At a Glance
- Tasks: Ensure the security of IT systems and compliance with regulations in a dynamic offshore wind company.
- Company: Join JERA Nex bp, a pioneering offshore wind joint venture between JERA and bp.
- Benefits: Flexible working hours, remote work options, and opportunities for career growth.
- Why this job: Make a real impact in securing innovative offshore wind projects globally.
- Qualifications: 5+ years in information security with certifications like CISSP and knowledge of ISO/NIST frameworks.
- Other info: Collaborative culture with a focus on inclusivity and team-building activities.
The predicted salary is between 36000 - 60000 £ per year.
Join us as we work to unlock the value of offshore wind! JERA Nex bp is a new joint venture between JERA, Japan's largest power generation company, and bp, one of the world's leading energy companies. Established to unlock the potential of offshore wind across the globe, our talented team, exciting pipeline and solid capital commitment give us the potential to become one of the world's most successful offshore wind companies.
Why this role matters
Ensure the security of JNBP's Information Technology and that the security meets the expectations of both regulators and shareholders. In this role you will:
- Evaluate, design and ensure enforcement of the information security policies that align with business needs and regulatory requirements such as ISO 27001, NIST, GDPR, and relevant local regulations.
- Assure the organisation's information security management system (ISMS) is managed, extend the ISMS across the group, and drive continuous improvement to meet accreditation standards (e.g., ISO 27001:2022).
- Drive the integration of security controls into business operations and digital solutions in collaboration with Digital, O&M, legal and audit.
- Oversee and support incident response planning and investigations, including coordination with legal and disciplinary processes when necessary.
- Oversee that regular risk assessments and audits are conducted to identify vulnerabilities and implement mitigation strategies.
- Monitor emerging threats and regulatory changes, steering to updating policies and controls accordingly.
- Guarantee information security documentation and evidence is maintained as required for external audits and certification processes.
- Lead compliance initiatives to ensure adherence to legal, statutory, regulatory, and contractual obligations related to information security.
- Promote and where necessary lead security awareness and training across the organisation to ensure all employees understand and comply with security policies.
- Ensure and consolidate reporting of incident security incidents and audits as required by leadership, shareholders and regulators.
To be successful in the role you will bring:
- Professional certifications such as CISSP (Certified Information Systems Security Professional).
- In-depth understanding of information security frameworks (e.g., ISO/IEC 27001, NIST).
- Strong grasp of risk management principles and practices.
- Proficiency in security technologies, particularly the Microsoft suite, and zero trust security architecture.
- Familiarity with data privacy laws and regulations (e.g., GDPR).
- Experience with incident response, disaster recovery, and business continuity planning.
- Ability to conduct security audits, and vulnerability assessments.
- Minimum 5 years of experience in information security.
- Proven track record of developing and implementing security policies and procedures.
What you can expect from us:
- A collaborative and inclusive work culture, with space for team-building and social activities.
- Flexible working hours and the opportunity to work from home, with regular in-person connection.
- Opportunities for career growth and professional development in a fast-growing international company.
As we build our company, we are driven by:
- Care for each other and our world – we leave egos at the door, are inclusive, collaborative and open to new ideas.
- A spirit of ingenuity - we are pioneers and innovators making the impossible possible.
- A commitment to unlocking value from offshore wind – we aim to make offshore wind sustainable, affordable and accessible to the countries & communities we serve.
About JERA Nex bp
JERA Nex bp is a purpose-built offshore wind company committed to unlocking the power of offshore wind by developing high-quality, competitive projects. A 50:50 joint venture between JERA Co. and bp, JERA Nex bp is an end-to-end developer, owner and operator with more than fifteen years of experience in operating offshore wind projects. Headquartered in London, with offices across Europe, Asia, US and Australia, JERA Nex bp has a portfolio of operational and development projects across nine countries, and draws on a rich heritage of pioneering offshore wind in Asia Pacific and the North Sea.
Information Security Officer in London employer: JERA Nex bp
Contact Detail:
JERA Nex bp Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Officer in London
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its values. JERA Nex bp is all about collaboration and innovation, so think of examples from your past that showcase these qualities. Show them you’re a perfect fit!
✨Tip Number 3
Practice makes perfect! Do mock interviews with friends or use online resources to get comfortable with common questions. The more you practice, the more confident you'll feel when it’s time to shine.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in being part of our exciting journey in offshore wind.
We think you need these skills to ace Information Security Officer in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security Officer role. Highlight your relevant experience, especially in information security frameworks like ISO 27001 and NIST. We want to see how your skills align with our mission at JERA Nex bp!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about offshore wind and how your background makes you a perfect fit for our team. Let’s see your personality come through while keeping it professional.
Showcase Your Certifications: If you’ve got certifications like CISSP, make sure they’re front and centre in your application. We value these qualifications highly, so don’t be shy about flaunting them! They show us you’re serious about your career in information security.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, you’ll find all the details you need about the role and our company culture there!
How to prepare for a job interview at JERA Nex bp
✨Know Your Security Frameworks
Make sure you brush up on your knowledge of information security frameworks like ISO 27001 and NIST. Be ready to discuss how you've applied these in past roles, as this will show your understanding of the regulatory landscape and how it aligns with JERA Nex bp's needs.
✨Showcase Your Incident Response Skills
Prepare examples of how you've handled incident response in previous positions. Discuss specific incidents, your role in managing them, and the outcomes. This will demonstrate your practical experience and ability to lead during critical situations.
✨Understand the Business Context
Familiarise yourself with JERA Nex bp's mission and the offshore wind industry. Being able to connect your information security expertise to their business goals will set you apart and show that you're genuinely interested in contributing to their success.
✨Prepare for Compliance Questions
Expect questions about compliance with data privacy laws like GDPR. Be ready to explain how you've ensured adherence to legal and regulatory requirements in your previous roles, as this is crucial for the Information Security Officer position.