Specialist, Information Security
28 days ago
London
Description Save the Children International has an exciting opportunity for a Specialist Information Security to join our global team. Team purpose The SCA Information Security and Data Protection Team is responsible for supporting our Members in safeguarding the confidentiality integrity availability of all information assets (data and systems). The team is responsible for identifying assessing and managing Member information security and data protection risks and helping Members improve their information security programmes. Role purpose The SCA Information Security Specialist will act as the primary contact for information security matters between SCA Member organisations and SCI within the region to which they are assigned and offer independent objective advice guidance and support for the senior leadership teams and functional teams. They will also be required to lead or assist with incident management processes both in SCI and SCA Members. This role will also work closely with the SCI Information Security and Data Protection Team to promote the sharing of best practice and ensure alignment between SCI and Member information security and data protection programmes. Job Title: Specialist Information Security Team: Cybersecurity and Information Assurance Reports To: Head of Information Security Services Work Pattern: Hybrid/Remote with flexible working options available Contract Length: Permanent Grade: P3 Location: Any approved Save the Children International office location. Time Zone (that the role holder must be available to work in): Any Right to Work: The successful candidate must possess the unrestricted right to work in their current or preferred location for the duration of employment. Language Requirements: English International Travel Requirements: up to 5-10% Principal Accountabilities • Carrying out regular assessments of current information security practices across SCA Member organizations (with appropriate reporting of status to key stakeholders). Help Members establish key performance indicators (KPIs) to measure the effectiveness of their information security programme., • Supporting Members to complete the annual Mutual Accountability Framework self-assessment and coordinating resulting mitigation plans, • Support risk assessment activities to identify and prioritize potential security threats. Support the development of appropriate risk management processes where not in place., • Supporting the delivery of vulnerability assessments and penetration tests (and other Shared Services) with the SCI Information Security & Assurance team., • Support and advise the Members Point of Contacts (PoC) during the implementation and maintenance of IT security policies standards and procedures. This could include the writing and reviewing of new policies and procedures., • Support the delivery of Member information security training programs for staff at all levels including training content and phishing simulations. Foster and grow a culture of security awareness within the organization., • Assist in information security incident management processes including identification containment eradication and recovery. Coordinate communication and reporting of security incidents to relevant stakeholders., • Serve as the primary point of contact for information security matters within assigned regions. Develop strong working relationships with Member PoCs and other key stakeholders. Provide expert advice and support to senior leadership and functional teams on all issues relating to information security., • Stay informed about the latest trends and best practices in information security; recommend improvements to security strategies based on industry developments and organizational needs., • Collaborate with SCI IT and Information Security Teams to ensure alignment of information security tools and best practices across the movement. Help facilitate clear and regular communications regarding security initiatives and concerns. Experience and Skills Essential • Experience working on cybersecurity information security and data protection requirements within a global organization or related technical or IT support., • Good understanding of IT infrastructure including cloud networks and information systems., • Good knowledge of the current information security threat landscape, • Capability to convey technical information effectively to technical and non-technical stakeholders in a clear and comprehensive manner., • Capacity to build and maintain excellent relations and to work effectively in a multicultural and multi-ethnic environment respecting diversity., • Strong personal organisational and self-management skills., • Strong communication skills in English., • Strong working knowledge of ISO/IEC 27001 and NIST Cybersecurity Framework (CSF), • Experience of field operations and the cybersecurity-related issues associated with working in remote inhospitable and insecure environments, • Strong understanding of/willingness to learn key trends in international and humanitarian development and how technology can and is being utilised to support these developments Key Relationships Internal (excluding direct team and manager) • Member IT / InfoSec leads and Members Senior Management Teams, • Cybersecurity vendors and partners Essential • Cybersecurity related certification/s Working at Save the ChildrenInternational ___Description Save the Children International has an exciting opportunity for a Specialist Information Security to join our global team. Team purpose The SCA Information Security and Data Protection Team is responsible for supporting our Members in safeguarding the confidentiality integrity availability of all information assets (data and systems). The team is responsible for identifying assessing and managing Member information security and data protection risks and helping Members improve their information security programmes. Role purpose The SCA Information Security Specialist will act as the primary contact for information security matters between SCA Member organisations and SCI within the region to which they are assigned and offer independent objective advice guidance and support for the senior leadership teams and functional teams. They will also be required to lead or assist with incident management processes both in SCI and SCA Members. This role will also work closely with the SCI Information Security and Data Protection Team to promote the sharing of best practice and ensure alignment between SCI and Member information security and data protection programmes. Job Title: Specialist Information Security Team: Cybersecurity and Information Assurance Reports To: Head of Information Security Services Work Pattern: Hybrid/Remote with flexible working options available Contract Length: Permanent Grade: P3 Location: Any approved Save the Children International office location. Time Zone (that the role holder must be available to work in): Any Right to Work: The successful candidate must possess the unrestricted right to work in their current or preferred location for the duration of employment. Language Requirements: English International Travel Requirements: up to 5-10% Principal Accountabilities • Carrying out regular assessments of current information security practices across SCA Member organizations (with appropriate reporting of status to key stakeholders). Help Members establish key performance indicators (KPIs) to measure the effectiveness of their information security programme., • Supporting Members to complete the annual Mutual Accountability Framework self-assessment and coordinating resulting mitigation plans, • Support risk assessment activities to identify and prioritize potential security threats. Support the development of appropriate risk management processes where not in place., • Supporting the delivery of vulnerability assessments and penetration tests (and other Shared Services) with the SCI Information Security & Assurance team., • Support and advise the Members Point of Contacts (PoC) during the implementation