Chief Information Security Officer

2 weeks ago


Isle of Man, United Kingdom UTMOST WEALTH SOLUTIONS Full time

**Job Title **Chief Information Security

Officer (CISO)

**Reports to **Chief Technology Officer

**Operating Group **Information Security **Location **Isle of Man, Guernsey, Ireland

(Dublin / Navan), UK (Southampton),

home based

**Job Purpose**

The Chief Information Security Officer (CISO) is responsible for the long-term strategic management of

Utmost’s information security technology and governance according to the Information Security

Management System (ISMS) framework. The CISO is expected to define, develop, and maintain a

business-aligned Information and Cyber Security strategy and operating model for the ongoing

protection of computer networks and information.

You will be a strategic and lateral thinker with exceptional leadership credentials and a sophisticated

approach to stakeholder and supplier management (ideally within the finance sector).

The role requires:
a good overall understanding of the business and the jurisdictions in which we operate; the applicable

legal and regulatory obligations (in particular data protection requirements); a thorough understanding

of the technology underpinning Utmost’s IT systems; and a broad, up-to-date knowledge of information

security frameworks, vulnerability management, incident management and response, secure

development techniques and approaches, Cyber Security engineering and operations, and

management and governance of Cyber risk and Cyber Security.

Key Responsibilities include:

Information Security Strategic leadership

Governance & standard development and monitoring

Security Incident Management

Cyber Risk management

Driving Information Security awareness

**Main tasks and responsibilities** **Key Performance Indicators**

**Security incident Management **

Ownership and management of the Information Security

Incident Management Process. Manage incidents and

their follow-up actions, agreeing the required actions and

ensuring that all required actions are carried out as

required.

Manage the documentation of policies, procedures,

security guidelines and runbooks to assist in the timely

resolution of Security Incidents.

Assist with development of relevant BCP plans for IT and

business from a security perspective.

Ensure that the business

process documentation

created as part of the ISMS

creation is maintained as and

when processes change.

Security Incidents managed

and closed out as required

Escalation of incidents within

agreed timeframes

Adequate and robust testing

of BCP plans

Ensure all new

implementations are included

in BCP plans/solution

**Cyber Risk **

Oversight, management, and reporting on all risks

pertaining to information security, including all forms of

cyber risk and all risks relating to the protection of personal

data throughout the businesses in all locations.

Developing and monitoring Key Risk Indicators (KRI) and

Key Performance Indicators (KPI), relating to the information

security controls of the businesses.

Assist in the ongoing assessment of risk to the security of

information, assets, and personnel.

Assist in management of cyber risk including risk reviews and

mitigation planning.

Risk assessments carried out to

standard, to agreed schedule,

and as required.

Ensure complete and

accurate risk register in place

and monitored

**Governance / Standards **

Assist with the initial certification and ongoing adoption of

NIST framework.

Develop and maintain information security documentation

to agreed standards.

Facilitation of external information security audits,

management reviews and internal information security

audits.

Define and manage the monitoring of key measures of ISMS

performance.

NIST alignment and

accreditation

Documentation that meets

standards and drives

processes.

Audits progressed smoothly

and with least disruption to the

business as possible.

All agreed security KPIs

(Including security controls)

monitored and reported as

required.

**Information Security Strategic leadership **

Drive and coordinate the management of security through

the sharing of ideas between key security players; the

monitoring of threats and subsequent identification of

opportunities for improvement; and the on-going

monitoring of security activity (e.g., penetration testing

actions) to meet targets; and drive and manage the

development of information security to ensure approaches,

techniques and tools continue to meet needs.

Ensure that the team become an active part of projects at

an early stage to ensure that all projects take information

security into account; and to carry out - or oversee
- information security risk assessments and ensure that the

results are acted upon.

Provide training, coaching and internal consultancy to the

business at all levels in relation to the Information Security

Management System, the NIST framework and a wide

variety of IT controls and information security controls, and

in respect of new and evolving IT standa



  • City of London, Greater London, United Kingdom Experis - ManpowerGroup Full time

    Title: Cyber Information Security Lead Location: Central London- Hybrid Length- 7 Months Initial Inside IR35 Experis are currently on the lookout for a Cyber Information Security Lead. The Cyber Lead role supports the Technical Information Security Officer (TISO) to drive execution of the Group Information Security and Cybersecurity strategy. The role...


  • City of London, Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time

    We are currently working with a fast-growth Cyber Security Consultancy, they are looking for an Information Security Consultant with strong NIST delivery skills to join on an initial 6-month contract. An Information Security Consultant with strong NIST skills An Information Security Consultant with experience delivering Cyber Security maturity...


  • City of London, United Kingdom Page Executive Full time

    About Our Client A leading global re/insurance group comprising distinct businesses covering various Insurance and Reinsurance service offerings across a well-established international customer base. This is a highly compelling Insurance brand with a rich history and deep expertise operating across Lloyd's, UK, European and global markets. This role sits...


  • City of London, United Kingdom Momentum Security Recruitment Full time

    Corporate Security Officer (Front of House)Location: City of LondonRate: £14.88 per hour (circa £46k)Shift pattern: Monday to Friday. 07:00-19:00.Do you have 5 STAR customer service skills? Would you like to work in the front of house team at a high-profile corporate location in the City of London?Applicants should hold a SIA license, have excellent...


  • City of London, United Kingdom Centre People Full time

    **Information Security Coordinator** A telecommunications company based in East London is looking for an Information Security Coordinator to join their team. The Information Security Coordinator will spearhead specific company’s African region security coordination to improve and maintain compliance.You will also support the line manager to promote and...


