At a Glance
- Tasks: Ensure the security of critical communications for emergency services and manage cyber threats.
- Company: Join a leading organisation dedicated to safeguarding public safety through technology.
- Benefits: Competitive pay, flexible working, and opportunities for professional growth.
- Why this job: Make a real difference in protecting lives by securing vital communication networks.
- Qualifications: Experience in information assurance and knowledge of ISO27001 and security frameworks.
- Other info: Work in a dynamic environment with a focus on career advancement.
The predicted salary is between 48000 - 72000 £ per year.
Duration: 6 months +
Location: London, on-site requirements once every 2 weeks / when required by customer
Security Clearance required
The Emergency Services Network (ESN) is a major strategic priority for our client and our commitment to connect for good for our customers and our country. The Security of the ESN is key to our customer and to our Emergency Services users. Availability of the network is a matter of life or death to the Emergency Services and they have to have confidence in the confidentiality and integrity of their communications and operations. We have to build and maintain effective security controls to prevent and detect a wide range of cyber and physical threats.
This job matters because it:
- Contributes to the ESN Security Management Plan, ISMS and Security Processes – ensuring effective management of security within the Programme and that Contract obligations are met.
- Identifies security threats to ESN and ensures the adequacy of processes and controls in place to mitigate them.
- Works with other Security professionals and other teams to meet ESN security objectives.
- Engages with Customer security teams, providing assurance that Security requirements are met and identifying opportunities for improvement.
In support of the above, the ESN Cyber Security Governance & Assurance Specialist executes a range of workstreams in delivering contributions, ESN Programme's and the Customer's overall cyber security risk management program, which is designed to ensure that the technology systems and data associated with the ESN are adequately protected.
The ESN Cyber Security Governance & Assurance Specialist shall:
- Identify and understand all elements of contractual security obligations for the ESN Contract.
- Deliver and verify the implementation of end to end security services as defined within specified the ESN contracts.
- Deliver and implement ISO27001 compliant security strategies, policies, procedures, processes, threat identification & responses that provide wrap-around security services and solutions for the ESN service.
- Deliver the required Security accreditation for the ESN contract.
- Manage operational risks related to people, information, assets, revenues and reputation and ensure compliance with relevant security requirements, typically: the HMG Security Policy Framework, Contractual Obligations, company security and business continuity policies.
- Monitor and manage third party supplier compliance to the flow-down of contractual obligations from the client.
- Monitor and manage security awareness within the ESN Programme.
Skills required:
- Customer-Facing: Ability to establish trusted relationships and successful partnerships with internal and external customers. Be experienced in communicating and influencing across all levels. Be commercially aware.
- Assurance: Ability to plan and execute assurance activities on time, budget and quality: Plan and organise your own work effectively and meet agreed delivery targets. Identify and assess security risks and evaluate mitigations. Understand contractual obligations, their flow down to 3rd parties and the ability to plan and execute assurance reviews to ensure these requirements are being met. Write assurance artefacts, reports and other documents to a high standard, supported by reliable and relevant evidence.
- Operate: Have a proven track record in security and information risk management. Have knowledge and experience of the following: ISO27001, NIST Cyber Security Framework (CSF), National Cyber Security Centre (NCSC) and National Protective Security Authority (NPSA) Standards and Guidance.
MANDATORY experience required:
- Security clearance to BPSS level as a minimum.
- Be experienced in working in an information assurance role on large-scale contracts ideally for Central Government departments or agencies.
- Have proven experience in the writing of assurance artefacts as security accreditation evidence (RMADS) and Security Operating Procedures (SyOPs).
- Experience of administering security processes.
- Experience of carrying out assurance activities and writing reports and recommendations.
- Experience working with ISO27001 controls and audit.
PREFERRED:
- Prior experience working on complex HMG contracts.
- Experience in auditing and security accreditations.
- Experience of working with Telecoms Security Act (TSA) requirements.
- IT security/network experience.
- Have a proven track record in security management (2-3 years).
Security Governance & Assurance Specialist employer: Tesol Inc
Contact Detail:
Tesol Inc Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Governance & Assurance Specialist
✨Tip Number 1
Network like a pro! Attend industry events, meet-ups, or webinars related to cyber security. Engaging with professionals in the field can open doors and give us insights into job opportunities that might not be advertised.
✨Tip Number 2
Don’t underestimate the power of LinkedIn! Make sure your profile is up-to-date and reflects your skills in security governance and assurance. Connect with recruiters and follow companies you’re interested in – it’s a great way to stay in the loop!
✨Tip Number 3
Prepare for interviews by practising common questions related to security risk management and assurance. We should also be ready to discuss specific scenarios where we’ve successfully identified and mitigated security threats.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets noticed. Plus, we often have exclusive roles listed there that you won’t find anywhere else. Don’t miss out!
We think you need these skills to ace Security Governance & Assurance Specialist
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Security Governance & Assurance Specialist role. Highlight your experience with ISO27001, risk management, and any relevant security clearances. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your background makes you a perfect fit for the ESN project. We love seeing genuine enthusiasm and a clear understanding of the role.
Showcase Your Assurance Skills: Since this role involves planning and executing assurance activities, be sure to include specific examples of your past work in this area. We want to know how you've identified risks and implemented effective controls in previous roles.
Apply Through Our Website: Don't forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it gives you a chance to explore more about StudySmarter and what we stand for.
How to prepare for a job interview at Tesol Inc
✨Know Your Security Standards
Familiarise yourself with ISO27001, NIST Cyber Security Framework, and other relevant standards. Be ready to discuss how you've applied these in past roles, especially in relation to security governance and assurance.
✨Understand the ESN Context
Research the Emergency Services Network and its significance. Be prepared to explain how your skills can contribute to the security of this critical service, highlighting your understanding of the implications of security failures.
✨Showcase Your Assurance Experience
Prepare examples of your previous work in assurance activities, particularly in writing assurance artefacts and reports. Highlight your ability to assess risks and implement effective controls, as this will be crucial for the role.
✨Build Relationships
Demonstrate your customer-facing skills by discussing how you've built trusted relationships in previous roles. Emphasise your communication and influencing abilities, as these are key to working with various teams and stakeholders.