Security Compliance Manager

BT

View: 106

Update day: 01-06-2024

Location: Manchester North West

Category: Legal / Contracts Security

Industry: Telecommunications

Loading ...

Job content

Our mission is to break down the barriers of today to release the potential of tomorrow. Join us today and release yours.

There are two things that we want to share with anyone considering joining us.

Firstly, we’ve got big ambitions for our colleagues and the future of the organisation. These include our vision that inclusion and accessibility drive every conversation we have and every decision we make. We want our workforce to fully represent the communities and customers we serve, because a diverse business is a better business. We value every colleague, their diversity and the contribution that they make. When we say you’re welcome at BT, we really mean it.

Secondly, the one thing the pandemic has taught us is that a lot of current and future colleagues, where and when possible, want to embrace hybrid working. Therefore, we are introducing smart working at BT. Smart working means having the flexibility to choose, as a team, how and where you work depending on your team’s deliverables and needs; when you are at your shared core location to connect with others and when not. It may not be for every role, and, as part of the recruitment process, you’ll have the chance to discuss smart working and how it might work for the job you are applying for.



About this role

Following internal audits, red team or external testing we find security compliance issues that require remediation. Normally these are dealt with as business as usual activities, but on occasion they indicate a more complex underlying issue that requires a longer term or strategic solution. In these cases a project will be created to address the issue and a security consultant allocated. This role applies to these security compliance consultants. Following internal audits, red team or external testing we find security compliance issues that require remediation. Normally these are dealt with as business as usual activities, but on occasion they indicate a more complex underlying issue that requires a longer term or strategic solution. In these cases a project will be created to address the issue and a security consultant allocated. This role applies to these security compliance consultants.

You’ll have the following responsibilities

Strategic Security Compliance Projects:

You will be responsible for the delivery of strategic security compliance projects, addressing a particular deficiency in our security compliance environment. Identifying the reason for the compliance concern and the scope of any remediation work required.

  • Identifying key stakeholders and SMEs and facilitiating the brainstorming, capturing information and gaining commitment to address issues.
  • Delivering detailed briefings and reports to stakeholders as required. Distilling and reconciling information and presenting it in a way that can be understood by audiences at different levels.
  • Development and delivery of project plans.
  • Providing direction and security advice, utalising an appropriate range of specialists as required.
  • Ensuring that solutions meets defined control objectives, forms part of BT’s security compliance environment and follows BT’s three lines of defence model.
  • Working with Technology Compliance, Assurance and Security Programme o deliver the project to agreed timeframes and quality standards.

Security Governance:

Responsible for providing oversight of security working groups and providing a forum for discussion and agreement on the direction to be taken in respect of security risks/issues that do not warrant consideration by the Security Council.

  • Establishing and monitoring working groups, and enuring they are progressing cyber risks/issues.
  • Ensuring risks and issues are captured and tracked to resolution.
  • Monitoring security initiatives to ensure they align with the overall security objectives.
  • Ensuring awareness of proposed changes to the group cyber risk, security. policies, standards or control environment.
  • To ensure that all security mitigation/improvement activities deliver overall risk reduction.

You’ll have the following skills & experience

Story-telling: The ability to effectively articulate the requirement for a given security compliance project, and the need for security compliance to form part of our operating model.

Business acumen: Have a good knowledge of the security industry in general, and BT’s operations in particular, in order to ensure security controls are balanced, appropriate and in line with industry best practise.

Security Knowledge: To have a good cross section of security knowledge covering:

  • Security principles.
  • Security policy, standards, benchmarks and risk assessment framework, including ISO27001, Centre for Internet Security, and Information Security Forum (including preferably IRAM 2 risk assessment methodology).
  • A sound knowledge of system and network technologies and protocols.
  • A good technical knowledge of at least one operating system.
  • A thorough understanding of current security threats, attack and defensive technologies, and associated operational processes.

Security Certifications: As a minimum, to be a Certified Information System Security Professional (CISSP) (or equivalent e.g. CISM). Preferably to be a ISO 27001 lead implementer or internal auditor. To be a member of the Institute of Information Security Professionals (IISP) or other professional security body.

Risk Management: A sound knowledge of enterprise risk management and having undertaken BT Enterprise Risk Management training. A thorough understanding of BT’s three lines of defence model.

A proven track record in security consultancy in a large and complex, preferably telecommunications, environment. (Mandatory)

Benefits

  • Competitive salary
  • 25 days annual leave (plus bank holidays)
  • 10% on target bonus
  • Option to join the Healthcare Cash Plan
  • Pension scheme
  • Shares Plan
  • Flexible benefits: cycle to work, childcare vouchers, healthcare, etc.
  • Discounted BT product


About BT

BT has a key role in British society, fostering change and leading technology innovation. From delivering the Olympics, to supporting the emergency services, to investing more into research than any other UK technology company, we take pride in everything we do - and in the people who work here.


We’re now a global company operating at the forefront of the information age, employing 90,000 people in 180 countries. And we’re on a mission. Guided by our core values of Personal, Simple and Brilliant our goal is to help customers, communities and businesses overcome barriers and release their potential.


So, if you’re interested in the power of potential, why not join us today and release yours? You can read more here about what it’s like to work at BT

How to Apply

It’s easy to apply online; you just need a copy of your up-to-date CV and to follow the step-by step process. Don’t worry if you need to make changes - you’ll have the opportunity to review and edit your work on the final page. We look forward to receiving your application!







COVID-19 Notice: We’ve changed our recruitment process so that we can continue to offer exciting opportunities in BT. We’ve moved to ‘virtual hiring’ until further notice - which includes video interviews and virtual on-boarding, to make sure that we maintain candidate and employee safety.

Loading ...
Loading ...

Deadline: 16-07-2024

Click to apply for free candidate

Apply

Loading ...
Loading ...

SIMILAR JOBS

Loading ...
Loading ...