We use cookies on our website. By continuing to use this website you consent to the storing and accessing of cookies on your device in accordance with our Cookie Policy. To learn more about cookies, how we use them on our site and how to change your settings please view our Cookie Policy here.

We are in the process of launching a new version of Astonmartin.com. Some pages may appear in the old design during the roll-out process. Visit our new website

Current Opportunities


To view a previously saved application, please login to your candidate homepage.

Job Alerts

Set up a Job Alert

Information Security Operations Engineer - SYS048

Apply now Job no: 492286
Work type: Full Time - Permanent
Location: St. Athan, South Wales
Categories: Information Technology

Job Purpose:

The Information Security Officer (ISO) has overall responsibility to safeguard the information assets of the business and any privileged or property information that the business possesses.  


Key Responsibilities and Tasks:

This is a wide mandate that begins with responsibility for information assets and extends to security architecture. In addition the ISO takes the lead in policies and procedures for handling sensitive information and for raising awareness and training of staff.

  • Create and maintain the enterprise security strategy
  • Oversee development of cyber resilience and information security policies, standards, baselines, guidelines and procedures
  • Lead development of the IT Disaster Recovery Plan and support the Business Continuity Plan
  • Ensure the promotion of cyber resilience and information security policy and ensure that the organization meets all mandated security and compliance requirements
  • Coordinate work with all suppliers, contractors and consultants to maintain and enhance information security and cyber resilience.


Cyber Resilience Strategy  – have the skills and abilities to:

  •  Implement the organization’s cyber resilience strategy
  •  Lead research in new cyber resilience practices
  •  Influence and create cyber resilience policies across the organization
  •  Establish the cyber resilience governance structure, lead governance meetings and ensure the maintenance of the cyber resilience governance framework
  •  Define high-level goals and critical success factors for cyber resilience
  •  Balance cost of prevention against security risk for the organization
  •  Seek agreement to strategy with organization stakeholders.


Cyber Resilience Management  - have the skills and abilities to:

  •  Mentor managers to distill Cyber Resilience awareness across the organisation
  •  Provide strategic leadership to embed information security into the culture of the organisation.
  • Technology Trend Monitoring – have the skills and abilities to:
  •  Investigate latest IT technological developments to establish understanding of evolving technologies
  •  Devise innovative solutions for integration of new technology into existing products, applications or services or for the creation of new solutions
  •  Provide expert guidance and advice to the leadership team to support strategic decision-making. 


Staff Awareness and Development – have the skills and abilities to:

  • Take proactive actions and develops organizational processes to address the development needs of individuals, teams and the entire workforce
  • Diagnose individual and group competence, identifying skill needs and skill gaps
  • Review training and development options and selects appropriate methodology taking into account the individual, project and business requirements.


Continuity Management – have the skills and abilities to:

  • Define disaster scenarios and assesses impact on business processes
  • Work with specialists and business owners to identify and priorities critical business processes for recovery
  • Coordinate assessment of risk to the IT services that support critical business processes, to identify the threats and vulnerabilities for each service, and develop counter-measures
  • Evaluate the options for recovery
  • Produce the contingency plan, and documents procedures
  • Coordinate regular testing of the plan, analyzes the results and implements improvements
  • Ensure compliance with relevant government regulations.


Information Risk Management – have the skills and abilities to:

  • Tailor corporate risk assessment processes to meet specific business requirements
  • Develop risk acceptance criteria that identify acceptable level of risk
  • Maintain consistency in information risk management across an organisation
  • Prioritise the allocation of information risk management resources across an organisation
  • Apply knowledge of industry standard frameworks (e.g. RESILIA, ISO27005) to improve information risk management frameworks.


Architecture Design – have the skills and abilities to:

  • Provide expertise to help solve complex technical problems and ensure best architecture solutions are selected and implemented
  • Collaborate with system developers and users to select and implement technology compliant with business need
  • Ensure all definition and architecture activities (system lifecycle support plans, concept of operations, operational procedures, and maintenance training materials, etc.) are properly documented and updated as necessary
  • Maintain alignment between business evolution and technology developments.


Communication and Knowledge Sharing – have the skills and abilities to:

  • Use a mix of communication methods to promote shared understanding across diverse audiences
  • Convey complex messages and issues clearly and credibly
  • Use, promote and develop ways to capture and share information across a programme or business area(s).


Leadership and Teamwork – have the skills and abilities to:

  • Support team members to take decisions independently and take the lead in their area of expertise
  • Create an environment where team members consistently push to improve performance and productivity
  • The post holder will undertake other duties as may be required to achieve the Company’s objectives, commensurate with the grading of the post.


Qualifications and Experience:

  • ITIL Foundation
  • ITIL Practitioner or Continual Service Improvement
  • ITIL Service Strategy
  • ITIL Service Design
  • RESILIA Foundation
  • RESILIA Practitioner
  • Certified Ethical Hacker

Remuneration Package:

  • Negotiable base salary in line with experience (from £40,000)
  • Discount on our privilege lease scheme, either a Mercedes or Ford.
  • Contributory pension scheme – 3% matched for years 1 & 2, rising to double matched contributions from year 3 to a maximum employer contribution of 12%.
  • 26 days annual leave + statutory bank holidays.
  • Private Health Insurance – Family Cover.
  • Private Dental Plan – Single Cover.
  • A wide range of discounts with associated partners.

How to apply

There really has never been a better time to join Aston Martin Lagonda, with strong financial results, a significant growth plan in place, a new site nearing completion and arguably the strongest model line up in the Company’s history, so if you feel ready to take the next exciting step in your already successful career and become part of the AML family apply today for consideration

Please click on the 'apply now' button to submit your application.

PLEASE NOTE: We reserve the right to close the vacancy to applications earlier should we receive sufficient applications.

Advertised: GMT Daylight Time
Applications close: GMT Daylight Time

Back to search results Apply now Refer a friend

Share this: | More

Work type




You need Internet Explorer 8 or above with Javascript Enabled to view this website.

Please enable JavaScript or upgrade your browser by using one of the links below.


Alternative Page Languages

This page is available in alternative language and regionalised versions.

Alternative Website Languages

View alternative language and regionalised websites.

Find a Dealer

Discover the official Aston Martin dealer network with over 140 dealers located around the world.