IT Security Officer

Belfast
3 weeks ago
Applications closed

Related Jobs

View all jobs

Security Engineer, Senior, London, Bank 75k

IT Infrastructure Engineer

Information Security Manager

Application Security Engineer

IT Support Apprenticeship

Sustainability Data Engineer

Job Title: Information Technology Security Officer

Salary range: £66,376

Business Area: Information Systems Office

Accountable to: Head of IT

Accountable for: Infrastructure team and Helpdesk (Operations)

Job Purpose:
This is a challenging new post within the Information Systems (IS) Office. The post holder will lead the Assembly's Information Technology Security functions. This is a key change role within the Assembly, supporting and reshaping the provision of information systems and enabling other parts of the business to perform effectively. The successful delivery of information systems in a rapidly changing technical environment presents many strategic, operational and technical challenges to the post holder.

The Information Technology Security Officer:
The Information Technology Security Officer (ITSO) is a highly skilled, specialised role responsible for developing, implementing, and maintaining the Northern Ireland Assembly Commission's (the Assembly Commission's) information security policies and procedures, to ensure information security and compliance with legislation and best practice. The ITSO will endeavour to ensure the confidentiality, integrity, and availability of all data and information systems, by protecting them from internal and external threats. The ITSO will collaborate with IS Office teams and the Data Protection and Governance Officer to align security practices with regulatory requirements and business objectives. They will take a lead role in safeguarding the Assembly Commission's information assets and ensuring a proactive stance against evolving cybersecurity threats. The ITSO will take a proactive, solution-focussed approach to identify security risks and manage incident responses. The ITSO will monitor and improve security controls, conduct risk assessments, and collaborate with cross-functional teams to maintain a secure IT infrastructure.

Job Description:The main duties and responsibilities of the post are:
Strategic

Work alongside the Head of IT to develop the Assembly Commission's IT vision, strategy and accompanying action plan and deliver it through a robust programme and project management framework, in line with best practice, to support the continuing digital transformation of Assembly and Assembly Commission business.
Identify future challenges in the IT landscape and develop relevant mitigation strategies.
Operational Information Security Management

Lead, develop, implement, and monitor a comprehensive technical information security program, including all related policies, standards, and guidelines to protect information assets, especially where changes have been made.
Lead and define security best practices and align them with organisational goals and compliance requirements.Risk Assessment and Incident Response

Conduct regular risk assessments to identify vulnerabilities and develop strategies for risk mitigation with the Data Protection and Governance Officer.
Take the lead, assess risks, interpret complex data, and make informed decisions on security measures, providing advice to SMT.Security Operations

Lead the team supporting the daily operations of security systems, such as firewalls, intrusion detection/prevention systems (IDS/IPS), endpoint protection, and SIEM.
Lead and support the secure adoption of new technologies from the Microsoft technology stack.Compliance and Regulatory Alignment

Manage and monitor compliance with relevant regulations and industry standards, such as GDPR, HIPAA, PCI-DSS, and SOX.
Lead and prepare for internal and external security audits, documenting compliance status and remediation efforts.Security Operations

Lead the team supporting the daily operations of security systems, such as firewalls, intrusion detection/prevention systems (IDS/IPS), endpoint protection, and SIEM.
Lead and support the secure adoption of new technologies from the Microsoft technology stack.Supplier and Third-Party Management

Assess and manage security risks associated with third-party suppliers, including reviewing security documentation, conducting periodic audits and mitigating risk through appropriate controls.
Documentation and Reporting
Develop and maintain detailed documentation of security policies, procedures, and incidents for regulatory and internal auditing purposes. Leading the team to ensure effective pro-active technical monitoring of system logs.
Essential Criteria:

Applicants for the post of ITSO must, by the closing date for applications:

Possess at least a Bachelor's (or higher) Degree in Computing or other discipline relevant to Information Systems /

Information Technology, Cyber Security or Network Administration*.

