At a Glance
- Tasks: Lead cybersecurity governance, manage risks, and ensure compliance with standards.
- Company: Join a forward-thinking organisation focused on information security and risk management.
- Benefits: Enjoy remote work, 33 days holiday, pension, life assurance, and flexible benefits.
- Other info: Diversity and inclusion are at the heart of our recruitment process.
- Why this job: Make a real impact in cybersecurity while working in a supportive and inclusive culture.
- Qualifications: Strong communication skills and experience in GRC or IT security are essential.
The predicted salary is between 60000 - 84000 Β£ per year.
Head of Cybersecurity Governance Risk and Compliance
Mainly remote based working in the UK with travel to Oxford, Cowley (OX4 2GQ) occasionally
Β£70,000 per annum, plus car / car allowance, 33 days holiday, pension, life assurance, employee assistance programme, wellbeing support, and flexible benefits scheme
About the Job
As our Head of Cybersecurity Governance Risk and Compliance you\βll work closely with business and technology teams, helping to articulate and communicate the InfoSec governance program, identify risks and evaluate and help implement controls and improvements.
As part of your key responsibilities you\βll:
- Manage the day to day of the function and team
- Support the management of Information Security governance for the organisation, ensuring adherence to Group policies and standards
- Ensure key Information Security risks and issues are identified, addressed and resolved in a timely manner
- Work closely with the Director of Information Security to ensure Group security strategy is appropriately implemented, and divisional requirements are understood and supported
- Assist in management of the Group\βs Information Security Management System including maintenance of the ISO 27001 certification
- Engage with the IT Security Operations team and assist the Director of Information Security in providing oversight and challenge to that function
- Participate in periodic security related testing activities (e.g. Crisis planning events, DR exercises)
- Prioritise and manage response activities
- Drive the audit and client management aspects of the Information Security team, including client due diligence questionnaires, and help design more effective procedures in this space
- Improve and support relevant security metrics; analyse data, identify trends and drive improvements to the control environment
- Assist in general Information Security related issues as required, including potential interaction with the Security Operations team, Technology teams and business stakeholders
- Working with the Security Architect ensure alignment of bid requirements with existing InfoSec standards and liaise with relevant teams for resolution where non-standard requirements are identified
About You
We\βd love you to have the following skills and experience, but please apply if you think you\βd be able to perform well in this role!
- Excellent written and verbal communication skills
- Previous experience within a GRC function, IT Security/Cyber team, Internal Audit or an IT environment
- Hands on practical experience of ensuring full compliance with legal & regulatory frameworks including ISO 27001
- Risk management
- Strong leadership and communication skills, with the ability to motivate and manage a team
Our recruitment and selection process has been developed to ensure that it is consistent, fair and provides equality of opportunity β all selection decisions are based solely on technical and behavioural competencies. We do not discriminate on the grounds of race, colour, or nationality, ethnic or national origins, sex, gender reassignment, sexual orientation, marital or civil partnership status, pregnancy or maternity, disability, religion or belief, age or any other current or future protected characteristic as defined in the current Equality Act of England and Wales. As an organisation we also promote an environment which encourages diversity of characteristics and thought, where you feel included, safe and confident to be the best version of yourself and do your best work every day. #J-18808-Ljbffr
Head of Cybersecurity Governance Risk and Compliance employer: Unipart Logistics
Contact Detail:
Unipart Logistics Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Head of Cybersecurity Governance Risk and Compliance
β¨Tip Number 1
Familiarise yourself with ISO 27001 and other relevant compliance frameworks. Understanding these standards will not only help you in interviews but also demonstrate your commitment to the role and its requirements.
β¨Tip Number 2
Network with professionals in the cybersecurity field, especially those who have experience in governance, risk, and compliance. Engaging with industry peers can provide insights into the role and may even lead to referrals.
β¨Tip Number 3
Stay updated on the latest trends and challenges in cybersecurity governance. Being knowledgeable about current issues will allow you to speak confidently about how you can contribute to the team during discussions.
β¨Tip Number 4
Prepare to discuss your leadership style and experiences managing teams. Highlighting your ability to motivate and guide a team will be crucial, as this role involves overseeing a function and ensuring effective collaboration.
We think you need these skills to ace Head of Cybersecurity Governance Risk and Compliance
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights relevant experience in cybersecurity governance, risk management, and compliance. Use specific examples that demonstrate your leadership skills and ability to manage teams effectively.
Craft a Compelling Cover Letter: In your cover letter, express your enthusiasm for the role and the company. Discuss how your background aligns with the responsibilities outlined in the job description, particularly your experience with ISO 27001 and risk management.
Highlight Communication Skills: Given the importance of communication in this role, emphasise your written and verbal communication skills. Provide examples of how you've successfully communicated complex information to various stakeholders in previous roles.
Showcase Leadership Experience: Detail your leadership experience in your application. Mention specific instances where you motivated a team or drove improvements in security metrics, as these are key aspects of the role.
How to prepare for a job interview at Unipart Logistics
β¨Showcase Your Communication Skills
As the role requires excellent written and verbal communication skills, be prepared to demonstrate your ability to articulate complex information clearly. Use examples from your past experiences where you successfully communicated with various stakeholders.
β¨Highlight Your GRC Experience
Make sure to discuss your previous experience within a Governance, Risk, and Compliance (GRC) function. Be specific about your hands-on experience with compliance frameworks like ISO 27001 and how you've managed risks in past roles.
β¨Demonstrate Leadership Qualities
Since strong leadership is crucial for this position, prepare to share instances where you've motivated and managed a team effectively. Discuss your approach to leading teams through challenges and ensuring adherence to security policies.
β¨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think of examples where you've identified risks, implemented controls, or improved processes, and be ready to explain your thought process.