Information Security Officer

4 weeks ago


United Kingdom Eden Scott Full time

Exciting opportunity for an experienced Information Security Officer to join a global professional services organisation based in Glasgow.

You will have a key role in ensuring the security of their systems and data by evaluating the risks associated with third-party vendors and internal projects and recommending appropriate risk mitigation strategies.

You will work closely with cross-functional teams across the organisation to ensure compliance with security standards and best practices.

Key responsibilities:

Assessing Security Risks (SCTY - Level 4, BURM - Level 4)

  • Conduct vendor risk assessments and project security risk assessments based on established methodologies and frameworks.
  • Evaluate security risks associated with third-party vendors and internal projects, considering factors such as security, privacy, and compliance.
  • Identify vulnerabilities and potential risks and provide recommendations for risk mitigation strategies.
  • Apply knowledge of industry best practices and regulatory requirements to assess and mitigate security risks.

Information Security (SCTY - Level 4)

  • Ensure compliance with security policies, standards, and procedures in vendor relationships and project activities.
  • Develop and maintain security assessment frameworks and methodologies for vendor risk assessments and project security risk assessments.
  • Stay informed about emerging security threats, industry trends, and regulatory requirements related to vendor management and project security.
  • Participate in incident response activities and contribute to security incident investigations and remediation efforts.

Supplier Relationship Management (SUPP - Level 4)

  • Collaborate with procurement teams to assess and manage security risks associated with vendors.
  • Review vendor security documentation, such as questionnaires, audits, and certifications, to evaluate their security posture.
  • Provide guidance to procurement teams regarding security requirements and standards for vendor selection and ongoing monitoring

Risk Management (BURM - Level 4)

  • Apply risk management principles to identify, assess, and prioritise security risks.
  • Collaborate with project managers and technical teams to assess security risks and propose appropriate risk mitigation strategies.
  • Track and monitor the implementation of security remediation plans.

Security Compliance Management (SCAD - Level 3, SCTY - Level 4, AUDT - Level 4

  • Conduct periodic reviews and audits to ensure compliance with security policies, standards, and regulatory requirements.
  • Support the development and enforcement of security policies, standards, and procedures related to vendor management and project security.
  • Provide security awareness training and guidance to staff as required.

Risk and Control: Ensure that all activities and duties are carried out in full compliance with our regulatory requirements and internal policies.

Essential Skills And Experience

  • Bachelor’s degree in Computer science, Information Technology, or a related field (or equivalent work experience).
  • Professional certifications such as CISA, CISM, or similar credentials are preferred.
  • Strong knowledge of information security principles, best practices, and standards (e.g., ISO 27001, NIST).
  • Experience in conducting vendor risk assessments and project security risk assessments.
  • Familiarity with security frameworks and assessment methodologies.
  • Knowledge of regulatory requirements related to data privacy and protection (e.g., GDPR, CCPA) is a plus.
  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication skills.
  • Ability to work independently and collaboratively in a team-oriented environment.
  • Attention to detail and a commitment to maintaining high-quality standards.

This role is based on a hybrid basis with 3 days per week in their Glasgow office.



  • United Kingdom Distinct Consultancy Full time

    Information Security Officer - £40-48,000 + Annual Bonus + Remote Role + Leading Tech Business + International Projects + 33 Days Annual Leave + Career Progression The Company We are working with a market leader who are experiencing significant growth. They have a large project & product portfolio which is constantly evolving. Data & information is at...


  • United Kingdom Cathcart Technology Full time

    You will need to login before you can apply for a job. Information Security Officer required for one of Glasgow's most prestigious professional service firms, based in the city centre – hybrid working. They're looking for someone to join their large global security team and work closely with the project team to ensure security requirements...

  • Information Security

    4 weeks ago


    United Kingdom Xpertise Recruitment Full time

    Head of Information Security - Midlands (Hybrid) - £100k + Car Allowance + Bonus Information Security | Strategy | Governance | Stakeholder Management | Risk | ISO27001 Salary: £100k + Car Allowance + Bonus Midlands (Hybrid) Are you an Information Security leader looking for the next challenge in your career? Have you previously been...

  • Information Security

    4 weeks ago


    United Kingdom Xpertise Recruitment Full time

    Head of Information Security - Midlands (Hybrid) - £100k + Car Allowance + Bonus Information Security | Strategy | Governance | Stakeholder Management | Risk | ISO27001 Salary: £100k + Car Allowance + Bonus Midlands (Hybrid) Are you an Information Security leader looking for the next challenge in your career? Have you previously been...


  • United Kingdom Formula Recruitment Limited Full time

    Formula are working with an exciting global entertainment company who are looking to add a dynamic and highly experienced Chief Information Security Officer to their team. As CISO you will be responsible for defining and implementing the information security strategy and framework across the organisation, ensuring the protection of sensitive data, systems,...


