Location
About the job
Job summary
We welcome applications from all communities and we don’t discriminate against any identity. We’re interested to hear from you, regardless of your background.
Are you an analytically minded individual looking for your next challenge in information security risk management?
Are you interested in developing your Information / Cyber security experience whilst being developed with industry recognised qualifications?
If so, we’d love to hear from you!
The Maritime and Coastguard Agency (MCA) implements the government’s maritime safety policy in the United Kingdom and works to prevent the loss of life and occurrence of pollution on the coast and at sea.
Safer lives, Safer ships, Cleaner seas.
Our vision is to be a world-leading organisation, accelerating the transition to sustainable shipping with non-negotiable safety standards. We put our people, our customers and our planet at the heart of everything we do.
Find out more about what it’s like working at the Department for Transport.
Job description
We are looking for a Security Specialist to join us within our growing Information Security Team. The Security Specialist will support, influence and contribute to the Information Security strategy and function for the MCA via internal consultation, evaluation and assessment to influence security best practice and ensure information security requirements are fully considered and implemented as part of the design throughout projects and operational processes.
The successful applicant will collaborate with a variety of stakeholders across the MCA, providing security advice, feedback and input around key areas including programmes and projects, work packages, security vetting and system security. They will ensure compliance to internal and external security standards through the service delivery of audit services and will liaise with other IT service functions to ensure the appropriate level of security controls are applied to support and protect operational business needs. The role holder will share line management responsibility for one direct report, supporting, mentoring and coaching them to achieve successful outcomes.
This is a fantastic opportunity to enjoy a role which offers a great variation in work and lots of senior stakeholder engagement and exposure across all functions within the organisation, making a key impact in supporting an emergency service to deliver crucial life-saving services. You will join a supportive and growing team with amazing training opportunities.
Responsibilities
Responsibilities include but are not limited to:
- Being responsible for the Information Security risk management process – including identification, assessment and risk mitigation activity.
- Consulting on and assessing projects and operational work packages to discover and document related risks; defining controls and mitigations and ensuring implementation in line with ISMS (Information Security Management Systems) and governance standards.
- Deciding and directing security works for projects, strategic programs, procurement and compliance driven activities.
- Resolving security related incidents according to agreed policy and playbooks with a view to limiting organisational exposure as quickly as possible, communicating as appropriate and driving through workarounds and subsequently permanent fixes with the relevant teams.
- Managing the vulnerability remediation activity within the Agency ensuring these are prioritised in line with the risk management strategy and Information Security strategy.
For an in-depth insight into the role, please refer to the Role Profile attached to this advert.
This role can be based at the Southampton HQ or Fareham office. MCA supports flexible working and operates a hybrid working model between home and office for this role, giving you greater flexibility over where and when you work. Details of the arrangement will be discussed further with your line manager.
There will be a requirement for travel on official duty within the UK which may involve overnight stays away from home.
Please note, due to the nature of the role you will also be required to already hold or undergo Security Checks (SC) before commencing employment with us. Gaining SC Clearance will normally require you to have been a resident in the UK for a minimum of 5 years, and only candidates who meet this requirement will be considered for the role.
Person specification
About You
This role requires an individual who holds CISM/CISSP/CISA/CISP or has equivalent experience. You will have experience of aligning working practices to security standards, best practices and industry guidelines along with experience in information security risk management aligning with business strategies & requirements.
Effective collaboration is important to you and you’re able to build rapport quickly, resulting in strong and trusted working relationships across various operational areas. You’re a confident communicator, able to liaise with stakeholders at all levels and competent in presenting information clearly to ensure understanding, translating technical knowledge into business value.
A self-starter, you are able to remain motivated whilst managing your own workload, balancing and prioritising tasks.
You will be an analytical thinker with good problem-solving skills, able to consider critical factors, learning and research in order to make informed decisions.
Behaviours
We’ll assess you against these behaviours during the selection process:
- Changing and Improving
- Communicating and Influencing