This role sits within the Group CISO team which is responsible for information security across the Riverstone International group. This is a great time to join our growing organisation following recent expansion, with a global presence now spanning UK & Europe, Bermuda and the USA. There is also a significant amount of technology work underway with a multi-year digital transformation and modernisation programme in flight. The role holder will be responsible for Cyber Security as a function, with an initial focus on UK & Europe but with a goal to embed a group-wide discipline.
Team
We're looking for a hands-on leader who will manage our team of cyber security professionals, comprising two Cyber Security Associates based in London and an Information Security Officer. There will also be matrix influence of security-focussed colleagues in our Beverly, Massachusetts office. As such, the role holder is expected to be based in our London office at least three days per week.
Responsibilities
Strategic Leadership
:
Oversee the operational implementation of the organization's cyber security architecture and supporting processes
Work closely with the Group CISO and other senior leaders to align operational efforts with the organizational strategy
Work closely with the Data Governance & Security lead, who is responsible for the enhancement and maintenance of our policy and policy compliance framework, and the Head of IT.
Cyber security Operations
:
Evaluate the current cyber security toolset and make recommendations on new solutions to enhance security capabilities when appropriate
Foster a strong and collaborative partnership with the organization's SOC provider, ensuring effective incident detection and response
Monitor and respond to network and system security threats, such as unauthorized access and cyber-attacks
Conduct regular security audits, identify vulnerabilities, and execute mitigation strategies
Lead the operational response to security incidents and breaches, ensuring timely resolution and communication with relevant stakeholders
Vendor and Stakeholder Management
:
Manage vendor relationships to ensure optimal service delivery and alignment with the organization's cyber security need
Innovation and Continuous Improvement
:
Drive continuous improvement initiatives to enhance the organization's cyber security posture
Competence - Experience
Bachelor's degree in Information Security, Computer Science, Engineering or a related discipline.
Substantial experience in cyber security operations and leadership
Certifications such as CISSP, CISM, or CEH are highly desirable
In-depth understanding of cyber security frameworks and standards (e.g., NIST, ISO 27001)
Familiarity with UNIX scripting and tools such as Splunk is an advantage
Familiarity with industry-standard security frameworks such as ISO 27001, NIST, COBIT, and CIS Controls8. Understanding how to apply these frameworks to an organization's security strategy is crucial
If you are passionate about technology and have a proven track record in Cyber Security, we encourage you to apply for this exciting opportunity to shape innovative solutions within our organisation.
Job Types: Full-time, Permanent
Pay: From 110,000.00 per year
Additional pay:
Bonus scheme
Benefits:
Additional leave
Bereavement leave
Casual dress
Company events
Company pension
Enhanced maternity leave
Enhanced paternity leave
Free flu jabs
Health & wellbeing programme
Life insurance
Matching gift scheme
Paid volunteer time
Private dental insurance
Private medical insurance
Sabbatical
Sick pay
Schedule:
Day shift
Monday to Friday
Application question(s):
Ability to work in London office 3 days per week?
Work authorisation:
United Kingdom (required)
Work Location: Hybrid remote in London EC3R