London, England, United Kingdom Hybrid / WFH Options
ZipRecruiter
unit Mott MacDonald's support services enable our organization to operate efficiently. The team provides specialist advice, best practices, and technology tailored for our global reach. The IT Programme Manager – InformationSecurity oversees complex IT security projects, ensuring they align with risk management and compliance goals. This role involves managing cross-functional teams, stakeholder coordination, and … driving security initiatives. Working with IT leadership, PMO analysts, resource managers, and IT service users, you will lead a team of IT Project Managers and Business Analysts, supporting their development and ensuring effective project delivery. The successful candidate will exemplify excellence in programme and project management, including shaping project plans, tracking progress, managing risks, resources, documentation, and ensuring successful … IT project delivery. Key duties and responsibilities include: Lead planning, execution, and delivery of the informationsecurity programme. Align security initiatives with organizational goals in collaboration with leadership. Define project scope, objectives, timelines, and resources with senior leadership. Monitor and communicate project status, performance, risks, and mitigation strategies to stakeholders. Coordinate internal teams and third-party vendors. More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Cyber UK
InformationSecurityManager Hybrid – MOD Abbey Wood, Bristol Full Time, Permanent Competitive salary plus benefits Join Serco’s UK & Europe division as an InformationSecurityManager in our Armed Forces Recruitment Service (AFRS) team and take operational ownership and accountability for informationsecurity management processes for Defence opportunities. In this role, you … will deliver, manage, and audit the cyber security aspects of contracts in accordance with MOD Secure by Design standards. You will oversee the extensive security arrangements for Serco partners and subcontractors, ensuring their compliance with MOD standards. Additionally, you will ensure adherence to data protection legislation through close collaboration with contract Data Protection Champions and senior management. At … source. Main responsibilities of the role: Engage with key industry partners and suppliers to ensure ongoing compliance with MOD standards (e.g., Secure By Design, DefStan 05-138). Conduct informationsecurity risk assessment and management using recognized frameworks such as NIST SP800. Perform informationsecurity assurance activities and manage incidents. Establish and manage internal and external More ❯
Senior Manager, Business InformationSecurity Apply locations London, United Kingdom time type Full time posted on Posted 30+ Days Ago job requisition id R0093633 Key accountabilities: Reviewing and assessing the informationsecurity and cyber controls that enables FTSE Russell to conduct its business in a secure manner, and gap analysis of the same and the … oversight of InfoSec/Cyber related control gap/risk remediation activities. Lead and analyse the informationsecurity roadmaps, strategies, programmes, and projects within FTSE Russell, identifying and reporting risks, trends and future opportunities for improvement and enhancement, proactively engaging and working closely with the technology and cyber teams. Provide updates to FTSE Russell management from the three … Engaging with external third parties who provide services to FTSE Russell and working closely with the established internal third-party oversight functions to ensure appropriate and contracted levels of security are met. Establish and maintain a Cyber Risk Profile of FTSE Russell in line with other areas of LSEG, and assist with the establishment towards maintenance of a Risk More ❯
Job Number: 59 Job Category: GovTech Job Title: SENIOR INFORMATION SYSTEM SECURITYMANAGER - VIRGINIA - URGENT Job Type: Full-time Clearance Level: Top secret/SCI Work Arrangement: Remote Job Location: Arlington VA Salary: 250k - 300k Background Utilize expert knowledge and experience regarding risk management strategies in support of a major DoD program Collaborate between the Cyber Risk … assessor/security Control assessor and the program as well as DoD senior leadership Reporting of status and metrics for body of evidence and authorization conditions Develop and implement security policies, procedures, and guidelines to ensure compliance with applicable laws, regulations, and industry best practices Conduct risk assessments and identify potential vulnerabilities and threats to information systems … Develop and implement risk mitigation strategies and controls to minimize the impact of security incidents Collaborate with system administrators, network administrators, and other stakeholders to plan and implement security measures for information systems. This includes establishing security controls and standards for information systems including Continuous monitoring Develop and implement incident response procedures to reconstitute system More ❯
