Global Head Of Information Security And Risk
CurrentAccountable for the direction of Information Security and Risk encompassing Governance; Strategy, Planning, Policy, Risk Management, Architecture, Communication, and Education and AwarenessLeading the strategy and implementation of a risk based Information Security programme and function, using ISO27001 as a framework for ISMS. Programme includes policy, risk management, governance, compliance programme sponsorship, internal and 3rd party assessment, architecture and change review and governance, contract review, continual awareness and training, vulnerability management, penetration testing, incident management. Also responsible for the delivery of a world class IT service and operational excellence across the whole portfolio of Group Technology solutions. The role encompasses IT architecture, the operational running and change management of technology platforms, IT Service Delivery, Data Centre management and strategy, IT Security, IT project delivery and application support.