Information Security Lead (BISRID_054) Solution Architect, (Head of Business Assurance)



Similar documents
Job Description. Technical Architect (BISRID_55) Band: 9 ( 38,050-43,483)

Job Description. Applications Analyst (BI) (BISRID_033)

Head of Commercial & Contract Management (BISRID_046)

INFORMATION TECHNOLOGY & MEDIA SERVICES

Employability Skills Summary

The ICMCI CMC Competence Framework - Overview

CLASSIFICATION SPECIFICATION FORM

JOB DESCRIPTION: Senior Manager HR & Talent Management

JOB DESCRIPTION. T&T Security and Resilience Manager. Technology and Telecommunications. Bedford, Chelmsford or Norwich

Job description. Job title: Server Infrastructure Analyst 1

UoD IT Job Description

JOB DESCRIPTION CONTRACTUAL POSITION

Attribute 1: COMMUNICATION

JOB SPECIFICATION. Service Support Manager ORGANISATION CHART: JOB PURPOSE:

TERMS OF REFERENCE (TORs) OF CONSULTANTS - (EAG) 1. Reporting Function. The Applications Consultant reports directly to the CIO

Role Profile. Job No. (Office Use) A238. Competency Job Type

Job description Fundraising Database Analyst

ITIL 2011 Lifecycle Roles and Responsibilities UXC Consulting

JOB DESCRIPTION SYSTEMS DEVELOPMENT OFFICER - Grade 6

Job Description. Information Manager (Spoke) Band 8b

Role Activity Grade 5 PAS Professional Officer

Head of Engineering Job Description

Senior Project Manager

Senior Project Manager (Web Content Management)

Job description HR Advisor

PRCA Communications Management Standard (CMS) for In-House Teams

Secondment opportunities will be considered as will Job Share, part time and other flexible working requests.

Ambulance Victoria. Position Description

Information and Communication Technology

Job description - Business Improvement Manager

Specialist Cloud Services Lot 4 Cloud EDRM Consultancy Services

Corporate Services Directorate Number of staff responsible for 7 Budget responsibility ( )

Management & Leadership

1. CORPORATE SUPPORT SERVICES DEPARTMENT - HUMAN RESOURCES DIVISION

POSITION DESCRIPTION, PERFORMANCE MEASURES AND TARGETS

Chief Information Officer

Specialist Cloud Services Lot 4 Cloud Printing and Imaging Consultancy Services

POSITION INFORMATION DOCUMENT

Leadership and Management Framework Responsibilities

JOB DESCRIPTION. Financial Services and Support. Lead Service Desk Analyst

JOB DESCRIPTION. 1. JOB TITLE: Information Security Officer. 4. DEPARTMENT: Learning and Information Services (LIS)

GENERIC CORE MANAGEMENT CRITERIA (CMC) AND STANDARDS (SELECT WHICH ONES ARE APPLICABLE)

FAO Competency Framework

The position reports directly to the Diversification Program Manager and indirectly to the Program Management Office (PMO)

LINCOLNSHIRE COUNTY COUNCIL COMPETENCY FRAMEWORK

ROLE PROFILE. Performance Consultant (Fixed Term) Assistant Director for Human Resources

JOB DESCRIPTION Facilities Manager Soft Services. RESPONSIBLE FOR: Team Leaders and Contract Support staff

Job Description Job Title: Customer Services Team Prepared by: Mike Brean

JOB DESCRIPTION. To provide a high level of customer care to all business users who raise faults or service requests via the Service Desk.

Role Profile. Job No. (Office Use) A79

WILTSHIRE COLLEGE JOB DESCRIPTION. Curriculum Administrator fixed term for 1 year. BSS Grade 3-16,528 per annum pro rata

D-G4-L4-126 Police contact management and demand reduction review Deloitte LLP Service for G-Cloud IV

ROLE DESCRIPTION. Location: National Office Wellington Delegation level: N/A. Role of Tertiary Education Commission (Te Amorangi Matauranga Matua)

JOB DESCRIPTION SENIOR SERVICE DESK TECHNICIAN DATE: JUNE 2015 JOB PURPOSE: Provision of customer focused ICT support on the IT Service Desk.

