Job description
Overview:
Senior Security and Information Risk Advisor | Hybrid Working with Glasgow or Dundee base location | £41642 - £49860 + £5000 DDaT Pay Supplement after 3 month qualifying period | Full or Part Time Hours | Flexi-time | 25 Days annual leave (increasing to 30 after 4 years’ service) plus 11.5 Public and Privilege| Contributory Pension Scheme (employee contributions 5.45% employer contributions 27.1 - 27.9%)
We are currently seeking applications for a Senior Security and Information Risk Advisor based in Glasgow or Dundee. This is an exciting opportunity to lead on technical projects as the security representative. The post holder will provide pragmatic security and information assurance advice to a range of stakeholders including business areas and the wider Scottish public sector. A security qualification or professional security certification is desirable but relevant experience will be considered
Social Security Scotland, an executive agency of the Scottish Government, is the largest and most complex IT and digital change programme since devolution. With a lifetime budget of over £300m, delivering a social security system that will support the people of Scotland for decades to come. Due to the demands of this exciting programme of work, the Agency is currently experiencing rapid growth and we require more talented digital, security and technology experts to join us.
The Digital Risk and Security branch comprises 4 areas; security risk and assurance, security architecture, cyber operations, and security engineering and protective monitoring.
We are responsible for developing and leading the strategic approach to managing security risk and for developing the operational cyber, physical and personnel security function for Social Security Scotland.
What do we offer you?
Flexible and Hybrid Working
Base office location can be in either Dundee or Glasgow
About Us
Our benefits help people from all walks of life in Scotland. We are committed to recruiting a diverse workforce that is representative of the clients we serve.
Find out more about us here
Responsibilities:
How to apply
A CV (no longer than two pages) setting out your career history, with key responsibilities and achievements - this is accessed through the candidate profile.
It is important that you also take time to complete a personal statement (no longer than 750 words). This should clearly demonstrate how your skills, qualities and experience meet the following essential criteria:
When reviewing your application, we will be assessing your career history and achievements against the essential criteria for the role. We’re looking for examples of things you have previously achieved or your knowledge in a particular field which are relevant to the role.
B3 Security and Information Risk Advisor - DDaT Social Security Scotland - Further information
How to Apply - Digital Jobs
Information Session
We will be talking about:
Interview/Assessment Information
Recruitment Contact
Please note that we will not engage with external recruitment agencies regarding this post.
Further Information
The successful candidate will be expected to remain in post for a minimum of 3 years unless successful in gaining promotion to a higher Band or Grade.
Social Security Scotland are a Disability Confident Employer. We will consider and implement any reasonable adjustments you may require throughout the recruitment process and during the course of your employment, should you be successful in securing a post. If you feel you may require assistance with any part of our recruitment process, please contact us at [email protected].
Social Security Scotland’s recruitment processes are underpinned by the recruitment principles of the Civil Service Commissioner, which outline that selection for appointment be made on merit on the basis of fair and open competition - Recruitment - Civil Service Commission (independent.gov.uk)
If you feel at any time your application has not been treated in accordance with the values in the Civil Service Code and/or if you feel the recruitment has been conducted in such a way that conflicts with the Civil Service Commissioner’s Recruitment Principles, you can make a complaint, by contacting Social Security Scotland at [email protected] in the first instance. If you are not satisfied with the response you receive you can contact the Civil Service Commissioner.
If you experience any difficulties accessing our website or completing the online application form, please contact the Resourcing Team via [email protected]
Senior Security and Information Risk Advisor | Hybrid Working with Glasgow or Dundee base location | £41642 - £49860 + £5000 DDaT Pay Supplement after 3 month qualifying period | Full or Part Time Hours | Flexi-time | 25 Days annual leave (increasing to 30 after 4 years’ service) plus 11.5 Public and Privilege| Contributory Pension Scheme (employee contributions 5.45% employer contributions 27.1 - 27.9%)
We are currently seeking applications for a Senior Security and Information Risk Advisor based in Glasgow or Dundee. This is an exciting opportunity to lead on technical projects as the security representative. The post holder will provide pragmatic security and information assurance advice to a range of stakeholders including business areas and the wider Scottish public sector. A security qualification or professional security certification is desirable but relevant experience will be considered
Social Security Scotland, an executive agency of the Scottish Government, is the largest and most complex IT and digital change programme since devolution. With a lifetime budget of over £300m, delivering a social security system that will support the people of Scotland for decades to come. Due to the demands of this exciting programme of work, the Agency is currently experiencing rapid growth and we require more talented digital, security and technology experts to join us.
The Digital Risk and Security branch comprises 4 areas; security risk and assurance, security architecture, cyber operations, and security engineering and protective monitoring.
We are responsible for developing and leading the strategic approach to managing security risk and for developing the operational cyber, physical and personnel security function for Social Security Scotland.
What do we offer you?
We provide an employment package that attracts, develops, and retains only the best talent, including, but not limited to;
- B3 - Salary between £41,642 - £49,860 plus a £5000 annual Digital, Data and Technology (DDaT) pay supplement after a 3 month qualifying period. This supplement is backdated and paid with your monthly salary.
- Flexible working arrangements with potential of up to 4 days off per month, in addition to your annual leave.
- You will have an annual leave allowance of 25 days, rising to 30 after 4 years plus an additional 11½ days public and privilege holidays.
- Workplace adjustments for everyone that needs them to ensure your comfort and safety in your new role.
- Learning and development opportunities to support your personal and professional growth.
- Career progression – join a rapidly growing and developing organisation with excellent opportunities for career advancement.
- Contributory Pension Scheme (employee contributions 5.45% employer contributions 27.1 - 27.9%).
