DescriptionThis opportunity is only open to applicants who are currently Priority Movers. Applications from individuals not currently on the Priority Mover list will be rejected and not considered.
Disclosure Scotland an executive agency of the Scottish Government is seeking a Principal Cyber Security Analyst.
Disclosure Scotland supports safer recruitment and protects vulnerable groups. We look to continuously improve our services based on user needs. We are transforming the way the government provides this critical public service to safeguard children and vulnerable adults.
This role will see you in charge of a small team ensuring that Disclosure Scotlands security strategy is delivered and the organisation is protected from cyber security threats.
Cyber Security Analysts are responsible for protecting the confidentiality integrity and availability of information and information systems used by government and Partners Across Government. Initiate and influence relationships with and between key stakeholders in taking forward all aspects of cyber security acting as a primary point of contact for senior stakeholders and influencers Manage the assessment and response to cyber threats to maintain confidentiality integrity availability accountability and relevant compliance Operate as a focus for cyber security expertise for the organisation and the wider central government community providing authoritative advice and guidance on the application and operation of all types of cyber security controls Oversee the work of the cyber security function including project and task definition and prioritisation quality management and budgetary control and management tasks such as recruitment and training
ResponsibilitiesResponsibilities- Initiate and influence relationships with and between key stakeholders in taking forward all aspects of cyber security acting as a primary point of contact for senior stakeholders and influencers- Operate as a focus for cyber security expertise for the organisation and the wider central government community providing authoritative advice and guidance on the application and operation of all types of cyber security controls- Understands voice of the customer and develops mechanisms to proactively sense adoption and usage patterns of consumer technologies by end users so that policy can align with need- Deliver specific pieces of work resulting from the Cyber Security Strategy related to cyber business risk and information control/protection requirements- Champion incident management incident investigation and response policy and/or incident management and investigation processes procedures and systems- Manage the assessment and response to cyber threats to maintain confidentiality integrity availability accountability and relevant compliance- Deliver comprehensive risk assessments for complicated or novel scenarios using methodologies appropriate to the situation. Understands in detail how the risk assessment output dovetails into the risk management process- Have responsibility for penetration testing services and drives organisational and business change to better comply with policies procedures and guidelines- Ensure effective delivery of penetration testing assessments for organisational benefit- Lead organisational teams in various stages of test design execution and assessment for multiple customers potentially across multiple organisations and that comply with policies procedures and guidelines- Develop cyber security policy standards and guidelines appropriate to business technology and legal requirements and in accordance with best professional and industry practice
QualificationsWorking pattern
This role is a permanent level transfer position.
Pay supplement
This post is part of the Government Digital and Data (GDD) profession and currently attracts a 4000 annual GDD pay supplement which is paid monthly. Pay supplements are temporary payments and subject to regular review. Following a review a pay supplement may change in value or be withdrawn.
How to Apply
Applications for this position will only be accepted from substantiveC1 employees.
Please submit a statement outlining your suitability for the role relevant skills and experience and what you would bring to the team (maximum 500 words).
Vacancy closes at 11:59pm onSunday 19th July.
Selection Process
All applications will be invited to an informal discussion with the hiring manager.
Informal discussions are to be confirmed.
Further Information
If you have specific questions about the role please contact
Read ourCandidate Guidefor further information on our recruitment and application processes.
Required Experience:
IC
Employment Type : Full-Time
Experience: years
Vacancy: 1