Senior Specialist, Information Security, Risk and Compliance in London
Senior Specialist, Information Security, Risk and Compliance

Senior Specialist, Information Security, Risk and Compliance in London

London Full-Time 42000 - 84000 £ / year (est.) Home office (partial)
S

At a Glance

  • Tasks: Manage information security risks and compliance activities to protect children's data.
  • Company: Join Save the Children, a global leader in child welfare.
  • Benefits: Flexible working options, competitive salary, and a meaningful career.
  • Why this job: Make a real difference in safeguarding children's rights and data.
  • Qualifications: Experience in information security and knowledge of compliance frameworks required.
  • Other info: Collaborative environment with opportunities for personal and professional growth.

The predicted salary is between 42000 - 84000 £ per year.

Save the Children International has an exciting opportunity for a Senior Specialist, Information Security Risk and Compliance to join our global team.

Team and Job Purpose

The Cybersecurity and Information Assurance team is responsible for safeguarding the confidentiality, integrity, availability of all SCI's information assets (data and systems). The team is responsible for identifying, assessing and managing cybersecurity and information risk and investigating and managing cybersecurity incidents and data breaches.

The Senior Specialist, Information Security Risk and Compliance Officer will play a key role in ensuring SCI addresses information and cybersecurity risks in a timely and effective manner. Reporting to the Director of Information Security and Data Protection, the role will work closely with colleagues in the cybersecurity operations and information assurance teams as well as teams across IT and the wider organisation to support risk and compliance activities.

The role will be responsible for keeping the IT Risk Register up to date and coordinating risk mitigation actions across the organisation. The role is also responsible for the coordination of all information security compliance activities including Cyber Essentials, ISO27000 and NIST CSF.

Principal Accountabilities

  • Support the Director of Information Security with the effective and timely management of all information security risk and compliance activities.
  • Maintain the IT Risk Register, ensuring that newly identified risks are recorded and assigned to the appropriate risk register.
  • Schedule and administer risk register review meetings; track open risks and liaise with risk owners to ensure they are addressed.
  • Coordinate with the IT/TD Project Management Office (PMO) to ensure new projects and initiatives follow prescribed governance processes.
  • Conduct information security risk assessments and reviews in association with the Cybersecurity Operations Manager and Information Security Architect and communicate risk assessment outcomes to technical and non-technical stakeholders across SCI.
  • Coordinate all information security compliance activities including internal audits, Cyber Essentials, ISO27000 and NIST CSF.
  • Work closely with colleagues in the Global IT Operations team to facilitate the annual Global IT Controls Assessment of all Country and Regional Offices.
  • Coordinate responses to all internal and external audit and assurance activities.
  • Support and contribute to the development of information security risk and compliance policies, procedures and standards.
  • Identify opportunities to continually improve SCI's information security risk and compliance capabilities.

Experience and Skills

  • Demonstrable experience working in an information security function or related GRC role.
  • Strong knowledge of information security / cybersecurity management principles.
  • Working knowledge of at least one globally recognized information security framework such as ISO27000, NIST CSF or Cyber Essentials.
  • Experience of conducting information security risk assessments or reviews.
  • Demonstrable experience of advising stakeholders in relation to risk remediation.
  • Good knowledge of commonly applied technical and organizational information security controls.
  • Ability to work with a range of business stakeholders to understand and articulate their activities in line with defined standards.
  • Good verbal and written communication skills.
  • Self-motivated, with a proactive and collaborative approach, and a strong results orientation.
  • A commitment to the mission, vision and values of Save the Children.
  • Knowledge of different information risk assessment methodologies (both qualitative and quantitative).
  • Good understanding of Enterprise IT including cloud computing technologies (SaaS/PaaS/IaaS).
  • Experience of working with Business Analysts, Project Managers, Change Managers and Project Management Offices.

Education and Qualifications

  • Undergraduate degree or diploma in a relevant discipline or equivalent work experience.
  • Post-graduate qualification in information security or relevant industry certification, e.g. CRSIC, CISM, CGEIT, CISA, etc.

Working at Save the Children International

Save the Children is the world's leading organisation for children, employing ~25,000 staff. We save children's lives. We fight for their rights. We help them fulfil their potential. Through our work in 116 countries, we put the most deprived and marginalised children first.

We know that great people make a great organisation, and that our employees play a crucial role in helping us achieve our ambitions for children. We value our people and offer a meaningful and rewarding career, along with a collaborative and inclusive environment where ambition, creativity, and integrity are highly valued.

The work here is challenging but is also immensely rewarding. At Save the Children, you will be in good company, working with talented, like-minded individuals who are determined to ensure that all children survive, learn, and are protected. Your contribution will help ensure children's voices are heard at the highest levels, and that we achieve our global strategy, Ambition for Children 2030, and reach every last child.

Diversity, Equity and Inclusion and Equal Opportunities

DEI is core to our vision, values and global strategy. Save the Children is committed to creating a truly diverse, equitable and inclusive organisation, and one which will support us in our vision to ensure every child attains the right to survival, protection, development, and participation.