Plus

Have a minimum of 3 years' experience in each of the areas a) - c) described below:

Working across a multi - discipline technology stack;
Cloud environments (AZURE / AWS);
Firewalls (On premise / Cloud services);
Intrusion Detection / Prevention Systems;
Security Information & Event Management tools (SIEM);
Data Loss Prevention (DLP);
Endpoint Management;
Networking, Protocols & Vulnerability Management;
Encryption & Identity Management;
Policy creation; and,
Developing and delivering Cyber Security related Training.

Working in roles such as, Security Operations, Incident Response and Investigation, Risk Management and / or Network Security and Architecture.
Working knowledge/experience of information security management systems (ISMS)AND
Possess a professional certification that aligns with the responsibilities of the role such as Certified Information Systems Security Professional; CISSP, Certified Cloud Security Professional (CCSP)).

ORHave at least 6 years' experience working in a cyber security role, demonstrating progressive experience in technical and operational aspects of Cyber Security.
Plus
Have a minimum of 3 years' experience in each of the areas a) -c) described above.
AND
Possess a professional certification that aligns with the responsibilities of the role such as Certified Information Systems Security Professional; CISSP, Certified Cloud Security Professional (CCSP) and have the ability to demonstrate knowledge of information security management systems (ISMS).

*NB only those courses with a computing content of 50% or more will be considered and applicants must give full details on the application form of how the content of the course meets this requirement.

Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Cloud Apprenticeships: Your Comprehensive Guide to a Future-Focused Career in Cloud Computing

The world of technology continues to evolve at breakneck speed, and cloud computing sits at the heart of this digital revolution. From large enterprises migrating their entire infrastructures to the cloud, to small businesses leveraging Software as a Service (SaaS) solutions, the influence of cloud computing cannot be overstated. As more organisations depend on cloud-based platforms for scalability, cost-efficiency, and innovation, the demand for skilled cloud professionals has skyrocketed. In this environment, cloud apprenticeships have emerged as a practical and strategic pathway for individuals to break into one of the most dynamic and rewarding areas of the tech sector. By blending structured training with hands-on work experience, an apprenticeship allows you to gain not only the necessary certifications but also real-world problem-solving skills that can set you apart in a rapidly growing market. If you’ve been looking to launch or pivot your career into cloud computing, keep reading to discover why a cloud apprenticeship might be your perfect match.

Tips for Staying Inspired: How Cloud Pros Fuel Creativity and Innovation

The world of cloud computing has undergone explosive growth and transformation in recent years. From server virtualisation and container orchestration to serverless architectures and edge computing, the evolution of cloud technologies offers vast opportunities—but also places high demands on professionals’ adaptability and creativity. Whether you’re a cloud architect, DevOps engineer, systems administrator, or solutions consultant, staying inspired and continually innovating is key to thriving in this dynamic landscape. In this article, we’ll explore ten proven strategies that can help cloud computing professionals fuel their creativity. From building passion projects to embracing hackathons, exploring new platforms, and organising your own study sprints, these tips will help you maintain an inventive mindset. Ultimately, such a mindset not only benefits your own career development but also strengthens the cloud sector overall, as more imaginative solutions are brought to market.

Top 10 Cloud Career Myths Debunked: Key Facts for Aspiring Professionals

Cloud computing has become a cornerstone of modern technology, transforming how businesses operate, scale, and innovate. From flexible infrastructure solutions to on-demand software services, “the cloud” now underpins everything from e-commerce websites to cutting-edge AI applications. As the industry continues its explosive growth, demand for cloud-savvy professionals remains higher than ever. Yet, for all its evident promise, cloud careers are still swamped by misconceptions. Does one need to be a hardcore developer to enter the field? Are cloud jobs only for the Amazons, Microsofts, and Googles of the world? Or is the cloud just a fad destined for obsolescence? At Cloud-Jobs.co.uk, we see firsthand how these myths can hinder talented individuals from pursuing one of tech’s most dynamic sectors. In this article, we’ll debunk the top 10 cloud career myths—illuminating the realities of working in the cloud industry. Whether you’re a seasoned IT professional looking to pivot, a recent graduate exploring tech specialisations, or someone entirely new to the field, read on to discover the genuine scope and potential of a cloud-focused career.