<p><em>Internal use only – Grade D</em></p><h3><strong>About us.</strong></h3><p>We are The Very Group and we’re here to help families get more out of life. We know that our customers work hard for their families and have a lot to balance in their busy lives. That’s why we combine amazing brands and products with flexible payment options on Very.co.uk to help them say yes to the things they love. We’re just as passionate about helping our people get more out of life too; building careers with real growth, a sense of purpose, belonging and wellbeing.</p><h3><strong>About the role</strong></h3><p>The role of a Senior Security Specialist, reporting to the Head of Information Security, encompasses a broad range of responsibilities aimed at safeguarding the organisation's digital assets and ensuring compliance with security standards. </p><p>This position involves providing hands on security expertise to various business units, improving the overall security posture of the organisation by identifying and implementing security improvements to align with industry standards and ensuring adherence to security compliance requirements. </p><p>The Senior Security Specialist plays a crucial role in developing and implementing security strategies, policies, and procedures, while also collaborating with cross-functional teams to promote a culture of security awareness and best practices throughout the organisation. </p><p>Additionally, they support the Head of Information Security in leadership and strategic activities, contributing to the overall direction and vision of the security programme, and assisting in decision-making processes to enhance the organisation's security posture. </p><h3><strong>Scope of Role</strong></h3><p>This role impacts on all areas of the Group, including regulators, customers, employees, third parties and contractors. It involves being responsible for the implementation of new security defences and the operation of existing in accordance with best practices, company policy and regulatory requirements. </p><h3><strong>Key Responsibilities</strong></h3><ul><li>Safeguard the organisation's digital assets and ensuring compliance with security standards along with maintaining the security and integrity of the organisation's information systems. </li></ul><ul><li>Works closely with different departments to understand their specific security needs and challenges. Ensuring that optimal security measures are implemented and aligned with the organisation's overall security strategy. </li></ul><ul><li>Responsible for identifying areas of non-compliance across the group and using skills and expertise to realign any problem areas to improve security posture. </li></ul><ul><li>Ensures that the environment is well prepared for security audits, working with internal teams to ensure a consistent base line approach to IT general controls is in place to facilitate and automated approach to audits. </li></ul><ul><li>Ensures that access controls are effectively managed and that identity management processes are robust and secure. </li></ul><ul><li>Implements and maintain security measures across cloud environments, ensuring alignment to best practices, improving the overall posture and ensuring compliance with relevant regulations. </li></ul><ul><li>Supports the Head of Information Security in leadership and strategic activities. This involves contributing to the overall direction and vision of the security programme and assisting in decision-making processes to enhance the organisation's security posture. </li></ul><p>The Senior Security Specialist provides strategic insights and recommendations based on their expertise and experience and works closely with the Head of Information Security to develop and implement long-term security plans. This requires strong analytical and strategic thinking skills, as well as the ability to influence and drive change at the executive level. </p><h3><strong>Essential knowledge and skills</strong></h3><p>Knowledge: </p><ul> <ul><li>A broad understanding of the Information Security industry, including UK regulations and compliance standards such as GDPR, ISO 27001, and PCI-DSS. </li></ul> <ul><li>In-depth knowledge of IDAM including authentication mechanisms, single sign-on (SSO), and multi-factor authentication (MFA). </li></ul> <ul><li>Familiarity with security measures for cloud platforms, particularly Oracle Cloud and Azure, Microsoft 365 (M365) Google Cloud and AWS. </li></ul> <ul><li>Understanding of securing end user devices and applications. </li></ul> <ul><li>Familiarity with the latest security threats, trends, and best practices. </li></ul> <ul><li>Understanding of agile methods of working and the Secure Software Development Lifecycle (SDLC). </li></ul> </ul><p>Skills: </p><ul> <ul><li>Proven experience in IT security, with a focus on IAM, cloud security, and core IT infrastructure security. </li></ul> <ul><li>Excellent problem-solving and analytical skills. </li></ul> <ul><li>Strong communication and interpersonal skills. </li></ul> <ul><li>Ability to work independently and as part of a team. </li></ul> </ul><p>Role-Specific Qualifications: </p><ul> <ul><li>Information Security and/or Information Technology industry qualifications such as CISSP (Certified Information Systems Security Professional) or CISM (Certified Information Security Manager), or equivalent time served. </li></ul> <ul><li>A demonstrable hands-on background to improving security postures of organisations. </li></ul> </ul><h3><strong>Some of our benefits</strong></h3><ul> <li>Flexible, hybrid working model</li> <li>Inclusive culture and environment, check out <a href="https://www.glassdoor.co.uk/Reviews/The-Very-Group-Reviews-E8682.htm" rel="nofollow noreferrer noopener" class="external">our Glassdoor reviews</a> </li> <li>£6500 flexible benefits allowance to suit your needs</li> <li>30 days holiday + bank holidays</li> <li>Udemy learning access</li> <li>Bonus potential (performance and business-related)</li> <li>Up to 25% discount on Very.co.uk</li> </ul><ul> <li>Matched pension up to 6%</li> <li>More benefits can be found <a href="https://theverygroup.jobs/life-at-tvg/benefits" target="_blank" rel="nofollow noreferrer noopener" class="external">on our career site</a> </li> </ul><p> </p><p><strong>How to apply</strong></p><p>Please note that the talent acquisition team are managing this vacancy directly, and if successful in securing this role, you will be required to undertake a credit, CIFAS, Right to Work checks and if a specific requirement of your role a DBS (criminal records) check. Should your application progress we require you to let the team know if there is anything you need to disclose in relation to any of these checks prior to them being undertaken, including any unspent criminal convictions. </p><p><strong>What happens next?</strong></p><p>Our talent acquisition team will be in touch if you’re successful so keep an eye on your emails! We’ll arrange a short call to learn more about you, as well as answer any questions you have. If it feels like we’re a good match, we’ll share your CV with the hiring manager to review. Our interview process is tailored to each role and can be in-person or held remotely. </p><p>You can expect a two stage interview process after meeting the TA team, </p><p><strong>First stage – </strong>A one-hour face to face or MS Teams interview.</p><p><strong>Second stage – </strong>A final stage 1 hour session, likely to include a task for you to prepare for.</p><p>As an inclusive employer please do let us know if you require any reasonable adjustments. </p><p>If you'd like to know more about our interviews, you can find out <a href="https://theverygroup.jobs/preparing-for-interview/our-recruitment-process" rel="nofollow noreferrer noopener" class="external">here</a>.</p><p> <strong>Equal opportunities</strong></p><p>We’re an equal opportunity employer and value diversity at our company. We do not discriminate based on race, religion, colour, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status.</p><p>We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.</p><p><a href="https://the-very-group.workable.com/jobs/5106290/candidates/new" class="btn apply-now">Apply Now</a></p>