Engineer the Quantum RevolutionYour expertise can help us shape the future of quantum computing at Oxford Ionics.

View Open Roles

Information Security Officer

Once For All
Basingstoke
2 weeks ago
Create job alert

Join to apply for the Information Security Officer role at Once For All

2 days ago Be among the first 25 applicants

Join to apply for the Information Security Officer role at Once For All

Once For All is a high-growth, cloud-based, SaaS subscription business. Our technology helps our customers to manage their supply chain governance, risk management and compliance. We work across public and private sector and have over 250k customers across the UK across 20 different sectors including construction, transport, retail, hospitality education, facility and property management, manufacturing, local and central government.

About the Role

The Information Security Officer is responsible for implementing, maintaining, and overseeing information security and cybersecurity policies, procedures, and controls to protect the organization's digital assets. They work closely with the CISO, Legal, Compliance, technical and business teams to ensure proactive protection against cyber threats, regulatory compliance, risk management and response to security incidents. The role will build relationships with departments to ensure identification and continuous progression of security threats in our fast-paced SaaS technology business. This role blends operational security, threat intelligence, and user education to support a robust security posture across the organisation.

Responsibilities

  • Develop, integrate, maintain, and establish information security policies, standards, and procedures or guidelines across the organisation.
  • Development of new organizational processes within the organization.
  • Ensure the organization's internal regulatory compliance.
  • Monitor compliance with regulations such as ISO27001, NIST, NIS2, SOC2, ENS, or ANSSI.
  • Maintenance of Information Security KPIs for the maintenance of existing certifications.
  • Analysis and management of the authorization of HR, IT, TECH and business processes.
  • Identify and manage potential risks and threats.
  • Deliver Information Security and Cybersecurity project management.
  • Monitor and manage digital access controls across cloud platforms, internal systems, and third-party tools.
  • Assist in the detection, investigation, and response to security incidents, including unauthorized access, phishing attempts, and data anomalies.
  • Collaborate with cybersecurity teams and other third parties to analyse threat intelligence feeds and proactively identify emerging risks.
  • Participate in vulnerability assessments and support external/internal penetration testing efforts.
  • Conduct regular audits of user permissions, authentication logs, and endpoint security compliance.
  • Develop and deliver security awareness training programs for employees, including social engineering simulations and best practices.
  • Maintain detailed records of incidents, access violations, and remediation actions.
  • Perform risk assessments, policy reviews and development, and continuous improvement of security operations.

Cybersecurity Management

  • Supervise technological security measures including SIEM, DLP, IDS/IPS, Firewall, WAF, cryptological mechanisms, EDR…
  • Analyse security alerts and conduct technical incident investigations.
  • Run and monitor vulnerability tests and periodic scans of key assets.
  • Collaborate on managing security patches and updates with Internal IT, CloudOps and Engineering teams.
  • Document technical findings and generate reports for IT, tech, security, and compliance teams.
  • Automate security tasks using scripting.
  • To choose and advise on the purchase of security and IT technology solutions that meet the regulatory criteria of European laws.

Crisis Management and Incident Response

  • Coordinate response to cybersecurity incidents.
  • Collaborate with business departments to identify key assets and build and test contingency plans to ensure they can be executed effectively.

Security Assessments and Risk Management

  • Carry out periodic risk assessments in the organization based on international methodologies.
  • Identify vulnerabilities and implement security measures to mitigate risk.
  • Conduct information security audits and monitor compliance with security standards, laws, and regulations.
  • Collaborate with Internal Compliance team to undertake internal and external information security audits.

Support for Sales processes and suppliers

  • Review contract information security clauses and customer annexes.
  • Management, governance and security approval of suppliers.
  • Creation and Management of a security knowledge base to provide quick answers to Customer questionnaires and queries.

Training and awareness

  • Deliver Cyber Security employee training and awareness content.
  • Ensure the correct level of employee awareness by conducting continuous assessments.

Qualifications

  • Minimum of 3 years in a similar cybersecurity role.
  • Experience of developing and implementing security policies and procedures to meet ISO and other standards.
  • Experience in protecting confidential and sensitive information.
  • Working knowledge of networks, operating systems, firewalls, proxies, EDR, SIEM, Cryptology and AI.
  • Experience in crisis management and incident response.
  • Up-to-date knowledge of emerging security trends and technologies.
  • Ability to develop and integrate contingency plans.
  • Experience in Cybersecurity risk assessment and management.
  • Knowledge of security audits and supervision in accordance with European and International regulations.
  • Proven experience of protecting SaaS environments.
  • Proven skills in analysis and teamwork.
  • Ability to speak English (C1) and French (B2).
  • Ability to speak Spanish to C1 level desired.
  • Ability to communicate clearly with technical and non-technical stakeholders at all levels of the business.
  • Experience supporting SOC 2, NIS2, ISO 27001, or GDPR compliance programs.
  • Knowledge of SaaS architecture and cloud platforms (e.g., AWS, Azure, GCP).
  • Familiarity with penetration testing methodologies and remediation workflows.
  • Passion for educating others and promoting a security-first culture.
  • Discreet and ethical approach to handling sensitive information.
  • Proactive mindset with a passion for continuous improvement in security practices.
  • May require occasional availability during out of hours support for incident response.

