Information Security Grc Specialist
Information Security Grc Specialist

Information Security Grc Specialist

Full-Time 40000 - 68000 £ / year (est.) No home office possible
M

At a Glance

  • Tasks: Join our team to enhance information security and manage risk effectively.
  • Company: MIB, dedicated to making roads safer for everyone.
  • Benefits: Competitive salary, hybrid working, generous holiday, and wellness support.
  • Why this job: Make a real difference by protecting vital information and supporting victims.
  • Qualifications: Experience in information security and risk management is essential.
  • Other info: Inclusive workplace culture with opportunities for personal and professional growth.

The predicted salary is between 40000 - 68000 £ per year.

About MIB

At MIB our people are passionate about making roads safer by getting uninsured and hit-and-run drivers off our roads. Working in partnership with the Police, Insurers and Government our collective aim is to make it a thing of the past but, until that’s accomplished, we’re here to compensate victims quickly, fairly and compassionately. Last year we helped more than 34,000 people struck by uninsured and hit-and-run drivers and paid over £400 million in compensation to support victims rebuild their lives. We’re looking for a professional and inspiring GRC Specialist to come and join our team.

About Our Role

As a member of the Information Security - Governance Risk and Compliance team (InfoSec GRC), you’ll maintain the confidentiality, availability and integrity of MIB’s information and information systems. This will primarily be achieved through identification and recommendation of risk mitigation treatment plans and as a subject matter specialist to support the needs of the organisation.

Key responsibilities

  • Governance
    • Support the GRC Manager with the development, alignment of an Information Security Strategy
    • Development, review and alignment of Information Security Policy
    • Create, deliver and maintain information security awareness programmes
    • Ensure InfoSec policies, procedures and standards are accessible, communicated and understood by employees, contractors and vendors, delivering training when required.
    • Attendance of relevant governance groups within MIB to ensure complete, transparent and effective risk management is delivered
    • Producing management information (Dashboard) that clearly reflects MIB’s information security risk profile
    • Establish and maintain a community of Information Security 'Champions' throughout the organisation
    • Act as an Information Security subject matter specialist to the business
    • Establish mechanisms, behaviours and culture to encourage the protection of MIB information and information systems
  • Risk
    • Management and maintenance of the ISS Risk Register, ensuring risks are actively identified and managed or exemptions are approved and recorded.
    • Completion of InfoSec risk assessments and workshops.
    • Ensuring that InfoSec risk governance and control frameworks are maintained and that risks/issues are reported and escalated appropriately.
    • Review, challenge and track the implementation and effectiveness of controls and risk mitigation treatment plans as a result of a risk assessment
    • Ensure appropriate management focus for any vulnerability that could damage the confidentiality, integrity or availability of MIB information or information systems.
    • Track and record information security incidents and to ensure risk mitigation controls are appropriate and proportionate and that exposure is minimized.
    • Support the Information Security Incident response process as required
    • Facilitate a process of continuous improvement in the delivery of information security services to MIB
  • Compliance
    • To work with all teams to track requirements and compliance with relevant Legislation, Regulations, Standards and Frameworks as they pertain to Information Security
    • Ensure compliance is maintained with our critical security compliance certification of ISO*****
    • Measure the performance and compliance of key MIB controls which include (but are not limited to): MIB information security policies, Delivery governance gateways, Technical controls
    • Develop, implement and maintain a rolling 12-month compliance schedule

Skills and Experience

  • The jobholder must have a thorough understanding of the Information security threat landscape, significant risks, technical developments and strategies
  • Extensive experience in the IT marketplace, as a security practitioner
  • Experience and knowledge of leading information security risk assessments
  • Proven experience in writing Information Security policies, procedures and standards
  • Experience in maintaining all aspects of ISO******* compliance
  • Working knowledge of standard risk management/control frameworks such as ISF, NIST, ISO and ITIL.
  • Demonstrable experience in creating a sustainable compliance capability
  • Excellent written and oral communication skills
  • Able to present risk in 'non-technical' business-friendly accessible language
  • Ability to effectively prioritise and execute tasks in a high-pressure environment
  • One or more of the following qualifications are highly desirable: Certified Information Systems Security Professional (CISSP), Certified Information systems Auditor (CISA), Certified Risk and Information Systems Control (CRISC)