InformationSecurityManager Location: Utrecht, Netherlands Our client is seeking an experienced InformationSecurityManager to join their team in Utrecht. This hybrid role offers the opportunity to drive security initiatives, enhance cybersecurity frameworks, and ensure compliance with industry standards. If you are passionate about informationsecurity and want to make … a real impact and make change, we want to hear from you. Key Responsibilities Develop and implement informationsecurity policies and procedures. Lead risk assessments and security audits to identify vulnerabilities. Ensure compliance with relevant regulations (ISO 27001, GDPR, NIS2, etc.). Oversee security awareness training for employees. Collaborate with IT and business teams to embed … security best practices. Monitor security incidents and coordinate incident response efforts. Work with external stakeholders, including auditors and regulatory bodies. Qualifications & Experience Proven experience in informationsecurity management (5+ years preferred). Strong knowledge of security frameworks and compliance requirements. Experience with security technologies such as SIEM, IDS/IPS, and endpoint protection. Excellent More ❯
Our client, a leading financial services firm based in Newcastle, is looking to recruit an InformationSecurityManager to join on an initial 3-month fixed term contract. The successful candidate will lead informationsecurity for the firm, ensuring corporate and client data is protected and compliant with legal and internal standards. Essential Skills/… Experience: Proven track record of implementing informationsecurity practices within a large and diverse organisation. Evidence of competency in the creation and implementation of Informationsecurity solutions, procedures and practices. Solid technical knowledge and experience on security technologies (like Endpoint protection, Mobile Security, Data Protection, Cloud Security, etc.) and on cyber security capabilities (SIEM, SOC, CERT, Vulnerability Management, Threat intelligence etc.) Strong knowledge of main InformationSecurity standards and framework (ISO27001, ISO22301, ISF, NIST, COBIT.) Good background in information management, with clear understanding of the challenges of Information and IT security. A good understanding and experience of implementing informationsecurity within cloud-based environments. Experience More ❯
Join to apply for the InformationSecurityManager role at ARAG Legal Services UK Join to apply for the InformationSecurityManager role at ARAG Legal Services UK Get AI-powered advice on this job and more exclusive features. Direct message the job poster from ARAG Legal Services UK Resourcing Advisor at ARAG Legal … Services UK specialising in Internal Recruitment. Corporate Recruiting and Executive Search About The Role We’re excited to announce an opportunity for an InformationSecurityManager to join our dynamic Digital Services team at ARAG UK. As a member of the Digital Services team this role will be at the forefront of ARAG UK’s security strategy, ensuring the confidentiality, integrity and availability of ARAG’s information and information systems. The successful candidate will hold accountability for ensuring our ISO27001 accreditation is adhered to and successfully renewed, as well as assessing the information risk and facilitate remediation of identified vulnerabilities within the company’s network, systems and applications. In addition, you'll More ❯
Job Description: Our client, a leading financial services firm based in Newcastle, is looking to recruit an InformationSecurityManager to join on an initial 3-month fixed term contract. The successful candidate will lead informationsecurity for the firm, ensuring corporate and client data is protected and compliant with legal and internal standards. Essential … Skills/Experience: Proven track record of implementing informationsecurity practices within a large and diverse organisation. Evidence of competency in the creation and implementation of Informationsecurity solutions, procedures and practices. Solid technical knowledge and experience on security technologies (like Endpoint protection, Mobile Security, Data Protection, Cloud Security, etc.) and on cyber … security capabilities (SIEM, SOC, CERT, Vulnerability Management, Threat intelligence etc.) Strong knowledge of main InformationSecurity standards and framework (ISO27001, ISO22301, ISF, NIST, COBIT.) Good background in information management, with clear understanding of the challenges of Information and IT security. A good understanding and experience of implementing informationsecurity within cloud-based environments. More ❯
