IT Security Lead

Location
Liverpool, Merseyside
Salary
Competitive
Posted
26 Jan 2021
Closes
09 Feb 2021
Ref
ZA/2337
Job Title
IT Director
Category
Legal
Contract Type
Permanent
Hours
Full Time
Job Title: IT Security Lead

Department: IT Operations - Security

Salary: Competitive

Location: Liverpool / Remote

Permanent, Full Time

An award-winning leading global law firm are seeking an experienced IT Security Lead to join their growing IT Operations department based in Liverpool. This is an exciting opportunity for an individual to join a dynamic team of IT professionals who are responsible for day to day support, service management, implementation and security of IT to services to all the client's users globally.

Key Responsibilities:
  • Management of technical security compliance with company policy, educating stakeholders and working with them to achieve and record technical security compliance
  • Owns the Technical Security Policy (TSP), maintains and reviews that document in keeping with legislative, regulatory and policy requirements, communicates content to stakeholders
  • Provides consultation on the technical security road map for the business
  • Collaborates with the Solutions Architect where required to assist in specific project design and implementation activities
  • Ensures that technical security processes and procedures are maintained in keeping with compliance requirements
  • Acts as a technical security Subject Matter Expert (SME) for the business as a whole,
  • Manage technical vulnerability assessments (including regular penetration testing) of IT systems and processes, identifying potential vulnerabilities, making recommendations for risk mitigation and implement subsequent approved changes
  • Keeps abreast of security vulnerabilities and implements a proactive defensive strategy for the company to defend against electronic threats
  • Engage with our Internal auditors to deliver robust improvement strategies, risk management practices and continual improvements relating to all facets of information security
  • Evaluate existing and new products and third-party security cloud-based security capabilities in keeping with internal processes and make recommendations
  • Provide full support for security incidents
  • Act as a point of escalation to Service Desk Analysts and support them in identifying, troubleshooting and resolving security issues.
  • Work closely with the IT Security Analyst and the Risk & Compliance team for proactive management and mitigation of risks and issues
  • Support the IT departmental policies for the organisation
  • Proactively contribute to knowledge transfer to the IT Service Desk to move repetitive and well documented tasks to this team.
  • Create and maintain systems configuration documentation, including creating and maintaining test plans and recovery methods of all systems
  • Keep up-to-date on infrastructure and security trends, developments and the associated opportunities and contribute to the development of plans to exploit those trends to improve the IT service delivery to the firm.
Personal Specifics:
  • Broad range of experience in managing and delivering security solutions
  • Experience of Cloud hosting (Azure) / on-prem technologies and in-depth understanding of associated security management controls
  • Range of security understanding in technology across differing platforms
  • Excellent senior stakeholder's communication
  • Strong understanding of security principles and methodologies
  • Knowledge of security management frameworks e.g. ISO 27001
  • Knowledge of the security marketplace, products and capabilities and understands the relationship between a variety of common security solutions
  • Knowledge of Directory / Azure AD, Windows and VMware operating systems.
  • Experience delivering security projects against compliance requirements
Desirable Skills/Experience:
  • Knowledge of risk management concepts and methodologies
  • Knowledge of penetration and threat testing methodologies and approaches, including external test targets e.g. OWASP, NIST
  • Knowledge of security baseline standards e.g. CIS Benchmarks
  • Experience of working in a senior IT Security role
If you're interested in this position, and you meet the requirements of the role, please click 'apply now' to forward an up-to-date copy of your CV. Alternatively, if you would like to discuss this opportunity further, please contact Zoe Alexander for a confidential discussion.

Our advertisements use salary and experience as a guide only. Interlink Recruitment is an equal opportunities employer.

*Please Note: Due to the high volume of applications we are currently receiving we are unable to contact applicants who have been unsuccessful