Candidate Specification
Candidate Specification
We are looking for a results-oriented Information Security Program Manager with the ability to lead and drive change. The ideal candidate possesses:
Proven experience in implementing Information Security strategies.
Strong program and project management skills with a track record of successfully delivering complex programs.
In-depth knowledge of global Information Security standards and best practices.
Excellent communication and stakeholder engagement skills.
The ability to identify and mitigate Information Security risks effectively.
An understanding of legal and regulatory requirements related to Information Security.
Knowledge and Experience
Essential:
Holds a bachelor s degree in a field related to Information Security, technology, project management or possesses industry-recognised qualifications and experience, accompanied by relevant industry certifications (e.g., CISSP, CISM, or their equivalents).
Exceptional written and verbal communication skills, enabling the clear conveyance of complex security concepts to both technical and non-technical stakeholders.
Displays robust analytical skills, with the ability to effectively manage a complex program with tight timelines, thriving in dynamic and demanding environments to achieve overarching objectives.
Is a change agent, boasting strong negotiation and conflict resolution abilities, along with a collaborative mindset that facilitates cross-functional collaboration.
Possesses sound judgment, a sense of urgency, and a proven commitment to upholding high ethical standards, regulatory compliance, exceptional customer service, and business integrity.
Maintains poise and composure even in high-pressure situations.
Holds a strong understanding of business management, information security risk management, and cybersecurity technologies.
Exhibits strong analytical acumen and proficiency in program and project management, allowing for effective management of multiple projects within a dynamic environment, while also demonstrating expertise in financial and resource management.
Desirable:
Demonstrates a deep understanding of information security principles and best practices, including familiarity with standards like ISO/IEC 27001, ITIL, COBIT, NIST 800-53, and other cybersecurity frameworks.
Serves as a strategic leader capable of articulating a compelling vision and motivating teams and stakeholders to drive information security initiatives.
Job Description
Mott MacDonald are a global engineering, management and development consultancy focused on guiding their clients through many of the planet s most intricate challenges.
The role of the Information Security Program Manager is to oversee the design of the information security program and manage its implementation. This involves supporting the development of the Information Security strategy and shaping the initiatives required to deliver it, prioritising deliverables, and assessing acceptable risk levels in close collaboration with executive management, IT leaders and business teams.
The Information Security Program Manager is responsible for the implementation of the program including implementing robust security practices by collaborating across the group and with external consultants. The Program Manager is responsible for managing the delivery plan for information security, aligning it with the overarching business goals and risk profile and reporting delivery progress to leadership teams. They will be responsible for tracking, and adjusting plans to ensure smooth delivery, managing and escalating project and programme risks, managing resources (including third-party contractors or consultants), project documentation, and project plans to successfully deliver IT projects and programmes. This includes maturing our capability to recognised standards, planning security training, and implementing effective information management protocols. Achieving compliance with industry standards and regulatory requirements is another vital aspect of their role, often involving closing out audit actions.
Fostering a collaborative culture, enhancing employee well-being, and embracing diversity as an equal opportunity employer are key elements of their role.
Key Responsibilities