Job Reference: BBBH47349
Job Duration: 12 Months
Start date: ASAP
Description:
Chief Information Security Officer
London, Bristol OR Manchester (1-2 days per week on-site)
Day rates:£950-1100 per day
12 months
INSIDE IR35
Concept Resourcing are looking for a Chief Information Security Officer to joina Central Government client based in London/Bristol OR Manchester.
This is an initial 12 month contract with a possible extension. The role is INSIDE IR35. Day rates between £950-1100 per day, depending on experience.
The ideal candidate must have the following experience;
* Must have active SC Clearance
* Ideally experience in both central government and large private sector organisations
* Have an understanding of best practice for Governance, Risk and Compliance (GRC) within Information Security and risk management, which could include knowledge of relevant standards such as ISO/IEC 27001, PCI-DSS and NIST CSF.However the primary reference point for this client will be the NCSC's Cyber Assessment Framework.
* Demonstrate a depth of experience around cyber operations including vulnerability management, endpoint protection, firewalls, IDS/IPS, Identity and access management, SIEM and SOC.
* Have significant experience of embedding cyber security approaches within the Software Development Life Cycle.
* Be up to date with, and current experience of, the security aspects of digitisation initiatives such as remote working and cloud migration.
* Understand the threat landscape in broad principles, and how existing or emerging threats toassets can be used to inform decisions. Maintain close and productive relationships with relevant government agencies. We wouldexpect this to extend to risk assessment and risk management theory and approaches.
* Be able to demonstrate organisation wide influence and changes in attitudes towards information risk and cyber security, including at the most senior levels.
* Haveexperience in developing and implementing security policies, procedures, and guidelines
* Have demonstrable experience in managing security teams/capabilities to support the mitigation of risks, these will need to adapt to our delivery needs.
* Be wellnetworked in the cyber security space eg with other CISO peers as well as relevant industry or government qualifications and institutional memberships.
* Hold professional certifications and qualifications demonstrating managerial and technical competence within Cyber Security. Aligned to professional standards defined by the UK Cyber Security Council.
This role is part of the Government Security Profession, for this role the minimum skill expectations required are:
Protective Security
* Leadsinnovation in protective security, taking into account other specialisms/enablers and business drivers
* Promotes the development of individuals against the career framework
* Promotes the use of protective security as a business enabler at board or senior management level Is an active member of the UK security community
Threat Understanding
* Describes specific threats and how they may manifest themselves in a local environment
* Maintains understanding of local threat environment and can apply to inform and provide context for wider activities
* Uses local threat information in decision-making and planning
* Demonstrates knowledge of current threats and trends affecting the landscape
Risk understanding and mitigation
* Describesthe basic principles of risk understanding and mitigation
* Supports security professionals in carrying out risk assessments and developing mitigation strategies
* Follows documented principles and guidelines for risk understanding and mitigation
RECOMMENDATIONS: - If you have professional friends/colleagues who would be interested in one of our roles and our excellent levels of service too, we'd like to recognise your recommendations with our referral scheme.
To apply send an updated CV or callDan Speake directly on 01384 438655
Industry: IT
Salary: £950 - £1100 per day
Salary Benefits:
Vacancy Type: Contract
Job Skills: -
Contact Name: Ben Henshaw
Website: -
Direct Application URL: -