Role Title: Contract Security Manager, ESN
Duration: Contract to run until 09/07/2025 with a potential to move to perm
Location: Bristol, Hybrid 3 days onsite 2 days remote
Clearance required: BPSS, Eligible for SC
Role purpose / summary
The Emergency Services Network (ESN) is a major strategic priority and our commitment to connect for good for our customers and our country.
The Security of the ESN is key to our customer and to our Emergency Services users. Availability of the network is a matter of life or death to the Emergency Services and they have to have confidence in the confidentiality and integrity of their communications and operations.
We have to build and maintain effective security controls to prevent and detect a wide range of cyber and physical threats.
This job matters because it:
- Manages the delivery of the ESN Security Management Plan, ISMS and Security Processes - ensuring effective management of security within the Programme and that Contract obligations are met.
- Works with other Security professionals and other teams to meet ESN security objectives.
- Engages with Customer security teams, providing assurance that Security requirements are met and identifying opportunities for improvement.
- Provides assurance that internal teams and suppliers have met ESN security requirements.
- In support of the above the ESN Contract Security Manager manages a team that contributes to the Group's overall Cyber Security risk management program, which is designed to ensure that the Group's technology systems and data are adequately protected.
- The role of the ESN Contract Security Manager is wide ranging and individuals need to prioritise across the four key components summarised below based on individual customer circumstance (life-cycle).
Relationship:
- Work across all security functions to orchestrate and lead our customer contact strategy.
- Build strong relationships with Customer Security Team or equivalent with the aim of becoming a trusted security advisor.
Delivery
- Maintain oversight of delivery activities including in-life contract change requests.
- Ensure delivery against all contractual Security obligations.
- Service
- Maintain oversight of Security in-life delivery performance against compliance, obligations and risks.
- Translate the output of any PIRs into improvement plans.
- Commercials
- Maintain oversight of all contract commercials including Revenue, CCRs and BRF to maximise profitability.
- Contribute to demand generation as outcome of trusted advisor status.
Key Skills/ requirements
- Have a proven track record in security management (3-5 years)
- Have demonstrable experience implementing and managing ISO Certifications (eg 27001)
- Experience with evaluating policies and procedures
- Security Incident Reporting
- Knowledge of mobile networks up to 5G is extremely desirable
- Complying with security obligations
- Security assessments
- Security Risk assessments
- Security testing
- Reporting issues with compliance to customer
All profiles will be reviewed against the required skills and experience. Due to the high number of applications we will only be able to respond to successful applicants in the first instance. We thank you for your interest and the time taken to apply!