People services operations manager

WHITE PAPER IT SERVICE MANAGEMENT IT SERVICE DESIGN 101

Head of Human Resources (Primary line manager) and Head of ICT

Manchester City Council Role Profile. Enterprise Architect, Grade 12

Kenya Revenue Authority (KRA)

Manager, Procurement and Contracts

Manager Service Transition

Business Support Service Development Manager

Job description - Fundraising Database Reporting and Solutions Analyst

JOB PROFILE. Client Relationship Manager Business Group: Government Technology Services Branch: Job Title:

Job Description. Job Title Media Manager Function PR & Corporate Communications Reporting to Director of PR & Corporate Direct Reports Media Officer

POSITION DESCRIPTION. Personal Assistant Service Manager/ Clinical Head Integrated Care Adult Mental Health Services

Catherine Booth College: School for Learning & Development. The Salvation Army Capability Framework: Generic Matrix

Human Resources Advisor 12 month fixed term contract

Relationship Manager (Banking) Assessment Plan

Applies from 1 April 2007 Revised April Core Competence Framework Guidance booklet

To provide an effective, professional and customer focussed ICT Service Desk service to the customers of the Council, NHS and all Hoople customers.

Qualification Outline

Client information note Assessment process Management systems service outline

How To Be An Itil Service Desk Manager

POSITION DESCRIPTION. Deputy Principal. Lindisfarne Anglican Grammar School. DATE March 2015

JOB DESCRIPTION. Service Desk Technician

VISION FOR LEARNING AND DEVELOPMENT

JOB DESCRIPTION. Information Governance Manager

Hospitality manager apprenticeship standard

City College Plymouth Finance & Resources Directorate Human Resources

Job description Customer Care Team Leader (Engagement)

Schedule A. MITA Career Level based on Responsibility Level (SFIA v5 Responsibility Levels)

Information Systems and Services (ISS) Post Reference No: 9B0932 Effective/Revised: September 2009

Transcription:

Job Description Job Title: Reports to: Team: Location: Information Security Lead (BISRID_054) Solution Architect, (Head of Business Assurance) BIS Nelson Job Purpose To be responsible the organization s information security risks under explicit management control through the Information Security Management System. You will have full responsibility for all information security management (including network security, SCADA, firewall security, mobile device, laptops, servers, virus protection, penetration testing etc). This will include responsibility for overseeing the support delivered by the ICT suppliers this includes the remote support teams and onsite engineers for operational support and project teams. Support may be provided both to users of the systems and to service delivery functions. Support typically takes the form of investigating and resolving issues and providing information about the systems. Working in close collaboration with the technical teams and/or with colleagues specialising in different areas, such as applications support, technical administration or applications to provide advice or training to users about information security matters. You will be responsible for 1 Security Analyst. As Information Security Leader you will: Be responsible for ensuring high quality information management security services to the user base of DCWW Be responsible for the development and delivery of the information management security roadmap for AMP5 In collaboration with the Service Delivery Leadership Team, contribute to the development and delivery of the BIS strategy in support of the corporate plan

Ensure that appropriate action is taken to investigate and resolve incidents and problems in systems and services Ensure that incidents and problems are fully documented within the relevant reporting systems Coordinates the implementation of agreed remedies and preventative measures Provide high quality management information on customer service levels such other activities as may required to fulfil the objectives of the role Principal Accountabilities to provide leadership and strategic direction, ranging from planning and budgeting to motivational and promotional activities expounding the value of information security to liaise with and offers strategic direction to related governance functions (such as Physical Security/Facilities, Risk Management, IT, HR, Legal and Compliance) plus senior and middle managers throughout the organization as necessary, on information security matters such as routine security activities plus emerging security risks and control technologies to provide leadership and direction for a loose network of information security ambassadors distributed throughout the organization to lead the design, implementation, operation and maintenance of the Information Security Management System based on the ISO 27000 series standards, including certification against ISO27001 where applicable to lead or commission the preparation and authorizes the implementation of necessary information security policies, standards, procedures and guidelines, in conjunction with the Security Committee to lead the design and operation of related compliance monitoring and improvement activities to ensure compliance both with internal security policies etc. and applicable laws and regulations to lead or commissions suitable information security awareness, training and educational activities to lead or commissions information security risk assessments and controls selection activities to lead or commissions activities relating to contingency planning, business continuity management and IT disaster recovery in conjunction with relevant functions and third parties to investigate and solving customers' problems, which may be complex or longstanding problems that have been passed on by the BIS Service Desk to handle customer complaints or any major incidents to analyse statistics or other data to determine the level of service BIS is providing to write reports analysing the service that BIS provides to visit users to provide a one-to-one service to meet with other managers to discuss possible improvements to the network and telemetry service

