Cyber and Information Security Specialist
Bath, Somerset, United Kingdom
Hybrid / WFH Options
Hybrid / WFH Options
Mayden
objectives, future growth ambitions and product lines. Compliance: Ensure the company's security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO27001:2022 and other relevant frameworks. Risk management: Lead the information security risk management program, including identification, assessment, mitigation, and monitoring of information security risks across all systems, applications, and operations. … experience with UK healthcare security standards and regulations, including demonstrable expertise with the NHS Data Security and Protection Toolkit (DSPT), Digital Technology Assessment Criteria (DTAC) and NCSC CAF. ISO 27001:2022 implementation & maintenance: Hands-on experience with the successful implementation, certification, and ongoing maintenance of an ISO 27001 Information Security Management System … AWS, GCP), including knowledge of cloud security best practices and compliance frameworks Certifications: Relevant industry certifications such as CISSP, CISM, CISA, ISO 27001 Lead Implementer / Auditor, or similar. Supplier Security Management: Experience in conducting due diligence and ongoing monitoring of third-party security posture, specifically SaaS. Threat Intelligence: Experience in leveraging threat intelligence to More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted: