. Be ready to share how you've managed audits in the past, including your approach to ensuring compliance and following up on actions to improve the department's position.