preston, lancashire, north west england, united kingdom Hybrid / WFH Options
DWP Digital
cyber security controls, designing solutions that enable defence in depth and services with security controls embedded. Significant experience of implementing enterprise security tooling and platforms in line with the NIST cyber security framework or equivalent, and CIS security controls. Influential and able to lead investigative work into problems and opportunities in existing processes, driving the collection of information and creation More ❯
OCTAVE, MITRE ATT&CK. • Up to date knowledge of cyber security threats, threat actor motivation and capability, and relevant threat group TTPs. • An understanding of risk management frameworks e.g. NIST, FAIR, Orange Book, and an understanding of Government Functional Standards e.g. GovS 007. • Knowledge of security control (and maturity) frameworks e.g. NIST (e.g. CSMA, CSF), CIS, ISO 27000 series, CSA … Cloud Controls Matrix, NCSC CAF, and an understanding of the types and functions of security controls. • An understanding of hypothetical attack paths, familiarity with NIST CSF tools and able to use it for gap analysis. • Understands Data Flow Diagrams (DFD) and trust boundaries and is able to create one using information provided about an environment. • Familiar with the functions ofMore ❯
IT Process Improvement and Maturity Lead IT Process Improvement and Maturity Lead - IT Maturity Assessments, Maturity Models, IT Security Function, CMMI, COBIT, NIST, ITIL, ISO 27001, Resource Management - Hybrid (Preston) - to £57k + excellent pension and bonus My client has an urgent need for an IT Process Improvement and Maturity Lead to play a key role in ensuring that its … working with teams with conflicting priorities - Experience of resource management and financial estimating planning for IT project work - Working knowledge of any maturity models, standards or frameworks (CMMI, COBIT, NIST, ITIL, ISO 27001) would be ideal The role will also involve managing and reporting on KPIs for the IT and Security function, recommending improvements/changes to these KPIs andMore ❯