NCC Group

Security Program Officer

Manchester

Posted 6 days ago

Early applicant

Hybrid

Full-time

Senior Level

Department: IT Location: GBR Manchester Hardman Boulevard

Description

Position title: Security Program Officer Location: Manchester, hybrid

Role Purpose The Internal Security Team play a critical role in our business functions alongside our external customer requirements. NCC Group’s Internal Security team develop, introduce and maintain administrative, technical and physical security controls to continually improve the Group’s security.

This role presents an excellent opportunity to deliver in this area and will help NCC Group in managing its cyber risks and meeting its business requirements and also providing subject matter expertise on security frameworks and tools.

Summary:

As part of your role, you will be responsible for: Assist in audits and ensuring we meet the standards for frameworks such as Uk Govt. Cyber Essentials, CIS Controls V8, ISO 27001 amongst others. Develop, improve, and maintain security policies and processes, particularly as they apply to these standards. Vulnerability management - identification, and remediation utilising inhouse systems and expertise. Support the wider business as a security subject matter expert and unify security measures and processes to global standards. Perform supply chain risk assessments as part of NCC Group’s supply chain risk management program. Assist or lead on security projects. Assist in incident management, from detection to “lessons learned”. What we are looking for in you: Previous professional experience in the cyber and information security field, you will be familiar with introducing governance regimes and risk management to large, diverse organisations. Professional experience, you will have attained a broad knowledge of technology frameworks and a thorough grasp of methods used to identify and manage cyber and information security risks. Enjoy working across differing specialised areas, also be willing to promote security standards and good practice when necessary, sometimes against majority opposition. Knowledge of security frameworks, e.g. UK Govt. Cyber Essentials, CIS Controls, NST CSF and others. Knowledge of cloud environments with a particular emphasis on Azure and AWS. The ability to appropriately identify and categorise risk and suggest effective remediation. The ability communicate clearly, to explain security concepts to senior management and other stakeholders both technical and non-technical, who may not have a security background. Ways of working

Focusing on Clients and Customers. Working as One NCC. Always Learning. Being Inclusive and Respectful. Delivering Brilliantly.

Our company

At NCC Group, our mission is to create a more secure digital future. That mission underpins everything we do, from our work with our incredible clients to groundbreaking research shaping our industry. Our teams' partner with clients across a multitude of industries, delving into, securing new products, and emerging technologies, as well as solving complex security problems. As global leaders in cyber and escrow, NCC Group is a people-powered business seeking the next group of brilliant minds to join our ranks.

Our colleagues are our greatest asset, and NCC Group is committed to providing an inclusive and supportive work environment that fosters creativity, collaboration, authenticity, and accountability. We want colleagues to put down roots at NCC Group, and we offer a comprehensive benefits package, as well as opportunities for learning and development and career growth. We believe our people are at their brilliant best when they feel bolstered in all aspects of their well-being, and we offer wellness programs and flexible working arrangements to provide that vital support.

Come join us?

What do we offer in return?

We have a high-performance culture which is balanced evenly with world-class well-being initiatives and benefits: Flexible Working: Balance your work and personal life with our flexible working options. Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave. Medicash & Critical Illness Scheme Financial & Investment Benefits: Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme. Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities. Green Car Scheme: Drive green and save money with our eco-friendly car scheme. Cycle Scheme: Stay fit and healthy with our cycle-to-work scheme. Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet. Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments. So, what’s next? If this sounds like the right opportunity for you, then we would love to hear from you! Click on apply to this job to send us your CV and cover letter and the relevant member of our global talent team will be in touch with you. Alternatively send your details to global.ta@nccgroup.com .

About your application

We review every application received and will get in touch if your skills and experience match what we’re looking for. If you don’t hear back from us within 10 days, please don’t be too disappointed – we may keep your CV on our database for any future vacancies and we would encourage you to keep an eye on our career opportunities as there may be other suitable roles.

If you do not want us to retain your details, please email global.ta@nccgroup.com. All personal data is held in accordance with the NCC Group Privacy Policy (candidate-privacy-notice-261023.pdf (nccgroupplc.com)). We are committed to diversity and flexibility in the workplace. If you require any reasonable adjustments to support you during the application process, please tell us at any stage.

Please note that this role involves mandatory pre-employment background checks due to the nature of the work NCC Group does. To apply, you must be willing and able to undergo the vetting process. This role being advertised will be subject to BS7858 screening as a mandatory requirement.

.

.

Skills

Cyber Security

Risk Management

Governance

Security Frameworks

Vulnerability Management

Incident Management

Cloud Environments

Azure

AWS

Communication

Security Policies

Supply Chain Risk Assessment

Technical Security Controls

Auditing

CIS Controls

ISO 27001