As the Business InformationSecurityOfficer for Risk and Brokering (R&B) you will be a crucial asset to WTW’s cyber security efforts, ensuing robust cyber security practices are embedded across the business unit and are aligned with the organisation’s overall security strategy. This role is to serve as the global trusted … informationsecurity partner to the business and technology teams, supporting them to ensure security items are appropriately managed. This role is part of the extended Information & Cyber Security Leadership Team and resides within Corporate IT, reporting to the Lead Business InformationSecurity Officer. The Role Primary responsibly is the BISO for Risk and … Brokering (R&B): Serve as a leader within the Information & Cyber Security Team, as the trusted advisor to R&B leadership, providing strategic cybersecurity insights and recommendations to ensure a cohesive approach to cyber risk management. Ensure cybersecurity practices and security by design are integrated into business unit initiatives, motivating business units to adopt efficient securityMore ❯
Information Systems SecurityOfficer 2 & 3 Provide support for a program, organization, system, or enclave's information assurance program. Provide support for proposing, coordinating, implementing, and enforcing information systems security policies, standards, and methodologies. Maintain operational security posture for an information system or program to ensure information systems security policies … standards, and procedures are established and followed. Assist with the management of security aspects of the information system and perform day-to-day security operations of the system. Evaluate security solutions to ensure they meet security requirements for processing classified information. Perform vulnerability/risk assessment analysis to support security authorization. Provide configuration management … CM) for information systems security software, hardware, and firmware. Manage changes to system and assess the security impact of those changes. Prepare and review documentation to include System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System Requirements Traceability Matrices (SRTMs). Support security authorization activities in compliance with National More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
Tunstall Healthcare (UK) Ltd
We are currently recruiting for a Regional InformationSecurityOfficer , reporting to the Global Chief InformationSecurityOfficer (CISO), to oversee the informationsecurity function across the countries and Tunstall entities in their scope. This is an incredibly exciting time to join Tunstall as we embark on an exciting period of transformation. … You will be joining a recently created and growing global InformationSecurity team within Tunstall and will be in a leadership position playing a key part in the success of this transformation. This role would be based at either our Manchester office or our Whitley site (DN14 0HR) working on a hybrid basis. We are flexible on number … of days in the office. What will you be doing in this role? As our Regional SecurityOfficer , you will be responsible for implementing, running and overseeing the informationsecurity function across the countries and Tunstall entities in your scope, ensuring consistent and strong informationsecurity management in support of our business goals and More ❯
worldwide. The main office is based near Liverpool Street station, London. We have offices in Bermuda, Brazil, Cyprus, Greece, Hong Kong, Japan, and Singapore. Overall Job Purpose : The Junior InformationSecurityOfficer (JISO) will assist the InformationSecurity team in implementing and maintaining the informationsecurity management system with the objective of managing … risks to information assets to an acceptable level. The JISO will develop a good understanding of the informationsecurity policies, standards and procedures and will assist InfoSec in implementing, managing and monitoring the relevant controls. It is imperative that the JISO develops a strong understanding of the organisation's technology landscape to help identify potential threats and … vulnerabilities. Key Responsibilities: Assist in maintaining the informationsecurity standards, procedures and guidelines. Participate in the informationsecurity risk management process to identify, assess, treat and monitor risks. Manage informationsecurity incidents and events to protect information assets. Help develop and implement incident response plans and procedures to ensure that information services More ❯
Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: Title: Chief InformationSecurityOfficer Requisition ID: 5935 Amey is a leading provider of full life-cycle engineering, operations, and decarbonisation solutions, for transport infrastructure and complex facilities. Working for us, you'll be delivering sustainable infrastructure solutions that … shared future. Our people are driven by a set of strong values, based on safety, insight, and collaboration. The Opportunity We have a fantastic opportunity for a permanent Chief InformationSecurityOfficer (CISO) to join Amey's group functions. As Chief InformationSecurityOfficer you will lead global cyber security and privacy across … the Amey Group, with a primary focus on security (approximately 70%) and strategic accountability for privacy (approximately 30%). You will define and implement long-term strategies aligned with business objectives, regulatory expectations, and customer trust. This includes articulating the security value proposition, contributing to the governance of AI and emerging technologies, and embedding secure-by-design and More ❯
have over 250k customers across the UK across 20 different sectors including construction, transport, retail, hospitality education, facility and property management, manufacturing, local and central government. Role Summary : The InformationSecurityOfficer is responsible for implementing, maintaining, and overseeing informationsecurity andcybersecurity policies, procedures, and controls to protect the organization's digital assets. They work … closely with the CISO,Legal, Compliance, technical and business teams to ensure proactive protection against cyber threats, regulatory compliance,risk management and response to security incidents. The role will build relationships with departments to ensure identification and continuous progression of security threats in ourfast-paced SaaS technology business. This role blends operational security, threat intelligence, and user … education to support a robust security posture across the organisation. Job Responsibilities: • Develop, integrate, maintain, and establish informationsecurity policies, standards, and procedures or guidelines acrossthe organisation. • Development of new organizational processes within the organization. • Ensure the organization's internal regulatory compliance. • Monitor compliance with regulations such as ISO27001, NIST, NIS2, SOC2, ENS, or ANSSI. • Maintenance of More ❯
Looking for a new challenge? Take a look at our current vacancies. If you see a vacancy that is right for you, we encourage you to apply! Chief InformationSecurityOfficer We currently have an exciting opportunity for an experienced Chief InformationSecurity Officer. If you are keen to maintain and develop an environment and … culture for our organisation that ensures and assures the security of our information and technology then we would really like to hear from you. Employment Type: Full-time Working hours: 35 hours per week. Where possible, we are open to considering part time/flexible working patterns. Please let us know in your application your desired working pattern … in 2023 and the ever-changing technology landscape, it is a very exciting time to be joining the Technology team here at the Financial Ombudsman Service. As our Chief InformationSecurityOfficer (CISO), you will maintain and develop an environment and culture for our organisation that ensures and assures the security of our information and More ❯
Meriden, Coventry, West Midlands, England, United Kingdom
Recruit4Talent
InformationSecurity & Compliance Officer sought to join the IT department of an award-winning, national recruitment agency group as they continue to expand their digital presence across multiple brands. This is a permanent, full-time role based fully onsite at the company’s Meriden office, with occasional travel to other company sites. The Role: As InformationSecurity & Compliance Officer, you will become a key player in safeguarding the organisation's data and ensuring compliance with industry standards and regulations. As a crucial member of the Security and Compliance team, you will play an instrumental role in maintaining and enhancing our security controls across Microsoft Azure, Office 365, and during the migration … of our legacy systems to the Microsoft cloud. Your responsibilities will include: Evaluate and enhance existing IT systems, management procedures, and security protocols to ensure robust protection. Oversee ISO 27001 and other key accreditations by collaborating with internal teams and external auditors. Manage informationsecurity requests and compliance reports, ensuring adherence to GDPR and other relevant standards. More ❯
InformationSecurityOfficer Hybrid – Home & London | Permanent | Circa £60,000 | 35 hrs/week (flexible) A rare and brilliant opportunity to join this international development children’s charity, as their new InformationSecurityOfficer . You'll be the expert, working closely with the Chief InformationOfficer and other senior leaders to … embed security practices across systems, suppliers, and staff. You’ll be joining a small but impactful Technology team where the culture is collaborative and down-to-earth. You’ll have the autonomy to get stuck in, alongside the backing to develop professionally, whether that’s through security qualifications or broader leadership skills. What you will be doing As … InformationSecurityOfficer , you’ll lead the implementation of the organisation’s cyber security plans. Act as subject matter expert on informationsecurity across the organisation Ensure compliance with standards like Cyber Essentials Plus and CIS . Oversee third-party security providers and outsourced ICT services. Manage incident response planning, investigations, and reporting. More ❯
