Location
Westminster Bridge Road
Hours
Full Time
Salary
£65,000 per annum
About the Role
Are you an experienced security professional who can build strong relationships and influence positive change? As a Business Information Security Officer (BISO), you'll act as the link between the business, technology and information security teams, helping Peabody manage risk, strengthen resilience and protect our residents, colleagues and data. This is an exciting opportunity to shape security culture; support major business initiatives and ensure security is embedded into how we work.
You will partner with business teams to listen and identify business and operational risks, recommend risk reduction controls and oversee their implementation. You will lead and improve the human and security awareness program across the Peabody group, helping colleagues understand their role in protecting Peabody’s residents, data and services through campaigns, nudges, simulations, role-based learning and reinforcement.
Additionally, you will collaborate with resident engagement and resident partnership colleagues to design and deliver resident-focused awareness initiatives. You will lead on lessons learnt from incidents, near misses, audits and assurance activities to improve awareness content, user behaviour and corrective controls. Providing security governance, reporting and assurance, you will support audits, risk reviews and regulatory compliance. You will also support supplier and third-party security risk assessments, ensuring appropriate controls are in place.
Experience
- Working and collaborating with different business units across an organisation
- Identifying and communicating how cyber security vulnerabilities and threats impact business services and activities
- Implementing, providing governance and oversight of security frameworks such as ISO27001, NIST CSF, NCSC CAF or Cyber Essentials
- Deploying security awareness and human risk platforms, tailoring awareness for frontline colleagues, managers, senior leaders and high-risk roles
- Coaching, advising and encouraging positive security behaviours across different business areas
About you
Strong stakeholder management skills with the ability to engage both technical and non-technical audiences. Confident working across multiple teams, influencing stakeholders and helping embed a strong security culture throughout the organisation.
Qualifications
Relevant qualifications or certifications in information security or related fields are desirable but not explicitly stated. A strong professional background and practical experience in security governance and awareness is essential.
Peabody Trust