  • United Kingdom Locke & Mccloud Full time

    A leading Financial Services organisation is looking for an experienced Information Security Professional. The ideal candidate will have experience in a regulated environment. Key Responsibilities: Working with the Information Security team to maintain the ISO 270001 compliance process. Drive, maintain and develop the firm's compliance framework. ...


  • United Kingdom Formula Recruitment Full time

    Formula are working with an exciting global entertainment company who are looking to add a dynamic and highly experienced Chief Information Security Officer to their team. As CISO you will be responsible for defining and implementing the information security strategy and framework across the organisation, ensuring the protection of sensitive data, systems,...


  • United Kingdom Formula Recruitment Full time

    Formula are working with an exciting global entertainment company who are looking to add a dynamic and highly experienced Chief Information Security Officer to their team. As CISO you will be responsible for defining and implementing the information security strategy and framework across the organisation, ensuring the protection of sensitive data, systems,...

  • IT Security Manager

    5 days ago


    United Kingdom LT Harper - Cyber Security Recruitment Full time

    Cyber Security OT Manager – Brownfield Opportunity Location – Hybrid – UK South Salary - £85k + Bonus and Benefits This is a chance to own an entire body of work as you take this CNI company on a OT cyber security journey from its current brownfield state , to achieving regulatory compliance with the governing bodies regulations for OES...


  • United Kingdom Formula Recruitment Limited Full time

    Formula are working with an exciting global entertainment company who are looking to add a dynamic and highly experienced Chief Information Security Officer to their team. As CISO you will be responsible for defining and implementing the information security strategy and framework across the organisation, ensuring the protection of sensitive data, systems,...


  • United Kingdom Formula Recruitment Full time

    Formula are working with an exciting global entertainment company who are looking to add a dynamic and highly experienced Chief Information Security Officer to their team. As CISO you will be responsible for defining and implementing the information security strategy and framework across the organisation, ensuring the protection of sensitive data, systems,...


  • United Kingdom Formula Recruitment Full time

    Formula are working with an exciting global entertainment company who are looking to add a dynamic and highly experienced Chief Information Security Officer to their team. As CISO you will be responsible for defining and implementing the information security strategy and framework across the organisation, ensuring the protection of sensitive data, systems,...

  • Information Security

    2 weeks ago


    United Kingdom Intaso Full time

    Job Title - Head of Information Security Location - Remote Type - Permanent Intaso have been engaged to assist with finding a Head of Information Security for a valued partner. This is a brilliant opportunity to be a part of the growth at one of the most up and coming technology businesses in Europe. Develop a comprehensive Information Security...

  • Information Security

    2 weeks ago


    United Kingdom Intaso Full time

    Job Title - Head of Information Security Location - Remote Type - Permanent Intaso have been engaged to assist with finding a Head of Information Security for a valued partner. This is a brilliant opportunity to be a part of the growth at one of the most up and coming technology businesses in Europe. Develop a comprehensive Information Security...


  • United Kingdom Xpertise Recruitment Full time

    Head of Information Security - Midlands (Hybrid) - £100k + Car Allowance + Bonus Information Security | Strategy | Governance | Stakeholder Management | Risk | ISO27001 Salary: £100k + Car Allowance + Bonus Location: Midlands (Hybrid) Are you an Information Security leader looking for the next challenge in your career? Do you have demonstrable...


  • United Kingdom Xpertise Recruitment Full time

    Head of Information Security - Midlands (Hybrid) - £100k + Car Allowance + Bonus Information Security | Strategy | Governance | Stakeholder Management | Risk | ISO27001 Salary: £100k + Car Allowance + Bonus Location: Midlands (Hybrid) Are you an Information Security leader looking for the next challenge in your career? Do you have demonstrable...


  • United Kingdom Sentinel Group Security Full time

    Job description Do you have what it takes to be a Relief Security Officer with SGS?We have an exciting opportunity for an enthusiastic Relief Security Officer to join our dynamic team on a zero hour contract. This role is perfect for anyone who is looking to stay within the Security industry or looking to start a new career in Security. This is a customer...


  • United Kingdom Set2Recruit Full time

    Information Security Goverence, Risk and Controls Officer 100% remote role £70,000K Salary + benefits + Bonus + Excellent Pension/Healthcare/Holidays etc Our client is expanding their Information Security group with a wider range of new projects and infrastructure challenges. You ideally will be able to provide expertise in maintaining and supporting IT...


  • United Kingdom Set2Recruit Full time

    Information Security Goverence, Risk and Controls Officer 100% remote role £70,000K Salary + benefits + Bonus + Excellent Pension/Healthcare/Holidays etc Our client is expanding their Information Security group with a wider range of new projects and infrastructure challenges. You ideally will be able to provide expertise in maintaining and supporting IT...


  • United Kingdom Oliver Bernard Full time

    Information Security Engineer - Hybrid- £90K Our client is an industry leading e commerce who are looking to expand their Security team by adding an experienced Senior Information Security Engineer. They are offering hybrid working with their office located in Central London You'll be working closely with infrastructure, software engineering, and...