Security Business Partner

  • Place:

    Brno
  • Work type:

    full-time
  • Required languages:

    English (C1)
  • For graduates:

    no

Kontakt na recruitera:

Moré Adriana Recruiter

Why should you choose us?

The ever changing retail market, with multichannel capabilities driven by evolving technologies and interactive customer-focused applications is an attractive target for attackers. Reporting to the Head of Information Security Strategy, the role of the Information Security Business Partner will be responsible for representing the Security Management Office (“SMO”) in matters of risk management and Information Security to the Dixons Carphone Centre of Excellence (CoE) in Brno.

The role will provide

Information Security advisory and consulting services to the business unit

and will require a strong background in risk management. As such, an in-depth understanding of relevant regulations and legislation that affect the operations of Dixons Carphone is required. Moreover, the holder will be required to support with the development and execution of the security strategy and be a central point of contact for senior business stakeholders within the relevant business unit(s) for information security and risk management issues and queries.

Knowledge of industry recognised security frameworks and regulations such as ISO 27001, ISF SOGP, DPA and PCI-DSS is essential to aid in the communication of compliance and associated risks to key stakeholders. In addition to being a subject matter expert in all things information security, the job holder will work closely with Information Security Assurance teams and act as mentor and coach to members of the wider SMO.

What will you do?

  • Engage with Business leaders to understand their strategic and tactical objectives.
  • Track information security risks to those objectives and offer proactive mitigation recommendations during the course of their journey.
  • Continually perform ‘Horizon Scanning’ of industry events and trends to identify emerging threats, risks, issues and opportunities which may impact this Business function.
  • Work closely with the Head of Information Security Strategy and all areas of the Business to report on the status of risk and compliance within the business function.
  • Develop and maintain relevant policies, procedures, standards and guidelines for various information security areas.
  • Be responsible for risk and compliance activities, including PCI-DSS, ISO 27001.
  • Support developing and executing the security strategy.
  • Monitor the status of information security and report results to stakeholders, as requested.
  • Be the SME and first point of contact for the business unit or location in which the individual is located.
  • Liaise closely with the central information security function to ensure consistency in the approach and application of security across the organisation.
  • Ensure knowledge on security threats faced by the retail industry is up to date by attending industry events, building relationships with peers and subscribing to relevant feeds.
  • Act as the signoff and escalation point for matters of risk management.
  • Support in defining and collating data for KPI reporting.
  • Assist with security audits.
  • Engage with business stakeholders within the Brno CoE to drive implementation of information security and risk mitigation controls.
  • Work with Brno CoE business stakeholders to champion the value and objectives of the Information Security and the Security Management Office function.
  • Collaborate and interface with other teams within the Security Management Office, as required.
  • Communicate a consistent and standard SMO message to the CoE.

Now you’re probably wondering what skills and knowledge we expect from you? Well…

  • Educated to Degree level or higher, preferably in a computing, engineering, or information security related discipline.
  • At least one of the following: CISSP, CISM, CISA, CRISC or ISO 27001:2013 Lead/Implementation Auditor.
  • Project & Programme Management (e.g. PRINCE2) qualifications beneficial.
  • Excellent analytical skills and ability to solve complex problems.
  • Excellent communication skills and the ability to clearly and concisely articulate information security risks to Business Stakeholders, particularly the ability to prepare Executive and Board level materials.
  • Proven ability to communicate effectively at all levels within the organisation.
  • Ability to manage and oversee activities of Security Analysts / Managers and coach less experienced members of staff.
  • Ability to manage 3rd Party security vendors and be involved in the procurement process.
  • Expert in Security Governance, Assurance and Risk Management.
  • Strong experience with software assurance practices and techniques and the software development lifecycle (SDLC).
  • Knowledge of payment card systems.
  • Knowledge of ISF SOGP, PCI-DSS and GDPR Data Protection & Regulations.
  • Understanding of network and security technologies.
  • Proven management experience in information security.
  • Previous experience in developing and executing information security strategy is beneficial.
  • Ability to articulate technical concepts and related risks to a non-technical audience.

What we offer to make you happier?

  • Modern office right in the city centre with an amazing terrace
  • You can mix benefits of your choice in our Cafeteria benefit system
  • Bonus scheme, loyalty bonuses
  • Self-development opportunities in the form of trainings, courses, possibilities to attend various conferences
  • 25 vacation days, sick days, lunch vouchers, flexible working hours, contribution to pension scheme and a gym membership
  • Plenty of social events and charity activities
Apply now Refer a friend More information about department
Security Business Partner


Chráněno službou reCAPTCHA.
Ochrana soukromí Smluvní podmínky
Poslat kamarádovi
Security Business Partner



Chráněno službou reCAPTCHA.
Ochrana soukromí Smluvní podmínky