Information Security Officer
- Location
- Reading, England, United Kingdom
implementation and ongoing management of ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST/CIS Controls and other relevant security requirements. Conduct security assessments across infrastructure, networks, endpoints, applications and data. Identify, assess and manage information security risks, including maintaining risk registers and tracking remediation. Lead and support internal … external security audits , including evidence gathering, control testing and remediation of findings. Manage technical security risks within Data Protection Impact Assessments and policy exceptions. Support the vendor and third-party risk management programme, including assessment and ongoing monitoring of critical suppliers. Work with technical teams around identity ...