We are seeking a highly skilled IT SecurityManager with strong network security expertise to lead our cybersecurity strategy, protect IT infrastructure, and mitigate security risks. This role requires a proactive leader who can design, implement, and maintain security policies, frameworks, and solutions to safeguard our organization against cyber threats. Key Responsibilities: Develop, implement, and … oversee IT security policies, procedures, and best practices to protect company assets. Manage and maintain network security systems , including firewalls, intrusion detection/prevention systems (IDS/IPS), VPNs, and secure access controls. Conduct security risk assessments and audits to identify vulnerabilities and ensure compliance with industry regulations (ISO 27001, NIST, GDPR, etc.). Lead incident response … efforts, including investigating security breaches, coordinating remediation, and reporting findings. Implement and maintain endpoint protection, SIEM solutions, and threat intelligence platforms . Collaborate with IT and DevOps teams to ensure secure architecture and cloud security measures . Provide security awareness training for employees and promote a strong security culture. Oversee vendor risk management , ensuring third-party More ❯
and enhances financial opportunities using state-of-the-art technology. This is a hybrid role (3 days in the office/2 days remote). About your team: The InformationSecurity Controls Manager works with technology, risk management, and technical cybersecurity teams to measure and drive IBKR's security performance and develop and maintain client and … regulatory trust. This role is responsible for maintaining IBKR's formal informationsecurity controls framework and representing IBKR's cybersecurity controls to InformationSecurity stakeholders outside and within the company, including audit, operational risk management, clients, and regulators. What will be your responsibilities within IBKR: Establish and maintain a formal informationsecurity controls catalog … based on existing security control processes informed by regulatory requirements. Formalize IBKR's informationsecurity controls testing framework, ensure it aligns with the Firm's cybersecurity risk management framework, and map it to common industry frameworks, such as NIST CSF. Establish and continually improve processes to test informationsecurity controls, including through the use of More ❯
Job Description Are you an InformationSecurity expert looking to work for one of the UK's largest charities? British Heart Foundation (BHF) is undergoing a digital transformation and seeking an InformationSecurityManager to oversee Governance, Risk, and Compliance (GRC) within the security team and ensure regulatory and policy compliance. Joining a dynamic … and growing informationsecurity team at an exciting point in the charity's history, you’ll collaborate with teams across British Heart Foundation (BHF) to protect BHF’s objectives and integrity. Responsibilities include risk identification, assessment, mitigation, and maintaining a robust governance framework. Managing the InformationSecurity GRC team, you'll enhance security, compliance, and … and reporting experience. With previous experience managing and leading an InfoSec GRC team, you’ll have strong knowledge and experience of working with the following: Payment Card Industry Data Security Standard (PCI-DSS) for a Tier 1 merchant General Data Protection Regulation (GDPR) NIST Cybersecurity Framework (CSF) v2.0 Critical Security Controls Libraries such as CIS Controls Cyber Essential More ❯
Your new company - Specialist Global Financial Services Your new role - Permanent - ON SITE 5 Days per week. - UK Only Job Title: IT Security Engineer Job Brief: As the first line of defence in the IT department, the purpose of this role focusses on informationsecurity, cybersecurity and data security, including a wide scope of physical security operating systems such as Windows and Linux, network security, firewall and other security devices, application security both development and testing phrases SAST & DAST, terminal security, backup security, third party and supply chain security. We are seeking a skilled IT Security Engineer to identify, investigate, and mitigate potential security risks to protect the … information systems and computer networks. Responsibilities: Design and Implement Security Measures: Develop secure network solutions to defend against advanced cyber threats. Maintain the cybersecurity equipment, including firewall, IPS, WAF, WSUS, ATA, AD policy. Compile and develop cybersecurity policies and procedures, conduct regular reviews. Application Security: Ensure the security of applications by implementing secure coding practices, conducting More ❯
Herndon, Virginia, United States Hybrid / WFH Options
VTG
