Jobs

Senior Information Security and Data Protection Analyst


Job details
  • Hays
  • London
  • 6 days ago

Senior Analyst Information Security & Data Protection

UK Based

Hays working for your tomorrow

We're on a journey as a global business to build the technology of tomorrow and continue to lead from the front across our industry. We want to redefine and reshape our technology strategy in the face of a rapidly evolving digital world, looking at new ways to leverage AI and innovative technology. Our vision is to create a more integrated and product-led organisation, designing holistic global technology solutions that enable us to continually improve the way we deliver our services, both internally and externally.

The role

The role reports to Head of ISDP Governance and is responsible for supporting the development, review, implementation and maintenance of Enterprise ISDP policies, procedures and guidelines in line with the ISO 27001 standard. The role involves implementation of security risk management framework, driving employee secure behaviours and liaising with third line of defence on internal and external assurance activities.

Key Responsibilities:

Policies and framework management:

  • Implement and maintain information security policies, procedures, and guidelines aligned with ISO 27001 standards.
  • Implement and maintain ISDP intranet for easy access to ISDP artefacts.
  • Effective and consistent implementation of these policies and framework across the organization.
  • Support delivery of ISO27001 certification roadmap.

Security culture:

  • Develop, renew, implement and maintain annual training for employees, including new hires.
  • Conduct regular targeted campaigns to promote a culture of security.
  • Perform periodic simulated phishing exercise to assess employee awareness.
  • Work with relevant business units to improve cybersecurity awareness.

Assurances:

  • Support internal or external ISDP assurance activities.
  • Support management of security management plan (SMP) of activities with strategic suppliers.
  • Collaborate with internal and external stakeholders to coordinate assurance activities effectively.

Stakeholder Communication:

  • Appropriately communicate security requirements to key internal and external stakeholders.
  • Ensure alignment with business goals and risk management strategy.

Metrics and Reporting:

  • Support development of a metrics framework to effectively measures employee behaviour and compliance with policies.
  • Ensure effectiveness of awareness programme.

What you will need to succeed

  • Commitment to delivering high-quality, prompt and efficient service to the business.
  • Ability to own and drive security initiatives for desired outcomes.
  • Some experience in information security governance, policy development, and framework implementation within a global organisation.
  • Knowledge of ISO 27001 standards and other security best practices.
  • Analytical thinking and problem-solving approach
  • Ability to influence and convince others to make appropriate changes in their priorities and behaviours.
  • 5+ years of experience working in a complex technology and business landscape
  • Education (Degree level, Professional certifications such as CISSP, CISM or ISO27001 LA)

What You will get in Return

  • The opportunity to make a seismic impact and help enable the business through the delivery of effective digital solutions.
  • The opportunity to work in a business that values people at the heart of what they do and creates a support and inclusive environment to enable you to flourish.
  • The reward and benefits associated with this role will be competitive to the market and experience of the successful candidate.

For more information of the role and for an informal conversation please apply now.

Sign up for our newsletter

The latest news, articles, and resources, sent to your inbox weekly.

Similar Jobs

Information Security Analyst

Howdens Joinery are looking for an Information Security Analyst to join our Security team who are based at our office in Brackmills Business Park, Northamptonshire.This role offers an InfoSec Analyst the opportunity to represent information security, interpret technical design and how information security best practises should be applied.This is a...

Northampton

Senior M365 Analyst

JOB PURPOSEThe Senior Applications Analyst (M365) plays a critical role in designing, implementing, and maintaining Microsoft M365 Applications. Working with key stakeholders within the business to identify opportunities where the Microsoft M365 toolset can be implemented to drive increased collaboration, improved operational efficiencies, and better compliance. They should drive productivity...

Warwick

Cloud Application Risk Consultant

About Northern Trust:Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.Northern Trust is proud to provide innovative financial services and guidance to the world’s most successful individuals, families, and institutions by remaining true to our enduring principles of...

Northern Trust Corporation London

IT Customer Solutions Analyst

Group IT Customer Solutions Analyst£28k plus BenefitsHybrid - 3 days in office per week.Hatfield, HertfordshireAn exciting opportunity has arisen for an IT Customer Solutions Analyst within our Group IT Team. In this role you will be providing front line technical support and solutions to internal and external product stakeholders.You will...

Hatfield

Cybersecurity Analyst

Role SummaryResponsibilities: By stepping into Costello Medical’s first Cybersecurity Analyst role, you will be responsible for conducting security incident detection, monitoring and response, as well as supporting with the delivery of key IT security projects for our Technical Operations teamSalary: £35,000 to £40,000 per annum, depending on your qualifications and...

Costello Medical Cambridge

Governance, Risk & Compliance Analyst

The Data Analyst, Global Privacy - EMEAi will be located In and primarily focused on the Europe, Middle East, Africa and India (EMEAl) region. This position is responsible for the overall analysis of business processes, system applications and reports that may impact the privacy of our employees, customers, consumers and...

The Sherwin-Williams Company