At a Glance
- Tasks: Lead security initiatives and manage cyber risks while ensuring compliance with government frameworks.
- Company: Join NCC Group, a leader in cybersecurity with a focus on innovation and collaboration.
- Benefits: Full-time role with competitive salary, professional development, and a dynamic work environment.
- Other info: Opportunity to work with cutting-edge technology and grow your career in a supportive team.
- Why this job: Make a real impact in cybersecurity and help shape the future of security standards.
- Qualifications: Experience in cyber security, risk management, and knowledge of security frameworks required.
The predicted salary is between 60000 - 80000 ÂŁ per year.
The Internal Security Team plays a critical role in our business functions alongside our external customer requirements. NCC Group’s Internal Security team develops, introduces, and maintains administrative, technical, and physical security controls to continually improve the Group’s security. This role presents an excellent opportunity to deliver in this area and will help NCC Group in managing its cyber risks and meeting its business requirements, while providing subject‑matter expertise on security frameworks and tools.
Role Purpose
As part of your role, you will be responsible for:
- Being the subject matter expert on the application of Netherlands Government ABRO rules and framework.
- Provide risk analysis to the business and be a liaison to the Government entities.
- Assist in audits and ensuring we meet the standards for frameworks such as ABRO, CIS Controls V8, ISO 27001 among others.
- Vulnerability management – identification, and remediation utilizing in‑house systems and expertise.
- Support the wider business as a security subject matter expert and unify security measures and processes to global standards.
- Develop, improve, and maintain security policies and processes, particularly as they apply to ABRO.
- Perform supply chain risk assessments as part of NCC Group’s supply chain risk management program.
- Assist or lead on security projects.
- Assist in incident management, from detection to “lessons learned”.
Qualifications
- Previous professional experience in the cyber and information security field, familiar with introducing governance regimes and risk management to large, diverse organisations.
- Professional experience, with a broad knowledge of technology frameworks and a thorough grasp of methods used to identify and manage cyber and information security risks.
- Enjoy working across differing specialised areas, and willing to promote security standards and good practice when necessary, sometimes against the majority opposition.
- Knowledge of security frameworks, e.g. ABRO, CIS Controls, NST CSF and others.
- Knowledge of cloud environments with a particular emphasis on Azure and AWS.
- The ability to appropriately identify and categorise risk and suggest effective remediation.
- The ability to communicate clearly, to explain security concepts to senior management and other stakeholders both technical and non‑technical, who may not have a security background.
Senior Security Program Officer in Manchester employer: NCC Group plc
Contact Detail:
NCC Group plc Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Security Program Officer in Manchester
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your expertise! Prepare to discuss your knowledge of security frameworks like ABRO and ISO 27001 in detail during interviews. Bring examples of how you've applied these in past roles to demonstrate your value.
✨Tip Number 3
Practice makes perfect! Conduct mock interviews with friends or use online platforms to refine your answers. Focus on articulating complex security concepts in simple terms, so everyone gets it, even if they’re not tech-savvy.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!
We think you need these skills to ace Senior Security Program Officer in Manchester
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Senior Security Program Officer role. Highlight your experience with security frameworks like ABRO and ISO 27001, and don’t forget to showcase your risk management skills. We want to see how you can bring your expertise to our team!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how your background aligns with our needs. Be sure to mention specific projects or experiences that demonstrate your ability to manage cyber risks effectively.
Showcase Your Communication Skills: As a Senior Security Program Officer, you'll need to communicate complex security concepts clearly. In your application, give examples of how you've successfully explained technical information to non-technical stakeholders. We love seeing candidates who can bridge that gap!
Apply Through Our Website: We encourage you to apply directly through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to keep track of your application status. Plus, we love seeing applications come in through our own platform!
How to prepare for a job interview at NCC Group plc
✨Know Your Security Frameworks
Make sure you brush up on the Netherlands Government ABRO rules and other relevant security frameworks like CIS Controls and ISO 27001. Being able to discuss these frameworks confidently will show that you're not just familiar with them, but that you can apply them in real-world scenarios.
✨Showcase Your Risk Management Skills
Prepare specific examples of how you've conducted risk analyses in previous roles. Be ready to explain your thought process and the outcomes of your assessments. This will demonstrate your ability to identify and manage cyber risks effectively.
✨Communicate Clearly
Practice explaining complex security concepts in simple terms. You’ll likely need to communicate with both technical and non-technical stakeholders, so being able to break down jargon will be a huge plus. Think about how you would explain a security issue to someone without a tech background.
✨Be Ready for Scenario Questions
Expect to face scenario-based questions where you'll need to demonstrate your problem-solving skills. Prepare for questions about incident management or vulnerability remediation, and think through how you would handle these situations in a practical context.