IT Security Engineer - Risk/ISO 27001 - Birmingham
On site
Birmingham, United Kingdom
£ 50,000 / year
Full Time
21-10-2024
Job Specifications
IT Security Engineer - Risk/ISO 27001 - Birmingham
Hybrid working
1-2 days per week onsite - Salary upto PS50k
IT Security Engineer required for a leading client based in Birmingham. My client is seeking a IT Security Engineer to come on board to oversees the direction and management of IT risk and security for the client, coordinating responses to major cyber incidents. Leads a small team, owns the technical security roadmap, drives the execution of key activities, identifies new initiatives as needed, and collaborates closely with Information Governance.
Key skills and responsibilities,
* Previous IT Security experience
* Comprehensive understanding of security principles, methodologies, and frameworks such as ISO 27001 and Cyber Essentials.
* Extensive knowledge of risk and threat analysis/mitigation according to industry standards.
* Proven experience in developing IT security processes and procedures.
* Accountable for continuously enhancing the client's IT Risk and Security team, processes, and practices.
* Provides strategic direction and leadership for all IT security initiatives, collaborating closely with both internal and external stakeholders.
* Oversees the technical information security landscape, ensuring compliance with ISO 27001 standards and maintaining robust frameworks, methodologies, and practices to ensure secure and dependable IT services.
* Effectively monitors and manages IT risk, conducting and supporting risk assessments and threat modelling efforts.
* Remains informed of emerging security vulnerabilities and develops proactive defense strategies to protect the organization from potential threats.
* Guides the development and implementation of the technical security roadmap and ensures timely execution of key actions.
* Tracks IT risk trends and areas of concern, working with stakeholders to create and execute mitigation plans.
* Administers the technical security policies and control frameworks, ensuring compliance with legislative, regulatory, and company policy standards.
* Collaborates with and supports the Risk and Information Governance function to align with broader objectives.
Interested?! Send your up-to-date CV to Dean Parkes at Crimson for review
Not interested?! Do you know anyone that might be? Refer a friend for this role to earn PS250 worth of vouchers.
About the Company
Crimson is a digital transformation consultancy that accelerates digital autonomy for ambitious organisations. Crimson's recruitment services help source, attract, and retain visionary digital leaders as well as the best permanent and contract IT talent. Leveraging the Microsoft platform and Crimson's unique portfolio, we work with customers as one team to build intelligent customer experiences, enable employee collaboration, and unlock actionable data insights. Crimson has particular expertise in the higher education,... Know more
Related Jobs
- Company Name
- Spectrum IT Recruitment (South) Ltd
- Job Title
- Senior Network Engineer
- Job Description
- Senior Network Engineer If Cisco is your main skill and you'd like to be heavily involved with projects that span the EMEA region for a global brand, then read on. In fact, 50% of your time will be based on projects with occasion travel to one of the possible 45 locations. As part of the wider UK IT Infrastructure function, you will be joining a network team of 3 perm that is growing due to the volume of project work that is already in the roadmap. Initially based in the Southampton office, upon completion of probation you'll have the option to work 2 days a week from home. Other benefits include: up to 26 days holiday, 5% Pension, Private Medical, Life Assurance Plan and more. Salary: £50,000 - £60,000 As Senior Network Engineer you will: Design and develop complex, integrated solutions Perform and evaluate cost analyses and vendor comparisons for projects Provide 24x7 on-call support. Develop technical subject matter expertise on established and emerging network and telecommunications systems and technologies. Communicate system operations and environment changes. Adhere to SOX, PCI, and other regulatory requirements Understand and avoid capacity, redundancy, and health constraints of network and telecommunications systems. Ensure that all security requirements are met Provide technical input to solution development plans and concept documents. Demonstrate understanding of business impacts of issues and how they relate to IT-owned solutions. Perform and plan major version upgrades. Design and implement effective monitoring of enterprise systems. Plan and manage technical projects involving other teams. Contribute to technical research on new technologies, processes, or procedures. The successful Senior Network Engineer with have several years of experience across Cisco networking technology, with extra kudos given if you've worked with Cisco Nexus, ACI, Cisco ASA, Cisco Wireless, Cisco DMVPN and MPLS. To apply for this role please send your CV to (see below) or call. Spectrum IT Recruitment (South) Limited is acting as an Employment Agency in relation to this vacancy.
