JOB DESCRIPTION. IS teams, Hanover colleagues, third party suppliers. Principal Duties and Responsibilities



Similar documents
JOB DESCRIPTION. Principal Duties and Responsibilities

JOB SPECIFICATION. Service Support Manager ORGANISATION CHART: JOB PURPOSE:

Job Description SF07708

General Manager Commissioning and Partnerships Commissioning and Partnerships business unit Health Service Engagement business unit

NSPCC JOB DESCRIPTION. Database Training and Support Manager. (Grade 5 - Senior Business Support Officer)

J O B S P E C I F I C A T I O N

ESKISP Conduct security testing, under supervision

Sub-section Content. 1 Formalities - Post title: Risk Consultant - Reports to: Head of Group Risk - Division: xxx - Location: xxx

J O B S P E C I F I C A T I O N

River Clyde Homes: Officer Service Desk Analyst

Job description. Job title: Server Infrastructure Analyst 1

Overview TECHIS Carry out security testing activities

Location including building: University wide (Lansdowne Campus/Talbot Campus)

JOB DESCRIPTION. To provide a high level of customer care to all business users who raise faults or service requests via the Service Desk.

HEW 6. Manager, Digital Comms, Design and UX. Provide web insights and analytics to enable evaluation, monitoring, compliance and improvement.

Job Description and Person Specification. Post Number: HCI.C24 JE Ref: JE028

WEB DEVELOPER. Grade: E (spinal points 20 to 26) Salary: 20,076 to 25,406. Status: Fixed Term Contract 31 March Hours:

BISHOP GROSSETESTE UNIVERSITY JOB DESCRIPTION. Business Systems Developer (SharePoint)

The Next Generation of Security Leaders

Cyber Security and Privacy Services. Working in partnership with you to protect your organisation from cyber security threats and data theft

Communications Manager

Job Grade: Band 5. Job Reference Number:

SHEPWAY DISTRICT COUNCIL JOB DESCRIPTION. CORPORATE DEBT OFFICER (Fixed term until 31 st March 2016)

2. Monitor status of service requests and liaise with team members to ensure service desk issues are resolved.

4. Resolve queries and enquiries with regard to orders and purchases including liaising with operational staff, suppliers and sub-contractors.

NCS Contract Director, North East of England

Business Solutions Manager Self and contribution to Team. Information Services

Issue 1.0. UoG/ILS/IS 001. Information Security and Assurance Policy. Information Security and Compliance Manager

JD AND PS: Senior Data Analyst

The precise duties of fractional post holders will be within the remit of this job description, but will be selective. DIMENSIONS

Key Worker Job Description & Person Specification

the role of the head of internal audit in public service organisations 2010

Job Description Business Analyst / Developer

Developing Health and Independence. Pt 22-27, 19,621-22,958 (depending on experience)

JOB DESCRIPTION. 1. JOB TITLE: Information Security Officer. 4. DEPARTMENT: Learning and Information Services (LIS)

JOB DESCRIPTION. Lawyer (Commercial & Contracts) Commercial and Contracts. Head of Commercial & Contract Law

Compliance Security Continuity

University wide (Lansdowne Campus/Talbot Campus) Communications Team (Part of Applications & Technology)

PETERBOROUGH ADULT LEARNING SERVICE CITY COLLEGE PETERBOROUGH FINANCE MANAGER JOB DESCRIPTION

Occupational Therapy Assistant

Job Description - PM12024

This document includes information about the role for which you are applying and the information you will need to provide with the application.

Role Description Metro Operations, Data Analyst

West Midlands Police Job Description. Deputy Chief Constable

JOB DESCRIPTION. ICT Technician Team Leader. Grade: People supervised by this post: ICT Technicians

Data Analysis Officer - Service Development Team

Finance Business Partner

Operations. Transport Officer OP199. Operations Manager. Administration Officer

JOB DESCRIPTION. Financial Services and Support. Lead Service Desk Analyst

Criticism of Implementation of ITSM & ISO20000 in IT Banking Industry. Presented by: Agus Sutiawan, MIT, CISA, CISM, ITIL, BSMR3