InformationSecurityOfficer Hybrid – Home & London | Permanent | Circa £60,000 | 35 hrs/week (flexible) A rare and brilliant opportunity to join this international development children’s charity, as their new InformationSecurityOfficer . You'll be the expert, working closely with the Chief InformationOfficer and other senior leaders to … embed security practices across systems, suppliers, and staff. You’ll be joining a small but impactful Technology team where the culture is collaborative and down-to-earth. You’ll have the autonomy to get stuck in, alongside the backing to develop professionally, whether that’s through security qualifications or broader leadership skills. What you will be doing As … InformationSecurityOfficer , you’ll lead the implementation of the organisation’s cyber security plans. Act as subject matter expert on informationsecurity across the organisation Ensure compliance with standards like Cyber Essentials Plus and CIS . Oversee third-party security providers and outsourced ICT services. Manage incident response planning, investigations, and reporting. More ❯
InformationSecurity & Compliance Officer sought to join the IT department of an award-winning, national recruitment agency group as they continue to expand their digital presence across multiple brands. This is a permanent, full-time role based fully onsite at the company's Meriden office, with occasional travel to other company sites. The Role: As InformationSecurity & Compliance Officer, you will become a key player in safeguarding the organisation's data and ensuring compliance with industry standards and regulations. As a crucial member of the Security and Compliance team, you will play an instrumental role in maintaining and enhancing our security controls across Microsoft Azure, Office 365, and during the migration … of our legacy systems to the Microsoft cloud. Your responsibilities will include: Evaluate and enhance existing IT systems, management procedures, and security protocols to ensure robust protection. Oversee ISO 27001 and other key accreditations by collaborating with internal teams and external auditors. Manage informationsecurity requests and compliance reports, ensuring adherence to GDPR and other relevant standards. More ❯
Solutions 71 is seeking an Information System SecurityOfficer (ISSO), to support a Department of Defense customer. The ISSO will assist the embedded US Army Program Executive Office (PEO) Combat Support & Combat Service Support Engineering Team to design comprehensive cyber security program protection plans. This position will directly support the Program InformationSecurity System … Manager (P-ISSM) and the Chief InformationOfficer (CIO). The ISSO position will also have comprehensive informationsecurity responsibilities that include verification of security measures and procedures, and the reporting of incidents briefing the P-ISSM and the CIO verbally and in documentation. Specific Duties/Tasks (included, but not limited to): • Supports the … CS&CSS ISSM and CIO in the informationsecurity planning, design, and execution for all aspects of the PEO CS&CSS mission. • Perform technical reviews of security controls, assess the adequacy of protective measures, evaluate residual risk, and determine the applicable severity value for each control. • Support all steps of the RMF process as defined in DoDI More ❯
Warren, Michigan, United States Hybrid / WFH Options
Softek International Inc
Description The Information System SecurityOfficer (ISSO) serves as the principal advisor to the Information System Owner (SO), Business Process Owner, and the Chief InformationSecurityOfficer (CISO)/Information System Security Manager (ISSM) on all matters, technical and otherwise, involving the security of an information system. ISSOs are … responsible for ensuring the implementation and maintenance of security controls in accordance with the Security Plan (SP) and Department of Defense (DoD) policies. In almost all cases, ISSOs will be called on to provide guidance, oversight, and expertise, but they may or may not develop security documents or actually implement any security controls. While ISSOs will … are being performed. As a result, it is important for ISSOs to build relationships with the SO, technical staff, and other stakeholders. Duties/Responsibilities: Essentials The goal of informationsecurity is to help the business process owner accomplish the mission in a secure manner. To be successful, ISSOs need to know and understand the following: Coordinates with More ❯
Washington, Washington DC, United States Hybrid / WFH Options
Leyden Solutions Inc
Title: Information Systems SecurityOfficer (ISSO) Clearance: Active TS with ability to pass CI Poly to obtain SCI Location: Washington, DC (5 days/week onsite only; no remote work) Leyden Solutions is an award-winning national security company with an immediate need for an Information System SecurityOfficer (ISSO) to support a … federal law enforcement agency's migration from distributed systems to a data-centric audit and protection approach (DCAP) informationsecurity strategy. Responsibilities/Duties: • Ensure that appropriate steps are taken to implement informationsecurity requirements for IT systems throughout their life cycle, from the requirements definition phase through disposal. • Perform compliance monitoring, analysis, tracking and reporting … Apply NIST Risk Management Framework and NIST SP 800-53 security controls • Analyze and re-mediate weaknesses while working with system administrators and other personnel in the organization to implement risk mitigation • Configuring, designing, or analyzing security controls relevant to networked systems • Perform scans, analyze code, and conduct vulnerability scans and assessments. • Develop and present, both verbally and More ❯
Position: Information Systems SecurityOfficer (TS w/SCI Clearance Required) Location: Greater Boston, MA (Onsite) Length: 3+ years Job Description: Our client is seeking a skilled and motivated Information Systems SecurityOfficer (ISSO) to join their dynamic Cybersecurity Team. This role is crucial in maintaining and developing our InformationSecurity (IS … program and ensuring compliance with established security policies and procedures. The ISSO will be responsible for overseeing operational security implementation, vulnerability management, system assessments, and recovery processes. The ideal candidate will play a key role in safeguarding critical information systems and contribute to a comprehensive security posture. Essential Duties and Responsibilities: • Develop and maintain an Information Systems (IS) security program and policies to ensure the protection of sensitive and classified systems and data. • Monitor and enforce security policies for system implementation and configuration management. • Ensure the protection of information systems and recommend resources to maintain security. • Continuously monitor system vulnerabilities, assess potential threats, and respond to security incidents. • Oversee corrective actions More ❯
Clarksburg, West Virginia, United States Hybrid / WFH Options
Edgewater Federal Solutions, Inc
Edgewater Federal Solutions is seeking a Senior Information System SecurityOfficer (ISSO) to provide overall compliance of the security posture for our federal client. The ISSO will support the establishment, implementation, and maintenance of a life-cycle security model that develops, maintains, and dispositions information systems, services and data, and safeguards their confidentiality, integrity … and availability. Expertise in NIST compliance, Open Web Application Security Project (OWASP), Common Criteria, DISA and SANS institute. The position requires an active Top Secret Clearance and hybrid work environment (2-3 days onsite per week) performed in Clarksburg, West Virginia. RESPONSIBILITIES: • Coordinate with system owners to ensure systems are operated and maintained in accordance with security policies … and practices. • Reports all information system security incidents through the appropriate channels. • Creates security practices, including National Institute for Standards and Technology (NIST), Open Web Application Security Project (OWASP), Common Criteria, Defense InformationSecurity Agency (DISA) and SANS Institute. • Experience working in Scaled Agile Framework (SAFe) development environments. • Demonstrated level of experience in informationMore ❯
Agile is seeking an Information Systems SecurityOfficer -, responsibilities include the following: Active TS/SCI clearance is required: Certification Requirements: CISM and one of the Following: (CGRC), Certified in Risk and Information Systems Control (CRISC), Information Systems Security Management Professional (ISSMP), Certified Information Systems Auditor (CISA), Certified Cloud Security Professional (CCSP … continuity, introduction of innovation, and enhancement of technical competence. Serve as the principal advisor to the Authorizing Official (AO) and System/Service Owner (SO) on all matters involving information system security. Develop, implement, assess, and maintain system-level information system security controls in accordance with Department of Justice, NIST 800-53, and other federal regulations. Support … data calls, audits, system security assessments & authorizations, continuous monitoring, and ongoing authorizations. Work with the System Owner to categorize the information system, identify the appropriate control baseline, and assess correlating security controls. Create, capture, and maintain artifacts and documented processes to support control assessment results Qualifications: Minimum of 2 years of hands-on experience and knowledge in More ❯
