Job Details
Information Security Manager - London/Bedford
| Job Reference: |
103730/KL |
Date updated: |
14 November 2008 |
| Salary: |
Market |
Consultant name: |
Kieran Libbis |
| Location: |
London or Bedford |
|
|
| Type: |
Permanent |
Information Security Manager required for a permanent position based in London or Bedford.
Main Purpose of Job:
Reporting to the I.T. & Procurement Director, the Information Security Manager serves as the process owner for all activities that protect the confidentiality and integrity of business information & systems and ensures compliance with Company policies, procedures and standards.
Key Tasks/Scope of Job:
. Develop information security strategy to align with business strategy & direction
. Review & implement security policies across the company
. Develop innovative security awareness programmes throughout the company
. Ensure compliance with relevant regulatory standards (e.g. ISO 27001), & company policies
. Advise all levels of management including board level on information security matters
. Take ownership of risk management pertaining to information security
. Audit company wide compliance with information security policies & procedures
Duties and Responsibilities:
. Information Security Strategy
. Security Policies
. Risk Management
. Communication & Awareness
Education/Qualifications:
Mandatory:
. Familiar with and practitioner of the principles and concepts of Information Security (e.g. confidentiality, availability vulnerability, integrity, threats, risks & countermeasures, etc.)
. Qualifications which demonstrate high level of the use of English both written & spoken
. Education/training record which exemplifies knowledge of the technology and theory relating to information technology or related area of expertise.
. Audit protocols related to regulatory requirements
Desirable:
. CISSP or equivalent
. ISO Lead Auditor
. Degree level education
. Driving licence
Work Experience:
. Good all round knowledge of Information Security relating to commercial organisations
. Proven commercial track record in information security management
. Experience of developing & implementing information security strategy
. Experience of developing & implementing information security policies & procedures
. Experience of IT disaster recovery
. Experience of project management
. Knowledgeable on security access technologies
. Sound understanding of the regulatory environment (e.g. ISO 27001)
. Sound knowledge of IT security principles and practices
. Sound and practical application of legislation applying to information security - e.g. data Protection Act
. In depth understanding & knowledge of risk & compliance
. Experience of and practical experience of auditing compliance with policies & procedures
. Understanding of regulatory environment relating to health care
Abraxas plc is a leading specialist recruitment agency for the IT industry. Due to the high level of applications we receive, please be aware that you may not hear from us immediately, as we can only respond to those applicants whose skills and qualifications are suitable for this position. If you would like Abraxas to help you find a similar position, or for a complete listing of all our current vacancies, please visit our website at www.abraxas.com and register your details. Please note that no terminology in this advert is intended to discriminate on the grounds of age, and we confirm that we will gladly accept applications from persons of any age for this role