You will need to login before you can apply for a job.
Head of IT & Security Governance Risk & Compliance
Sector: Construction and Building Services
Role: Senior Manager
Contract Type: Permanent
Hours: Full Time
Overview
We're Kingfisher, a team made up of over 78,000 passionate people who bring Kingfisher - and all our other brands: B&Q, Screwfix, Brico Depot, Castorama and Koctas - to life. We want to become the leading home improvement company and grow the largest community of home improvers in the world.
At Kingfisher, our customers come from all walks of life, and so do we. We ensure that all colleagues, future colleagues, and applicants are treated equally regardless of age, gender, marital or civil partnership status, colour, ethnic or national origin, culture, religious belief, philosophical belief, political opinion, disability, gender identity, gender expression, or sexual orientation.
We are open to flexible and agile working, both of hours and location. We offer colleagues a blend of working from home and our offices, located in London & Southampton. Talk to us about how we can best support you!
Cyber security attacks are increasing, and the threat landscape is changing. You will establish an IT Governance, Risk, and Compliance Framework to manage risk and meet regulatory requirements.
What's the job
- Leading the end-to-end management of the security risk environment and internal security control framework; assisting and supporting risk and control owners in mitigating cyber and information security risk.
- Develop and maintain the security governance framework, ensuring alignment with industry standards, regulations, and risk appetite.
- Implement governance, reporting, and escalation of risks impacting customers, colleagues, and operations.
- Implement and lead the Group's ISMS ensuring compliance with security standards and regulatory requirements.
- Partner with Group Audit and Risk teams to ensure IT and Security Risk management is aligned to business processes.
- Share subject matter expertise on security-related risk matters, providing support to the Group CISO.
- Act as the main interface between Kingfisher and its Banners and the IT & Security Governance, Risk and Compliance team.
- Define and collect metrics/KPIs and periodically report to leadership on the overall effectiveness of the team.
- Provide leadership and management of the IT & Security Governance, Risk and Compliance team.
What you'll bring
- Experience of delivering and maintaining IT & Security Governance, Risk and Compliance frameworks.
- Experience of defining and embedding a culture of effective service provision.
- Excellent understanding of principles associated with information security management frameworks.
- Demonstrable understanding of Information Security control standards and frameworks e.g. ISO27001, NIST, PCI DSS.
- Experience in chairing effective governance meetings.
- Ability to plan, prioritise and handle resources within a collaborative environment.
- High level of personal integrity and ability to handle confidential matters.
Be Customer Focused - constantly improving our customers' experience
- I listen to my customers.
- I use available data to help make decisions.
Be Human - acting with humanity and care- I do the right thing.
- I am respectful.
Be Curious - thrive on learning, thinking beyond the obvious- I build and share new ideas.
- I try new things and share my learnings.
Be Agile - working with trust, pace and agility- I have courage to be creative.
- Done is better than perfect; I aim for 80/20.
Be Inclusive - acting inclusively in diverse teams to work together- I embrace allyship.
- I have self-awareness and a desire to learn.
Be Accountable - championing the plan to deliver results and growth- I own my actions.
- I understand the Kingfisher plan and how it relates to my role.
At Kingfisher, we value the perspectives that any new team members bring, and we want to hear from you. We encourage you to apply for one of our roles even if you do not feel you meet 100% of the requirements.
In return, we offer an inclusive environment, where what you can achieve is limited only by your imagination! We encourage new ideas, actively support experimentation, and strive to build an environment where everyone can be their best self. We also offer a competitive benefits package and plenty of opportunities to stretch and grow your career.
Interested? Great, apply now and help us to Power the Possible.
Company
Learn more about this company
Visit this company’s hub to learn about their values, culture, and latest jobs.