At a Glance
- Tasks: Help manage cyber risks and improve security policies in a dynamic environment.
- Company: Join NCC Group, a leader in creating a secure digital future.
- Benefits: Flexible working, generous holiday allowance, wellness programs, and career growth opportunities.
- Other info: Inclusive culture that values creativity, collaboration, and personal well-being.
- Why this job: Make a real impact on cybersecurity while collaborating with diverse teams.
- Qualifications: Experience in cyber security and knowledge of security frameworks required.
The predicted salary is between 40000 - 50000 € per year.
The Internal Security Team play a critical role in our business functions alongside our external customer requirements. NCC Group’s Internal Security team develop, introduce and maintain administrative, technical and physical security controls to continually improve the Group’s security. This role presents an excellent opportunity to deliver in this area and will help NCC Group in managing its cyber risks and meeting its business requirements and also providing subject matter expertise on security frameworks and tools.
Summary
- Assist in audits and ensuring we meet the standards for frameworks such as UK Govt. Cyber Essentials, CIS Controls V8, ISO 27001 amongst others.
- Develop, improve, and maintain security policies and processes, particularly as they apply to these standards.
- Vulnerability management - identification, and remediation utilising in-house systems and expertise.
- Support the wider business as a security subject matter expert and unify security measures and processes to global standards.
- Perform supply chain risk assessments as part of NCC Group’s supply chain risk management program.
- Assist or lead on security projects.
- Assist in incident management, from detection to “lessons learned”.
What we are looking for in you:
- Previous professional experience in the cyber and information security field, you will be familiar with introducing governance regimes and risk management to large, diverse organisations.
- Professional experience, you will have attained a broad knowledge of technology frameworks and a thorough grasp of methods used to identify and manage cyber and information security risks.
- Enjoy working across differing specialised areas, also be willing to promote security standards and good practice when necessary, sometimes against majority opposition.
- Knowledge of security frameworks, e.g. UK Govt. Cyber Essentials, CIS Controls, NST CSF and others.
- Knowledge of cloud environments with a particular emphasis on Azure and AWS.
- The ability to appropriately identify and categorise risk and suggest effective remediation.
- The ability to communicate clearly, to explain security concepts to senior management and other stakeholders both technical and non-technical, who may not have a security background.
Ways of working
- Focusing on Clients and Customers.
- Working as One NCC.
- Always Learning.
- Being Inclusive and Respectful.
- Delivering Brilliantly.
Our company
At NCC Group, our mission is to create a more secure digital future. That mission underpins everything we do, from our work with our incredible clients to groundbreaking research shaping our industry. Our teams partner with clients across a multitude of industries, delving into, securing new products, and emerging technologies, as well as solving complex security problems. As global leaders in cyber and escrow, NCC Group is a people-powered business seeking the next group of brilliant minds to join our ranks. Our colleagues are our greatest asset, and NCC Group is committed to providing an inclusive and supportive work environment that fosters creativity, collaboration, authenticity, and accountability. We want colleagues to put down roots at NCC Group, and we offer a comprehensive benefits package, as well as opportunities for learning and development and career growth. We believe our people are at their brilliant best when they feel bolstered in all aspects of their well-being, and we offer wellness programs and flexible working arrangements to provide that vital support.
What do we offer in return?
- Flexible Working: Balance your work and personal life with our flexible working options.
- Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave.
Security Program Officer employer: NCC Group plc
At NCC Group, we pride ourselves on being an exceptional employer, particularly for the Security Program Officer role based in Manchester. Our inclusive and supportive work culture fosters creativity and collaboration, while our commitment to employee growth is evident through comprehensive learning and development opportunities. With flexible working arrangements, generous holiday allowances, and wellness programs, we ensure that our colleagues thrive both personally and professionally in a dynamic environment dedicated to creating a more secure digital future.
StudySmarter Expert Advice🤫
We think this is how you could land Security Program Officer
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its security practices. Familiarise yourself with their frameworks like Cyber Essentials and ISO 27001. This shows you're genuinely interested and ready to contribute from day one.
✨Tip Number 3
Practice your communication skills! Be ready to explain complex security concepts in simple terms. This is key when talking to non-technical stakeholders, and it’ll set you apart as a candidate who can bridge the gap.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about joining our team!
We think you need these skills to ace Security Program Officer
Some tips for your application 🫡
Tailor Your Application:Make sure to customise your CV and cover letter for the Security Program Officer role. Highlight your experience with security frameworks like Cyber Essentials and ISO 27001, as well as any relevant projects you've led or contributed to.
Showcase Your Expertise:Don’t just list your skills; demonstrate how you’ve applied them in real-world scenarios. Use specific examples to show how you’ve managed cyber risks or improved security processes in previous roles.
Be Clear and Concise:When writing your application, keep it straightforward. Use clear language to explain your experience and how it relates to the job. Remember, we want to see your personality shine through, so don’t be afraid to let that come across!
Apply Through Our Website:We encourage you to submit your application directly through our website. It’s the best way to ensure your application gets into the right hands and shows us you’re serious about joining our team at NCC Group.
How to prepare for a job interview at NCC Group plc
✨Know Your Security Frameworks
Make sure you brush up on the key security frameworks mentioned in the job description, like UK Govt. Cyber Essentials and ISO 27001. Be ready to discuss how you've applied these in your previous roles or how you would implement them at NCC Group.
✨Showcase Your Technical Knowledge
Prepare to talk about your experience with cloud environments, especially Azure and AWS. Think of specific examples where you've identified and managed cyber risks, and be ready to explain these concepts clearly to both technical and non-technical stakeholders.
✨Demonstrate Your Problem-Solving Skills
Be prepared to discuss past incidents you've managed, from detection to lessons learned. Highlight your approach to vulnerability management and how you’ve successfully remediated issues in the past. This will show your proactive mindset and ability to handle challenges.
✨Emphasise Team Collaboration
NCC Group values working as one team, so think of examples where you've collaborated across different departments or with diverse teams. Share how you promoted security standards and good practices, even when faced with opposition, to demonstrate your commitment to inclusivity and respect.