military coursework/training in a computer-related field plus 10 years of relevant experience, OR +High School diploma/GED plus 12 years of relevant experience. Degree in Information Assurance, InformationSecurity, Information Systems, Information Technology, Computer Networking, Information Science, Cyber Security, or related is preferred. Relevant experience must be in information systems design, development, programming, information/computer/cyber/network security, vulnerability analysis, system auditing, penetration testing, computer forensics, computer systems research, and/or systems engineering (i.e., requirements analysis, design, implementation, testing, integration, deployment/installation, and maintenance). Experience in the Risk Management Framework (RMF), Information Systems Security technologies, IT policies, and … the relevant experience requirement. Continued assignment to this work role is contingent upon compliance with NSA's Cyberspace Workforce Improvement Program (CWIP) per NSA/CSS Policy 6-34; Information Assurance Manager (IAM) Tier 1 certification requirements must be met within 6 months of assignment to the position. Maintaining certification status is required through continuous education training or sustainment More ❯
the nation and the world are counting on us to deliver. Join the transformation and help us make this impact now. BlueHalo, an AV Company, is seeking a strong Information System SecurityOfficer to join the team and provide aid to the program, organization, system, or enclave's information assurance program. In this position the individual … will lend assistance for proposing, coordinating, implementing, and enforcing information systems security policies, standards, and methodologies If that sounds like you and you're ready to make an impact now, not later, read on for the details and apply to make the most out of your career. You'd like to do this Assist security authorization activities … in compliance with Information System Certification and Accreditation Process (NISCAP) and DoD Risk Management Framework (RMF). Assists with the management of security aspects of the information system and performs day-to-day security operations of the system. Evaluate security solutions to ensure they meet security requirements for processing classified information. Maintain operational securityMore ❯
The Information Systems Security Engineer II Hanover, MD TS/SCI Full Scope Polygraph (On site, 40 hrs.' per month remote) The Information Systems Security Engineer II (ISSE) shall perform, or review, technical security assessments of computing environments to identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations, and … recommend mitigation strategies. Validates and verifies system security requirements definitions and analysis and establishes system security designs. Designs, develops, implements and/or integrates IA and security systems and system components including those for networking, computing, and enclave environments to include those with multiple enclaves and with differing data protection/classification requirements. Builds IA into systems … deployed to operational environments. Assists architects and systems developers in the identification and implementation of appropriate informationsecurity functionality to ensure uniform application of Agency security policy and enterprise solutions. Supports the building of security architecture. Enforce the design and implementation of trusted relations among external systems and architectures. Assesses and mitigates system security threats More ❯
Marathon TS is looking for an Information System SecurityOfficer to support our efforts at DISA. Key Responsibilities: • Verify data security access controls based on the Joint Special Access Program Implementation Guide (JSIG). • Implement media control procedures and continuously monitor for compliance. • Verify data security access controls and assign privileges based on need-to … Apply and maintain required confidentiality controls and processes. • Verify authenticator generation and verification requirements and processes. • Execute media sanitization (clearing, purging, or destroying) and reuse procedures. • Protect Controlled Unclassified Information (CUI), Special Access Programs (SAP), Sensitive Compartmented Information (SCI), and Personally Identifiable Information (PII). • Create and manage the Body of Evidence (BOE). • Maintain privilege access … control logs. • Create and manage Interconnection Security Agreements (ISA). • Ensure JSIG compliance of applications within multiple accredited boundaries. • Track vulnerabilities by creating Plan of Action and Milestones (POA&M). • Manage the configuration and documentation in the program's instance of Enterprise Mission Assurance Support Services (eMASS). • Maintain and manage continuous monitoring of DoD Security Technical More ❯
