Skip to main content
Two individuals seated indoors, facing each other, in an office setting with large windows, furniture, and a red cushioned partition

Accounts Assistant

Manchester
Apply
Job ID 1007611 Job category Finance and Audit Hours per week 37.5 Closing date 28-07-2022 Salary Wl6b

Role Summary

The role of Security Operations Lead will be responsible for 10 direct reports and the oversight of the technical security outsourced services.  The role will provide Subject Matter Expertise in the area of Information Security Operations across the Co-op and its Business units. The Information Security Operations strategy will be aligned to industry best practices in support of the broader Co-op Business strategy. The Information Security Operations Manager will be responsible for protecting the Co-op information systems from external and internal attack or compromise preserving the confidentiality, integrity and availability of Co-op Business, Member and Customer information.

Key responsibilities

Work closely with, and report to the Information Security Director

-Develop, own and maintain senior stakeholder relationships and be a high value member of the Information Security management team, contributing to short and long term decisions on Business strategy

- Management of the Information Security Operations team, responsible for team development including recruitment, training, appraisals and performance reviews

- Protect the Co-op information systems from external and internal attack or compromise preserving the confidentiality, integrity and availability of Co-op Business data

- Manage delivery of outsourced security monitoring and alerting services, assisting with investigations as a result of escalated problems and security alerts from Security Information & Event Management systems (SIEM)

-Accountability for the management of security incidents and forensic investigations

-Lead the development of service SLA/KPI monitoring and reporting of all Security related information and intelligence

-Manage information security activities to address emerging, existing and evolving threats and vulnerabilities appropriately

-Select and manage 3rd party security vendors engaged to provide additional and/or specialist support (e.g. penetration testing facilities, application testing services, monitoring services)

-Keep abreast of the latest news, threats and vulnerabilities within the Information Security industry

Freedom to Make Decisions

With in the confines of the role and allocated budget

Key Relationships and Influence

Influence and negotiate up to senior management level, and externally as required, to help achieve desired objectives in own business area, supporting good decision making.

Manage and develop junior specialists

Planning Horizon

Set the operational security strategy for up to 3 years ahead. Develop detailed deliver plans in support of the strategy.  Input into the overall Information Security Strategy and be accountable for its delivery where appropriate.

Knowledge, Skills, Experience

Professional qualification if relevant for the role or equivalent by experience

-senior subject matter expert with broad market and best practice knowledge

-significant Business experience at a senior level

-ability to set strategy for area pf sub-function

-ability to lead a team of senior professionals, developing them and managing performance

-strong influencing skills, including the ability to advise and influence at senior levels

-track record of successful change management

-ability to manage a budget

-experience of cross functional working and successful managing conflicting priorities

- Knowledge of Information Security best practices including ISO27000 series and PCI-DSS

-Possess a strong technology background with the ability to challenge or validate technology decisions from a position of knowledge and experience

-Preferably postgraduate degree level education, CISSP/CISM/SANS certified or other relevant Information Security qualifications

- Broad technical experience in the areas of Windows, Linux, Solaris, Infrastructure, Network, Virtualization, Cloud, Endpoint, SIEM, Security products and toolsets

-Extensive experience in Security Operations and team management

-Evidence of working in large and complex environments subject to compliance requirements such as ISO 27000 Series, PCI DSS, FCA(UK), SOX and Euro SOX

-Work history and experience to include the following:

   Experience in setting up and implementing Incident Management procedures

   Experience in managing security incidents and forensic investigations

   Ability to prioritise workload based on urgency; ability to delegate tasks, and communicate to a range of audiences including executive management

   Demonstrated analytic and critical thinking skills

   Demonstrated ability to ensure compliance, monitoring of assets, and making rapid notifications via mass communication tools

   Management of staff rotas to ensure a 24/7/365 Security Operation is maintained through the implementation of an on-call provision outside of Business working hours

-Proven real-world understanding of Information Security Operations, changing security threats and mitigations, and evidence of working with bodies providing points of view on security risk and mitigations through the application of an effective Security Operations team

-Have a proven track record of executing a strategic roadmap for the successful implementation of Security Operations Centre

Apply

You have not viewed any jobs yet

You have no saved jobs

Sign up to job alerts

Don't see what you’re looking for? Sign up and we'll notify you when roles become available.

Interested InSelect a job category from the list of options. Search for a location and select one from the list of suggestions. Finally, click “Add” to create your job alert.

  • Finance and Audit, Manchester, England, United KingdomRemove

By submitting your information, you acknowledge that you have read our privacy policy and consent to receive email communication from Co-op.

Employee smiling pointing at laptop computer