At a Glance
- Tasks: Lead IT risk management and compliance for a large organisation, ensuring digital asset protection.
- Company: Join ISS Facility Services UK, a leader in facilities and IT services.
- Benefits: Enjoy a hybrid work model with opportunities for professional growth and development.
- Why this job: Be at the forefront of IT security, making a real impact on business effectiveness and compliance.
- Qualifications: Extensive experience in IT risk management and compliance; knowledge of relevant regulations is essential.
- Other info: This is a newly created role, offering a chance to shape the future of IT compliance.
The predicted salary is between 43200 - 72000 Β£ per year.
ISS have a new and exciting role for an experienced Head of IT Risk and Compliance to lead our UK & Ireland organisation in managing and mitigating IT-related risks while ensuring compliance with all relevant regulations and standards. As a newly created role within the business, this position offers the opportunity to engage in various projects across a large and complex organisation. The ideal candidate will have a strong background in IT security, risk management, and regulatory compliance, with the ability to develop and implement effective strategies aligned with Global Policies and Standards. This role is crucial in protecting digital assets, maintaining the integrity of IT systems, and ensuring the continuity, quality, and overall business effectiveness of the Risk and Compliance function.
Key Responsibilities:
- Ensure compliance with IT regulations, standards, and policies, including ISO 27001, NIS2, and DORA.
- Implement and maintain IT General Controls to protect digital assets.
- Monitor and report compliance status and issues to senior management.
- Coordinate IT activities for internal and external audits, including finance and ISO 27001 audits.
- Standardise and maintain IT process documentation.
- Conduct regular assessments and audits to ensure compliance.
- Support IT demand processes for new solutions, assurance evidence, and documentation.
- Manage and improve the IT risk management framework for the UK & Ireland.
- Oversee the Information Security Management System and support security policies, vulnerability management, and incident responses.
- Manage customer assurance requests, review contractual security schedules, and support the commercial team during the bid process.
Professional and Personal Competencies/Qualifications:
- Extensive experience leading IT risk management and compliance within a complex global organisation.
- Strong knowledge of IT regulations, standards, and best practices.
- Strong knowledge of IT General Controls and Information Security Management Systems.
- Experience with regulatory requirements and standards, including ITIL, GDPR, ISO27001, PCI, NIS2, and DORA.
- Proven ability to manage and coordinate audit activities.
- Ideally have previous experience within the Facilities Management industry, however this isnβt essential.
Seniority level: Mid-Senior level
Employment type: Full-time
Job function: Information Technology and Management
Industries: Facilities Services and IT Services and IT Consulting
Head of IT Risk & Compliance employer: ISS Facility Services UK
Contact Detail:
ISS Facility Services UK Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Head of IT Risk & Compliance
β¨Tip Number 1
Network with professionals in the IT risk and compliance field, especially those who have experience in facilities management. Attend industry events or webinars to connect with potential colleagues and learn about the latest trends and challenges in the sector.
β¨Tip Number 2
Familiarise yourself with the specific regulations and standards mentioned in the job description, such as ISO 27001, NIS2, and DORA. Being able to discuss these in detail during conversations will demonstrate your expertise and commitment to the role.
β¨Tip Number 3
Prepare to showcase your experience in managing IT risk frameworks and compliance audits. Think of specific examples from your past roles where you successfully implemented strategies that improved compliance or mitigated risks.
β¨Tip Number 4
Reach out directly to the job poster or hiring manager on LinkedIn. A personalised message expressing your interest in the role and highlighting your relevant experience can make a strong impression and increase your chances of being noticed.
We think you need these skills to ace Head of IT Risk & Compliance
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights your extensive experience in IT risk management and compliance. Focus on relevant roles where you've implemented IT General Controls or managed audits, and quantify your achievements where possible.
Craft a Compelling Cover Letter: In your cover letter, express your enthusiasm for the role and the company. Discuss how your background aligns with the key responsibilities outlined in the job description, particularly your knowledge of regulations like ISO 27001 and GDPR.
Showcase Relevant Projects: If you have led projects related to IT security or compliance, be sure to mention these in your application. Describe your role, the challenges faced, and the outcomes achieved to demonstrate your capability in managing complex IT environments.
Highlight Soft Skills: In addition to technical skills, emphasise your leadership and communication abilities. The role requires coordination with senior management and various teams, so showcasing your interpersonal skills can set you apart from other candidates.
How to prepare for a job interview at ISS Facility Services UK
β¨Showcase Your Expertise
Make sure to highlight your extensive experience in IT risk management and compliance. Be prepared to discuss specific projects where you've successfully implemented strategies that align with regulations like ISO 27001 or GDPR.
β¨Understand the Companyβs Needs
Research ISS Facility Services UK and understand their operations, especially in relation to IT risk and compliance. Tailor your responses to demonstrate how your skills can directly benefit their organisation and address their unique challenges.
β¨Prepare for Technical Questions
Expect to be asked about IT General Controls and Information Security Management Systems. Brush up on your knowledge of relevant standards and be ready to explain how you would apply them in the role.
β¨Demonstrate Leadership Skills
As a Head of IT Risk & Compliance, you'll need to lead teams and coordinate audits. Share examples of how you've effectively managed teams and driven compliance initiatives in previous roles to showcase your leadership capabilities.