Security Governance Specialist
Full-time
Others
Bristol, Bristol, BS34 8SW, England
8 months ago
Security Governance Specialist Who are Diligenta? Diligenta's vision is to be acknowledged as Best in-class Platform based Li.....
Security Governance Specialist
Who are Diligenta?
Diligenta's vision is to be acknowledged as Best in-class Platform based Life and Pensions Administration Service provider. Customer service is at the heart of everything we do, and our aim is to transform our clients' operations. A business that has been described as 'home' by existing employees, we drive a culture that is founded on positive change and development.
The Opportunity
The Security Governance Specialist is responsible for assisting and deputising for the Security Governance Manager in engagement and collaboration with internal and external stakeholders to ensure controls are in place. They are to ensure that Information security requirements are clearly understood, operating effectively and adequately managed.
The Security Governance Specialist should have an excellent understanding of both business requirements and all aspects of the Information security framework. They will be responsible for carrying out the following specialised areas within the Security Governance team: Policy Review and User Awareness.
You'll be:
- Responsible for Policy and Standards development and maintenance in line with ISO27001.
- Develop and effectively promote all aspects of security awareness training material and awareness communications to enhance the security culture throughout the organisation.
- Assist Security Governance Manager with both client and internal governance activities to support information and cyber security. Deputise with attendance and presentation at both client and internal stakeholder meetings (as required).
- Ensure accurate management information relating to control oversight is provided and that actions relating to exceptions, non-adherence, issues and risks are effectively managed and reported and subject to appropriate remediation plans.
- Oversight to ensure compliance is maintained with the company's security policy and standards.
- Proactively help to ensure continuation of ISO27001 Certification.
You should apply if you:
- Strong Analytical and Interpersonal Skills
- Sufficient skills in governance best practices to assist with verifying control assurance of security controls against ISO27001
- Awareness of information security standards (eg Cyber Essentials, ISF Standard of Good Practice for Information Security, ISO 27001, NIST Cybersecurity Framework, CIS Top 20 Controls)
- Able to review processes and procedures relating to operation of security controls and to make recommendation for their optimisation
- Able to use enquiry, professional scepticism and proper challenge while maintaining effective working relationships
- Able to make use of technical skills (e.g. of SME's in other parts of the organisation) where necessary
- Must have successfully conducted governance exercises against one or more best practice frameworks in a large and complex environment
- Must have experience in working with Internal Audit functions in relation to audits, audit evidence and audit actions
The Perks
- 25 days holidays + 8 bank holidays
- Discretionary annual bonus
- Company pension scheme membership
- Gain professional accreditation on completion at no extra cost through our bespoke 24/7 professionally accredited online learning and development tools
- Develop your career through a wider global organisation of the TCS family
Official account of Jobstore.