3rd Party Assurance Security Specialist

Location
Edinburgh, City of Edinburgh, United Kingdom
Salary
Competitive
Posted
22 Oct 2020
Closes
07 Nov 2020
Ref
5864
Job role
Accountant
You'll bring the ambition, we'll provide the opportunities

Tesco has built its success - and its reputation - on a tradition of excellent service and dedication to the customer, but Tesco Bank is about more than bringing these values to a new market. It's about bringing a new approach to personal finances and retail banking. As we look to build upon existing talent within our senior and specialist roles, we're creating a backbone of excellence - offering the highest-calibre of professional a chance for wide-ranging and long-lasting impact in a business that's breathing new life into the industry.

In the role of 3rd Party Assurance Security Specialist you will provide Information Security expertise in the oversight of 3rd Party Assurance across a diverse supplier base. This will include working extensively with internal and external stakeholders to assess, assure and provide required remediation to promote a positive Security posture and in turn protect Tesco Bank customers, colleagues and brand.

In the role you are accountable for:

You will manage and own a portfolio of supplier assessments, undertaking Information Security (IS) reviews using a defined model and supporting processes. From planning, reviewing material, supplier assessment, reporting of identified risk and provision of required remediation.

Act as the central point of contact for the Information Security 3rd Party team, supporting business queries, essential housekeeping, reporting and metric production.

Maintaining accurate records and process documentation, ability to coordinate material from multiple sources and create concise and effective MI for senior management.

Have the ability to create and develop relationships across a diverse stakeholder network (internal and external).

Contribute to the ongoing development and maintenance of the Information Security Assurance framework, driving continual improvement.

Support and active collaboration throughout the wider team, active contribution in team objectives.

Deputising where appropriate for Information Security Managers/ Senior Security Managers.

Experience required for the role:

Practical Operational experience of Information Security and its application.

Good working knowledge of Operational Risk and control frameworks.

Industry Security accreditation. CISM, CISA, Cyber Essentials Assessor, etc.

Wherever your talent lies, you'll find challenge and reward in equal measure. We're here to go the extra mile for our customers - and we'll do the same for you. It's simple. As long as you have the ambition, we'll provide the opportunity for success. Visit our website and find the role that's right for you.

Similar jobs

Similar jobs