At a Glance
- Tasks: Lead security initiatives and protect vital information in a dynamic tech environment.
- Company: Join Velonetic, a pioneering force in the insurance and reinsurance digital landscape.
- Benefits: Enjoy flexible benefits, professional development, and a supportive work culture.
- Other info: Be part of a diverse team committed to innovation and inclusivity.
- Why this job: Make a real impact on information security while growing your career in a cutting-edge company.
- Qualifications: Degree in IT or related field; security certifications are a plus.
The predicted salary is between 56700 - 69300 £ per year.
Velonetic represents the joint ventures between DXC Technology, the International Underwriting Association (IUA), and Lloyd’s of London. We have been operating for over 20 years in the London Market, processing over £117 billion worth of premium and claims transactions. We are building a new digital platform and services that will enable our customers to move transactions and money through the processing lifecycle with greater efficiency and speed.
As the Information Security Officer, you will be the security point of contact for IT operations, responsible for supporting and communicating the importance of compliance and governance of the security strategy, roadmap, and policies that are aligned with the organization’s overall security objectives.
Responsibilities:
- Identify, assess, and prioritize security vulnerabilities, ensuring effective remediation plans are in place and executed.
- Lead investigations into information security breaches, ensuring proper reporting and communication with senior management during incidents.
- Work with the Security Incident Response Coordination Centre (SIRCC) to address and mitigate security incidents.
- Work closely with the CISO to ensure the security strategy aligns with broader organisational objectives.
- Monitor and review security policies, standards, and procedures focused on protecting information across all environments.
- Own and manage all information security risks, performing risk assessments specific to storage, processing, and transfer.
- Conduct periodic audits of information security controls to ensure compliance with internal policies and external regulations.
- Ensure that information security requirements are incorporated into all phases of technology systems.
- Coordinate with third‑party security vendors to conduct vulnerability assessments, penetration tests, and security audits.
- Stay current on emerging information security trends, threats, and technologies.
- Establish and maintain a strong information security posture, continuously monitoring the effectiveness of controls and processes.
- Regularly evaluate the organization’s information security safeguards.
- Monitor software development teams to ensure secure information handling throughout the software development lifecycle (SDLC).
Qualifications & Experience:
- Ideally, a degree in computer science, Information Systems, Engineering, or a related field.
- Holding any of the following qualifications would be an added advantage: CISSP, CCSP, GIAC cloud security certifications.
- Proven experience in a security management capacity, particularly in information‑rich industries.
- Proven track record of securing cloud‑based services.
- Expertise in a wide range of security domains.
- Experience in cloud computing architectures and common technologies.
- Good understanding of NIST security controls frameworks, risk assessment, and risk management.
- Familiarity with service control frameworks such as SOC 1 and SOC 2.
- Knowledge of threat modelling and risk management practices.
- Strong project management skills with experience leading cross‑functional teams.
Investment In Training and Development:
We offer a comprehensive range of training and career development opportunities, a structured induction programme, tailored job training as well as mentoring and support for relevant sponsored professional qualifications.
Our Culture:
At Velonetic we support with care and compassion. We are constantly evolving our initiatives around equality, diversity, and inclusion.
Employee Benefits:
As part of our competitive remuneration package, flexible benefits are available.
Information Security Officer employer: DXC Technology
DXC Technology is an exceptional employer that prioritises diversity and fosters a positive work environment, making it an ideal place for a Strategic PMO Leader. With a strong commitment to employee growth and development, the company offers numerous opportunities for professional advancement while working in the dynamic landscape of the United Kingdom. Join a team that values collaboration and excellence in project delivery, ensuring your contributions are recognised and impactful.