As well as a career in a fast paced environment within a expanding business, we also offer the below benefits as standard:

  • Wellness fund or *Private Medical Insurance (dependent upon role)
  • Pension
  • Life Assurance x 3
  • Holiday purchase Scheme up to 5 days
  • 1 paid and 1 unpaid volunteering day
  • 24/7 and 365 Days Employee Assistance Programme
  • Team and company offsite events
  • Headspace – mindfulness and meditation app
  • Specsavers eye care voucher
  • Free Tea, Coffee and fruit every week – Basingstoke office

Seniority level

  • Seniority levelMid-Senior level

Employment type

  • Employment typeFull-time

Job function

  • Job functionInformation Technology
  • IndustriesSoftware Development

Referrals increase your chances of interviewing at Once For All by 2x

Get notified about new Information Security Officer jobs in Basingstoke, England, United Kingdom.

Reading, England, United Kingdom 1 day ago

Wokingham, England, United Kingdom 3 weeks ago

Information Security & Compliance Manager

Farnborough, England, United Kingdom 4 days ago

Bracknell, England, United Kingdom 3 days ago

Reading, England, United Kingdom 1 week ago

Infrastructure Specialist - System Administrator

Hursley, England, United Kingdom 3 days ago

Hursley, England, United Kingdom 6 days ago

Theale, England, United Kingdom 1 month ago

Hursley, England, United Kingdom 1 week ago

Hursley, England, United Kingdom 1 week ago

Farnborough, England, United Kingdom 3 hours ago

Farnborough, England, United Kingdom 4 days ago

Finance Systems Administrator (Unit 4/Agresso)

Farnborough, England, United Kingdom 5 days ago

Hursley, England, United Kingdom 2 weeks ago

Hursley, England, United Kingdom 1 week ago

Guildford, England, United Kingdom 5 days ago

Reading, England, United Kingdom 5 days ago

Information Security Assurance Specialist

Chandler's Ford, England, United Kingdom 2 days ago

Lead Information Security Analyst -Salesforce

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.


#J-18808-Ljbffr

Related Jobs

View all jobs

Information Security Officer

Information Security Officer

Information Security Officer

Information Security Officer

Information Security Officer

Information Security Officer

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Pre-Employment Checks for Cyber Security Jobs: DBS, References & Right-to-Work and more Explained

The cyber security sector in the UK stands at the forefront of protecting national infrastructure, business operations, and personal data from increasingly sophisticated cyber threats. As organisations across all sectors recognise cyber security as a critical business function, employers are implementing the most rigorous pre-employment screening processes in the technology industry to ensure they recruit professionals capable of defending against advanced persistent threats and maintaining the highest standards of security and trustworthiness. Whether you're a penetration tester, security analyst, incident response specialist, or chief information security officer, understanding the comprehensive vetting requirements is essential for successfully advancing your career in this security-critical field. This detailed guide explores the extensive background checks and screening processes you'll encounter when applying for cyber security positions in the UK, from fundamental eligibility verification to the most stringent security clearance requirements and specialised threat intelligence assessments.

Why Now Is the Perfect Time to Launch Your Career in Cyber Security: The UK's Digital Defence Revolution

The United Kingdom faces an unprecedented cyber security challenge that presents an extraordinary career opportunity. With cyber attacks increasing by 300% year-on-year and the average cost of a data breach reaching £4.24 million, Britain urgently needs skilled cyber security professionals to defend its digital infrastructure, protect citizens' data, and maintain national security in an increasingly connected world. If you've been considering a career change or seeking to future-proof your professional trajectory, cyber security represents one of the most secure, well-compensated, and socially impactful career choices available. The convergence of escalating threats, skills shortage, government investment, and regulatory requirements has created a perfect storm of opportunity that shows no signs of abating.

Automate Your Cyber Security Jobs Search: Using ChatGPT, RSS & Alerts to Save Hours Each Week

Cyber roles drop across consultancies, MSSPs, hyperscalers, banks, gov & start-ups every day—often buried in ATS portals or duplicated across boards. The fix is simple: put discovery on autopilot with keyword-rich alerts, RSS feeds & a reusable ChatGPT workflow that triages listings, ranks fit, & tailors your CV in minutes. This copy-paste playbook is built for www.cybersecurityjobs.tech readers. It’s UK-centric, practical, & designed to save you hours each week. What You’ll Have Working In 30 Minutes A role & keyword map spanning SecOps/Detection, DFIR, AppSec, Cloud Security, GRC, Red Team, Threat Intel, IAM/PAM, OT/ICS & Vulnerability Management. Shareable Boolean search strings for Google & job boards to cut noise fast. Always-on alerts & RSS feeds delivering fresh roles to your inbox/reader. A ChatGPT “Cyber Job Scout” prompt that deduplicates, scores fit & outputs tailored actions. A simple pipeline tracker so deadlines & follow-ups never slip.