IT Information Security Manager Job Description

Similar documents
To use centralised systems for remote control of computers and deployment of software, system images and security updates.

Position Description IT Auditor

Job Specification & Recruiting Profile of Vacancy

The successful applicant will be required to support the NSFAS ICT infrastructure.

Evaluation of technologies that will improve the UEL IT infrastructure, recommending and advising on strategic improvements

National Council for Special Education. NCSE Support Service Assistant National Coordinator Job Description and General Notes

IT MANAGER PERMANENT SALARY SCALE: P07 (R ) Ref:AgriS042/2019 Information Technology Manager. Reporting to. Information Technology (IT)

POSITION DESCRIPTION

Marine Institute Job Description

KENYA SCHOOL OF GOVERNMENT EMPLOYMENT OPORTUNITY (EXTERNAL ADVERTISEMENT)

IT SECURITY OFFICER. Department: Information Technology. Pay Range: Professional 18

Marine Institute Job Description

Technical Information Assurance Team Structure. and Role Description

ROLE DESCRIPTION IT SPECIALIST

Job Description. ICT Systems Administrator

SRM Service Guide. Smart Security. Smart Compliance. Service Guide

IQ Level 4 Award in Understanding the External Quality Assurance of Assessment Processes and Practice (QCF) Specification

Cloud solution consultant

Cloud solution consultant

Communications Engineer (Fixed-Term) (Internal Only) Applications and Technologies Communications Team

National Council for Special Education. NCSE Support Service Advisor Job Description and General Notes

Todmorden High School Job Description

Position Description. Engagement Manager UNCLASSIFIED. Outreach & Engagement Information Assurance and Cyber Security Directorate.

POSITION DESCRIPTION

When Recognition Matters WHITEPAPER ISO SUPPLY CHAIN SECURITY MANAGEMENT SYSTEMS.

Ensure that all windows servers are patched and virus checked to the correct levels and that changes are made in line with ISO standards

What Makes PMI Certifications Stand Apart?

NSPCC JOB DESCRIPTION

ASSISTANT ICT NETWORK MANAGER. JOB DESCRIPTION Support Staff

Technical Information Assurance Team Structure. and Role Description

Salary Scale in accordance with the school s support staff structure and/or any local agreements that are in place.

Qualification Specification for the Knowledge Modules that form part of the BCS Level 4 Software Developer Apprenticeship

ACCA Certificate in Audit (RQF Level 4) Qualification specification

NOT PROTECTIVELY MARKED JOB DESCRIPTION

Recruitment Pack Marketing Officer Battersea Dogs & Cats Home

Digital Service Management (DSM)

DIGITAL APPRENTICESHIPS

CESG:10 Steps to Cyber Security WORKING WITH GOVERNMENT, INDUSTRY AND ACADEMIA TO MANAGE INFORMATION RISK

V&A/Icon Conservation and Collections Care Technicians Diploma What is the V&A / Icon Conservation and Collections Care Technicians Diploma?

Unit 3 Cyber security

EXAM PREPARATION GUIDE

4. To assist with any ICT work depending on skills and experience, see the ICT Skills list.

INFORMATION SECURITY GOVERNANCE, RISK & COMPLIANCE CLOUD CONSULTING SERVICES CIO & CISO SERVICES. forebrook

Position Description. Computer Network Defence (CND) Analyst. GCSB mission and values. Our mission. Our values UNCLASSIFIED

Association for International PMOs. Expert. Practitioner. Foundation PMO. Learning.

POSITION DESCRIPTION

Chartered Membership: Professional Standards Framework

Training Services TRAINING SERVICES. Translating Knowledge into Results

FOUNDATION CERTIFICATE IN INFORMATION SECURITY v2.0 INTRODUCING THE TOP 5 DISCIPLINES IN INFORMATION SECURITY SUMMARY

Digital Service Management (DSM)

