Deloitte

NSE ISMS Manager, NSE Information Security, 12-24 Month FTC/Secondment

Aberdeen,United Kingdom; Birmingham,United Kingdom; Bristol,United Kingdom; Cambridge,United Kingdom; Edinburgh,United Kingdom; Gatwick,United Kingdom; Glasgow,United Kingdom; Ipswich,United Kingdom; Leeds,United Kingdom; Liverpool,United Kingdom; London,United Kingdom; Manchester,United Kingdom; Milton Keynes,United Kingdom; Newcastle,United Kingdom; Nottingham,United Kingdom; Port Talbot,United Kingdom; Reading,United Kingdom; Southampton,United Kingdom
  • Salary average
    -YEAR
  • Type of employment
    Full-time

Company

Responsibilities

  • Work with each NSE geo to coordinate ISMS maintenance activities and ensure audit readiness.
  • Establish and maintain common ISMS artefacts, including applicable scoping documents, policies and standards and risk treatment documentation.
  • Collaborate with cross functional teams across NSE to ensure mandated security controls and risk treatment plans are integrated into business processes and IT systems.
  • Assist in the coordination of ISMS control monitoring activities across NSE.
  • Liaise with internal audit as part of their regular ISMS internal audits and assist with audit remediation activities.
  • Stay informed about the latest trends and developments in information security, the ISO 27001 standard and supporting guidelines, and proactively recommend enhancements to the ISMS.
  • Prepare and present comprehensive reports on the status of ISMS implementation across NSE.
  • Ensure that ISMS implementation is integrated into the Information Security Strategy and Operating Model.

Skills used at work

    Connect to your Industry

    To work in an innovative and creative Information Security team. A world class operation with extensive knowledge and experience. Interfacing with business and technical teams and bringing about change and influence across the whole world of Deloitte. Apply your skills here to make things happen, great people, great purpose and passionate about our work.

    Connect to your career at Deloitte

    Deloitte drives progress. Using our vast range of expertise, that covers audit, risk advisory, and consulting services across tax, legal, business, technology and corporate finance, we help our clients become leaders wherever they choose to compete. To do this, we invest in outstanding people. We build teams of future thinkers, with diverse talents and backgrounds, and empower them all to reach for and achieve more.

    What brings us all together at Deloitte? It's how we approach the thousands of decisions we make every day. How we behave, our beliefs and our attitudes. In other words: our values. Whatever we do, wherever we are in the world, we lead the way, serve with integrity, take care of each other, foster inclusion, and collaborate for measurable impact. These five shared values lead every decision we make and action we take, guiding us to deliver impact how and where it matters most.

    Connect to your opportunity

    The ISMS Manager will be responsible for leading our efforts in establishing, implementing, and maintaining our ISMS requirements across NSE. The person will play a key role in consolidating ISMS activities across each NSE geo where applicable as well as supporting ongoing certification requirements

    • Work with each NSE geo to coordinate ISMS maintenance activities and ensure audit readiness.
    • Establish and maintain common ISMS artefacts, including applicable scoping documents, policies and standards and risk treatment documentation.
    • Collaborate with cross functional teams across NSE to ensure mandated security controls and risk treatment plans are integrated into business processes and IT systems.
    • Assist in the coordination of ISMS control monitoring activities across NSE.
    • Liaise with internal audit as part of their regular ISMS internal audits and assist with audit remediation activities.
    • Stay informed about the latest trends and developments in information security, the ISO 27001 standard and supporting guidelines, and proactively recommend enhancements to the ISMS.
    • Prepare and present comprehensive reports on the status of ISMS implementation across NSE.
    • Ensure that ISMS implementation is integrated into the Information Security Strategy and Operating Model.

    Provide inputs to relevant governance bodies e.g. NSE Security Council (including ISMS metrics, reports, risks and incident details, progress reporting and escalation matters).

    Connect to your skills and professional experience

    Essential

    • Extensive and in-depth experience of information security, management systems and risk management practices.
    • Extensive and in-depth experience of information security frameworks, including the ISO 27001 standard and support guidance documentation including ISO 27002.
    • Effective business communication skills to inform, partner, influence and manage key stakeholders to embed effective information security activities and processes.
    • Ability to lead and collaborate with cross functional teams in a dynamic environment.
    • Good understanding of balancing the role between business stakeholders and a central service organisation.
    • Business acumen, ability to take a strategic and commercial view
    • Knowledge of European Union Directives including privacy regulations and cross border personal data transfer requirements (GDPR), as well as incident response handling procedures.
    • Up-to-date knowledge of cyber and information security trends and threats.