NOTTINGHAMSHIRE OFFICE OF THE POLICE AND CRIME JOB DESCRIPTION. Project Manager ECINS Development and Implementation 1 year project

Job Description. Job Title: Network Services Manager. Department: INFORMATION TECHNOLOGY MAIN PURPOSE OF JOB: MAIN DUTIES AND RESPONSIBILITIES:

JOB DESCRIPTION/PERSON SPECIFICATION

JOB DESCRIPTION. Information Governance Manager

Group Manager Line management of a local team of 5-7 fte staff

Role Activity Grade 5 PAS Professional Officer

ROLE PROFILE. Performance Consultant (Fixed Term) Assistant Director for Human Resources

InfoSec Academy Application & Secure Code Track

Business Intelligence Analyst. Business Intelligence Manager (BIM) 1028 Heslerton Road, Dunsandel, Canterbury

BCS Specialist Certificate in Change Management Syllabus

ESKISP Direct security testing

Summary of Post: To work with people with alcohol related problems, in their homes as part of their community detoxification process.

JOB DESCRIPTION. T&T Security and Resilience Manager. Technology and Telecommunications. Bedford, Chelmsford or Norwich

HEW 7. Position Title. Web Developer. Reports to. Manager, Online Technical Development. Organisational Unit

Manchester City Council Role Profile. Service Desk Analyst, Grade 6. ICT Service, Corporate Core Directorate Reports to: Team Lead (Service Support)

Job Description. Job Title: Department: ICT Service Support Manager Responsible to:

JOB DESCRIPTION. Interim Director of Communications & Marketing. The Principal dotted line responsibility to VP Curriculum & Student Services

Information Security Governance:

POSITION PROFILE Support Officer, ICT. Position Summary. Position Statement. Corporate Vision. Constructive Culture ICT.

tbc * Frameworki System Manager

DORMANSTOWN PRIMARY ACADEMY WELFARE LEAD

Marketing Manager. MS National Centre, London

Emily House, Kensal Road, London W10 5BN

Job Description. Team Supervisor

Job description. Terms of reference. November Date: 2 November Job title: Vacancy reference: Team/business unit: Base location:

38,648 ( 35,590 basic + 3,058 London weighting allowance) Grade E of Mind s salary scales

JOB PROFILE (GREEN BOOK)

Transformation Service Customer Services Advert text for vacancy for Desktop Manager

JOB PROFILE. Data Analyst & Information Governance Project Lead. Director of Finance & Support Services

To have an overview of ICT Administration and Technical support in order to provide a consultancy service to schools.

Job description. Terms of reference. Date: August Job title: Vacancy reference: Team/business unit: Base location: Reporting line:

Cyber Security - What Would a Breach Really Mean for your Business?

Inquilab Housing Association. Job Profile

Debt Recovery Officer. Salary Grade: 19,557 23,903. Responsible For: Purpose of the Role

Procurement & Supply Chain Team. Purpose of the Role

Job No. (Office Use) Directorate Corporate Services Department Programme Management Office Reports to (Job Title) If No state reason

Information Security Officer (# 1773) Salary: Grade 25 ($81,808-$102,167) / Grade 27 ($90,595 to $113,141) Summary of Duties. Minimum Qualifications

Business (Development) Co-ordinator. 18,754-20,548 per annum. 37 hours per week. Business Hub. Cheltenham/Gloucester/Forest of Dean

JOB PROFILE. Collaborate and work effectively with team members within the section and the rest of the Transformation Service.

Director of Performance & Academic Standards

ABERDEEN CITY COUNCIL JOB DESCRIPTION

BAND: 5. 37½ hours per week 1. JOB SUMMARY

Bawden Contracting Services Ltd Job Profile. Contracts Manager. Purpose of the Job

Job Description Questionnaire

JOB DESCRIPTION CONTRACTUAL POSITION

Role Profile. Job No. (Office Use) A238. Competency Job Type

Rainer Surrey. Floating Support Worker

Position Description

CLASSIFICATION SPECIFICATION FORM

PERSONNEL SPECIFICATION

Transcription:

JOB DESCRIPTION Job title: IT Security Analyst Grade: Responsible to: Responsible for: Liaises with: Head of IS N/A IS teams, Hanover colleagues, third party suppliers Role Purpose: Location: The purpose of this role is to ensure that IT security is properly assessed and mitigated against, thereby contributing to the delivery of a world class IS service to all Hanover colleagues enabling the effective use of computing and communications systems. Chippenham Office Principal Duties and Responsibilities Overview 1. To take responsibility for the development of the IT security policies and procedures 2. To ensure that constant focus and a proactive approach is taken to IT security for the organisation 3. To provide expertise in all aspects of IT security and ensure that threats and risks are properly mitigated against 4. To ensure that IT security is considered in relation to current and future business requirements 5. To ensure that on-going management processes related to IT security are in line with industry best practice (ISO 27001) 6. To ensuring that the IS Department has robust security policies and procedures 7. To develop improved IT security incident management and reporting JD IT Security Analyst - 2016 1

Key Tasks 1. Reviewing the IT Security Policy, and ensuring that it is developed in line with changing business requirements 2. Developing the on-going management processes related to IT security in line with best practice (ISO 27001) 3. Reviewing cyber security threats/risks and providing advice and recommendations to mitigate against them 4. Developing and documenting the process for managing IT related security incidents 5. Providing guidance and support to the IS teams to ensure a co-ordinated approach across the department 6. Working closely with the data management team and Data Governance Manager to ensure that IT security is integrated into business policies and procedures 7. Ensuring proper Integration of the Disaster Recovery and IS Business Continuity plans, including testing 8. Reviewing proactive network penetration/intrusion testing & application vulnerability monitoring 9. Developing and maintaining the IS risk register with particular regard to IT security 10. Integrating IT security requirements into supplier contracts and activities of third parties JD IT Security Analyst - 2016 2

General 1. Establish, develop and maintain effective working relationships with all work colleagues to ensure an integrated contribution to the Hanover aims, values and mission. 2. Observe, comply and help develop the policies, procedures, legislation, continuous improvement and good working practices adopted by Hanover. 3. To be aware of and to assist with the control of risks such as confidentiality, mis-use, fraud, theft and licencing. 4. To be aware of and champion the need to control costs and give consideration to providing Value for Money (VFM) in all areas of work. 5. Participate in learning and development activities that develop personal effectiveness and assist in improving performance in the role. 6. Maintain high levels of professionalism at all times and ensure equality of opportunity and valuing of diversity. The post holder may be required to perform duties other than those given in the job description. The particular duties and responsibilities attached to posts may vary from time to time without changing the general character of the duties, or the level of responsibility entailed. Information Services Department Structure JD IT Security Analyst - 2016 3

Personal Specification JOB TITLE: IT Security Analyst LOCATION: Chippenham PERSON SPECIFICATION: ESSENTIAL PREFERRED Knowledge and Experience In depth knowledge of security protocols, tools and procedures Experience of performing information security risk assessments, ideally with knowledge of ISO 27001 (or similar) security frameworks Significant knowledge of cyber security threats/risks and experience of providing advice and recommendations to mitigate against them Experience of acting in an IT security advisory role Strong knowledge of IT infrastructure and server technologies Experience of working in an ITIL best practice environment and creating formal processes & procedures. Knowledge of housing associations or similar organisations Abilities and Skills: Self-motivated to provide excellent customer service and demonstrates commitment to continuous improvement. Ability to rapidly assimilate technical information to assess and document risks Excellent verbal and written communication skills with the ability to communicate maturely & effectively at all levels. Ability to discuss technical issues confidently with excellent listening, questioning and clarifying skills. Expert IS skills with the ability to adopt an analytical and practical approach to technical issues. Methodical, organised, and flexible approach, with the ability to prioritise tasks for self and work under pressure. Education, Qualifications, Specialist Training: Good Standard of general education or equivalent through relevant training / experience (NVQ). JD IT Security Analyst - 2016 4

ISEB IT Infrastructure Library (ITIL) Foundation/Practitioner qualification. Relevant information security qualification/certification (CISSP, CISA or CISM) Willingness to train further. Other Requirements: Full driving licence. Ability to travel with overnight stays when required. Ability to work outside normal office hours, if required. JD IT Security Analyst - 2016 5