Information Security Officer at DXC Technology

United Kingdom

DXC Technology Logo
Not SpecifiedCompensation
Mid-level (3 to 4 years), Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Insurance, Reinsurance, Financial ServicesIndustries

Requirements

  • Ideally, a degree in computer science, Information Systems, Engineering, or a related field
  • Holding any of the following qualifications would be an added advantage: CISSP, CCSP, GIAC Cloud security certifications
  • Proven experience in a security management capacity, particularly in information-rich industries (e.g., Software, Financial Services)
  • Proven track record of securing cloud-based services, ensuring scalability, performance, and reliability
  • Expertise in a wide range of security domains: access controls, network security, cloud security, application security, secure software design, security testing, vulnerability remediation, and incident management
  • Experience in cloud computing architectures, common technologies (e.g., AWS security tools)
  • Good understanding of NIST security controls frameworks, risk assessment, and risk management
  • Familiarity with information privacy and protection regulations (e.g., GDPR)

Responsibilities

  • Identify, assess, and prioritize security vulnerabilities, ensuring effective remediation plans are in place and executed
  • Lead investigations into information security breaches, ensuring proper reporting and communication with senior management during incidents
  • Work with the Security Incident Response Coordination Centre (SIRCC) to address and mitigate security incidents, ensuring proportionate remediation of information breaches
  • Work closely with the CISO to ensure the security strategy aligns with broader organisational objectives, whilst also meeting information privacy and protection regulations (e.g., GDPR)
  • Monitor and review security policies, standards, and procedures focused on protecting information across all environments, ensuring alignment with business and IT priorities
  • Own and manage all information security risks, performing risk assessments specific to storage, processing, and transfer
  • Conduct periodic audits of information security controls to ensure compliance with internal policies and external regulations
  • Ensure that information security requirements are incorporated into all phases of technology systems, from design through deployment
  • Coordinate with third-party security vendors to conduct vulnerability assessments, penetration tests, and security audits focused on information protection
  • Stay current on emerging information security trends, threats, and technologies, recommending updates to security measures as needed
  • Establish and maintain a strong information security posture, continuously monitoring the effectiveness of controls and processes
  • Regularly evaluate the organization’s information security safeguards, ensuring they provide robust protection against evolving threats and information-related risks
  • Monitor software development teams to ensure secure information handling throughout the software development lifecycle (SDLC), ensuring security is embedded in processing systems and applications

Skills

Information Security
Vulnerability Assessment
Incident Response
Security Investigations
Risk Management
GDPR
Security Policies
Compliance
Governance
CISO Collaboration
SIRCC

DXC Technology

IT services for enterprise modernization and management

About DXC Technology

DXC Technology provides IT services to large enterprises, focusing on modernizing their critical systems and operations. The company uses the Enterprise Technology Stack to enhance IT infrastructure, optimize data architectures, and ensure security across various cloud environments, including public, private, and hybrid. DXC operates on a contractual basis, offering consulting, system integration, and managed services to help clients improve their IT operations. What sets DXC apart from competitors is its strong commitment to innovation, sustainability, and corporate responsibility, which has earned it recognition as one of the Most Responsible Companies. The goal of DXC Technology is to be a trusted partner for enterprises, helping them achieve scalable and secure IT solutions while promoting inclusion and diversity within its workforce.

McLean, VirginiaHeadquarters
2017Year Founded
$14.6MTotal Funding
IPOCompany Stage
Consulting, Enterprise SoftwareIndustries
10,001+Employees

Risks

Emerging IT service providers offer cost-effective solutions, threatening DXC's market share.
Rapid technological changes may outpace DXC's innovation, risking service obsolescence.
Economic downturns could reduce IT spending, impacting DXC's long-term contract revenue.

Differentiation

DXC Technology is a Fortune 500 global IT services leader.
The company specializes in modernizing mission-critical systems for large enterprises.
DXC's Enterprise Technology Stack ensures security and scalability across cloud environments.

Upsides

DXC is recognized as a leader in the 2024 Magic Quadrant for Outsourced Digital Workplace Services.
The Quercus AI platform collaboration with Ferrovial and Microsoft enhances DXC's innovation capabilities.
DXC's role in transforming Italy's healthcare sector showcases its expertise in digital transformation.

Land your dream remote job 3x faster with AI