- Health and wellbeing support including 24 hour access to our Employee Assistance Programme, plus counselling support available for all
- Discounts and savings in a number of high street and online outlets
DDaT Pay Supplement
This post attracts a £5,000 DDaT pay supplement after a 3 months competency qualifying period. Pay supplements are temporary payments designed to address recruitment and retention issues caused by market pressures and are subject to regular review. This post is part of the Scottish Government DDaT profession. As a member of the profession, you will join the professional development scheme, currently BCS RoleModelplus.
Flexible and Hybrid Working
As a digital division we embrace a hybrid working style where all colleagues are expected to be in our buildings in Glasgow and Dundee between 1 and 2 days per week (6 days in a 4 week) cycle. This hybrid approach provides a combination of flexibility for staff, supporting a combination of staff development and organisational culture.
Base office location can be in either Dundee or Glasgow
About Us
Social Security Scotland is an Executive Agency of the Scottish Government.
Our benefits help people from all walks of life in Scotland. We are committed to recruiting a diverse workforce that is representative of the clients we serve.
Find out more about us here
Responsibilities:
As a Senior Security Risk and Information Advisor, you will already have a good understanding of security standards and policy and use this experience to provide effective advice and guidance on cyber security controls. You will have the opportunity to represent Digital Risk and Security project teams and boards and contribute to the development of policies, standards and guidelines.
- Provide advice and guidance on security strategies to manage identified risks and ensure adoption and adherence to standards.
- Obtain and act on vulnerability information and conducts information security risk assessments and business impact analysis on complex information systems.
- Investigate major breaches of security, and recommends appropriate control improvements
- Contribute to development of information security policy, standards and guidelines. Interprets information assurance and security policies and applies these in order to manage risks
- Provide advice and guidance to ensure adoption of and adherence to information assurance architectures, strategies, policies, standards and guidelines
- Use control testing information to support information assurance assessments
- Management of problems and issues, resolutions, corrective actions, and lessons learned
- Collection of feedback from customers in order to develop and enhance customer and stakeholder relationships.
- Leading an mentoring a small number of security support staff.
No specific qualifications required for this Post.
How to apply
To apply for this post, you will need to provide the information requested below via the online application process.
A CV (no longer than two pages) setting out your career history, with key responsibilities and achievements - this is accessed through the candidate profile.
It is important that you also take time to complete a personal statement (no longer than 750 words). This should clearly demonstrate how your skills, qualities and experience meet the following essential criteria:
- Demonstrable experience of providing advice to a range of stakeholders on security standards and policy such as the Cabinet Office Security Policy Framework, ISO/IEC27001:2022, Cyber Essentials, PCI DSS, Cyber Resilience Framework
- Demonstrable experience of undertaking Information Security Risk assessments in-line with industry best practise methodologies.
- Excellent communication skills and experience of communicating to different audiences, including senior management, with the ability to describe technical issues in non-technical manner.
- Demonstrable experience of managing multiple projects and initiatives with limited supervision; working effectively across multiple stakeholder groups, geographies and service lines.
When considering how your experience relates to the role, please tailor your CV and personal statement to reflect the role and the essential skills/criteria as described in the job description.
When reviewing your application, we will be assessing your career history and achievements against the essential criteria for the role. We’re looking for examples of things you have previously achieved or your knowledge in a particular field which are relevant to the role.
B3 Security and Information Risk Advisor - DDaT Social Security Scotland - Further information
How to Apply - Digital Jobs
Information Session
We will be running online information sessions on 25/05/2023 at 11:00.
We will be talking about:
- The Digital Risk and Security team and role
- Working for Social Security Scotland
- Information on our recruitment process
- Q&A with the hiring manager
Please feel free to join us using the link below to find out more about the role and working for Social Security Scotland - https://www.eventbrite.co.uk/e/senior-security-and-information-risk-advisor-information-session-sira-tickets-635325093457
Interview/Assessment Information
Here are details of the Competencies required for this role, you will be tested against these competencies if you are invited to attend an interview and undertake a digital assessment:
- Self Awareness
- Communications and Engagement
- Improving Performance
- Analysis and Use of Evidence
- DDaT Technical Skill Assessment
Reserve List
In the event that further posts are required, a reserve list of successful candidates will be kept for up to 9 months.
Recruitment Contact
To learn more about this opportunity, please contact our Resourcing Team who can be contacted by emailing [email protected]
Please note that we will not engage with external recruitment agencies regarding this post.
Further Information
This post requires the successful candidate to clear additional National Security Vetting clearance before a start date can be offered.
The successful candidate will be expected to remain in post for a minimum of 3 years unless successful in gaining promotion to a higher Band or Grade.
Social Security Scotland are a Disability Confident Employer. We will consider and implement any reasonable adjustments you may require throughout the recruitment process and during the course of your employment, should you be successful in securing a post. If you feel you may require assistance with any part of our recruitment process, please contact us at [email protected].
Social Security Scotland’s recruitment processes are underpinned by the recruitment principles of the Civil Service Commissioner, which outline that selection for appointment be made on merit on the basis of fair and open competition - Recruitment - Civil Service Commission (independent.gov.uk)
If you feel at any time your application has not been treated in accordance with the values in the Civil Service Code and/or if you feel the recruitment has been conducted in such a way that conflicts with the Civil Service Commissioner’s Recruitment Principles, you can make a complaint, by contacting Social Security Scotland at [email protected] in the first instance. If you are not satisfied with the response you receive you can contact the Civil Service Commissioner.
If you experience any difficulties accessing our website or completing the online application form, please contact the Resourcing Team via [email protected]
#LI-DNI
Social Security Scotland
www.socialsecurity.gov.scot
Glasgow, United Kingdom
Unknown / Non-Applicable
Unknown
Company - Public