At a Glance
- Tasks: Ensure the security of the Emergency Services Network and manage cyber threats effectively.
- Company: Join a leading organisation dedicated to protecting vital communication for emergency services.
- Benefits: Competitive pay, flexible work arrangements, and opportunities for professional growth.
- Why this job: Make a real difference in public safety by safeguarding critical communication systems.
- Qualifications: Experience in security governance, risk management, and knowledge of ISO27001.
- Other info: Work in a dynamic environment with a focus on impactful security solutions.
The predicted salary is between 48000 - 72000 £ per year.
Duration: 6 months +
Location: London, on-site requirements once every 2 weeks / when required by customer
Security Clearance required
The Emergency Services Network (ESN) is a major strategic priority for our client and our commitment to connect for good for our customers and our country. The Security of the ESN is key to our customer and to our Emergency Services users. Availability of the network is a matter of life or death to the Emergency Services and they have to have confidence in the confidentiality and integrity of their communications and operations.
We have to build and maintain effective security controls to prevent and detect a wide range of cyber and physical threats.
This job matters because it:
- Contributes to the ESN Security Management Plan, ISMS and Security Processes - ensuring effective management of security within the Programme and that Contract obligations are met.
- Identifies security threats to ESN and ensures the adequacy of processes and controls in place to mitigate them.
- Works with other Security professionals and other teams to meet ESN security objectives.
- Engages with Customer security teams, providing assurance that Security requirements are met and identifying opportunities for improvement.
In support of the above the ESN Cyber Security Governance & Assurance Specialist executes a range of workstreams in delivering contributions, ESN Programme's and the Customer's overall cyber security risk management program, which is designed to ensure that the technology systems and data associated with the ESN are adequately protected.
The ESN Cyber Security Governance & Assurance Specialist shall:
- Identify and understand all elements of contractual security obligations for the ESN Contract.
- Deliver and verify the implementation of end to end security services as defined within specified the ESN contracts.
- Deliver and implement ISO27001 compliant security strategies, policies, procedures, processes, threat identification & responses that provide wrap-around security services and solutions for the ESN service.
- Deliver the required Security accreditation for the ESN contract.
- Manage operational risks related to people, information, assets, revenues and reputation and ensure compliance with relevant security requirements, typically: the HMG Security Policy Framework, Contractual Obligations, company security and business continuity policies.
- Monitor and manage third party supplier compliance to the flow-down of contractual obligations from the client.
- Monitor and manage security awareness within the ESN Programme.
Skills required:
- Customer-Facing: Ability to establish trusted relationships and successful partnerships with internal and external customers. Be experienced in communicating and influencing across all levels. Be commercially aware.
- Assurance: Ability to plan and execute assurance activities on time, budget and quality: Plan and organise your own work effectively and meet agreed delivery targets. Identify and assess security risks and evaluate mitigations. Understand contractual obligations, their flow down to 3rd parties and the ability to plan and execute assurance reviews to ensure these requirements are being met. Write assurance artefacts, reports and other documents to a high standard, supported by reliable and relevant evidence.
- Operate: Have a proven track record in security and information risk management. Have knowledge and experience of the following: ISO27001, NIST Cyber Security Framework (CSF), National Cyber Security Centre (NCSC) and National Protective Security Authority (NPSA) Standards and Guidance.
MANDATORY experience required:
- Security clearance to BPSS level as a minimum.
- Be experienced in working in an information assurance role on large-scale contracts ideally for Central Government departments or agencies.
- Have proven experience in the writing of assurance artefacts such as security accreditation evidence (RMADS) and Security Operating Procedures (SyOPs).
- Experience of administering security processes.
- Experience of carrying out assurance activities and writing reports and recommendations.
- Experience working with ISO27001 controls and audit.
PREFERRED
- Prior experience working on complex HMG contracts.
- Experience in auditing and security accreditations.
- Experience of working with Telecoms Security Act (TSA) requirements.
- IT security/network experience.
- Have a proven track record in security management (2-3 years).
Security Governance & Assurance Specialist in London employer: Experis - ManpowerGroup
Contact Detail:
Experis - ManpowerGroup Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Governance & Assurance Specialist in London
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the cyber security field. Attend industry events, join online forums, and don’t be shy about reaching out on LinkedIn. We all know that sometimes it’s not just what you know, but who you know!
✨Tip Number 2
Prepare for those interviews like it’s game day! Research the company, understand their security needs, and think about how your skills can help them. We want you to walk in confident, ready to show off your knowledge of ISO27001 and risk management.
✨Tip Number 3
Practice makes perfect! Do mock interviews with friends or use online resources to get comfortable answering tough questions. We can’t stress enough how important it is to articulate your experience with assurance activities and security processes clearly.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we’re always looking for passionate individuals who are ready to make a difference in the world of cyber security.
We think you need these skills to ace Security Governance & Assurance Specialist in London
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience with security governance and assurance. Use keywords from the job description to show that you understand what we're looking for.
Showcase Relevant Experience: When detailing your work history, focus on your experience with ISO27001 and any large-scale contracts you've worked on. We want to see how your background aligns with the responsibilities of the role.
Be Clear and Concise: Keep your application straightforward and to the point. Use bullet points where possible to make it easy for us to read through your qualifications and achievements.
Apply Through Our Website: We encourage you to submit your application directly through our website. This helps us keep track of all applications and ensures you’re considered for the role as quickly as possible.
How to prepare for a job interview at Experis - ManpowerGroup
✨Know Your Security Standards
Familiarise yourself with ISO27001, NIST Cyber Security Framework, and other relevant standards. Be ready to discuss how you've applied these in past roles, especially in relation to security governance and assurance.
✨Demonstrate Customer-Facing Skills
Prepare examples of how you've built trusted relationships with customers and stakeholders. Highlight your ability to communicate complex security concepts clearly and effectively across different levels of an organisation.
✨Showcase Your Assurance Experience
Be ready to talk about your experience in planning and executing assurance activities. Bring specific examples of how you've identified security risks and implemented effective mitigations, particularly in large-scale contracts.
✨Prepare for Technical Questions
Expect questions on security processes and compliance requirements. Brush up on your knowledge of security accreditation evidence and be prepared to discuss how you would manage operational risks related to people, information, and assets.