  • City of London, Greater London, United Kingdom Locke & Mccloud Full time

    Role: Information Security Manager Location: London Salary: £95,000+ Are you an Information Security Manager looking to join a reputable legal services firm? Looking for an Information Security Manager/Officer to support a Head of Information Security Manager. Key Responsibilities: Managing and leading on governance meetings. Developing and...

  • Trainee Officer

    7 days ago


    Isle Of Man, United Kingdom IQ-EQ Full time

    Company Description IQ-EQ is a leading Investor Services group which combines global expertise with an unwavering focus on client service delivery. We support fund managers, global companies, family offices and private clients operating worldwide. **Job Description**: We have a great opportunity for a **Trainee Officer **to join our Private Wealth...


  • City of London, Greater London, United Kingdom Locke & Mccloud Full time

    Role: Information Security Manager Are you an Information Security Manager looking to join a reputable legal services firm? Looking for an Information Security Manager/Officer to support a Head of Information Security Manager. Developing and implementing information security policies. Reviews information security policy, standards and guidelines. ...

  • Security Guard

    3 weeks ago


    City of Westminster, United Kingdom Accolade Security Full time

    Luxury Retail Security GuardAccolade Security are currently recruiting for Luxury Retail Security Officers to work in and across the London area. This position will report directly to the Client Managers and work closely alongside our control room, clients, employees and customers.WE HAVE IMMEDIATE STARTS AVAILABLE FOR THE RIGHT CANDIDATESRequirements:•...


  • City of London, United Kingdom DGH Recruitment Full time

    Information Security Officer (ISO 27001 / NIST / CISA / CISM) Hybrid working policy: 2-3 days per week in the office. DGH Recruitment are currently recruiting on behalf of a leading global client who are looking for an Information Security Officer to join the team on a permanent basis in their London office. The role will work closely with cross functional...


  • Isle Of Man, United Kingdom IQ-EQ Full time

    Company Description IQ-EQ is a leading Investor Services group which combines global expertise with an unwavering focus on client service delivery. We support fund managers, global companies, family offices and private clients operating worldwide. **Job Description**: As a Senior Officer (or experienced Trust Officer with 3+ years experience) you will...


  • Isle Of Man, United Kingdom IIM Limited Full time

    We are looking for a Graduate Trainee Compliance Officer to join our growing Financial Planning team in Douglas and to provide support to our Compliance Director. Our Financial Planning team offer advice on every aspect of financial planning, including investments, pensions, mortgages and later life finances. This is a highly regulated industry, and...


  • Isle Of Man, United Kingdom IQ-EQ Full time

    Company Description IQ-EQ is a leading Investor Services group which combines global expertise with an unwavering focus on client service delivery. We support fund managers, global companies, family offices and private clients operating worldwide. **Job Description**: Perform a wide variety of Trust administration tasks accurately and in a timely manner to...


  • City of London, Greater London, United Kingdom DGH Recruitment Full time

    Information Security Officer (ISO 27001 / NIST / CISA / CISM) Hybrid working policy: 2-3 days per week in the office. DGH Recruitment are currently recruiting on behalf of a leading global client who are looking for an Information Security Officer to join the team on a permanent basis in their London office. The role will work closely with cross functional...


  • City of London, United Kingdom Carrington Recruitment Solutions Ltd Full time

    **Information Security Assurance Analyst, CISM, CISSP, CCSP, Mainly Remote** Information Security Assurance Analyst required to work for a Professional Services organisation based in the City of London. However, due to Covid-19, this will mainly be remote and you will only be required to be in the office a couple of times a month. We need someone who is...


  • City of London, Greater London, United Kingdom H&R Talent Full time

    H&R Talent are seeking a talented Information Security Engineer to join a prestigious company based in Central London that will help safeguard the company’s computer networks and systems. Duties & Responsibilities: Develop a set of security standards and best practices for the organization and recommend security enhancements as needed. Develop...


  • City of London, United Kingdom Angela Mortimer Full time

    An International Newspaper are looking to hire an EA to support their Chief People Officer, and 2 Directors. Based in London Bridge, the company are paying £25 per hour and working hours are 9:00-17:30, with the option to work from home one day a week. Thisis a temporary assignment until mid-March and the employer is looking to hire someone for an immediate...

  • Technical Consultant

    2 weeks ago


    Isle of Man, United Kingdom Apogee Corporation** Full time

    Hours: Between 8.30am and 5.30pm - 37.5 hour week, and a requirement to have paid on call on rota Location: This role is office based on the Isle of Man, with some travel to customer sites.We may consider someone remotely should they not reside on the Isle of Man. Elevate your career with Argon's 3rd Line Technical Team, where you'll play a...

  • Data Security Manager

    4 weeks ago


    City of London, United Kingdom ARCUS SEARCH LIMITED Full time

    Data Security Manager required for a global Insurer to support their growing Data and Analytics function. This role needs someone who has experience in IT change and overall, a rounded person to spot the gaps around IT processes, managing stakeholders on a day-to-day basis and bringing in strong negotiation allowing you to hit the ground running. This is...


  • City of London, United Kingdom Page Executive Full time

    About Our Client A leading global re/insurance group comprising distinct businesses covering various Insurance and Reinsurance service offerings across a well-established international customer base. This is a highly compelling Insurance brand with a rich history and deep expertise operating across Lloyd's, UK, European and global markets. This role sits...