- Company Name
- Inspire People
- Job Title
- Lead Network Infrastructure Engineer
- Job Description
- HM Land Registry ("HMLR") and Inspire People are partnering to bring you an exciting opportunity for a Lead Network Infrastructure Engineer to help shape the technical direction of HMLR's established network function and infrastructure across all 14 UK offices. You will actively engage in series of network re-designs and upgrades including new office topology, firewalls and routing designs. Salary of £54,388 to £68,900 dependent upon interview assessment plus excellent Civil Service benefits and 28% pension contribution. Flexible, hybrid working from several UK locations. The IT Operations Practice contains an established network function who are responsible for the design, delivery, and maintenance of HM Land Registry network infrastructure. This encompasses data centres, local offices across England and Wales in addition to cloud infrastructure hosted on AWS and Azure. These services underpin all of HMLRs IT services. The team are actively engaged in a series of exciting network re-designs, consolidations and upgrades including new local office topology and design, new switching, firewalls and routing designs. Responsibilities include: Be the subject matter expert on networks within HM Land Registry, taking accountability for design and management of network infrastructure. Provide technical leadership to the practice, working as a Lead Infrastructure Engineering team to provide guidance and technical decision making within BAU and change portfolio deliverables Support HM Land registry Network Infrastructure, encompassing data centres, local offices across England and Wales in addition to cloud infrastructure hosted on AWS and Azure. Use networking skills to continually design and develop the network topology to meet business needs Maintain effective relationships with other practices in order to meet operational requirements and service levels agreements. Contribute to the continual improvement of the practise and the IT Operations community, supporting community members to build and maintain cohesion Occasional hands-on with reconfiguration, troubleshooting, rolling out new equipment and quality assurance. Essential skills: CCNP qualification or equivalent experience Routing configurations using standard enterprise routing protocols including OSP and BGP. Firewall configuration including policy, routing and design. Switching protocols (HSRP/VLAN/port-channels) Physical network design. Design and operation of cloud network solutions (Any cloud) Experience of planning and leading on the delivery of large-scale network infrastructure change Experience of technical leadership in an enterprise technical environment. Effective communication skills, including the ability to interact and build working relationships with stakeholders. Location Expectation is to be working from the Plymouth, Croydon or Peterborough office 60% of your time across the month (typically 3 days/week). Benefits Salary between £54,388 - £68,900 depending on skills assessed at interview and location Alongside your salary, HM Land Registry contributes £9,881 towards you being a member of the Civil Service Defined Benefit Pension Scheme Annual leave of 28.5 days' paid holiday during each holiday year plus 8 days public holidays Personalised training and development plans including expensed accreditations with training days set aside Flexi-time scheme (You decide what working hours work best for you) Social and sports club Access to our employee assistance programme for counselling and support on a wide range of issues Interest-free loan for season tickets Cycle to work scheme (salary sacrifice). HMLR have a strong and positive culture, a commitment to inclusivity, an emphasis on continuous learning and development and flexible ways of working. Further information This role requires SC clearance, a condition of which is to have been present in the UK for 5 out of the past 5 years. This post may include participation in an on-call rota, subject to additional pay. If you are a Network Engineer with experience of providing technical leadership to Network teams, keen to make significant impact to over 6000 users and work on Critical National Infrastructure then apply today or contact Zymante Gintalaite (Zee) at Inspire People in complete confidence for further information.
