Information Security Officer
We are supporting our client with an Information Security Officer role.
You will be responsible for driving efforts to prevent, monitor and respond to information/data breaches and cyber-attacks and execute the of Information Security (IS) directives and activities in alignment with the client’s information and cybersecurity policies.
- Role: Information Security Officer
- Day rate: £450 per day (inside IR35)
- Pay framework: Umbrella Company
- Start date: ASAP
- Contract duration: 6 months initially (with scope to extend)
- Location: Hybrid – 4 days a week in London office, 1 day working from home.
Key Responsibilities:
- Identify opportunities to automate and standardize information security controls.
- Resolve any vulnerabilities or issues detected in an application or infrastructure.
- Analyze source code to mitigate identified weaknesses and vulnerabilities within the system.
- Review and validate automated testing results and prioritize actions that resolve issues based on overall risk.
- Scan and analyze applications with automated tools, and perform manual testing if necessary.
- Reduce risk by analyzing the root cause of issues, their impact, and required corrective actions.
- Direct the development and delivery of secure solutions by coordinating with business and technical contacts.
- Contribute to execution of the architectural vision for all IT systems through major, complex IT architecture projects.
- Security Architecture: Collaborate with IT to ensure system architecture follows corporate policies and IT best practices.
- Risk management: Identify, assess and mitigate security risks. Identify application compensating controls for non-compliant items.
- Provide technical leadership and is responsible for developing components of, or the overall systems design.
- Translate complex business problems into sound technical solutions.
- Provide integrated systems planning and recommends innovative technologies that will enhance the current system.
- Recommend appropriate infrastructure platforms, and communication links required to support IT goals and strategy.
- Impact the architecture function by influencing decisions through advice, counsel or facilitating services.
Essential experience
- Strong understanding of cloud security architectures (i.e. AWS Well-Architected Framework, Google Cloud Security Command Centre).
- Knowledge of the Identity and Access management (IAM) security models of AWS and GCP.
- In-depth knowledge of cloud infrastructure and architecture (e.g. VPC, EC2, S3, Cloud Storage and Compute Engine.
- Familiarity with compliance and risk frameworks (NIST, ISO 27001, CSA STAR)
- Familiarity with IaC security (Terraform, CloudFormation)
- Advanced proficiency with Microsoft Office tools and software.
- Public Cloud Solution Architect or Security Certifications are desired (i.e. AWS Certified Solution Architect, GCP Professional Cloud Security Engineer)
- Industry certifications such as CISSP/CISM/CCSP are desired.
Don't delay, apply today!