Summary The Senior Information System SecurityOfficer (Sr. ISSO) will assist in preparation, development, and maintenance of specialized Information Systems (IS) security plans used to obtain/retain DCSA accreditation. Essential Duties and Responsibilities may include the following. Other duties may be assigned. Review and revise IS system plans documentation based on analysis of the … existing equipment configuration. Document any changes or special security requirements. Provide day-to-day technical support to classified IS including adherence to policies, procedures, and best practices. You will be required to oversee the system compliance, and auditing of the information systems. Oversees the information systems readying system configurations for ISSM certification and/or DCSA accreditation …/assessment. Assist with the design, develop, and implement annual IS security training for the end-users. Similar but specialized training will also be given to the Data Transfer Agents DTAs and SAs annually. Assists the SAs in the implementation and validation of security relevant controls on computing systems; network devices such as switches, routers and firewalls; SAN More ❯
Aufgaben Profil Wir bieten InformationSecurityOfficer (m/f/d) Founded in 1853, our client, the Prinzhorn Group , is still a family owned and managed group with 10,000 employees in 16 countries, and an European market leader in the corrugated packaging, paper and recycling industries. With an annual turnover of 2,9 billion Euro … for the future, Prinzhorn Group is committed to "living circularity" as its purpose and embraces "people", "performance" and "responsibility" as its main core values. In order to strengthen the InformationSecurity Team in Vienna we are looking for you. YOU WILL. Main tasks Further development of the ISMS and ensuring compliance in accordance with ISO 27001 and NIS … requirements Participation in the development and continuous improvement of security policies, standards, and processes at the group level Conducting risk assessments, audits, and gap analyses, as well as supporting the implementation of corrective actions Organizing awareness campaigns and training sessions focused on IT security and data protection Advising managers and employees, and handling inquiries and projects related to More ❯
Information Assurance, IAVA, System Security Plans (SSPs), RMF, Windows, Linux, Authorization to Operate, Verification and Validation, Security+, Security X, CASP+, NIST 800-53 Due to federal contract requirements, United States citizenship and an active TS/SCI security clearance and polygraph are required for the position. Required: Must be a US Citizen. Must have TS/…/active polygraph (Polygraph must be within the last five (05) years). At least twelve (12) years of direct/relevant experience Bachelor's degree in Computer Science, Information Assurance, InformationSecurity, System Engineering or related discipline from an accredited college or university is required. Four (04) years of additional relevant experience on projects with similar … processes may be substituted for a bachelor's degree. Security+ Certification or Security X (previously known as the CASP+) Certification required Must have experience as ISSO working independently, and/or on teams maintaining secure information system operations in isolated, connected and standalone environments. Must have at least five (05) years of experience using tools to support IAVA More ❯
Leeds, West Yorkshire, England, United Kingdom Hybrid / WFH Options
Reed
One of Reed Technology’s best MSPs clients has a requirement for a CISO to come on board and deliver strategic security leadership, regulatory guidance, and cyber risk oversight to financial services clients. Further details as follows: Role: Chief InformationSecurityOfficer (CISO) Day rate: Competitive OUTSIDE IR35 Time commitment: Expected time commitment – 2-3 days … days depending on client engagement Start date: ASAP (Targeting mid-June) Location: Remote About the Role We are seeking a highly experienced and strategic Contract vCISO to provide expert security leadership to our financial services clients. This role is ideal for a senior security professional who thrives in a client-facing, advisory capacity and is passionate about helping … organisations meet regulatory expectations and strengthen their cyber resilience. As a vCISO, you will act as an outsourced Chief InformationSecurityOfficer, delivering tailored security advice, overseeing cyber risk management, and supporting clients through regulatory and audit readiness processes (e.g., ISO 27001, SOC 2). You will also play a key role in shaping and expanding More ❯