At a Glance
- Tasks: Support the creation and review of Information Security policies and guidance documentation.
- Company: Join Sainsbury’s, a leading retailer committed to innovation and inclusivity.
- Benefits: Enjoy discounts, flexible working, and a range of wellbeing benefits.
- Other info: Hybrid working with opportunities for career growth and professional development.
- Why this job: Make a real impact in information security while developing your skills in a supportive environment.
- Qualifications: Passion for Information Security and knowledge of relevant standards like NIST CSF and ISO27001.
The predicted salary is between 30000 - 40000 £ per year.
We’d all like amazing work to do, and real work-life balance. That’s waiting for you at Sainsbury’s. Think about the scale it takes to feed the nation. The level of data, transactions and variety involved. Then you’ll realise this is a modern software engineering environment, because it has to be. We’ve made significant investment in the standards and principles that shape how we work. We iterate, learn, experiment and champion ways of working such as Agile, Scrum and XP. So you can look forward to exciting opportunities across everything from AI to reusable tech.
As part of the Information Security Governance Risk and Compliance (GRC) team; you will support the creation and review of Information Security Policy, Standards and guidance documentation. You will research Information Security best practice by investigating and analysing technologies (in use, planned and emerging) within Sainsbury’s Group. You will also support the education of colleagues through awareness training and the provision of advice, to ensure the secure use of technology.
What You Need To Do
- Assist the Policy Manager to develop and maintain an information security policy strategy and roadmap, incorporating policies, standards and guidelines.
- Following the guidance of Policy Manager, ensure all policies are reviewed at least annually and are updated as required.
- Assist in developing, maintaining and delivering an awareness strategy and roadmap to ensure stakeholders are engaged and policies updates are effectively communicated to colleagues, strategic partners and vendors.
- Support all policy related communications via internal comms, across DGIS, Tech and the wider business, including drafting and publishing appropriate communications.
- Attend appropriate meetings and represent the team to support Policy Awareness.
- Capture and document decisions from key governance meetings/forums.
- Ensure the relevant technology standards are communicated to specific relevant teams across Tech and the wider organisation.
- Articulate our Policies in technical and non-technical terminology so that it can be interpreted by Tech and Business individuals alike.
- For HR and user policies (which apply to the majority) ensure structure and language is simple so that they can be easily shared and remembered.
- Support making the policies more accessible and searchable.
- Escalate any issues to the Policy Manager where appropriate.
What You Need To Know And Show
- Passion for Information Security and an eye for detail.
- Good working knowledge of NIST CSF and ISO27001/2.
- Familiar with PCI DSS, GDPR, and other relevant legislation and regulation.
- Have a background in policy or standard creation and/or update.
- Be the ‘go to’ person for all questions relating to DGISMS.
- Work collaboratively with a range of people to support the wider business agenda.
- Key stakeholders, SMEs and customers are engaged and kept up to date.
- Someone with the ability to think methodically and logically, and communicate well using the spoken and written word.
- Certifications such as ISO 27001 Lead Auditor, CompTIA Sec+, CISM or CISSP are desirable but not essential.
Support we will provide
- Your line manager will provide support and guidance.
- Access to the GRC and DGIS teams who have a wide array of skills and knowledge.
- Extensive support and training materials available.
- Other resources as required.
We are committed to being a truly inclusive retailer so you’ll be welcomed whoever you are and wherever you work. Around here, there’s always the chance to try something new — whether that’s as part of an evolving team or somewhere else across the business - and we take development seriously and promise to support you. We also recognise and celebrate colleagues when they go the extra mile and, where possible, offer flexible working. When you join our team, we’ll also offer you an amazing range of benefits. Here are some of them: Starting off with colleague discount, you'll be able to save 10% on your shopping online and instore at Sainsbury's, Argos, TU and Habitat, and we regularly increase the discount to 15% at points during the year. We've also got you covered for your future with our pensions scheme and life cover. You'll also be able to share in our success as you may be eligible for a performance-related bonus of up to 10% of salary, depending on how we perform. Your wellbeing is important to us too. You'll receive an annual holiday allowance and you can buy up to an additional week's holiday. We also offer other benefits that will help your money go further such as season ticket loans, cycle to work scheme, health cash plans, salary advance (where you can access some of your pay before pay day) as well access to a great range of discounts from hundreds of other retailers. And if you ever need it there is also an employee assistance programme. Moments that matter are as important to us as they are to you which is why we give up to 26 weeks’ pay for maternity or adoption leave and up to 4 weeks’ pay for paternity leave.
IS Policy Analyst - 9 Month Maternity Cover in Coventry employer: Sainsbury's
Contact Detail:
Sainsbury's Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IS Policy Analyst - 9 Month Maternity Cover in Coventry
✨Tip Number 1
Network like a pro! Reach out to current or former employees at Sainsbury’s on LinkedIn. Ask them about their experiences and any tips they might have for landing the IS Policy Analyst role. Personal connections can give you insights that a job description just can't.
✨Tip Number 2
Prepare for the interview by brushing up on your knowledge of NIST CSF and ISO27001/2. Be ready to discuss how these frameworks apply to the role. We want to see your passion for Information Security shine through!
✨Tip Number 3
Show off your communication skills! Practice explaining complex policies in simple terms. This is key for the role, so think about how you’d break down technical jargon for non-tech folks. We love clear communicators!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in being part of the Sainsbury’s team. Let’s get you that interview!
We think you need these skills to ace IS Policy Analyst - 9 Month Maternity Cover in Coventry
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the IS Policy Analyst role. Highlight your experience with information security policies and any relevant certifications. We want to see how your skills align with what we’re looking for!
Show Your Passion: Let your enthusiasm for information security shine through in your application. Share examples of how you've engaged with security best practices or contributed to policy development. We love candidates who are genuinely excited about the field!
Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use simple language to explain your experiences and skills, especially when discussing technical topics. We appreciate clarity, as it reflects your ability to communicate effectively!
Apply Through Our Website: Don’t forget to submit your application through our official website! It’s the best way to ensure your application gets seen by the right people. Plus, you’ll find all the details you need about the role and our amazing benefits there!
How to prepare for a job interview at Sainsbury's
✨Know Your Policies Inside Out
Before the interview, make sure you’re well-versed in Sainsbury’s information security policies and standards. Familiarise yourself with NIST CSF, ISO27001/2, and relevant legislation like GDPR. This will not only show your passion for information security but also demonstrate your ability to articulate complex policies in a way that’s easy to understand.
✨Showcase Your Collaborative Spirit
Since the role involves working with various stakeholders, be prepared to discuss examples of how you've successfully collaborated in the past. Think about times when you’ve engaged with different teams or communicated policy updates effectively. Highlighting your teamwork skills will resonate well with the interviewers.
✨Prepare for Technical and Non-Technical Questions
Expect questions that require you to explain technical concepts in simple terms. Practice articulating policies and standards in both technical jargon and layman's terms. This will showcase your ability to bridge the gap between tech and business, which is crucial for this role.
✨Demonstrate Your Attention to Detail
As an IS Policy Analyst, attention to detail is key. Be ready to discuss how you ensure accuracy in policy documentation and communication. You might want to share specific examples where your meticulous nature has led to successful outcomes, whether in policy creation or compliance checks.