Security Advice Manager
RiverflexAbout the role
Role: Security Advice Manager
Location: Remote
Start Date: ASAP
Duration: 6 Months (5 days per week)
Riverflex is looking for a Security Advice Manager for our client who is a leading international online fashion and beauty retailer.
As a Security Advice Manager in the Information Security - Trust & Assurance Team, you will be excelling in our client’s security program to maintain trust with customers, stakeholders, and employees by ensuring that the systems and processes relating to security are world-class.
You will be a key part of the team for all questions concerning IT Security Governance & Compliance and play an important role in shaping the entire ISMS (Information Security Management System).
What you will be responsible for:
As a Senior IT Security & Compliance Manager, you will be responsible for:
- Designing and establishing information security policies, procedures and best practice guidelines
- Build, maintain, and drive adherence to a central Information Security controls framework mapped to industry best practices and regulatory requirements that define the key and operational controls performed across our client’s IT landscape
- Have a hands-on and pragmatic approach to implementing standards and controls
- Focus on implementing controls and standards with the business to ensure that controls/standards are needed according to the policies which can be incorporated into the solution
- Solution controls and standards with the stakeholders by driving and implementing workshops as well as additional alignment sessions
Requirements
Essential qualifications/skills/competencies required:
- You have Bachelor's degree in Computer Science, IT Security, or equivalent practical experience
- You have 5+ years of experience working in a global IT Department, Information Security, or consultancy and proven experience in the IT Security Governance and Compliance functions
- Hold a combination of Information Security expertise, Business understanding as well as technical knowledge in order to challenge where necessary
- You have strong Knowledge of security program requirements coming from data security, privacy regulations and standards such as NIST, GDPR, ISO 27000 series, SOC 2 Type 2, ePrivacy
- You have experience in addressing regulations, breaking down obligations and translating regulatory requirements into operational requirements
- You have IT Security & Compliance certifications would be a plus (e.g. CISSP, CISM, PECB Certified ISO/IEC 27001 Lead Implementer and/or Auditor);
- You have excellent attention to detail, strong analytical skills and experience in operationalizing and/or developing scalable solutions and structures in a complex environment;
- You are a team player, with good interpersonal, verbal, and written communication skills.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s
Similar roles
Cybersecurity Threat Hunting Team Lead - REMOTE
Binary Defense
IT Security Analyst
Guild Mortgage
$105,000/yr
Information Security Senior Compliance Analyst, Marlborough or Chelmsford, Hybrid, Full-time, 5 Days In-Office/ Month Requirement
Digital Federal Credit Union