At a Glance
- Tasks: Lead InfoSec governance and compliance, manage security policies, and conduct audits.
- Company: Join a fantastic organization focused on information security excellence.
- Benefits: Work in a dynamic environment with opportunities for professional growth.
- Why this job: Make a real impact on data security while collaborating with diverse teams.
- Qualifications: Deep understanding of InfoSec principles and frameworks like ISO27001 required.
- Other info: Office work is required 4 days a week.
The predicted salary is between 43200 - 72000 £ per year.
Job Description
Devonshire Hayes have partnered with a fantastic organisation to help them secure a InfoSec Governance & Compliance Lead. You will be tasked with the following responsibilities:
- A deep understanding of the principles of Information Security.
- Knowledge of information security frameworks such as ISO27001, Cyber Essentials, etc.
- Excellent communication skills and proven ability to produce concise, clear, and well-structured written work.
- Good SharePoint and other MS Office skills.
- Knowledge of data privacy issues, eg Data Protection Act/GDPR.
- Excellent interpersonal skills.
- Responsible for leading and managing the Information Security Management System.
- Responsible for defining and maintaining security policies and documentation.
- Responsible for defining and leading the ISO 27001 audit programme including management of non-conformities and remedial actions.
- Defines and manages Information Security training and awareness programmes for the Business.
- Working alongside stakeholders within ICT and across the business to align policies, ways of working, and deliver audits.
- Providing information governance guidance and support to the business, eg contract bids, client audits, risk assessment, etc.
You will be required to work in the office 4 days per week.
#J-18808-Ljbffr
InfoSec Governance & Compliance Lead employer: Devonshire Hayes
Contact Detail:
Devonshire Hayes Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land InfoSec Governance & Compliance Lead
✨Tip Number 1
Make sure to familiarize yourself with the specific information security frameworks mentioned in the job description, like ISO27001 and Cyber Essentials. Having a solid grasp of these frameworks will not only help you in interviews but also demonstrate your commitment to the role.
✨Tip Number 2
Brush up on your communication skills, especially in producing clear and concise documentation. You might be asked to explain complex security concepts, so practicing how to articulate these ideas simply can set you apart from other candidates.
✨Tip Number 3
Network with professionals in the InfoSec field, particularly those who have experience with governance and compliance. Engaging in discussions or attending relevant webinars can provide insights that could be beneficial during your interview.
✨Tip Number 4
Prepare to discuss your experience with leading audits and managing non-conformities. Be ready to share specific examples of how you've handled similar responsibilities in the past, as this will showcase your leadership capabilities in the InfoSec domain.
We think you need these skills to ace InfoSec Governance & Compliance Lead
Some tips for your application 🫡
Understand the Role: Before you start writing your application, make sure you fully understand the responsibilities and requirements of the InfoSec Governance & Compliance Lead position. Tailor your application to highlight your relevant experience and skills.
Highlight Relevant Experience: In your CV and cover letter, emphasize your experience with information security frameworks like ISO27001 and Cyber Essentials. Provide specific examples of how you've managed security policies or led audit programs in previous roles.
Showcase Communication Skills: Since excellent communication skills are crucial for this role, ensure that your written application is clear, concise, and well-structured. Use bullet points where appropriate to enhance readability.
Tailor Your Documents: Customize your CV and cover letter for this specific job. Mention your knowledge of data privacy issues and your ability to work with stakeholders across the business, as these are key aspects of the role.
How to prepare for a job interview at Devonshire Hayes
✨Showcase Your Knowledge of Information Security Frameworks
Be prepared to discuss your understanding of frameworks like ISO27001 and Cyber Essentials. Highlight any relevant experience you have in implementing or managing these frameworks, as this will demonstrate your expertise in the field.
✨Demonstrate Excellent Communication Skills
Since the role requires producing clear and concise written work, practice articulating your thoughts clearly during the interview. You might be asked to explain complex security concepts, so being able to communicate effectively is key.
✨Prepare for Questions on Data Privacy Issues
Familiarize yourself with the Data Protection Act and GDPR regulations. Be ready to discuss how these laws impact information security practices and how you would ensure compliance within the organization.
✨Highlight Your Interpersonal Skills
As you'll be working closely with various stakeholders, it's important to convey your ability to collaborate and build relationships. Share examples of past experiences where you've successfully worked with teams to achieve common goals.