At a Glance
- Tasks: Lead the Security Assurance team, ensuring top-notch security for our services and systems.
- Company: Join SecureCloud+, a leader in innovative security solutions for the MOD.
- Benefits: Enjoy a collaborative culture, mentorship opportunities, and a commitment to diversity and inclusion.
- Why this job: Make a real impact on security while developing your leadership skills in a dynamic environment.
- Qualifications: Bachelor's degree in a relevant field; experience in security assurance within the Defence Industry is essential.
- Other info: We value diverse backgrounds and experiences; apply if you're passionate about security!
The predicted salary is between 43200 - 72000 £ per year.
The Head of Security Assurance is responsible for leading the Security Assurance Department, primarily composed of Security Assurance coordinators. This role involves coordinating all security assurance activities to ensure that SecureCloud+ services and supporting internal IT meet the highest security standards and customer requirements. The position supports the delivery of innovative, accreditable, cost-efficient, and profitable solutions to comply with HMG’s security classification system and leads the transformation of service delivery to align with the MOD’s secure by design methodology. The role encompasses two key areas: Information Assurance and Information Security. It involves implementing measures to protect and safeguard the company's critical information and systems, ensuring integrity, availability, authentication, confidentiality, and non-repudiation, as well as preventing illegitimate access, usage, revelation, alteration, disruption, and destruction of information.
Role Responsibilities
- Lead and manage all members of the Security Assurance department.
- Mentor junior team members.
- Promote a strong security culture within the company.
- Coordinate security accreditation and assurance processes for new and existing services.
- Support the completion of IT Health Checks (ITHC).
- Coordinate assurance activities with MOD and other authorities.
- Support development and maintenance of the Information Security Management System (ISMS), including Risk Management and RMADS.
- Assess risks to information security and work with the Senior Information Security Manager to implement policies and procedures.
- Plan and maintain compliance activities across various security requirements.
- Support monitoring of Information Assurance.
- Coordinate and implement protective security activities, including physical security.
- Manage information governance, including annual assessments and risk management.
- Handle security-related investigations, reporting, and follow-up actions.
- Support security awareness, education, and training programs.
- Coordinate with suppliers, consultants, and service providers.
- Represent the security team in project workgroups and boards.
- Lead ongoing audits to ensure compliance and continuous improvement.
- Assist the CISO in periodic policy and procedure reviews.
- Oversee follow-up actions to security issues.
Education and Experience Requirements
- Bachelor's degree in computer science, information security, or a related field; Master’s degree or relevant certifications (e.g., CISSP, CISM, CISA) are highly desirable.
- Proven experience in security assurance roles within the UK Ministry of Defence or Defence Industry, with at least 5 years as a security assurance coordinator.
- Understanding of MOD Secure by Design policies and processes.
- Deep technical knowledge of security technologies such as firewalls, IDS/IPS, endpoint protection, encryption, IAM, and SIEM systems.
- Strong understanding of security frameworks and standards, including ISO 27001, NIST, GDPR, and NCSC Cyber Essentials Plus, with experience in compliance management.
- Excellent leadership and communication skills, capable of conveying security concepts to diverse audiences and building consensus.
- Analytical skills and problem-solving abilities to evaluate security issues and mitigate risks.
- Ability to work collaboratively across functions, fostering a security-aware culture.
SecureCloud+ is an equal opportunities employer and does not discriminate based on age, sex, color, religion, race, disability, or sexual orientation. Hiring decisions are based on experience and qualifications.
Head of Security Assurance employer: SecureCloud+
Contact Detail:
SecureCloud+ Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Head of Security Assurance
✨Tip Number 1
Familiarise yourself with the MOD's Secure by Design policies and processes. Understanding these frameworks will not only help you in interviews but also demonstrate your commitment to aligning with the company's security culture.
✨Tip Number 2
Network with professionals in the security assurance field, especially those with experience in the UK Ministry of Defence or Defence Industry. Engaging with industry peers can provide insights and potentially lead to referrals that could enhance your application.
✨Tip Number 3
Stay updated on the latest security technologies and frameworks such as ISO 27001 and NIST. Being knowledgeable about current trends and best practices will position you as a strong candidate who can contribute effectively from day one.
✨Tip Number 4
Prepare to discuss your leadership experiences and how you've fostered a security-aware culture in previous roles. Highlighting your ability to mentor and manage teams will resonate well with the responsibilities outlined in the job description.
We think you need these skills to ace Head of Security Assurance
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in security assurance roles, particularly within the UK Ministry of Defence or Defence Industry. Emphasise your leadership skills and any certifications like CISSP or CISM.
Craft a Compelling Cover Letter: In your cover letter, explain why you are passionate about security assurance and how your background aligns with the responsibilities of the Head of Security Assurance role. Mention specific achievements that demonstrate your ability to lead and mentor teams.
Highlight Relevant Skills: Clearly outline your technical knowledge of security technologies and frameworks such as ISO 27001 and NIST. Use examples to illustrate your analytical skills and problem-solving abilities in previous roles.
Showcase Your Leadership Experience: Detail your experience in leading teams and promoting a strong security culture. Provide examples of how you've successfully coordinated security accreditation processes or managed compliance activities in past positions.
How to prepare for a job interview at SecureCloud+
✨Showcase Your Leadership Skills
As the Head of Security Assurance, you'll be leading a team. Be prepared to discuss your leadership style and provide examples of how you've successfully managed teams in the past. Highlight any mentoring experiences and how you've fostered a strong security culture.
✨Demonstrate Technical Knowledge
You need to have a deep understanding of security technologies and frameworks. Brush up on your knowledge of firewalls, encryption, and compliance standards like ISO 27001 and NIST. Be ready to discuss how you've applied this knowledge in previous roles.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving abilities and analytical skills. Prepare to discuss specific scenarios where you've evaluated security issues and implemented effective solutions. Use the STAR method (Situation, Task, Action, Result) to structure your responses.
✨Understand the MOD Secure by Design Policies
Since the role involves aligning with the MOD's secure by design methodology, make sure you understand these policies thoroughly. Be ready to explain how you would implement these principles in your work and ensure compliance across various security requirements.