At a Glance
- Tasks: Lead IT security initiatives, manage incidents, and enhance security measures.
- Company: Join HS2 Ltd, the UK's new high-speed rail network, transforming travel and boosting the economy.
- Benefits: Enjoy a competitive salary, flexible benefits fund, and opportunities for personal and professional growth.
- Why this job: Be part of a dynamic team making a real impact on national infrastructure and security.
- Qualifications: Experience in IT security, risk management, and incident response is essential.
- Other info: This role promotes equality, diversity, and inclusion in a supportive work environment.
The predicted salary is between 38550 - 45350 £ per year.
Salary: Base salary: £38,550pa to c.£45,350pa depending on skills and experience. In addition, we offer a flexible benefits fund of 15% which is paid on top of the base salary and is fully pensionable, as well as a range of competitive benefits.
HS2 Ltd endeavours to ensure everyone working for us and with us feels included, thrives and achieves their full potential. In practice, this means we are positive and inclusive about making adjustments, providing flexible working, encouraging our staff networks to flourish and providing personal and professional development opportunities.
As a Senior IT Security Officer at HS2 you will develop, implement, and maintain robust security controls to mature/improve our security capabilities within the IT Security, Compliance, and Identity function. This role ensures the protection of our assets, systems, and data from internal and external threats, whilst driving continuous improvement in security controls.
About The Role
- Support in the management of the Security Operations, establishing and delivering methods and tools to provide value and reduce risk across proactive monitoring, incident response, threat management and vulnerability management.
- Maintain operational security processes and ensure that all requests for support are dealt with, investigating security breaches where necessary.
- Support monitoring on the external security environment, gathering information on emerging threats to HS2 and presenting them to leaders where required.
- Plan vulnerability assessment and penetration testing activities within HS2 IT, providing expert advice where necessary in the review of vulnerability assessment tools and techniques.
- Contribute to risk management initiatives by providing expert technical advice in risk assessments, implementation of risk mitigations, and ensuring compliance with security policies and standards.
- Manage improvement activity within the external Security Operations Centre, and act as an escalation for complex or sensitive situations.
- Manage the design, delivery, maintenance, and continuous improvement of HS2 IT Security Ops capabilities in line with business needs.
- Promote the Security, Compliance & Identity function to develop and enhance the team profile to develop enduring relationships with stakeholders and teams.
- Develop and maintain security incident playbooks and guidance.
- Actively promote and embed Equality Diversity and Inclusion (EDI) in all your work, and support and comply with all organisational initiatives, policies and procedures on EDI.
About You
Skills:
- Security Operations: Providing expert guidance on live security incidents and helping conduct robust investigations in order to identify corrective actions and see them through to completion.
- Threat Intelligence: Provide guidance on proactive threat identification, analysis, and mitigation.
- Vulnerability Assessment: Identifying and classifying security vulnerabilities in networks, systems and applications and mitigating or eliminating their impact.
- Risk Management: Ability to identify IT security risks and the delivery of audit remediation activities.
- Emerging technology monitoring: Ability to gather and assess information on new and emerging technologies, products, services, methods and techniques.
Knowledge:
- Knowledge of IT Service Frameworks, methodologies, and best practice such as ITIL v4 and Agile.
- Knowledge of day-to-day activities and best practice within a SOC.
- Knowledge of technical security such as firewalls, network security groups, and access controls.
Types Of Experience:
- Experience enhancing security posture, and evolving capabilities via continual service improvement.
- Experience of working on live cyber incidents and the remediation actions.
- Experience of partnering with supplier teams for managed services delivery of improvements.
- Experience across the full IT security spectrum (software, servers, infrastructure, and networks).
- Experience implementing secure systems.
- Experience working with system architectures, displaying a strong understanding of the impact of vulnerabilities on varied systems.
