Location
About the job
Job summary
That kind of work means we deal with highly sensitive data every day: matters of national importance; secure emails between government departments; even personal details of members of the public, because of our support for passport and visa application systems.
With all that in mind, our information has to be absolutely airtight. We have to ensure that storage solutions are secure; that end-user devices are safe. And we have to do all that not just for our customers but for our own systems too. As our new Lead Security Information Risk Advisor, you’ll be at the heart of this crucial effort.
Job description
We need to be ahead of any threat to our data – so we need you to be a confident expert, with qualifications in information security and a depth of understanding of both practice and legislation in the field. Using that knowledge and working with teams across the organisation, you’ll help us deliver the best possible information security solutions – both for our own systems and our work for customers. You’ll risk assess current systems, planning for every eventuality. You’ll scope out the risks and vulnerabilities of new products, and new suppliers too. And at the same time, you’ll always see the bigger picture – the knock-on effect that new technologies could have for other systems.
Share and support to shore up our data
You aren’t just an expert: you’re also a collaborator and a communicator; an advocate for sharing your knowledge to strengthen the team. You know that security isn’t just about the best tech: it’s also about engaging the whole workforce in why security matters and how they can help. So, as you make recommendations to help colleagues comply with legislation, you’ll also support them to understand and embrace best practice, creating a stronger and more secure future organisation. And as you nurture the team around you, you’ll be part of the customer promise that we all commit to: to be reliable and responsive, to build relationships, and above all, to be easy and enjoyable to work with.
Find flexibility in a role that makes you proud
You’re supporting the security of our whole organisation – and in return, we support you too. You’ll have training to stay ahead of the latest tech developments. You’ll be surrounded by an inclusive, diverse team. And you’ll have the freedom to find a work pattern that’s right for you. Flexible working is a core part of our offer here at FCDO Services, wherever the role allows, and the introduction of our hybrid work model helps people find their own balance between home and office too. It’s the chance to make your role truly work for you – within an organisation where you’ll work to protect people all over the world every day. It’s your job, bigger.
All our employees have to be security cleared before being appointed, so you will need to undergo a vetting process as part of your application. This role requires you to go through Developed Vetting (DV). You can find out more about vetting on our website.
There is a pay award pending which is currently being negotiated with the Trades Unions. It’s proposed as part of the offer that our pay ranges will be adjusted with salary minima’s being uplifted by between 4.5% and 8.6% depending on grade. Details will be confirmed once the pay award is agreed.
It takes a diverse team to protect a diverse world.
It takes a diverse team to protect a diverse world.
The vital work we do takes an incredible community of colleagues, with different skills, backgrounds, cultures and identities. We support every individual, so that you always know you’re welcome and valued. It’s what makes us a Disability Confident employer. And why we’re recognised as a ‘Carer Confident’ workplace. And it’s how you know you’re joining an inspiring, inclusive organisation.
Hanslope Park based posts attract a Location Allowance of £1,750 per annum.
FCDO Services are regulated by the Civil Service Commission.
Person specification
Skills
- Stakeholder management
- Lead in a matrix structure
- Bridge technical and non-technical
- Applied security capability
- Information Risk Assessment and Risk Management
- Risk understanding and mitigation
- Protective security
- Security architecture
- Threat understanding
Qualifications, Knowledge and Experience
Essential
- IS related qualifications, e.g. CESG Certified Professional; ISO 207001 Internal Auditor or Lead Implementer
- Extensive knowledge of technical and security tools and techniques
- Experience analysing proposals, processes and practices and identifying security information risks
- Line management experience
- Strong influencing and interpersonal skills
- Able to produce clear technical documentation
Benefits
- Learning and development tailored to your role
- An environment with flexible working options
- A culture encouraging inclusion and diversity
- A Civil Service pension with an average employer contribution of 27%