At a Glance
- Tasks: Protect vital information by identifying and addressing security vulnerabilities.
- Company: Join Velonetic, a leader in digital transformation within the insurance sector.
- Benefits: Enjoy flexible benefits, professional development, and a supportive work culture.
- Why this job: Make a real impact on information security while working remotely.
- Qualifications: Degree in IT or related field; security certifications are a plus.
- Other info: Be part of a diverse team committed to innovation and inclusion.
The predicted salary is between 36000 - 60000 £ per year.
Velonetic represents the joint ventures between DXC Technology, the International Underwriting Association (IUA), and Lloyd's of London. We have been operating for over 20 years in the London Market, processing over £117 billion worth of premium and claims transactions today. We are building a new digital platform and services that will enable our customers to move transactions and money through the processing lifecycle with greater efficiency and speed.
As the Information Security Officer, you will be the security point of contact for IT operations, responsible for supporting and communicating the importance of compliance and governance of the security strategy, roadmap, and policies that are aligned with the organization's overall security objectives.
Responsibilities:
- Identify, assess, and prioritize security vulnerabilities, ensuring effective remediation plans are in place and executed.
- Lead investigations into information security breaches, ensuring proper reporting and communication with senior management during incidents.
- Work with the Security Incident Response Coordination Centre (SIRCC) to address and mitigate security incidents.
- Work closely with the CISO to ensure the security strategy aligns with broader organisational objectives.
- Monitor and review security policies, standards, and procedures focused on protecting information across all environments.
- Own and manage all information security risks, performing risk assessments specific to storage, processing, and transfer.
- Conduct periodic audits of information security controls to ensure compliance with internal policies and external regulations.
- Ensure that information security requirements are incorporated into all phases of technology systems.
- Coordinate with third-party security vendors to conduct vulnerability assessments, penetration tests, and security audits.
- Stay current on emerging information security trends, threats, and technologies.
- Establish and maintain a strong information security posture, continuously monitoring the effectiveness of controls and processes.
- Regularly evaluate the organization's information security safeguards.
- Monitor software development teams to ensure secure information handling throughout the software development lifecycle (SDLC).
Qualifications & Experience:
- Ideally, a degree in computer science, Information Systems, Engineering, or a related field.
- Holding any of the following qualifications would be an added advantage: CISSP, CCSP, GIAC cloud security certifications.
- Proven experience in a security management capacity, particularly in information-rich industries.
- Proven track record of securing cloud-based services.
- Expertise in a wide range of security domains.
- Experience in cloud computing architectures and common technologies.
- Good understanding of NIST security controls frameworks.
- Familiarity with service control frameworks such as SOC 1 and SOC 2.
- Knowledge of threat modelling and risk management practices.
- Strong project management skills with experience leading cross-functional teams.
Investment In Training and Development:
We offer a comprehensive range of training and career development opportunities, a structured induction programme, tailored job training as well as mentoring and support for relevant sponsored professional qualifications.
Our Culture:
At Velonetic we support with care and compassion. We are constantly evolving our initiatives around equality, diversity, and inclusion to ensure that everyone feels equally involved and supported in the workplace.
Employee Benefits:
As part of our competitive remuneration package, flexible benefits are available. There is an option to "flex up and down" on specific benefits.
DXC Recruitment Team will be engaging with all candidate applications on behalf of Velonetic. DXC will be managing the recruitment throughout the onboarding process.
Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers. DXC does not make offers of employment via social media networks and never asks for any money or payments from applicants.
Seniority Level: Mid-Senior level
Employment Type: Full-time
Job Function: Information Technology
Industries: IT Services and IT Consulting
Information Security Officer in London employer: DXC Technology
Contact Detail:
DXC Technology Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Officer in London
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend events, and join online forums. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its security practices. Show them you’re not just another candidate; you’re genuinely interested in their mission and how you can contribute to their security goals.
✨Tip Number 3
Practice your responses to common interview questions, especially those related to information security scenarios. We all know that confidence is key, so the more you practice, the better you'll perform!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining our team at Velonetic.
We think you need these skills to ace Information Security Officer in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security Officer role. Highlight relevant experience and skills that match the job description, like your expertise in risk management and security policies.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how your background aligns with Velonetic's mission. Keep it concise but impactful!
Showcase Your Certifications: If you've got any relevant certifications like CISSP or CCSP, make them stand out! These can really boost your application and show that you're serious about your professional development in security.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!
How to prepare for a job interview at DXC Technology
✨Know Your Stuff
Make sure you brush up on the latest trends in information security, especially those relevant to cloud services and GDPR compliance. Familiarise yourself with NIST security controls and be ready to discuss how you've applied these in past roles.
✨Showcase Your Experience
Prepare specific examples from your previous work that demonstrate your expertise in managing security incidents and conducting risk assessments. Use the STAR method (Situation, Task, Action, Result) to structure your answers clearly.
✨Ask Smart Questions
At the end of the interview, don’t shy away from asking insightful questions about Velonetic's security strategy or their approach to emerging threats. This shows your genuine interest in the role and helps you gauge if the company aligns with your values.
✨Cultural Fit Matters
Velonetic values a diverse and inclusive culture, so be prepared to discuss how you can contribute to this environment. Share experiences that highlight your teamwork and adaptability, as well as your commitment to fostering an inclusive workplace.