Regional Business Information Security Officer

2 weeks ago


London, United Kingdom DDB Full time

Overview:
DDB Technology is the tech division of Doyle Dayne Bernbach, a global advertising and communications company. In 1949, three enterprising gentlemen, Bill Bernbach, Ned Doyle and Maxwell Dane gave the advertising industry a wake-up call. They introduced a new approach to marketing that relied on insight into human nature, respect for the consumer, and the power of creativity. In short, they said: Let's stop talking at people and let's start conversations that lead to action.

This heritage is a unique strength that continually tells us who we are, what we believe and how we should behave. It inspires us to continually challenge standard convention. From Bill Bernbach to Keith Reinhard to the present generation of DDB leaders, we are continuing the revolution.

As commodity technology services are provided centrally by our parent company, Omnicom, we increasingly invest our time helping teams discover how technology solutions can improve their day-to-day ways of working with an emphasis on efficiency, security, and standardization of platforms and services.

Charged with providing technology services & solutions for 10,000 + employees globally, we are a fast-paced and dynamic client service company. We are committed to delivering value at the right place, at the right time, in the right way.

**We protect DDB and Omnicom**: The Regional Information Security Officer (RISO) will be an embedded DDB security and risk professional, charged with supporting their local team and aligned with the Corporate Security function to assist in maturing the security posture for DDB's business and services. The RISO will report to the DDB Global Business Information Security Officer (BISO) with a dotted line to the EMEA Chief Information Officer (CIO). This role will be focused on the governance, implementation and compliance of the Corporate Information Security policies, standards, procedures, and guidelines to prevent the unauthorized use, release, modification, or destruction of data/systems. The RISO will also be expected to assist with internal security consultancy to support strategy and identify information Security related risks and proactively work with all support departments to ensure that Information risks are identified, assessed, and mitigated in all situations where possible.

**Responsibilities**:

- Build and maintain global relationships with business units and stakeholders to support local security activities with a focus on continuous improvement and program maturation.
- Work with BISO and Corporate Security to deliver administrative and technical controls, in line with organizational policies, standards, contracts, and/or regulatory obligations.
- Support strategic and tactical alignment of corporate technology to overall security to business objectives for all divisions within region.
- Assist in responding to client requirements such as RFP/RFI, audits, security questionnaires, contract negotiation and client meetings as relates to security where appropriate.
- Collaborate with the markets to identify and address internal/external security risks management and governance issues, developing treatment plans to address risk or reduce the risk to an acceptable level while aligning with the Corporate Risk Management Framework and practices.
- Participate in implementation and management of DDB and Corporate platforms, e.g., endpoint protection, encryption, SIEM, CASB, perimeter controls
- Work with Corporate Security to supplement the global Information Security Awareness training curriculum, with DDB specific content, facilitating cyber security awareness activities and security awareness concepts locally to be suitable for the business.
- Participate in the coordination and documentation of Business Continuity Plans and appropriate exercises
- Assist with DDB and CSIRT responses to security incidents, providing timely reports during the incident and remediation, as well as proposing solutions to anticipate, prevent, or mitigate future incidents
- Provides additional leadership in support of the CIO’s strategic initiatives through dotted line reporting to the Regional CIOs.
- Partner with technical operations staff for reporting on information program posture and compliance within all markets within the region
- Maintain up to date knowledge of emerging security trends, risks, new guidance, or standards (internal and external) and security enhancing technologies

Qualifications:

- Relevant experience in IT, Information Security, IT audit or related area
- Bachelor’s degree in Information Security, Computer Science, Information Management Systems, Business/Accounting or related field or related experience preferred
- Industry recognised certifications (CISSP or CISM) preferred
- Practical knowledge of Information Security industry standards/best practices and relevant regulations (e.g., PCI DSS, HIPAA, GLBA, FISMA, SOX, NIST, ISO, COBIT, TISAX)

**Bonus points if you have experience with**:



  • London, United Kingdom HM Prison & Probation Service Full time

    **Details**: **Reference number**: - 341221**Salary**: - £31,582 - £39,821- Pro-rata- A Civil Service Pension with an average employer contribution of 27%**Job grade**: - Other- NPS Pay Band 4 National**Contract type**: - Permanent**Type of role**: - Administration / Corporate Support**Working pattern**: - Flexible working, Part-time**Number of jobs...


  • London, United Kingdom UBA UK Full time

    _**Responsibilities**_:_ **1. Establish Governance & Build Knowledge** - Propose and implement UBA -UK Information security governance structure as part of a global matrix and formulate risk management program approach. - Provides regular reporting on the current status of the information security program to enterprise risk teams and senior business...


  • Greater London, United Kingdom InterQuest Group Full time

    This range is provided by InterQuest Group. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Base pay rangeDirect message the job poster from InterQuest GroupTechnology Recruitment Specialist | Product | Software Engineering | Data Engineering | Data Science | Cloud | ML & AI | User Experience |...


  • City Of London, United Kingdom ea Consulting Group Full time

    Information Security Officer ?? London (Hybrid) | ?? Permanent, Full-time Salary - £60,000 - £70,000 p / a + Benefits About the Role A leading digital bank is seeking a talented and ambitious Information Security Officer to join its growing Cybersecurity Department. This is a key role acting as the bridge between the banks London operations and the Groups...


  • London, United Kingdom Lloyd's of London Full time

    Lloyd’s is the world’s leading insurance and reinsurance marketplace. We share the collective intelligence and risk sharing expertise of the market’s brightest minds, working together for a braver world. Our role is to inspire courage, so tomorrow’s progress isn’t limited by today’s risks. Our shared values: we are brave; we are stronger...

  • Security Officer

    2 weeks ago


    London, United Kingdom The Plumage Security Full time

    **Job Purpose**: Maintains safe and secure environment by patrolling and monitoring premises and personnel. Working a shift pattern averaging 36 - 60 hours per week. - Job description - Secures premises and personnel by patrolling property; monitoring surveillance equipment; inspecting buildings, equipment, and access points. - Site Patrol - CCTV...


  • London, United Kingdom ea Change Full time

    Information Security Officer London (Hybrid) | Permanent, Full-time Salary - £60,000 - £70,000 p/a + Benefits About the Role A leading digital bank is seeking a talented and ambitious Information Security Officer to join its growing Cybersecurity Department. This is a key role acting as the bridge between the bank's London operations and the Group's Cyber...


  • london, United Kingdom Ryder Reid Legal Full time

    Information Security Officer – International Law Firm (London-Based) Permanent | Hybrid Working | Competitive Salary I am working with a leading international law firm to support their search for an experienced and proactive Information Security Officer (ISO) to lead their global information and data security programme. This senior-level role offers the...


  • City of London, United Kingdom ea Consulting Group Full time

    Information Security Officer??London (Hybrid)| ??Permanent, Full-timeSalary - £60,000 - £70,000 p/a + BenefitsAbout the RoleA leading digital bank is seeking a talented and ambitious Information Security Officer to join its growing Cybersecurity Department.This is a key role acting as the bridge between the banks London operations and the Groups Cyber and...


  • London, United Kingdom Mitsubishi UFJ Financial Group Full time

    Do you want your voice heard and your actions to count Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG) one of the worlds leading financial groups. Across the globe were 150000 colleagues striving to make a difference for every client organization and community we serve. We stand for our values building long-term relationships serving...