Senior Information Systems Security Specialist

Defence
  • UK, South East, Berkshire, Reading
  • Contract, 12 months
  • Full time
  • Negotiable (Within IR35)
This contract with our Defence/Nuclear client is for a Senior Information Systems Security Specialist for 12 months based in Aldermaston – 3 days/week on site. (9 day fortnight). Key Accountabilities: - Provide analysis of risks to information systems in order to inform risk owners and project managers to...
  • Posted
  • Deadline: 21.11.2024

Managing consultant

Varunav Modi

Quote ref: 5773/81212

Quote ref: 5773/81212

Job description

This contract with our Defence/Nuclear client is for a Senior Information Systems Security Specialist for 12 months based in Aldermaston – 3 days/week on site. (9 day fortnight).  

 

Key Accountabilities:  

- Provide analysis of risks to information systems in order to inform risk owners and project managers to allow effective decision making.  

- Provide expert subject matter advice to CISO and other elements of the IS management chain.  

- Ensure IT projects are provided with timely technical security advice.  

- Develop and apply the overall security architecture of the organisation and the place within in it of key security controls.  

- Maintains and promotes high personal standards in environment, safety, health, security and quality and be a great team player.  

- Additional accountabilities for this job profile may be defined and appointed through the Chief Engineer Management Arrangements, with appointees listed within the Company Design Authorities and Technical Authorities, as held in the company management system.  

 

Key Responsibilities:  

- Work with functions, projects and the supply chain to assess the sources of Information Risk and make recommendations on how these are to be managed.  

- Provide the organisation lead for maintaining awareness of HMG, MoD and industry best practice in Information Assurance and Information Risk Management.  

- Determine how the overall security architecture applies to projects under consideration and advise project solution architects on security requirements.  

- Review high and low level solution designs for compliance with overall security architecture, achievement of security requirements and overall efficacy of the security features and tools.  

- Facilitate the formal accreditation by MoD of the organisation's corporate systems and of other specified systems.  

- Provide an interface between the organisation and the National Technical Authority (NCSC).  

- Oversee IT Health Check and Vulnerability Assessments by approving scope of tests and overall testing programme.  

- Advise the organisation's managers on the appropriate level of risk tolerance.  

- Record and track assessments of information capability and projects supporting reviews and audits as necessary.  

- Provide technical risk assessment analysis.  

- Develop the professionalism of Information Risk Management within the organisation.  

- Attend project Security Working Groups and manage when appropriate.

Requirements

- Security assurance background  

- Working knowledge of accreditation/assurances  

- CISM/XCCP/ISO 27001 knowledge  

- Stakeholder management experience  

- Public sector background  

- Would also suit someone from telecommunications background

Similar jobs

Technician

  • from £350 to £375 per day
  • Contract
  • Romford, UK
  • Full time
This contract with our Rail client is for a Technician for 8 months based in Romford / permanent nights – and...

Data Engineer

  • Negotiable
  • Contract
  • London, UK
  • Full time
This contract with our government client is for a Data Engineer for 4 months based in London, Newcastle, Coventry /...

Senior Contracts Manager

  • Negotiable
  • Contract
  • Reading, UK
  • Full time
This contract with our Defence/Nuclear client is for a Senior Contracts Manager for 18 months based in Aldermaston /...