About the Global Communication Certification Council

Standard Course Outline IS 656 Information Systems Security and Assurance

Security Operations & Analytics Services

EXTERNAL VACANCY CIRCULAR NO 3. OF 2018

REPORT 2015/010 INTERNAL AUDIT DIVISION

WELCOME ISO/IEC 27001:2017 Information Briefing

Agenda. Bibliography

Data Security and Privacy at Handshake

Cyber Security School

Apprenticeships CYBER SECURITY ADVANCED TO TECHNICAL MODERN APPRENTICESHIP FROM NQ-LEVEL TO SKILLED SECURITY ENGINEER

PECB UNIVERSITY PECB UNIVERSITY

LICS Certification Scheme

Job Descriptions and Person Specifications for Information and Communication Technology (ICT) Officers and Communication Officers

EXAM PREPARATION GUIDE

POLICE STAFF JOB DESCRIPTION

Find out more about APM qualifications and keep up to date with the latest developments at apm.org.uk/apmqualifications

IT Systems and Networking Degree Apprenticeship

Planning and Implementing ITIL in ICT Organisations

A BRIGHTER FUTURE FOR DIGITAL IT APPRENTICESHIPS. Apprenticeship End-Point-Assessment for Employers

Accreditation Handbook

VACANCY NOTICE. Vacancy Notice No: CAT-6 (WRO-21)/SSA Date of Issue : 24 June Title: Assistant (ICT) Deadline for application : 10 July 2015

Job Description. Due to the nature of the IT team it will be necessary for this role to also provide support for other IT functions.

ASTON UNIVERSITY PROGRAMME SPECIFICATION

TRAINING COURSE CERTIFICATION (TCC) COURSE REQUIREMENTS

EC-Council Certified Incident Handler v2. Prepare to Handle and Respond to Security Incidents EC-COUNCIL CERTIFIED INCIDENT HANDLER 1

STUDENT AND ACADEMIC SERVICES

Level 5 Diploma in Computing

Position Description For ICT Systems Officer Information, Technology and Communication Department Hobart

EXAM PREPARATION GUIDE

ITIL Intermediate Service Design (SD) Certification Training - Brochure

APPROVAL SHEET PROCEDURE INFORMATION SECURITY MANAGEMENT SYSTEM CERTIFICATION. PT. TÜV NORD Indonesia PS - TNI 001 Rev.05

What Does the Future Look Like for Business Continuity Professionals?

Apprenticeships CYBER SECURITY HIGHER APPRENTICESHIP FROM IT TECHNICIAN TO SKILLED INFORMATION SECURITY PROFESSIONAL

Association for International PMOs. Expert. Practitioner. Foundation PMO. Learning.

Qualification Specification for the Knowledge Modules that form part of the BCS Level 3 Infrastructure Technician Apprenticeship

CYBER SECURITY TRAINING

EXAM PREPARATION GUIDE

Obtaining Chartered Status in the Chartered Institute for IT. Keith Taylor

How to apply for professional membership and registration. 22 October 2018 Terry Winter Membership Manager

BSc (Hons) Information Systems - IC 311

GRADUATE CERTIFICATE IN INFORMATION SECURITY MANAGEMENT

ICT Mentors e-learning portfolio provides our delegates with materials for study at the comfort of their homes, work place etc.

EXAM PREPARATION GUIDE

ITIL Intermediate Service Design (SD) Certification Boot Camp - Brochure

Les joies et les peines de la transformation numérique

University wide (Lansdowne Campus/Talbot Campus)

Data Sheet The PCI DSS

IRMSA: Endorsement Policy 2013

DATA SHEET RSA NETWITNESS PLATFORM PROFESSIONAL SERVICES ACCELERATE TIME-TO-VALUE & MAXIMIZE ROI

Global Trade Professionals Alliance (GTPA) Creating an international standard for trade professionals, businesses & consulting services

Transcription:

IT Information Security Manager Job Description

IT Information Security Manager Responsible to: Accountable to: IT Service Manager Head of IT Services Overall Purpose To provide effective response, protection process, systems, and continuity plans for the organisation's computers, networks and data against threats, such as security breaches, computer viruses or attacks by cyber-criminals Principal Duties and Responsibilities Responsible for understanding the IT requirements, expectations of information security, continuity and determining the scope of management systems Responsible for providing leadership, ownership of IT information security policy s, continuity plans, and ensuring that responsibility, authority roles are documented Responsible for identifying IT information security, continuity objectives and actions to address risks, opportunities, and the planning to address or achieve set outcome Reasonable for determining IT competency, awareness to ensure implementation, maintence, and continual improvement of information security, continuity Responsible for IT operational planning and control of information security, continuity risk framework, assessments and identified treatments Responsible for the evaluation of IT information security, continuity effectiveness by undertaking documented monitoring, analyses, internal auditing, and reviews Responsible for security offered services and all security incident management processes, there service level objectives, as defined within the IT Service Portfolio Responsible for providing security expertise and providing recommendations based on research of latest information security and business continuity trends Responsible for all IT Services security requirements and the documented technical, verbal communication of detailed specialist information across the organisation Responsible for the continual improvement of security information, continuity suitability, adequacy, and effectiveness and nonconformity and corrective actions Page 1

Generic Duties and Responsibilities To provide communication of solutions in different formats that translate to management and other personal Responsible for preparation of regular and scheduled reports that document security breaches and the extent of the damage caused by the breaches To demonstrate ownership and leadership with related projects, incidents, problems being able at times to work alone, within or across teams To provide project management and business relationship support with customer service level requirements and solutions To be aware of new technologies and methods that align with overall strategy which provide solutions that demonstrate business value To identify trends and potential problems providing initiative proactive solutions ensuring business continuity and capacity To continuously develop both technical and personal skills required within role and assist with development of other junior staff To undertake other roles, responsibilities, training and tasks as reasonably requested by line management To provide analysis and research of latest information security and business continuity trends and regular reporting with recommended actions To be a member of the IT Service SMT and UoN business continuity team making decisions that impact service delivery and the daily operation of the University To deputise in event of absence of line manager when requested by senior line management. Responsible and accountable for ensuring all employment legislative requirements are adhered including equality, diversity and health and safety issues Responsible for all activities and actions in accordance with departmental standards, process and procedures The job description may be altered at any time in line with the level of the post to meet changing requirements, but only in full consultation with the post holder Page 2

Person Specification Criteria Qualifications Please see Key below ssential / Desirable Assessment Methods 1 ITIL Foundation D A, I 2 CISSP Certified A, I 3 ISO 27001 Information Security Certified D A, I 4 ISO 22301 Business Continuity Certified D A, I 5 Skills, Knowledge and xperience Knowledge or experience of security methodology within ITIL, COBIT, PRINC2 A 6 Knowledge or experience of ISO 27000 and 22301 standards A 7 Knowledge or experience of PCI-DSS and DPA legislation A 8 Knowledge or experience Risk Rating framework methodology (such as OWASP) A Demonstrable knowledge of solutions: 9 Router Firewall Cloud SaaS and IaaS Platforms Internet and Web Filtering Threat Prevention and Protection Identity Management Datacenters Facilitates Incident Management Physical Access Data Protection and Archiving Security Templates A 10 Relevant experience in a similar role within information security and continuity role A Page 3

Personal Qualities 11 xcellent interpersonal skills with peers and key stakeholders A, I 12 Self-motivated an able to work on own initiative A, I 13 xcellent customer service skills with both student and staff requirements A, I 14 Good communication and presentation skills A, I 15 Able to work collaboratively within the wider IT department A, I 16 Ability to adapt to organisational change D I () ssential (D) Desirable (A) Application (I) Interview (T) Test (P) Presentation Page 4

Terms and Conditions of mployment Job Title: Duration: Hours: Salary: Work Base: Pension: Holidays: IT Information Security Manager Permanent Full time: 37 hours per week Grade 8: 38,833-47,722 per annum Park Campus or any of the University of Northampton premises as required ligible to join the Local Government Pension 24 days per annum plus 5 days after 5 year s continuous service plus Bank Holidays and Closed days. Notice period: 2 Months Probationary period: 12 Months Additional Points to Note Applicants are required to provide two referees who can give an opinion on academic and/or professional work experience. Successful applicants are required to provide any stated/required qualifications and evidence of any memberships to professional bodies. Applicants must provide evidence of their right to work in the UK in accordance with the Asylum and Immigration Act 1996 and Immigration Asylum and Nationality Act 2006. The starting salary for all new appointments and internal promotions will normally be at the minimum point of the grade Should you be shortlisted to attend an interview the University will not reimburse you for any expenses incurred. Page 5