At a Glance
- Tasks: Support and manage information security for the Police Digital Service, ensuring compliance and risk management.
- Company: Join a forward-thinking team dedicated to enhancing UK policing through technology.
- Benefits: Competitive salary, remote work, and commitment to diversity and inclusion.
- Why this job: Make a real difference in public safety while working with cutting-edge technology.
- Qualifications: Experience in IT and information security, with strong communication and risk management skills.
- Other info: Remote role with opportunities for professional growth and development.
The predicted salary is between 55000 - 77000 £ per year.
Join Police Digital Service as PDS Information Security Officer - Starting at £55,000pa
About Police Digital Service
To protect people from harm in our rapidly changing world, police services must not only keep up with technology and business changes but develop capabilities and ways of working that will enable them to adapt to and deal with the complexity of modern criminality. Police Digital Service strives to be the go‑to partner for technology developments and programmes across UK policing. Our team provides technical advice and delivers services to help policing and law enforcement organisations across the UK prioritise and focus on technology efforts.
Key Responsibilities
- Support the delivery of the Information Security Management System (ISMS), including the governance, risks & issues and compliance returns for National Policing.
- Maintain Security Policy framework, working with stakeholders to ensure that Information Security related Policies, Procedures and Standards are up‑to‑date and available as required.
- Lead the management of information security risks to drive operational capability that supports the strategic cyber aims of PDS, including appropriate controls, mitigations and risk treatment plans, ensuring they are up to date, relevant, aligned to standards/guidance and meaningful to the business.
- Produce relevant risk reports and metrics to communicate risks to relevant stakeholders, both internally and externally.
- Lead and implement actions from the communications strategy, including the delivery of training and education to influence and raise awareness of good information security management practice across the organisation.
- Support the management of security incidents, assisting in the provision of security advice and solutions to minimise further risk and reduce the impact.
- Manage the security incident reporting process, escalating when required and briefing to senior leaders.
- Lead and maintain relationships with the Business Units on our tenant, and other partners/customers, promoting good security practices and assessment of risk.
- Support the management of information security asset and cyber service inventories in relation to information security.
- Assist in the assessment of intelligence, threats to, and vulnerabilities of information systems and assets.
- Liaise with key business areas to ensure a cohesive approach to the implementation of proactive activities such as IT Health Checks, remediation activities, compliance audits and personnel control measures.
- Provide support on PDS audit activity (internal and external) including collation and provision of evidence for annual ISO 27001 audits.
Skills & Knowledge
- Qualifications in IT, information assurance and governance or related discipline/significant relevant experience.
- Knowledge and significant experience in information security and risk management.
- Strong engagement focus and proactive style.
- Demonstrable understanding of the principles of risk management.
- Good IT skills, including the use of Microsoft suite of tools.
- Good communication skills, to produce persuasive material to engage colleagues and external stakeholders.
- Awareness of information security controls and frameworks such as ISO 27001 and NIST.
- Good understanding of privacy requirements and other relevant legislation and regulations.
- Good working knowledge of Digital Policing Strategy and understanding of current technologies and cyber challenges.
- Being of the highest integrity with a strong understanding of confidentiality and security.
- Proven IT/Information security and risk management in large organisations with complex security and compliance requirements.
- Production of/or input to policy, process and procedural documentation.
- Supporting the design, implementation and operation of security controls.
- Implementing and running security processes aligned to information and cyber security governance frameworks.
- Non‑police personnel vetting and Security Check will be required and must be maintained during tenure.
- Will be required to sign Official Secrets Act.
- Utilising the Microsoft 365 Security suite of tools.
- Consulting in and/or leading audits against ISO 27001, NIST or similar.
Working Arrangements
This is a remote role with occasional travel required to attend meetings. All applicants must be eligible to undergo NPPV3 (Non Police Personnel Vetting Level 3) and SC vetting clearances. Successful applicants will require NPPV3 clearance to have been cleared before starting with PDS.
Our Values
- We value People
- We do the right thing
- We are innovative
- We are one Team
- We are proud and passionate
We are committed to equal opportunity for all and will not discriminate on any grounds. We encourage applications from people from the widest possible span of experience. We particularly welcome applications from Black, Asian and Minority Ethnic candidates and people with disabilities.
PDS Information Security Officer employer: Police Digital Service
Contact Detail:
Police Digital Service Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land PDS Information Security Officer
✨Tip Number 1
Network like a pro! Reach out to current or former employees at Police Digital Service on LinkedIn. A friendly chat can give us insider info and might even lead to a referral!
✨Tip Number 2
Prepare for the interview by researching the latest trends in information security. We want to show that we’re not just knowledgeable but also passionate about staying ahead in the field.
✨Tip Number 3
Practice common interview questions related to risk management and information security. We can even do mock interviews with friends to boost our confidence and refine our answers.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure our application gets seen by the right people. Plus, it shows we’re serious about joining the team!
We think you need these skills to ace PDS Information Security Officer
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in information security and risk management. We want to see how your skills align with the key responsibilities outlined in the job description.
Showcase Your Communication Skills: Since good communication is key for this role, use your application to demonstrate how you can produce persuasive material. Share examples of how you've engaged stakeholders or delivered training in the past.
Highlight Relevant Qualifications: If you have qualifications in IT or information assurance, make them stand out! We’re looking for candidates who can show a solid understanding of frameworks like ISO 27001 and NIST, so don’t hold back on those details.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands and shows us you’re serious about joining our team at Police Digital Service!
How to prepare for a job interview at Police Digital Service
✨Know Your Stuff
Make sure you brush up on your knowledge of information security frameworks like ISO 27001 and NIST. Be ready to discuss how you've applied these in past roles, as well as any relevant legislation and regulations. This will show that you're not just familiar with the theory but can also implement it in practice.
✨Showcase Your Communication Skills
As an Information Security Officer, you'll need to communicate complex ideas clearly. Prepare examples of how you've engaged stakeholders or delivered training in the past. Think about how you can present persuasive material that raises awareness of good security practices.
✨Demonstrate Risk Management Expertise
Be prepared to discuss your experience with risk management. Have specific examples ready that illustrate how you've identified, assessed, and mitigated risks in previous roles. This will highlight your proactive approach and understanding of operational capabilities.
✨Build Relationships
The role involves managing relationships with various stakeholders. Think of examples where you've successfully collaborated with different teams or partners. Highlight your ability to promote good security practices and how you've influenced others to adopt them.