We are committed to equal employment opportunities, regardless of gender, sexual orientation, race, colour, ethnic origin, nationality, disability, marital or civil partnership status, gender reassignment, pregnancy and maternity, caring or parental responsibilities, age, or beliefs and religion. We are committed to diversifying our staff to better represent the communities we serve and actively welcome underrepresented groups to apply.

Reasonable adjustments will be made should any candidate invited to interview require this.

Application Information

Please attach a copy of your CV and cover letter with your application. A full copy of the role profile can be found here via the job listing. It is recommended that you save a copy of the role profile as it will no longer be available after the advert closes.

Applications will be reviewed on a rolling basis and the job advert may be closed earlier than advertised subject to the volume of suitable applicants. Please submit your application at your earliest convenience to avoid disappointment.

Due to the high volume of applications we receive, only shortlisted candidates will be contacted. Candidates who are successfully shortlisted should expect to hear from us within 2 weeks of the advert deadline.

Our recruitment process:

  • Application review by our recruiting team based on your CV and cover letter.
  • Two-stage competency-based interviews with the hiring team.
  • Some recruitment may include an additional assessment or case study stage, or a third stage interview.
  • If successful, you will receive a conditional offer of employment, followed by your contract subject to passing background checks.

We need to keep children and adults safe so our selection process includes rigorous background checks and reflects our commitment to the protection of children and adults from abuse. All employees are expected to carry out their duties in accordance with our Code of Conduct and all policies and procedures relating to Anti-harassment, Health and Safety, Safeguarding, and DEI and Equal Opportunities.

Save the Children does not charge a fee at any stage of the recruitment process.

Senior Specialist, Information Security, Risk and Compliance in London employer: Save the Children International

At Save the Children International, we pride ourselves on being an exceptional employer that values collaboration, creativity, and integrity. Our hybrid work model offers flexibility, allowing you to balance your professional and personal life while contributing to meaningful projects that impact children's lives globally. With a commitment to diversity, equity, and inclusion, we provide ample opportunities for employee growth and development within a supportive and inclusive environment.
S

Contact Detail:

Save the Children International Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Specialist, Information Security, Risk and Compliance in London

✨Tip Number 1

Network like a pro! Reach out to your connections in the cybersecurity field and let them know you're on the hunt for a Senior Specialist role. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for those interviews! Brush up on your knowledge of information security frameworks like ISO27000 and NIST CSF. Be ready to discuss how you've tackled risk assessments and compliance activities in your previous roles.

✨Tip Number 3

Show your passion for the mission! When you get the chance to chat with potential employers, make sure to express your commitment to safeguarding children's rights and how your skills align with Save the Children's goals.

✨Tip Number 4

Don't forget to apply through our website! It's the best way to ensure your application gets seen by the right people. Plus, it shows you're serious about joining the team at Save the Children.

We think you need these skills to ace Senior Specialist, Information Security, Risk and Compliance in London

Information Security Management
Risk Assessment
Compliance Management
ISO 27000
NIST CSF
Cyber Essentials
Stakeholder Engagement
Technical Communication
Audit Coordination
Data Protection
Project Management
Analytical Skills
Proactive Approach
Collaboration Skills
Knowledge of Cloud Computing Technologies

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Senior Specialist role. Highlight your experience in information security, risk management, and compliance. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how you can contribute to our mission at Save the Children. Keep it concise but impactful.

Showcase Relevant Experience: When detailing your experience, focus on specific projects or roles that relate to cybersecurity frameworks like ISO27000 or NIST CSF. We love seeing real-world examples of how you've tackled challenges in the past.

Apply Early!: We review applications on a rolling basis, so don’t wait until the last minute to apply. Head over to our website and submit your application as soon as you can to avoid missing out!

How to prepare for a job interview at Save the Children International

✨Know Your Frameworks

Make sure you brush up on your knowledge of information security frameworks like ISO27000, NIST CSF, and Cyber Essentials. Be ready to discuss how you've applied these in past roles, as this will show your practical understanding and ability to implement compliance measures effectively.

✨Showcase Your Risk Assessment Skills

Prepare to talk about your experience with conducting information security risk assessments. Think of specific examples where you identified risks and how you communicated those findings to both technical and non-technical stakeholders. This will demonstrate your ability to bridge the gap between different teams.

✨Understand the Organisation's Mission

Familiarise yourself with Save the Children's mission and values. Be prepared to explain how your personal values align with theirs and how you can contribute to their goals. This shows that you're not just looking for a job, but are genuinely interested in making a difference.

✨Prepare Questions for Them

Have a few thoughtful questions ready to ask at the end of your interview. This could be about their current cybersecurity initiatives or how they measure success in the role. It shows your interest in the position and helps you gauge if the organisation is the right fit for you.

Senior Specialist, Information Security, Risk and Compliance in London
Save the Children International
Location: London

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

S
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>