This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
This role plays a vital part in the development and delivery of a comprehensive information security and privacy program for Sue Ryder. The scope of the role is company-wide, and includes all forms of electronic communication, data storage, information transmission and IT derived physical security.
Job Responsibility:
Providing security management of Sue Ryder’s IT systems and services, ensuring that active directory, anti-virus, firewalls, disaster recovery, business continuity, vulnerability testing and secure working practices are implemented and maintained
Implement and monitor information security policies and procedures in line with frameworks such as ISO and PSN
Lead on the appropriate security requirements needed for various projects
Plan, conduct, and lead on complex reviews to evaluate compliance with our various legal requirements
Actively take the lead and resolve any security vulnerabilities and threats
Requirements:
Experience working with Service Management processes based on the ITIL methodology
Experience of implementing ITSM policies across a large organisation
Experience architecting and implementing security solutions, policies, and technologies
Experience of implementing DR and BCP systems and procedures, within the context of IT
Ability to manage and deliver Projects through to successful conclusion
Extensive experience of the Cyber Essentials standard
Knowledge/Experience of implementing a SIEM solution
Able to implement/facilitate the actions arising from PEN testing
Able to carry out vulnerability scanning and manage the actions there from using Manage Engine tools
Ability to build and publish security policies as required by the group
Ability to work with management to establish a “Fit for Purpose” cyber security strategy
Experience in Cyber Incident Management and Incident reporting
Experience of meeting PCI and NHS Cyber security compliance frameworks requirements
Experience in defining new requirements and delivering solutions as required by the role
The ability to present Cyber Security concepts in a way that can be understood at all levels
Ability to perform a technical audit on IT and IT security controls
Strong IT knowledge
Understanding of ISO27001 principles
Understanding of information security risks and legislative obligations, including DPA
Professional or academic qualification in IT to A level
A qualification in Information Security Management
Microsoft Certified MCITP/MCSE
Information Security Qualification (CISSP, CISM)
What we offer:
Company pension scheme
27 days holiday - rising to 33 with length of service plus bank holidays
Enhanced maternity and paternity pay
Enhanced sick pay
Employee Networks - LGBTQ+, Ethnic Diversity and Equality, People with Disabilities, and Women and Non Binary Individuals
Staff discount of 10% on new goods online at shop.sueryder.org
Structured induction programme and learning and development opportunities