DTG GLOBAL
Business Information Security Officer
Job Description
A national professional services firm is looking for a Business Information Security Officer BISO to sit between its central security function and the business.
The role is the link between the two. You are who the business comes to when they want to launch something, change something, or answer a client’s security questionnaire, and you are who the security function relies on to make sure its requirements work in practice.
You would own the ISMS and the certifications that go with it, ISO 27001 and Cyber Essentials Plus, run risk assessments and internal audits across your area, and report what matters to senior management clearly. Alongside that you would work directly with operational and delivery teams so security is built in early rather than added late, and support the client and supplier assurance work that comes with a client facing business.
It needs someone with five to ten years in security, risk or compliance, who has genuinely run an ISMS rather than kept one ticking over, and who can hold a room with senior stakeholders. Professional services or another client facing regulated environment will help.
Apply with your CV or get in touch for a confidential discussion.