Overview The Information System SecurityManager (ISSM) is responsible for the overall security posture of information systems within the SCIF and other secured environments. The ISSM ensures compliance with federal regulations, security policies, and accreditation requirements to safeguard classified information. This role requires strong technical expertise, a proactive mindset, and a commitment to maintaining … the confidentiality, integrity, and availability of information systems. The individual will lead a small classified systems compliance team. This role is hybrid, based out of Herndon, and supports multiple facilities in the DMV area (Herndon, Manassas, and Washington D.C.). What will you do? System Security Management: Oversee the implementation and management of system security measures in … compliance with National Industrial Security Program Operating Manual (NISPOM), Risk Management Framework (RMF), Intelligence Community Directives (ICDs), and other applicable regulations. Maintain the security posture of classified systems by ensuring compliance with Assessment and Authorization (A&A) requirements. Risk Assessment and Mitigation: Conduct regular risk assessments, vulnerability scans, and security audits to identify and mitigate potential threats. More ❯
system sustainability. Together, we transform the way complex, large-scale systems are designed, delivered, and sustained-enhancing client outcomes, improving lives, and changing the world for the better. The Information System SecurityManager (ISSM) is responsible for the development, implementation, and continuous improvement of cybersecurity functions for multiple critical systems and for providing strategic and tactical leadership … to a cybersecurity staff, including Information System Security Officer(s) and cybersecurity analysts. Responsibilities Key responsibilities include but are not limited with the following: 1. In collaboration with the Facility Security Officer (FSO) and business leadership, take responsibility for establishing Information Systems Security Program identifying, pursuing, and maintaining cybersecurity accreditations and authorizations of critical M.C. … Dean enterprise and/or customer information systems. 2. Lead development, implementation, and continuous improvement of informationsecurity policies, standards, plans, and procedures to maintain security posture, ensure compliance, and allow for effective and efficient execution of business functions. 3. Provide effective leadership to identify, assess, and mitigate cybersecurity risks; exercise direct ownership of system monitoring More ❯
We are seeking a Senior Information Systems SecurityManager (ISSM) with extensive hands-on experience driving cybersecurity compliance within a defense contractor environment. This on-site position, based in Dayton, Ohio, requires a highly skilled professional with a minimum of 10 years of real world ISSM experience leading classified network security initiatives, ensuring compliance with Risk … Management Framework (RMF), NIST 800-53, DFARS , and 32 CFR Part 117 (NISPOM). The role includes 20% travel to our Florida site for mentorship and support of related security projects. This is a top-level security leadership role, responsible for building and leading a security team, including hiring ISSOs and mentoring System Administrators to ensure cybersecurity … best practices across classified environments. Essential Functions: Lead and manage the security posture of classified SIPR networks, ensuring compliance with DoD security policies and CMMC requirements. Develop, implement, and maintain security policies, procedures, and documentation to protect classified systems. Own and manage system accreditation packages with hands-on experience using eMASS and Xacta, ensuring Authority to Operate More ❯
Social network you want to login/join with: InformationSecurity & GRC Manager, London Client: Virgin Trains Location: London, United Kingdom Job Category: Other - EU work permit required: Yes Job Reference: ed6dfc47740b Job Views: 19 Posted: 18.06.2025 Expiry Date: 02.08.2025 Job Description: We are looking for a talented and driven individual to fill the role of InformationSecurity & GRC Manager . The location can be London or Birmingham. The salary is circa £60,000. The position is permanent, full-time, with a close date of 29-Sep. Responsibilities include: Managing the informationsecurity incident response program, including procedures, workshops, audits, and testing. Leading compliance with UK GDPR and related data protection laws. … Integrating security, privacy, and data management into business-as-usual IT operations. Implementing and maintaining the InformationSecurity Management System (ISMS). Establishing and maintaining policies and practices related to cyber security, data, and governance. The ideal candidate will have experience with PCI-DSS, ISO standards, and a thorough understanding of DPA, GDPR, and PECR. Strong More ❯
InformationSecurityManager - Corporation InformationSecurityManager - Corporation Please note we only accept online application via our website Role Overview We're looking for a pragmatic, risk focussed InformationSecurityManager to work within Nest and maintain our ISO 27001 certified corporation InformationSecurity Management System (ISMS). We … sit in the second line of defence and advise the business on security risks, incidents, audits, assurance and the implementation and monitoring of security controls that protects Nest. You'll have a solid background in informationsecurity management systems, technology and love communicating technical concepts to non-technical people. Please note the minimum criteria for this … role is: Practical experience of operating certified ISMS using ISO 27001/2, NIST CSF and other security standards in the design and management of informationsecurity controls. Practical experience working with third party suppliers to audit and evidence compliance with security policies, standards etc. Understanding and experience of various InformationSecurity domains including More ❯