- Company Name
- ARC IT Recruitment
- Job Title
- Business Information Security Officer
- Job Description
- Information Security Officer Dublin, Ireland £Competitive plus bonus, plus benefits including full health cover Dora Information Security Officer/BISO is required by Dublin based offices of global financial services organisation. This role enables secure business strategies and processes by providing advisory services to leaders and effectively connecting business needs to security solutions. The position is based within the Cyber Security team. Key Responsibilities: Serves as the primary Interface to the Cyber Security (CS) organisation supporting Lines of businesses, operations, and technology. Serves as the BISO for the business partners to share emerging risks and focus areas with business and technology management teams. Facilitate the implementation and monitoring of corporate CS policies/standards/programs within lines of business, to ensure timely program delivery of programs and management of risk within tolerance. Partner with the Technology Teams to ensure implementation and sustainability of controls. Partner with the Outsourcing Supplier Risk Management team to ensure remediation of risks. Develop strong understanding of underlying technical requirements of the Enterprise technical CS and IT standards, identification of security gaps and provide consultation to the businesses for remediation options. Maintain and enhance status as a subject matter expert for all CS matters Partner with the CS Operations team to provide support on cyber security investigations and incident response. Provide oversight to ensure that processes and projects are completed in a timely manner. Monitor risk exceptions, and resolutions, in response to security events, assessment and audit results. Maintain and socialize the status of CS programs and initiatives within lines of businesses. Respond to security events by initiating and coordinating actions needed to protect the business and its clients. Provides expert advice to the business on current cyber threats affecting the business and clients. Engage with regulators and auditors on key Cyber Security matters. Contribute to and maintain an effective Operational Risk Management Framework, escalating any observed operational risk matters to the Operational Risk Manager. Key Requirements: 7+ years of experience in information security or related discipline. Financial industry experience is preferred. Degree in Engineering - computer science/electrical/electronic/Information Systems or equivalent. Information Security Certifications preferred, CISSP, CISM, CISA, ISO27001 Skills. Ability to prioritise, execute tasks and handle multiple projects concurrently. Ability to communicate and present effectively through a range of mediums, to various audiences, in a way that demonstrates subject matter knowledge. Strong influencing and negotiation skills-- with the demonstrated ability to engage and persuade stakeholders to act and make decisions that aim to further business objectives. Strong service management and service delivery orientation Strong conceptual skills: ability to deal with ambiguity; creativity; lateral thinker. Strong working knowledge of local and European Laws and Regulations (DORA, CBI, EU etc) You will be working for a globally recognised financial services organisation who offer fantastic career progression and total comp. For a full consultation on this role please email your CV to Arc IT Recruitment.
- Company Name
- i3 Resourcing
- Job Title
- Cyber Security Analyst
- Job Description
- Cyber Security Analyst Insurance City, London/Hybrid (3-4 days in the office) Permanent Circa £55,000-£70,000 I am seeking an experienced Cyber Security Analyst to join my client to run the day to day cyber security operations as part of our cyber security program. This role is to work with the Cyber Security Manager to protect information systems, networks, and data from potential cybersecurity threats and attacks. Responsibilities- Working with third parties ensure that we are continually monitoring the organisations networks, systems and applications for security breaches, intrusions and other suspicious activity. Work in close conjunction with our third party SOC to ensure that the right security logs are being monitored and that we have full visibility across our environments. Investigate security alerts and incidents that are raised by third parties and work in close cooperation with the IT team to contain and remediate these, along with supporting the Cyber Security Manager through to incident closure. Work with our third parties to ensure that all systems and applications are being managed from a vulnerability management perspective and that penetration testing is being undertaken on all systems and applications. Own the outputs from a vulnerability management and penetration testing to resolution in conjunction with system owners and escalating any areas of non compliance to the Cyber Security Manager. Working with third parties to ensure that secure coding requirements in line with the cyber security framework are being adhered to. Support the Cyber Security Manager as necessary regarding any cyber security incidents that may occur and ensure that lessons are learned and these are fed back into the security framework. Act as the first point of contact for the IT team and business in regards to cyber security incidents. Assist in the development, implementation, and enforcement of information security policies, standards, and guidelines, including ensuring compliance with relevant regulations and industry standards (eg, ISO 27001, GDPR, NIST CSF, etc). Skills required- Familiarity with industry standards and frameworks such as NIST, ISO 27001, and CIS Controls Demonstrable working experience with a primary focus on Information Security Certifications in CISA, SSCP, CompTIA Sec+ or a similar Proven experience as a Security Analyst or similar role, with hands-on experience in monitoring, incident response, and vulnerability management Proficiency in using and configuring security tools such as SIEM, IDS/IPS, firewalls, antivirus software, and vulnerability scanners A good in depth knowledge of the Microsoft Azure stack, understanding the various security components that can be used within Microsoft environments Good understanding of ITIL processes and experience of working with IT teams to ensure that ITIL good practise is followed. If you think this role could be a good match please send your CV for immediate consideration Cyber Security Analyst Insurance City, London/Hybrid (3-4 days in the office) Permanent Circa £55,000-£70,000