and maintenance of IT security policies standards and procedures. This could include the writing and reviewing of new policies and procedures., • Support the delivery of Member information security training programs for staff at all levels including training content and phishing simulations. Foster and grow a culture of security awareness within the organization., • Assist in information security incident management processes including identification containment eradication and recovery. Coordinate communication and reporting of security incidents to relevant stakeholders., • Serve as the primary point of contact for information security matters within assigned regions. Develop strong working relationships with Member PoCs and other key stakeholders. Provide expert advice and support to senior leadership and functional teams on all issues relating to information security., • Stay informed about the latest trends and best practices in information security; recommend improvements to security strategies based on industry developments and organizational needs., • Collaborate with SCI IT and Information Security Teams to ensure alignment of information security tools and best practices across the movement. Help facilitate clear and regular communications regarding security initiatives and concerns. Experience and Skills Essential • Experience working on cybersecurity information security and data protection requirements within a global organization or related technical or IT support., • Good understanding of IT infrastructure including cloud networks and information systems., • Good knowledge of the current information security threat landscape, • Capability to convey technical information effectively to technical and non-technical stakeholders in a clear and comprehensive manner., • Capacity to build and maintain excellent relations and to work effectively in a multicultural and multi-ethnic environment respecting diversity., • Strong personal organisational and self-management skills., • Strong communication skills in English., • Strong working knowledge of ISO/IEC 27001 and NIST Cybersecurity Framework (CSF), • Experience of field operations and the cybersecurity-related issues associated with working in remote inhospitable and insecure environments, • Strong understanding of/willingness to learn key trends in international and humanitarian development and how technology can and is being utilised to support these developments Key Relationships Internal (excluding direct team and manager) • Member IT / InfoSec leads and Members Senior Management Teams, • Cybersecurity vendors and partners Essential • Cybersecurity related certification/s Working at Save the ChildrenInternational * * * * ___Description Save the Children International has an exciting opportunity for a Specialist Information Security to join our global team. Team purpose The SCA Information Security and Data Protection Team is responsible for supporting our Members in safeguarding the confidentiality integrity availability of all information assets (data and systems). The team is responsible for identifying assessing and managing Member information security and data protection risks and helping Members improve their information security programmes. Role purpose The SCA Information Security Specialist will act as the primary contact for information security matters between SCA Member organisations and SCI within the region to which they are assigned and offer independent objective advice guidance and support for the senior leadership teams and functional teams. They will also be required to lead or assist with incident management processes both in SCI and SCA Members. This role will also work closely with the SCI Information Security and Data Protection Team to promote the sharing of best practice and ensure alignment between SCI and Member information security and data protection programmes. Job Title: Specialist Information Security Team: Cybersecurity and Information Assurance Reports To: Head of Information Security Services Work Pattern: Hybrid/Remote with flexible working options available Contract Length: Permanent Grade: P3 Location: Any approved Save the Children International office location. Time Zone (that the role holder must be available to work in): Any Right to Work: The successful candidate must possess the unrestricted right to work in their current or preferred location for the duration of employment. Language Requirements: English International Travel Requirements: up to 5-10% Principal Accountabilities • Carrying out regular assessments of current information security practices across SCA Member organizations (with appropriate reporting of status to key stakeholders). Help Members establish key performance indicators (KPIs) to measure the effectiveness of their information security programme., • Supporting Members to complete the annual Mutual Accountability Framework self-assessment and coordinating resulting mitigation plans, • Support risk assessment activities to identify and prioritize potential security threats. Support the development of appropriate risk management processes where not in place., • Supporting the delivery of vulnerability assessments and penetration tests (and other Shared Services) with the SCI Information Security & Assurance team., • Support and advise the Members Point of Contacts (PoC) during the implementation and maintenance of IT security policies standards and procedures. This could include the writing and reviewing of new policies and procedures., • Support the delivery of Member information security training programs for staff at all levels including training content and phishing simulations. Foster and grow a culture of security awareness within the organization., • Assist in information security incident management processes including identification containment eradication and recovery. Coordinate communication and reporting of security incidents to relevant stakeholders., • Serve as the primary point of contact for information security matters within assigned regions. Develop strong working relationships with Member PoCs and other key stakeholders. Provide expert advice and support to senior leadership and functional teams on all issues relating to information security., • Stay informed about the latest trends and best practices in information security; recommend improvements to security strategies based on industry developments and organizational needs., • Collaborate with SCI IT and Information Security Teams to ensure alignment of information security tools and best practices across the movement. Help facilitate clear and regular communications regarding security initiatives and concerns. Experience and Skills Essential • Experience working on cybersecurity information security and data protection requirements within a global organization or related technical or IT support., • Good understanding of IT infrastructure including cloud networks and information systems., • Good knowledge of the current information security threat landscape, • Capability to convey technical information effectively to technical and non-technical stakeholders in a clear and comprehensive manner., • Capacity to build and maintain excellent relations and to work effectively in a multicultural and multi-ethnic environment respecting diversity., • Strong personal organisational and self-management skills., • Strong communication skills in English., • Strong working knowledge of ISO/IEC 27001 and NIST Cybersecurity Framework (CSF), • Experience of field operations and the cybersecurity-related issues associated with working in remote inhospitable and insecure environments, • Strong understanding of/willingness to learn key trends in international and humanitarian development and how technology can and is being utilised to support these developments Key Relationships Internal (excluding direct team and manager) • Member IT / InfoSec leads and Members Senior Management Teams, • Cybersecurity vendors and partners Essential • Cybersecurity related certification/s Working at Save the ChildrenInternational * * * *