Your role We're looking for a Junior InformationSecurity Risk Manager to help us safeguard our organization's digital infrastructure. In this role, you'll support the InformationSecurity Officer and contribute to risk management strategies that meet regulatory requirements and align with business goals. As a Financial Institute, Cardano is DORA (EU) compliant … and is ISO 27001:2022 certified. Since Cardano is compliant with ISO 27001, Cardano has an Group InformationSecurity Policy which describes all IT Security roles & responsibilities. Cardano holds also an ISMS in order to manage (establish, implement, operate, monitor, review, maintain and improve) the informationsecurity within our organization. The ISMS is subject to … an internal audit and yearly external audit by the certification body. Junior InformationSecurity Risk Manager As (Junior) InformationSecurity Risk Manager, you will be responsible for recording and maintaining our strategic risk management plans that ensure the security of our organization. In doing so, you report to the InformationSecurityMore ❯
London, England, United Kingdom Hybrid / WFH Options
S-RM
SENIOR INFORMATIONSECURITYMANAGER: S-RM TECHNOLOGY TEAM WHO WE ARE S-RM is a global intelligence and cyber security consultancy. Since 2005, we've helped some of the most sophisticated clients in the world solve some of their toughest strategic challenges. We've been able to do this because of our outstanding people. We're … of this culture and we invest in our people's wellbeing, learning, and ideas every day. We're excited you're thinking about joining us. THE ROLE As the InformationSecurityManager , you'll play a vital role in the ongoing improvement of S-RM's security posture. This role will be a joining the broader … function in supporting S-RM through all nine offices and all functions. This role will provide the opportunity for candidates wanting to get exposure to the full breadth of informationsecurity including the GRC and technical aspects. The successful candidate will report to our Head of IT Service & Operations and work across the full spectrum of informationMore ❯
London, England, United Kingdom Hybrid / WFH Options
Crown Agents Bank
cross-border transaction banking solutions to enable fintech, corporates, governments, development organisations and banks to move money to, from, and across often hard-to-reach markets. Job Description The InformationSecurityManager will play a crucial role in protecting the confidentiality, integrity, and availability of our systems and data. You’ll work across the business to support … secure delivery of projects, conduct thorough risk assessments, oversee third-party security engagements, and contribute to shaping our evolving security posture. This is a hands-on role ideal for someone who enjoys both strategic thinking and rolling up their sleeves to get things done. Responsibilities Advise and support project teams to embed security best practices throughout the … project lifecycle. Scope, manage, and track remediation of penetration testing and vulnerability assessments. Maintain application security processes, standards and guidelines. Translate application security policies into security requirements. Conduct and document security risk assessments on changes, threats, vulnerabilities, and new initiatives. Perform third-party vendor risk assessments and ongoing security reviews. Assist in identifying and assessing More ❯
Title Information Systems SecurityManager - Advanced Full-Time/Part-Time Full-Time Description RiVidium Inc, (dba TripleCyber) is seeking an individiual to be responsible for the cybersecurity of a program, organization, system, or enclave. Responsibilites and abilites for this position shall include, but not limited to: Acquire and manage the necessary resources, including leadership support, financial … resources, and key security personnel, to support information technology (IT) security goals and objectives and reduce overall organizational risk. Acquire necessary resources, including financial resources, to conduct an effective enterprise continuity of operations program. Advise senior management (e.g., Chief Information Officer CIO ) on risk levels and security posture. Advise senior management (e.g., CIO) on cost …/benefit analysis of informationsecurity programs, policies, processes, systems, and elements. Advise appropriate senior leadership or Authorizing Official of changes affecting the organization's cybersecurity posture. Collect and maintain data needed to meet system cybersecurity reporting Communicate the value of information technology (IT) security throughout all levels of the organization stakeholders. Collaborate with stakeholders to More ❯
