The Defra Group Security function within DDTS is recruiting a Security Incident Response Officer. The Security Incident Response Management Team is a growing team where you will have an opportunity to shape the role and make it your own. The purpose of the Security Incident Response Officer is to triage and respond to security-related incidents affecting the Defra group, including helping the coordination of the response, escalating where appropriate, and functioning as a conduit for information to the Senior Security Incident Response Officer or to the Head of the Security Incident Response Management team.
The role involves managing both volume security incidents as well as coordinating incidents with no clear guidance across the physical, personnel, information, and cyber security. There may be line management responsibilities as part of this role. No prior cyber security knowledge is needed. Key responsibilities include:
1. Obtaining security-related statements.
2. Compiling relevant papers for HR/legal teams where prosecution could be pursued.
3. Maintaining the integrity and continuity of evidence and subsequent case management.
Civil servants and Ministers must have confidence that information sent across the department is handled securely, and that should any information be disclosed to outside parties, a thorough, legally compliant proportionate investigation is conducted by a suitably qualified and experienced person. Failure to investigate leaks and security incidents could have serious consequences for Ministers’ and civil servants’ confidence in the department and increase the risk of sensitive information being released.
Limited travel and overnight stays are also expected.
#J-18808-Ljbffr