Perk 1
Perk 2
Perk 3

Information Security Manager

Salary £65,000 - £73,000
Location London OR Nottingham
{Mergefield Value}
{Mergefield Value}

This is a Permanent, Full Time vacancy that will close in {x} days at {xx:xx} BST.

Job Summary / Role Purpose

ElectraLink manages complex technology for both external stakeholders and for managing its business operations, enabling staff to collaborate effectively.  In addition, ElectraLink has accountability for the responsible management of large data sets on behalf of the energy market, including data covered by legislation such as the UK GDPR.  The security of data and information is therefore a key business priority for ElectraLink.

 

This is a strategic and hands-on work role where you will act as Information Security SME and support the Head of Compliance & Data Privacy driving the Information Security strategy. They will identify, develop, implement and maintain security processes and identify and implement security related technology tools across the organisation to reduce risks, respond to incidents, and limit exposure to liability in all areas of information and data security.

What you will do

  • Develop Information Security policies, standards and procedures and continually monitor the information security controls, KRIs/KPIs and technical landscape.
  • Identify information security risks and maintain a risk register, advising on risk mitigation and remediation efforts, working with internal and external stakeholders.
  • Identify security gaps and advise on risk mitigation and remediation efforts.
  • Work closely with IT and wider stakeholders to promote and adopt security best practices and maintain the organisation’s security posture.
  • Oversee the implementation and maintenance of security controls across the organisation to protect our valuable assets.
  • Engaging with external third parties who provide services to ElectraLink and working closely with the Supply Chain Management Team to ensure appropriate and contracted levels of security are met.
  • Work closely with IT and third parties that manage our customer solutions to ensure that critical security controls are in place.
  • Act as the information security lead on relevant projects and initiatives undertaken by ElectraLink, providing information security subject matter expertise and working closely with associated SMEs to ensure projects are delivered in compliance with policies and standards.
  • Conduct security assessments (internal and external with relevant suppliers) and ensure compliance and best practice is adhered to.
  • Support the Head of Compliance & Data Privacy driving the Information Security strategy.
  • Develop and coordinate incident response plans, lead on investigating suspected and actual security incidents, produce reports with recommendations and ensure any remedial action is taken, and lead post-incident evaluations to improve future security.
  • Work with Head of Compliance and Data Privacy to investigate suspected and actual data breaches in accordance with the Data Breach Procedure, produce recommendations and ensure any remedial action is taken.
  • Maintain knowledge of emerging information security trends, risks, new guidance, or standards (internal and external), and security enhancing technologies, communicate and manage current and emerging security threats.
  • Advise on and manage implementation of security controls against industry standards such as the NIST Cyber Security Framework, ISO27001/2, SOC2, etc.
  • Work with Business Improvement and IT to maintain appropriate information security certifications, including Cyber Essentials Plus and ISO27001.
  • Deliver security awareness training.

Your Key Relationships in this role

 

Person / Team

Nature of Relationship

Head of Compliance and Data Privacy

Line manager.  Working together to drive the Information Security Strategy.

IT Team

Work in partnership with team members to manage security posture, but also ensuring that this team work to the required security standards.

Key third party suppliers

Work in partnership with team members to manage security posture, but also ensuring that this team work to the required security standards.

ElectraLink employees

Providing technical security expertise in a collaborative manner with all staff.  Education and training on security and being able to objectively assess compliance with policies by staff, including conducting confidential investigations into potential policy breaches.

 

Skills & Knowledge, you will need.

  • 3 years+ proven experience as an Information Security Manager
  • Industry certifications such as CISSP, CISA, CISM or ISO 27001 Lead Implementer are highly valued.
  • Strong experience and understanding of information security frameworks and policies such as ISO 27001
  • Clear communicator, in person and written, with the ability to clearly articulate ideas to both technical and non-technical audiences.
  • Must be capable of working pragmatically and efficiently in both a team and alone.
  • Experience developing information security policy documentation, working in line with best practice principles for information security.
  • Experience of conducting information security based investigations and the management of such inquiries.
  • Experience of working within or alongside an MSSP or SOC provider.
  • Self-motivated, highly proactive, and an ability to lead on the end-to-end delivery of projects.
  • Effective prioritisation and organisational skills, ability to manage multiple competing priorities in a fast-paced environment.
  • Maintain and constantly enriching knowledge of information security and cyber risks as they develop.
  • Experience with security technologies, including firewalls, intrusion detection systems (IDS/IPS), security information and event management (SIEM), endpoint detection and response (EDR), and data loss prevention (DLP)

 

What’s in it for you:

  • 💻 Hybrid/ Flexible working including a 4 day week!
  • 🩺 Private healthcare you and for family which includes pre-existing conditions·
  • ❤ Employee Assistance Programme and Mental Health Cover·
  • 💷 Company bonus and annual pay reviews·
  • 📚 Annual training budget and quarterly reviews to support your professional development·
  • 🚗 Electric vehicle salary sacrifice scheme·
  • 🏋️ 50% off Fitness First·
  • 💃 Monthly social events organised by our Social Committee

 

Why we work for ElectraLink:

  • 🤝🏻 Open lines of communication throughout the business- your voice matters!
  • 🙌🏻 Regular Employee Forum meetings to gather suggestions from the business on making ElectraLink an even better place to work!·
  • 🌍 Innovative and open to new ideas to support our net-zero status·
  • 📈 Exciting, innovative and fast moving company which is growing·
  • 👏 High challenge, high support working environment.

 

If this sounds like the role for you, we would love for you to get in touch, however we cannot provide sponsorship.

 

ElectraLink is a growing company, operating at the heart of the UK energy market with unrivalled insight into the challenges and opportunities faced by the industry.

 

Our data hub supports the development of a more efficient energy market that is accommodating the transition to local generation and balancing.

 

Our position at the heart of the UK energy industry also gives us a unique capability to provide other services crucial to the gas and electricity markets including:

· Unique market insight through analysis of the DTS market data that we process in our central industry role.

· Partnering in the implementation and change management of energy industry Governance arrangements.

· Development of more efficient market processes at a time of rapid energy industry change.

All of this means we can actively contribute to the energy industry as a thought leader, innovator, and service provider.

 

We are highly regarded in the energy market, winning Data Vendor of the year and a two-star accreditation from Best Companies in 2023 and Best Place to work in Data 2024. As you would expect from a business with ambitious growth plans, we are continually evolving and looking to the future, with investment in the business, its people, and your career.

 

 

The Company has experienced unprecedented growth over the past few years. We have a vast number of employees, and provide support to clients from all over the country.

Alternatively, please sign in with...


Published

Not Published

Closing

in X days

{Expiry}