Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailThis job vacancy is only available to internal applicants of Save the Children International. Unfortunately external candidates will not be considered for this opportunity. Please check our job listings pagefor other vacancies that are open to external applicants.
Please note: Please check the role profile for specific location time zone and language requirements. This recruitment will follow a business-as-usual recruitment process.
Job Title: Senior Specialist Information Security Risk and Compliance
Team: Cybersecurity and Information Assurance
Reports To: Head of Information Assurance and Data Protection Officer
Contract Length: Permanent
Grade: P4
Location: Any approved Save the Children International office location.
Time Zone (that the role holder must be available to work in): Any
Right to Work: The successful candidate must possess the unrestricted right to work in their current or preferred location for the duration of employment.
Language Requirements: English
International Travel Requirements: up to 5-10% (remove if no international travel is required)
Budget Responsibility: None
People Management Responsibility:
Number of people managed in total: 0
Manager of a team: No
Team purpose
The Cybersecurity and Information Assurance team is responsible for safeguarding the confidentiality integrity availability of all SCIs information assets (data and systems). The team is responsible for identifying assessing and managing cybersecurity and information risk and investigating and managing cybersecurity incidents and data breaches.
Role purpose
The Senior Specialist Information Security Risk and Compliance Officer will play a key role in ensuring SCI addresses information and cybersecurity risks in a timely and effective manner. Reporting to the Director of Information Security and Data Protection the role will work closely with colleagues in the cybersecurity operations and information assurance teams as well as teams across IT and the wider organisation to support risk and compliance activities.
The role will be responsible for keeping the IT Risk Register up to date and coordinating risk mitigation actions across the organisation. The role is also responsible for the coordination of all information security compliance activities including Cyber Essentials ISO27000 and NIST CSF.
Principal Accountabilities
Experience and Skills
Essential
Desirable
Key Relationships
Internal (excluding direct team and manager)
External
Education and Qualifications
Essential
Desirable
Competencies
Cluster: Leading
Competency: Leading and inspiring others
Level: Leading Edge
Behavioural Indicator: Inspires people to reach the highest standards of performance and to feel a sense of pride in belonging to the organisation.
Cluster: Leading
Competency: Developing Self and Others
Level: Accomplished
Behavioural Indicator: Gives regular positive and constructive feedback to others.
Cluster: Thinking
Competency: Problem Solving and Decision Making
Level: Leading Edge
Behavioural Indicator: Identifies and addresses root causes of long-term problems facing the organisation.
Cluster: Thinking
Competency: Innovating and Adapting
Level: Leading Edge
Behavioural Indicator: Promotes a culture and work environment where new ideas take risks and learns from failures.
Cluster: Engaging
Competency: Working Effectively with Others
Level: Leading Edge
Behavioural Indicator: Opens hidden areas of organisational disagreement and drives for collaborative resolution.
Cluster: Engaging
Competency: Communicating with Impact
Level: Leading Edge
Behavioural Indicator: Delivers influential advice and briefings to internal and external audiences to build the call for action.
Required Experience:
Senior IC
Full-Time