Skills Required Deliverables Reporting to be involved in staff recruitment and appraisals to train staff to deliver a high standard of customer service to keep ahead of developments in security environments by reading relevant journals, going to meetings and attending courses such other activities as may required to fulfil the objectives of the role Good knowledge of security products and services Broad knowledge and understanding of a complex applications and technology infrastructure. Good knowledge and understanding of system development lifecycle and its implications on BAU service Good knowledge and understanding of incident management protocols and procedures Have excellent relationship management skills Be able to work in a pressurised situation during incidents Service line activities (issues, risks, availability, capacity, reporting, resourcing, financials) on each area of security Project initiation documents defining high-level scope when required Business requirements document describing the project's objectives, when required Business cases defining the costs and benefits associated with requested changes when required Weekly reports will be produced showing progress against outstanding milestones, status, resource requirements, issues, risks and dependencies. Monthly reporting on security breaches and ongoing investigations Experience, Qualifications and Skills Assessment Description Method A I T Broad knowledge and understanding of a complex applications and technology infrastructure Good knowledge and understanding of system development lifecycle and its implications on BAU service Good knowledge and understanding of incident management protocols and procedures Be able to work in a pressurised situation during IT GOLD incidents Have excellent relationship management skills

Good knowledge of security products and services Demonstrated leadership and management skills. Keen attention to detail. Strong written and oral communication skills and an open communication style with the ability to ideas of new ways of working to improve business efficiency Strong customer service orientation Experience of working in a team-oriented, collaborative environment. Being able to develop information and provide it to others Key: A Assessed via application form I Assessed at interview T Assessed using psychometric / ability test Working Relationships Work closely with the BIS SLT to align activities and best practice Work closely with the Head of Business Assurance to align activities and best practice Work closely with external agencies (including Police, CPNI, WAG) to align activities Work closely with the solution architects to provide aligned roadmaps Work with business owners to understand requirements Work with the Project Sponsors to understand and document project objectives and scope. Work with delivery work streams to communicate business objectives and requirements, make decisions on delivery options and produce delivery costs and timescales. Work with other related programmes and programme support officers to understand and manage project dependencies. Work with project managers to plan analysis work and highlight risks and issues. Work with Business Sponsors to define accurate, meaningful and measurable business cases. Work with the business owners to define acceptance criteria. Competencies Achievement Motivation - The drive and energy to produce excellent results and to continually find ways of improving relationships, outputs and processes. Assessment Method A I T

Commercial Awareness - The understanding of the economics of business. The understanding of the business benefits and commercial realities, from both the organisation s and the customers perspectives. Communication skills The drive and ability to exchange appropriate information with relevant people at the right time. The desire and skills to seek first to understand as well as to be understood. To be as open as confidentiality allows. Corporate Representation - The enthusiasm and ability to lead by example and to project a positive and professional image of DCWW with all contacts and stakeholders at all times. Creativity/innovation The ability to look at issues from a broad perspective, to come up with imaginative solutions, and to identify innovative alternatives to typical, unusual or difficult situations or problems. Critical Thinking - The ability to gather, understand, analyse and interpret information & concepts, verbal or numerical, about people or situations, quickly. Decisiveness - The ability and readiness to make timely, practical and resource effective decisions, and to act on conclusions reached. Developing People The ability to set clear goals for others; to assign responsibility; to measure performance; and to seek and deliver feedback to achieve quality, timely results and enhanced individual performance. Environmental & Organisational Awareness - The awareness of economic, environmental, social and political factors, current and changing, likely to affect the job or the organisation. The ability to assess the impact of these factors on the job or the organisation and to overcome challenges and seize opportunities to optimise effectiveness. Influencing Skills - The ability to make a clear, persuasive presentation of ideas or facts, verbally or in writing; to convince others; to gain agreement or acceptance of proposals or views. Initiative - The ability to actively influence events rather than passively accept them. The ability to see opportunities and to act on them, to originate action. Interpersonal Sensitivity - The awareness of other people and the environment and one s own impact on these. The ability to get on with people in different situations and to work with others to achieve mutual goals. Judgement - The ability to evaluate people and situations and to reach logical, fair decisions. An unbiased, common sense approach Leadership The ability to understand the business needs and to translate these into a shared purpose, strategy and objectives and to motivate and inspire others to work towards these. The ability to gain the respect and commitment of others. Ownership and reliability The readiness to take responsibility for

projects or issues and to be accountable for their timely delivery and quality. The capacity and motivation to fulfil consistently any undertakings made. The habit of never letting people down, or promising what can't be done. Resource / Project Management The ability to establish an appropriate course of action, either for oneself or for others, and to manage all resources (to include people, budgets, contracts, systems and processes) effectively, in order to achieve an objective Self Development The ability to actively seek to understand one s own strengths and development areas and to work continually towards achieving one s potential. Teamwork The belief in the value of synergy; the drive and ability to work with others to achieve a common goal in an optimally effective way If you believe you have the skills and experience necessary to make a success of this role, please apply online by completing our application form at: http://www.dwrcymru.co.uk/index.asp (select Careers to take you to current vacancies) Closing date Monday 24 January 2011 at 12 noon Dwr Cymru Welsh Water is an Equal Opportunities Employer