Title Information Systems SecurityManager - Advanced Full-Time/Part-Time Full-Time Description RiVidium Inc, (dba TripleCyber), is seeking an individual to be responsible for the cybersecurity of a program, organization, system, or enclave. Responsibilites and abilities for this position shall include, but not limited to: Acquire and manage the necessary resources, including leadership support, financial … resources, and key security personnel, to support information technology (IT) security goals and objectives and reduce overall organizational risk. Acquire necessary resources, including financial resources, to conduct an effective enterprise continuity of operations program. Advise senior management (e.g., Chief Information Officer CIO ) on risk levels and security posture. Advise senior management (e.g., CIO) on cost …/benefit analysis of informationsecurity programs, policies, processes, systems, and elements. Advise appropriate senior leadership or Authorizing Official of changes affecting the organization's cybersecurity posture. Collect and maintain data needed to meet system cybersecurity reporting. Communicate the value of information technology (IT) security throughout all levels of the organization stakeholders. Collaborate with stakeholders to More ❯
Assisting technical/management leadership on major tasks or technology assignments • Establishing goals and plans that meet project objectives • Assisting in direction and control activities, having overall responsibility for security management, methods, and staffing to ensure that technical requirements are met • Participating in client negotiations and interfacing with senior management • Supporting decision making and domain knowledge that may have … a critical impact on overall project implementation • Providing support to plan, coordinate, and implement a cybersecurity lab's informationsecurity - Providing support for facilitating and helping the lab identify its current security infrastructure and define future programs, design and implementation of security related to lab systems • Assisting the efforts of security staff to design, develop … engineer and implement solutions to security requirements • Implementing and development of the DHS IT security standards • Gathering and organizing technical information about the lab's mission goals and needs, existing security products, and ongoing programs • Performing risk analyses which also includes risk assessment • Planning and leading major technology assignments • Evaluating performance results and recommends major changes More ❯
Role: InformationSecurityManager Location: Utrecht Type: Permanent Workplace Type: Hybrid/3 days on site Language: Dutch speaking role Job Description Develop, implement, and maintain the organization's informationsecurity strategy, policies, and procedures. Lead risk assessments, security audits, and vulnerability assessments to identify and mitigate threats. Oversee compliance with industry regulations (e.g. … ISO 27001, NIS2, GDPR). Coordinate with IT, legal, and business units to ensure security is integrated into all processes. Conduct security awareness training and promote a culture of cybersecurity. Monitor and report on security performance and risk to senior leadership. Manage relationships with external vendors and consultants for security services. Lead and mentor a team … of security professionals, if applicable. Requirements Dutch speaking role A bachelor's or master's degree (Desirable) One informationsecurity-related certification such as CISM, ISO27001, CRISC, CISSP Minimum of 5+ years relevant experience Strong foundational knowledge and experience in information security. Benefits Base Salary: 6k - 8k depending on experience (excluding all of the below) Bonus More ❯
Direct message the job poster from undisclosed Banking & IT Recruiter | Connecting Top Talent with Leading Financial Institutions and IT Sectors | Specializing in Strategic Hires and Talent... Role Title: InformationSecurity Delivery Manager Duration: contract to run until 31/12/2025 Rate: up to £491.40 p/d Umbrellainside IR35 The InformationSecurity Delivery … Manager is responsible for overseeing all facets of program delivery, including the development of business cases, budget planning and submission, financial monitoring, resource forecasting, project scheduling, and stage gate management. These activities must be executed in alignment with the client’s established methodologies, standards, and policies. By working collaboratively with peers across the InformationSecurity team and … the broader organization, the role ensures that resources are effectively allocated and managed to meet both project objectives and evolving business demands. Lead the delivery of Security Maturity and IAM projects across the organization. Directly project manage both of these projects. Manage project budgets, resource allocation, and financial tracking. Conduct requirements analysis and ensure alignment with business objectives. Oversee More ❯