Be at the heart of actionFly remote-controlled drones into enemy territory to gather vital information.

Apply Now

Information Security Officer

ProRail
Greater London
4 days ago
Create job alert
Building a sustainable tomorrow

BAM UK & Ireland are recruiting an Information Security Officer to join the team. This role can be based out of any of our UK office locations. There may be a requirement for occasional travel to other BAM offices, which may involve overnight stays. BAM supports flexible working and operates a hybrid working model between home and office for this role.

Your mission

Reporting to the Head of Information Security and Assurance, you will be contributing to the development, implementation and enforcement of information security policies, procedures and measures to ensure the confidentiality, integrity and availability of the IT systems and business information. Help manage various audits in the organisation on an annual basis.


• Work with key stakeholders in the business, IT team and externally where required.
• Identifying and registering new and emerging risks and trends in the field of information security and developing appropriate measures.
• Contributing to the development and implementation of Information Security objectives. 
• Performing information security (BIA) assessments with system and process owners
• Taking care of management and documentation of Information Security Management System.
• Adherence to, and liaison with Group Internal and External Audit requirements and standards.
• Maintain external IT Security certifications as required by the business.
• Support in answering appropriate information issues in tenders and various other government projects.
• Performing third party risk assessments of external suppliers to make sure they are compliant.
• Promote security awareness by executing the  security awareness and training programme.
• Executing  phishing campaigns, communications and remedial actions.
• Investigate, handle and record information security incidents, complaints and requests.
• Drawing up reports and dashboards on the basis of approved KPIs and KRIs. 

Who are we looking for?

• Key vendor and/or relevant industry standard qualifications e.g. CISSP, CISM, Comptia Security etc.
• ISO27001 implementor.
• Cyber Essentials+.
• Third party risk management.
• Producing dashboards and reports (using Power BI).
• Experience in using improving information management systems.
• A professional and mature attitude to deal with a range of internal and external stakeholders.
• Understanding and practical experience in the application of data protection and other related legislation, standards and codes of practice.
• Analytical and problem-solving skills.
• Team-oriented and able to collaborate with different departments.
• Excellent organisational and communication skills.

What’s in it for you?

We offer a competitive salary and benefits package, which includes a company car, matched pension contributions, private healthcare, life assurance, 26 days holiday, overtime, travel time, on call and sick pay. In addition to an attractive salary and benefits package, we support further personal, professional, technical and leadership development.

Your work environment

People are at the heart of what we do at BAM. We recognise that creating a diverse and inclusive environment that nurtures our employees and encourages them to bring their best and whole self to work is crucial. We’re on an exciting journey to get us there by recruiting the very best talent to join us regardless of race, colour, religion, national or ethnic origin, sexual orientation, gender identity or expression, age, disability or other characteristics.
 
Be you! Join us today, so we can achieve amazing things together and build a sustainable tomorrow.

Who are we?

The art of building is about building for communities; it’s about building for life.

Where others stop, we go further, leading the way towards a sustainable tomorrow for us and future generations. As an industry leader, we raise the bar.

Our values: sustainable, inclusive, collaborative, reliable and ownership, enable us to achieve our ambitions. Today, tomorrow and every day.

Related Jobs

View all jobs

Information Security Officer

Information Security Officer

Information Security Officer

Information Security Officer

Information Security Officer

Information Security Officer #00515

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

The Future of Cybersecurity Jobs: Careers That Don’t Exist Yet

Cyber security has become one of the most critical issues of our age. Once regarded as a technical problem confined to IT departments, it is now a board-level priority, a government mandate, and a daily necessity for individuals. The shift towards cloud services, remote working, connected devices, and artificial intelligence has dramatically increased the risks of digital attacks. In the UK, cyber security is central to national resilience. The government has identified cyber as a “tier one” threat to national security, alongside terrorism and pandemics. The private sector, from banks to retailers, now sees data breaches and ransomware as existential risks. Global spending on cyber security is projected to exceed $250 billion by 2030, with the UK already home to a thriving cyber industry employing tens of thousands. Yet, as powerful as the industry already is, we are only at the beginning. The technologies shaping the next two decades—AI, quantum computing, edge computing, extended reality, and biotechnology—will radically reshape cyber security. Many of the most vital cyber security jobs of the future don’t exist yet. This article explores why new roles will emerge, the careers likely to appear, how today’s jobs will evolve, why the UK is well-positioned, and how professionals can prepare now.

Seasonal Hiring Peaks for Cybersecurity Jobs: The Best Months to Apply & Why

The UK's cybersecurity sector has emerged as one of the most critical and lucrative technology markets, with roles spanning from security analysts to penetration testers and chief information security officers. With cybersecurity positions commanding salaries from £28,000 for junior security analysts to £140,000+ for senior security architects, understanding when organisations actively recruit can dramatically impact your career trajectory in this essential field. Unlike traditional IT sectors, cybersecurity hiring follows distinct patterns influenced by threat landscapes, regulatory compliance cycles, and incident response requirements. The sector's unique combination of perpetual threat evolution, regulatory pressures, and skills shortages creates predictable hiring windows that strategic professionals can leverage to advance their careers in protecting Britain's digital infrastructure. This comprehensive guide explores the optimal timing for cybersecurity job applications in the UK, examining how cyber threat cycles, compliance deadlines, and government initiatives influence recruitment patterns, and why strategic timing can determine whether you join a cutting-edge security consultancy or miss the opportunity to defend against tomorrow's cyber threats.

Pre-Employment Checks for Cyber Security Jobs: DBS, References & Right-to-Work and more Explained

The cyber security sector in the UK stands at the forefront of protecting national infrastructure, business operations, and personal data from increasingly sophisticated cyber threats. As organisations across all sectors recognise cyber security as a critical business function, employers are implementing the most rigorous pre-employment screening processes in the technology industry to ensure they recruit professionals capable of defending against advanced persistent threats and maintaining the highest standards of security and trustworthiness. Whether you're a penetration tester, security analyst, incident response specialist, or chief information security officer, understanding the comprehensive vetting requirements is essential for successfully advancing your career in this security-critical field. This detailed guide explores the extensive background checks and screening processes you'll encounter when applying for cyber security positions in the UK, from fundamental eligibility verification to the most stringent security clearance requirements and specialised threat intelligence assessments.