    Desirable

    • Professional certification in CISSP, CISM or equivalent is considered an advantage.
    • Prior experience of leading transformation initiatives and strong programme management skills are highly desirable

    Connect to your business - Enabling Functions

    Collaboration is central to everything we do at Deloitte. Bringing your individual skills and experience, and sharing your specialist knowledge, is how you'll make a far-reaching impact. Come join us.

    Be part of Deloitte North and South Europe

    At Deloitte, you'll be joining an innovative firm, working together to make positive change happen. In the UK, we are part of Deloitte North and South Europe (NSE), the second largest member firm in the Deloitte network.

    Deloitte NSE combines operations in Belgium, Central Mediterranean (Italy, Greece, Malta) Ireland, the Netherlands, the Nordics (Denmark, Finland, Iceland, Norway and Sweden), Switzerland and the UK, as well as countries further afield in the Middle East, including Bahrain, Cyprus, Egypt, Iraq, Jordan, Kuwait, Lebanon, Libya, Oman, Palestinian Ruled Territories, Qatar, Saudi Arabia, United Arab Emirates, Yemen).

    There are more than 2,700 partners and over 65,000 people that make up our dynamic teams across these regions, who are together responsible for creating €7bn of revenue. We have an unmatched breadth and depth of capabilities in audit and assurance, consulting, financial advisory, risk advisory, and tax and legal across the region.

    Respect and Inclusion

    In the NSE Ambition we've committed to creating an inclusive environment for all and addressing inequality, to deliver on and scale our inclusion agenda. Our vision is to provide equal opportunities to mitigate systemic bias, develop our people to succeed and thrive through targeted development, evolve and drive our culture around allyship.

    Our Purpose & Strategy

    Our NSE Ambition focuses on five characteristics - purpose led; universal leaders, inclusive culture; advisory growth, delivery strength; global scale, local touch; and, digital first – which will differentiate our business in the future, enable us to stand further apart from the competition, attract and retain the best talent and be a recognised leader in societal impact – to become THE winning firm.At Deloitte, we tackle our clients' and society's challenges to create progress and possibility for those our work affects. We make an impact that matters. That's our purpose.

    Personal independence

    Regulation and controls are standard practice in our industry and Deloitte is no exception. These controls provide important legal protection for both you and the firm. We are subject to a number of audit regulations, one of which requires that certain colleagues abide by specific personal independence constraints. This can mean that you and your "Immediate Family Members" are not permitted to hold certain financial interests (shares, funds, bonds etc.) with audit clients of the firm. The recruitment team will provide further detail as you progress through the recruitment process.

    Connect with your colleagues

    “Collaboration is central to everything we do at Deloitte. Bringing your individual skills and experience, and sharing your specialist knowledge, is how you'll make a far-reaching impact.“

    "We're in the process of transforming the way we do resourcing, to future proof our offering. It's exciting and there's never been a better time to join us.”

    -Jhon, Enabling Functions

    Connect to your agile working options

    Location: This is an NSE role that is available to all NSE geographies, candidates must reside in an NSE Geography to apply. Applicants can expect some travel in support of delivery and collaboration, managed in line with our WorldClimate ambition.

    Your Work, Your Way: We call our hybrid working vision Deloitte Works. And it does. We trust you to make the right choices around where, when and how you work. You'll be able to make decisions about how you work best, to be collaborative, learn from colleagues, share your experiences, build the relationships that will fuel your career and prioritise your wellbeing. Having great conversations with your team and your leadership paves the way for great collaborative ways of working.

    Discover more about our locations.

    Our commitment to you

    Making an impact is more than just what we do: it's why we're here. So we work hard to create an environment where you can experience a purpose you believe in, the freedom to be you, and the capacity to go further than ever before.

    We want you. The true you. Your own strengths, perspective and personality. So we're nurturing a culture where everyone belongs, feels supported and heard, and is empowered to make a valuable, personal contribution. You can be sure we'll take your wellbeing seriously, too. Because it's only when you're comfortable and at your best that you can make the kind of impact you, and we, live for.

    Your expertise is our capability, so we'll make sure it never stops growing. Whether it's from the complex work you do, or the people you collaborate with, you'll learn every day. Through world-class development, you'll gain invaluable technical and personal skills. Whatever your level, you'll learn how to lead.

    Connect to your next step

    A career at Deloitte is an opportunity to develop in any direction you choose. Join us and you'll experience a purpose you can believe in and an impact you can see. You'll be free to bring your true self to work every day. And you'll never stop growing, whatever your level.

    Discover more reasons to connect with us, our people and purpose-driven culture at deloitte.co.uk/careers

    WPFULL SLICSS LOCOFFICE

    Job posted: Nov 28, 2023

    Expiration date: May 09, 2024