At a Glance
- Tasks: Ensure the security of critical communications for emergency services and manage cyber threats.
- Company: Join a leading organisation dedicated to safeguarding public safety through technology.
- Benefits: Competitive pay, flexible work arrangements, and opportunities for professional growth.
- Why this job: Make a real difference in protecting lives by securing vital communication networks.
- Qualifications: Experience in security governance, risk management, and strong communication skills.
- Other info: Work in a dynamic environment with a focus on impactful security solutions.
The predicted salary is between 48000 - 72000 £ per year.
Duration: 6 months +
Location: London, on-site requirements once every 2 weeks / when required by customer
Security Clearance required
The Emergency Services Network (ESN) is a major strategic priority for our client and our commitment to connect for good for our customers and our country. The Security of the ESN is key to our customer and to our Emergency Services users. Availability of the network is a matter of life or death to the Emergency Services and they have to have confidence in the confidentiality and integrity of their communications and operations. We have to build and maintain effective security controls to prevent and detect a wide range of cyber and physical threats.
This job matters because it:
- Contributes to the ESN Security Management Plan, ISMS and Security Processes - ensuring effective management of security within the Programme and that Contract obligations are met.
- Identifies security threats to ESN and ensures the adequacy of processes and controls in place to mitigate them.
- Works with other Security professionals and other teams to meet ESN security objectives.
- Engages with Customer security teams, providing assurance that Security requirements are met and identifying opportunities for improvement.
In support of the above the ESN Cyber Security Governance & Assurance Specialist executes a range of workstreams in delivering contributions, ESN Programme's and the Customer's overall cyber security risk management program, which is designed to ensure that the technology systems and data associated with the ESN are adequately protected.
The ESN Cyber Security Governance & Assurance Specialist shall:
- Identify and understand all elements of contractual security obligations for the ESN Contract.
- Deliver and verify the implementation of end to end security services as defined within specified the ESN contracts.
- Deliver and implement ISO27001 compliant security strategies, policies, procedures, processes, threat identification & responses that provide wrap-around security services and solutions for the ESN service.
- Deliver the required Security accreditation for the ESN contract.
- Manage operational risks related to people, information, assets, revenues and reputation and ensure compliance with relevant security requirements, typically: the HMG Security Policy Framework, Contractual Obligations, company security and business continuity policies.
- Monitor and manage third party supplier compliance to the flow-down of contractual obligations from the client.
- Monitor and manage security awareness within the ESN Programme.
Skills required:
- Customer-Facing: Ability to establish trusted relationships and successful partnerships with internal and external customers. Be experienced in communicating and influencing across all levels. Be commercially aware.
- Assurance: Ability to plan and execute assurance activities on time, budget and quality: Plan and organise your own work effectively and meet agreed delivery targets. Identify and assess security risks and evaluate mitigations. Understand contractual obligations, their flow down to 3rd parties and the ability to plan and execute assurance reviews to ensure these requirements are being met. Write assurance artefacts, reports and other documents to a high standard, supported by reliable and relevant evidence.
- Operate: Have a proven track record in security and information risk management. Have knowledge and experience of the following: ISO27001, NIST Cyber Security Framework (CSF), National Cyber Security Centre (NCSC) and National Protective Security Authority (NPSA) Standards and Guidance.
MANDATORY experience required:
- Security clearance to BPSS level as a minimum.
- Be experienced in working in an information assurance role on large-scale contracts ideally for Central Government departments or agencies.
- Have proven experience in the writing of assurance artefacts such as security accreditation evidence (RMADS) and Security Operating Procedures (SyOPs).
- Experience of administering security processes.
- Experience of carrying out assurance activities and writing reports and recommendations.
- Experience working with ISO27001 controls and audit.
PREFERRED:
- Prior experience working on complex HMG contracts.
- Experience in auditing and security accreditations.
- Experience of working with Telecoms Security Act (TSA) requirements.
- IT security/network experience.
- Have a proven track record in security management (2-3 years).
Security Governance & Assurance Specialist employer: Experis - ManpowerGroup
Contact Detail:
Experis - ManpowerGroup Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Governance & Assurance Specialist
✨Tip Number 1
Network, network, network! Get out there and connect with professionals in the cyber security field. Attend industry events, join online forums, and don’t be shy about reaching out on LinkedIn. We all know that sometimes it’s not just what you know, but who you know!
✨Tip Number 2
Prepare for interviews like a pro! Research the company and its security protocols, especially those related to the Emergency Services Network. We want you to show them you’re not just another candidate, but someone who understands their mission and can contribute to their security objectives.
✨Tip Number 3
Practice your pitch! You need to be able to clearly articulate your experience with ISO27001 and other relevant frameworks. We suggest rehearsing answers to common interview questions so you can confidently showcase your skills and how they align with the role.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who take the initiative to engage directly with us. Let’s get you that job!
We think you need these skills to ace Security Governance & Assurance Specialist
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience with security governance and assurance. We want to see how your skills align with the specific requirements of the ESN project.
Showcase Your Experience: When detailing your past roles, focus on your experience with ISO27001 and any relevant security frameworks. We love seeing concrete examples of how you've managed security risks and delivered assurance activities.
Be Clear and Concise: Keep your application straightforward and to the point. Use bullet points where possible to make it easy for us to see your key achievements and skills related to the role.
Apply Through Our Website: We encourage you to submit your application through our website. It’s the best way for us to receive your details and ensures you’re considered for this exciting opportunity!
How to prepare for a job interview at Experis - ManpowerGroup
✨Know Your Security Frameworks
Make sure you brush up on ISO27001 and the NIST Cyber Security Framework. Be ready to discuss how you've applied these standards in your previous roles, especially in relation to large-scale contracts.
✨Understand the ESN's Importance
Familiarise yourself with the Emergency Services Network and its critical role in public safety. Being able to articulate why security is paramount for emergency services will show your commitment to the role.
✨Prepare Assurance Artefacts Examples
Have examples of assurance artefacts you've written, like RMADS or SyOPs, ready to discuss. This will demonstrate your hands-on experience and understanding of the documentation required in this field.
✨Build Relationships in Mind
Think about how you can establish trusted relationships with both internal teams and external customers. Prepare examples of how you've successfully influenced stakeholders in past roles to meet security objectives.