At a Glance
- Tasks: Lead security initiatives and ensure compliance with information assurance standards.
- Company: Join DXC Technology, a leader in IT solutions with a people-first culture.
- Benefits: Enjoy competitive pay, health perks, and a supportive work environment.
- Why this job: Make a real impact in cybersecurity while growing your skills in a dynamic team.
- Qualifications: Experience in information security and a proactive approach to risk management.
- Other info: Collaborative atmosphere with opportunities for personal and professional development.
The predicted salary is between 36000 - 60000 ÂŁ per year.
Location: Gloucester - on site 5 days per week
Security Clearances: UK National eligible for security clearance
At DXC Technology, delivering excellence for our customers and colleagues is more than just a motto; it’s something we strive towards constantly through our work. Every day we deliver mission‑critical services in a secure environment whilst promoting our people‑first agenda, a real sense of community and a healthy work‑life balance.
The role involves working within multiple teams and being innovative and analytical with a good eye for detail. Your role will include implementing standards, policies, and procedures for continual service improvement. We are looking for someone who has all‑round skills in information security risk management.
Role responsibilities:- Working closely with service delivery teams, monitor compliance of existing services with defined security controls, identifying non‑compliances, determining the preferred route to remediation, and monitoring and reporting on the progress of associated actions.
- Advise risk owners as to the severity of the risks associated with any such non‑compliances, and where necessary discussing potential mitigation strategies (and their impacts) to enable them to make informed risk management decisions.
- Monitor implementation and ongoing maintenance of agreed risk management BAU activities (e.g. patching).
- Maintain the risk assessment and related artefacts such as the risk register and security‑specific documentation such as Security Operating Procedures through‑life.
- Assess the security impact of changes to the service, reflecting agreed changes in security documentation.
- Create and deliver regular reports regarding the security posture of the service being delivered.
- Assist the Account Security Lead with creating and maintaining security‑related processes, policies and guidance.
- Proactively identify areas for improvement in security across the account, both to improve security, and make good security easier.
- Several proven years experience in a similar or related role with desirable additional qualifications to include CISM or CISSP / IISP or other professional body membership.
- Experience of working to HMG (e.g. NCSC guidance, DSIT Secure by Design, GovS 007) best practices.
- Desire to improve processes, looking for the root cause of a problem.
- Willingness to both share your knowledge and learn from others.
- A proactive approach towards looking for risks and problems, and solving them.
- A strong team working ethic, with a "customer first" focus and a thirst for knowledge.
- A good knowledge and understanding of information and cyber security risk management.
- Knowledge of threat modelling utilising STRIDE or Attack Trees.
- Knowledge of the NIST Cyber Security Framework.
- Knowledge of various technology stacks including Cloud (AWS, MS Azure), M365, VMWare, Redhat Openshift or other container orchestration platforms, Windows and Linux operating systems.
- Knowledge of industry security guidance provided by the likes of OWASP and CIS.
- Aware of security champions programmes.
- Competitive compensation.
- Pension scheme.
- DXC Select - Our comprehensive benefits package (includes private health/medical insurance, childcare vouchers, gym membership and more).
- Perks at Work (discounts on technology, groceries, travel and more).
- DXC incentives (recognition tools, employee lunches, regular social events etc).
At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritises in‑person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive.
Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf.
Information Assurance Security Manager ( IASM) employer: DXC Technology
Contact Detail:
DXC Technology Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Assurance Security Manager ( IASM)
✨Tip Number 1
Network like a pro! Reach out to current or former employees at DXC Technology on LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.
✨Tip Number 2
Prepare for the interview by researching common questions for Information Assurance Security Managers. We recommend practising your answers with a friend or in front of a mirror to build confidence and clarity.
✨Tip Number 3
Show off your skills during the interview! Bring examples of past projects or challenges you've tackled in information security. This will help us see how you think and solve problems in real-time.
✨Tip Number 4
Don’t forget to follow up after your interview! A quick thank-you email reiterating your interest in the role can leave a lasting impression and keep you top of mind for the hiring team.
We think you need these skills to ace Information Assurance Security Manager ( IASM)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Assurance Security Manager role. Highlight your relevant experience and skills that match the job description, especially in information security risk management and compliance.
Craft a Compelling Cover Letter: Your cover letter should tell us why you're the perfect fit for this role. Share specific examples of your past achievements in similar roles and how they relate to the responsibilities outlined in the job description.
Showcase Your Knowledge: Demonstrate your understanding of industry standards and best practices, like NCSC guidance or the NIST Cyber Security Framework. This will show us that you’re not just qualified, but also passionate about the field.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role without any hiccups!
How to prepare for a job interview at DXC Technology
✨Know Your Stuff
Make sure you brush up on your knowledge of information security risk management and the specific frameworks mentioned in the job description, like NIST and HMG best practices. Being able to discuss these confidently will show that you're not just a good fit, but that you’re genuinely interested in the role.
✨Show Your Problem-Solving Skills
Prepare examples from your past experience where you've identified risks and implemented solutions. This could be anything from improving security processes to managing compliance issues. Highlighting your proactive approach will resonate well with the interviewers.
✨Be a Team Player
Since the role involves working closely with service delivery teams, be ready to discuss how you’ve collaborated with others in previous roles. Share instances where you’ve contributed to a team’s success or helped foster a positive work environment.
✨Ask Smart Questions
Prepare thoughtful questions about the company’s security culture, ongoing projects, or how they measure success in this role. This not only shows your interest but also gives you insight into whether the company aligns with your values and career goals.