At a Glance
- Tasks: Lead risk management and IT security governance in the energy sector.
- Company: Join a leading company innovating the future of energy with a focus on safety and efficiency.
- Benefits: Enjoy flexible hours, hybrid work, a generous bonus, and a solid pension plan.
- Why this job: Be at the forefront of security processes while making a real impact in the energy industry.
- Qualifications: Must have CISA certification and experience with ISO27001, GDPR, and security policies.
- Other info: Candidates must have lived in the UK for 5 years to qualify for security clearance.
Are you an experienced Information Security Manager looking for your next challenge? I'm currently working with a leading company in the energy sector who are looking for a Information Security Manager to join the team and lead them through a number of new projects. They are looking to innovate and drive the future of energy, ensuring safety, security, and efficiency in everything they do. As the Information Security Manager you will oversee the risk management and IT security governance. In this role, you'll develop and implement security processes and policies, ensuring their systems are secure and compliant with industry standards. What you'll do: Manage risk and IT security governance, including compliance with standards like ISO27001. Conduct technical and non-technical risk assessments and monitor compliance with security policies. Lead internal and external audits, ensuring timely resolution of any issues. Develop business continuity plans, working with emergency planning teams. Regularly review and update security policies and procedures. Manage relationships with security vendors and contractors. Support the delivery of security regulatory and project assurance. Continually improve security processes and compliance initiatives. Deputise for the Head of Cyber Security when needed.What you'll need: Knowledge of information security risk management (e.g., ISO27001). IT/IS security qualifications such as CISSP. Certified Information Systems Auditor (CISA). Experience with ISO27001, ISO27002, and GDPR. Understanding of security controls and their effectiveness. Familiarity with assurance frameworks. Experience in delivering information security certification and maintaining compliance. Experience in creating and reviewing IS security policies. High-level understanding of operational technology systems and their risks. Ability to obtain UK security clearance and have been a UK resident for 5 years or more.What you'll get: Up to £75,000 salary DOE. Annual bonus up to 15%. Flexible hours and hybrid working. Up to 12% Employer contribution pension. 25 days holiday (increases with service). Car allowance/company car scheme. And many more such as healthcare, course fees etc.Clearance Requirements: Due to the nature of this role, the successful candidate must be eligible for security clearance. To qualify, you must have lived permanently in the UK for 5 years or more. If you meet a handful of the above requirements and are interest in the role then please apply and I will be in touch shortly to discuss the role in more detail. To find out more about Computer Futures please visit Computer Futures, a trading division of SThree Partnership LLP is acting as an Employment Business in relation to this vacancy | Registered office | 8 Bishopsgate, London, EC2N 4BQ, United Kingdom | Partnership Number | OC(phone number removed) England and Wales
Information Security Manager - Governance & Risk employer: Computer Futures
Contact Detail:
Computer Futures Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Manager - Governance & Risk
✨Tip Number 1
Familiarize yourself with ISO27001 and GDPR regulations. Understanding these standards will not only help you in the interview but also demonstrate your commitment to compliance and security governance.
✨Tip Number 2
Network with professionals in the energy sector, especially those involved in information security. Engaging with industry peers can provide insights into current challenges and trends, making you a more attractive candidate.
✨Tip Number 3
Prepare to discuss your experience with risk assessments and audits. Be ready to share specific examples of how you've successfully managed compliance and security processes in previous roles.
✨Tip Number 4
Highlight your ability to work collaboratively with emergency planning teams. This role requires developing business continuity plans, so showcasing your teamwork skills will be crucial.
We think you need these skills to ace Information Security Manager - Governance & Risk
Some tips for your application 🫡
Understand the Role: Make sure you fully understand the responsibilities and requirements of the Information Security Manager position. Highlight your experience with risk management, IT security governance, and compliance with standards like ISO27001 in your application.
Tailor Your CV: Customize your CV to reflect your relevant experience and skills related to information security, risk assessments, and policy development. Use keywords from the job description to ensure your CV stands out.
Craft a Strong Cover Letter: Write a compelling cover letter that explains why you are the perfect fit for this role. Discuss your experience with security audits, vendor management, and your understanding of operational technology systems.
Highlight Certifications: If you have certifications such as CISA or experience with GDPR, make sure to prominently feature these in your application. This will demonstrate your qualifications and commitment to the field of information security.
How to prepare for a job interview at Computer Futures
✨Understand the Standards
Make sure you have a solid understanding of ISO27001, ISO27002, and GDPR. Be prepared to discuss how these standards apply to risk management and IT security governance in your previous roles.
✨Showcase Your Audit Experience
Highlight your experience with internal and external audits. Be ready to share specific examples of how you've resolved issues during audits and improved compliance with security policies.
✨Discuss Risk Assessment Techniques
Be prepared to explain both technical and non-technical risk assessment methods you've used. Discuss how you monitor compliance and ensure that security processes are effective.
✨Demonstrate Leadership Skills
As this role involves leading projects and teams, be ready to talk about your leadership style. Share examples of how you've successfully managed relationships with vendors and contractors in the past.