Social network you want to login/join with:
Senior Information Security Specialist, North Yorkshire
Client: [Client Name]
Location: North Yorkshire, United Kingdom
Job Category: Other
EU work permit required: Yes
Job Reference: ede208c979eb
Job Views: 6
Posted: 03.03.2025
Expiry Date: 17.04.2025
Job Description:
Senior Information Security Specialist
Permanent Salary: Between £57,000 - £69,000 plus business performance quarterly bonus
Location: Harrogate, North Yorkshire
Working Arrangement: Hybrid – mostly in office working
Your new company: I’m currently looking for an information security specialist to work for an esteemed Yorkshire FMCG organisation in a holistic Information Security role which will see you involved in areas of governance, Risk and compliance, Cyber Defence and assisting their Managed Service Security Provider to an extent on operational cybersecurity.
This role is mainly on site in Harrogate, North Yorkshire with flexible working offered and limited hybrid working. The ideal candidate will be a seasoned security professional with a demonstrable background in the GRC space, a practical understanding of some of the core security frameworks (NIST, Cyber Essentials +, ISO27001), and a level of understanding of core security analysis tools (SIEM, IAM/PAM, Firewalls, EDR, Vulnerability scanning tools etc).
Your new role will involve:
1. Assisting with the implementation and enhancement of the security strategy as set forth by the Head of Cyber Security
2. Working with all areas of the business and building relationships with colleagues to gain a better understanding of wider business functions, their security requirements, and how best to coach employees on security principles that are applicable to their operational needs
3. Assisting with ensuring adherence to ISO27001 and other standards such as NIST and Cyber Essentials + where suitable
4. Assisting with security initiatives and implementations
5. Working alongside the Managed Service Security Provider, assisting with security operations where required, but mostly acting as the liaison between the MSSP and the business
6. Providing informed advice on security initiatives set out by the Group Head of Cyber Security
7. Overseeing the remediation of vulnerabilities raised by MSSP penetration tests, producing supporting documentation (risk ratings and updating risk register)
8. 3rd party and internal risk management
9. Maintaining a contemporary knowledge of current threats and cyber trends
10. Assisting in the identification and support of 3rd party compliance requirements
What you'll need to succeed:
1. A strong information security (audit, governance, risk and compliance) background
2. Experience working with 3rd party suppliers and MSSPs on the enhancement of organisational security
3. Some technical cyber experience (utilisation of SIEM/Vulnerability/IAM tools)
4. Excellent communication skills alongside a proactive and business solution-focused mindset
5. Thorough understanding of, and practical application experience of, commonplace security, risk and compliance frameworks (NIST, ISO27001, CE+)
6. Experience of working cross-functionally across IT, Transformation, GRC, audit and security operations teams
7. Experience providing security advice over a variety of projects
8. Strong Governance Risk and Compliance (GRC) knowledge, understanding and skillset
What you'll get in return:
1. £57,000 - £67,000 per annum
2. Quarterly bonus based on business performance
3. 25 days holiday plus public holidays
4. Access to Private Medical Insurance
5. 5% Employer Pension Contribution
6. 4 x Life Assurance
7. Free meals and drinks on site
8. Free on-site parking
#J-18808-Ljbffr