The post-holder is expected to behave at all times in a manner consistent with the HS2 values of Safety, Leadership, Integrity and Respect. It is expected that you will actively promote and embed Equality, Diversity and Inclusion (EDI) in all your work and support and comply with all organisational initiatives, policies and procedures on EDI.
As HS2 Ltd do not hold a sponsorship license from the Home Office, we are not able to provide sponsorship to any applicant. Applicants must already have the Right to Work in the UK at the time of application and our process involves a Right to Work validation prior to the interview stage.
Any offers made to applicants will be subject to satisfactory completion of pre-employment checks which include Nationality & Immigration Status, employment references, DBS, Financial and Education checks.
We ask for a variety of detail in your online application; however, we perform the first assessment of suitability for a role based solely on the information in your CV. In a further development of our efforts to create a more diverse workforce, your CV will be anonymised and personal information will be removed during the first stage of the application review.
HS2 Ltd will create a skills legacy and develop a diverse range of talent. We aim to be a leader in EDI practice by creating a safe & inclusive working environment for all our staff - living our values of Safety, Respect, Integrity and Leadership.
HS2 Ltd is also a safety-critical organisation. Employees are required to ensure reasonable care of their own and others’ health and safety by taking personal responsibility for working to our ‘Safe at Heart’ programme principles and following safe working procedures at all times.
Senior IT Security Officer employer: HS2 (High Speed Two) Ltd
Contact Detail:
HS2 (High Speed Two) Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior IT Security Officer
✨Tip Number 1
Familiarise yourself with the latest trends in IT security, especially those relevant to the rail industry. Being able to discuss current threats and how they impact HS2 will show your proactive approach and understanding of the role.
✨Tip Number 2
Network with professionals in the IT security field, particularly those who have experience in large infrastructure projects. Engaging with them can provide insights into the specific challenges faced by HS2 and help you tailor your approach.
✨Tip Number 3
Prepare to discuss your experience with security operations and incident response in detail. Be ready to share specific examples of how you've managed security incidents and improved security posture in previous roles.
✨Tip Number 4
Highlight your commitment to Equality, Diversity, and Inclusion (EDI) in your discussions. HS2 values these principles highly, so demonstrating your alignment with their culture will strengthen your candidacy.
We think you need these skills to ace Senior IT Security Officer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is specifically tailored to the Senior IT Security Officer role. Highlight relevant experience in security operations, threat intelligence, and risk management. Use keywords from the job description to ensure your CV aligns with what HS2 is looking for.
Craft a Strong Cover Letter: Write a compelling cover letter that outlines your passion for IT security and how your skills match the requirements of the role. Mention specific experiences where you've successfully managed security incidents or improved security posture, and express your enthusiasm for contributing to HS2's mission.
Highlight Relevant Skills: In your application, emphasise your expertise in vulnerability assessment, incident response, and emerging technology monitoring. Provide concrete examples of how you've applied these skills in previous roles to demonstrate your capability to excel in this position.
Follow Application Instructions: Carefully read the application instructions provided by HS2. Ensure you submit all required documents, including an updated Word version of your CV, and adhere to any specified formats or guidelines. This attention to detail can set you apart from other candidates.
How to prepare for a job interview at HS2 (High Speed Two) Ltd
✨Understand the Role
Make sure you thoroughly understand the responsibilities of a Senior IT Security Officer. Familiarise yourself with security operations, threat intelligence, and risk management as these are key areas for the role.
✨Showcase Relevant Experience
Prepare to discuss your past experiences related to security incidents, vulnerability assessments, and compliance. Use specific examples to demonstrate how you've successfully managed security risks in previous roles.
✨Stay Updated on Emerging Threats
Research current trends in cybersecurity and be ready to discuss recent threats or incidents in the industry. This shows your proactive approach and commitment to staying informed about the evolving security landscape.
✨Emphasise Soft Skills
In addition to technical skills, highlight your ability to work collaboratively and communicate effectively with stakeholders. HS2 values leadership and respect, so demonstrating these qualities can set you apart from other candidates.