Job description
08/05/2024, 12:00
Cyber Security Officer
Leek Wootton
Fixed Term Contract 2 years from start date.
Full Time
Salary £49,866 - £60,969
The closing date for this post is 12 noon on 31st October 2022
Those currently eligible on the redeployment register will be given prior consideration.
As a key role in the Strategy and Architectural team based in Digital Services function, this role is responsible for ensuring ICT systems have the appropriate level of security, confidentiality, integrity and availability.
Work with the Cyber Security Architect to implement and operate security controls and management plans to maintain and protect the confidentiality, integrity, availability, dependability and accountability of information and information systems with legislation, regulation and relevant standards.
Main Responsibilities:
Support and maintain the forces security at all times with it be the day to day operational running or during the planning, design, development and documentation of new technical solutions.
To support the Digital services in ensuring business continuity and recovery testing and associated cyber security activities.
Work with colleagues to perform risk assessments, business impact assessments and manage information security risks in accordance with Warwickshire Police’s risk management framework.
To participate in and constructively contribute to internal security forums, ensuring that ICT security actions are aligned to organisational priority and need.
To collaboratively develop, produce, review and implement ICT security policies and procedures and support Information Security colleagues with any education/awareness initiatives, providing input on matters related to technical security.
To monitor the operation of security plans and controls and propose, define and operate new or revised controls in order to keep the impact and occurrence of information security incidents within the Force’s risk appetite levels.
To review technical security controls and assessments for projects and activities; advise on readiness for handover into ICT support.
To take responsibility for understanding business requirements, collecting data, delivering analysis and recommending options.
To be responsible for ensuring the force is compliant with Codes of Connection and related national policing IA standards and develop action plans and risk assessments to improve security where the Force is not compliant with standards and/or where risks have been identified.
To provide technical specifications and Inputs, be a key liaison for independent technical security health checks (IT Health Checks, penetration testing), taking responsibility for ensuring the timely implementation of agreed remedial action by the MSP.
To proactively monitor system alerts and notifications, collaborating with the MSP and other ICT suppliers to ensure that systems and services provided to the Force comply with the Force’s security standards and protocols, ensuring security vulnerabilities are identified and remediated.
To undertake other duties commensurate with the nature, level of responsibility and grading of this post, as required.
Knowledge:
Degree in an ICT subject or significant equivalent work experience.
A recognised professional information security qualification or certification such as CISM, CISSP, ISO27001, CPI Data Security Standard or similar.
Knowledge of risk management.
Knowledge of security legislation.
Understanding of IT and related management methods (eg ITIL, PRINCE2, Agile).
Experience:
Significant experience of being the organisational lead on technical security and providing associated expertise to projects, activities, colleagues, and senior management.
Significant experience of implementing and applying national policing technical security standards.
Demonstrable experience of coordinating penetration and other security testing, and ensuring completion of any agreed remedial action.
Exposure to disaster recovery and continuity exercises.
Experience of developing and maintaining security architectures and procedures.
Experience of being the lead for significant ICT security incidents.
Experience of managing sensitive enquiries confidentially.
Experience of liaising with external authorities on ICT security.
Experience of working with intrusion detection and/or prevention software.
Experience with security provision for Cloud-based solutions
Key Skills:
Strong problem-solving skills with ability to gather and assimilate information.
Demonstrate a high level of communication, negotiation and influencing skills.
Ability to think ahead and anticipate/mitigate risks and find suitable solutions to issues.
Demonstrate ability to communicate with key stakeholders and suppliers with the flexibility to adjust approach and style accordingly.
Excellent people skills built on a combination of great listening, empathy, insight and intellect.
Ability to positively guide others and influence change within organisations
Confident in the ability to be professional and influential on key issues within portfolio area.
Writing and maintaining technical documentation
Special Conditions
Requirement to participate in on call rota
Regular travel throughout Warwickshire
We want our organisation to be as diverse as the community it serves. We welcome applicants from all sections of the community.
You will be required as part of Warwickshire Police recruitment process to successfully complete vetting and credit checks.
PLEASE APPLY ON THE RECRUITMENT PORTAL AND SEND A COPY OF YOUR CV TO - [email protected]
Converted File Cyber Security Officer Job Profile.docx.pdf – 180KB