Salary £67,000

Fixed Term Contract for 6 months

Grade 1335 hours per week (Monday - Friday)

IT kit supplied to you

£320 (before tax) start up allowance

Hybrid working (2 days in the office per week) from our newly refurbished Milton Keynes office, MK14

Other Benefits include:

  • Contributory Group Stakeholder Personal pension scheme
  • Life Assurance
  • Employee Incentive Scheme
  • 27 days holiday (plus public holidays)
  • Holiday purchase scheme
  • Sports and Social Club
  • 24/7 Employee Assistance Programme
  • Free access to online tools to support mental and physical health
  • Enhanced maternity, paternity and adoption leave
  • 1 volunteer day each year and charity matched funding scheme

We believe in a workplace where everyone can be themselves. Through our different ideas, personalities and experiences, we redefine what is possible every day. And regardless of your colour, age, race, gender, sexual orientation or anything else you consider yourself to be, there is a place for you at MIB. A place where you can bring your best self to work every day. So, if you think big, love a challenge and want to make a difference to people’s lives, we want to hear from you.

Information Security Grc Specialist employer: MIB

At MIB, we pride ourselves on being an exceptional employer, offering a supportive and inclusive work culture that values diversity and encourages personal growth. Our Milton Keynes office provides a modern working environment with hybrid options, competitive benefits including a generous holiday allowance, and opportunities for professional development, all while contributing to a meaningful mission of making roads safer for everyone.
M

Contact Detail:

MIB Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Grc Specialist

✨Tip Number 1

Network like a pro! Reach out to people in the industry, attend events, and connect with current employees at MIB. A friendly chat can sometimes lead to opportunities that aren’t even advertised.

✨Tip Number 2

Prepare for interviews by researching MIB’s mission and values. Show us how your skills align with making roads safer and supporting victims. Tailor your answers to reflect our goals!

✨Tip Number 3

Practice your responses to common interview questions, especially around risk management and compliance. We want to see your expertise shine through, so be ready to share specific examples from your experience.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team.

We think you need these skills to ace Information Security Grc Specialist

Information Security Governance
Risk Management
Compliance Management
ISO Compliance
Information Security Policy Development
Risk Assessment
Incident Response
Communication Skills
Training and Awareness Programmes
Technical Controls
Continuous Improvement
Stakeholder Engagement
Ability to Present Technical Information in Business-Friendly Language
Knowledge of Risk Management Frameworks (ISF, NIST, ISO, ITIL)

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in Information Security and GRC. Use keywords from the job description to show that you understand what we're looking for.

Showcase Your Skills: Don’t just list your qualifications; explain how they relate to the role. If you've got experience with ISO compliance or risk assessments, make it clear how that will benefit us at MIB.

Be Clear and Concise: Keep your writing straightforward and to the point. We appreciate clarity, so avoid jargon unless it's relevant to the role. Remember, we want to see your personality shine through!

Apply Through Our Website: We encourage you to submit your application directly through our website. It’s the best way for us to receive your details and ensures you’re considered for the role without any hiccups.

How to prepare for a job interview at MIB

✨Know Your Stuff

Make sure you brush up on the latest trends in information security and GRC frameworks like ISO, NIST, and ITIL. Being able to discuss these topics confidently will show that you're not just familiar with the basics but are genuinely passionate about the field.

✨Tailor Your Examples

When discussing your experience, focus on specific examples that relate to MIB's mission of making roads safer. Highlight any past roles where you've successfully implemented risk management strategies or developed security policies that align with their goals.

✨Communicate Clearly

Since you'll need to present complex information in a business-friendly way, practice explaining technical concepts in simple terms. This will demonstrate your ability to bridge the gap between technical and non-technical stakeholders, which is crucial for this role.

✨Show Your Team Spirit

MIB values collaboration, so be prepared to discuss how you've worked effectively within teams in the past. Share examples of how you've engaged with colleagues to promote information security awareness or foster a culture of compliance.

Information Security Grc Specialist
MIB

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

M
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>