InformationSecurity Manager Location: London, Hybrid Salary: Up to 75,000 Reports to: Head of Cyber Security A well regarded Managed Service Provider is seeking an experienced InformationSecurity Manager to join its team on a permanent basis. This role offers the opportunity to lead and deliver strategic security initiatives across a varied client … will have a proven background within an MSP or MSSP environment, hold CISSP certification, and demonstrate deep expertise in GRC frameworks, particularly ISO27001. Experience acting as a virtual Chief InformationSecurity Officer (vCISO) is essential. This business has made significant investment into its SOC-as-a-Service offering, positioning itself at the forefront of managed security solutions … and enabling clients to benefit from cutting-edge threat detection and response capabilities. Key Responsibilities: Serve as a vCISO for clients, providing strategic guidance on security posture and compliance Lead the development and implementation of security policies, procedures, and controls Manage ISO27001 compliance, including internal and external audits Conduct risk assessments and oversee incident response planning Collaborate with More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Context Recruitment Limited
InformationSecurity Manager Location: London, Hybrid Salary: Up to 75,000 Reports to: Head of Cyber Security A well regarded Managed Service Provider is seeking an experienced InformationSecurity Manager to join its team on a permanent basis. This role offers the opportunity to lead and deliver strategic security initiatives across a varied client … will have a proven background within an MSP or MSSP environment, hold CISSP certification, and demonstrate deep expertise in GRC frameworks, particularly ISO27001. Experience acting as a virtual Chief InformationSecurity Officer (vCISO) is essential. This business has made significant investment into its SOC-as-a-Service offering, positioning itself at the forefront of managed security solutions … and enabling clients to benefit from cutting-edge threat detection and response capabilities. Key Responsibilities: Serve as a vCISO for clients, providing strategic guidance on security posture and compliance Lead the development and implementation of security policies, procedures, and controls Manage ISO27001 compliance, including internal and external audits Conduct risk assessments and oversee incident response planning Collaborate with More ❯
Organisations who are one of a major driving forces behind Innovative Development of Enterprise-Led Internet Technology. Role Overview: As a Vulnerability Management Analyst you will focus on Technical InformationSecurity within the Security Function , within a major part of the Organisation's Vulnerability Management Team . You will work closely within the Security Department covering … Tools Scheduling of Scanning across Business, ensuring Reporting Requirements are met whilst Minimising Operational Impacts to Endpoints Scheduling Internal & External Resources to Ensure Targets are Met Work across Full InformationSecurity Project Lifecycle Ensure Compliance with Security Policies & Procedures Act as an Escalation Point & Coordinate with other Teams when required Key Skills & Experience Required for Vulnerability Management … Analyst role will include: Strong Understanding of Information/Cyber Security Principles & Technologies. Experience of Security Related Technical Investigations Hands-On Technical Experience of Conducting Vulnerability Scanning & Evaluating Results Commercial Awareness & (Ideally) Experience of PCI DSS (Current Version) Experience with Incident Response Procedures & Investigations Strong Verbal & Written Communication Skills High Attention to Detail Strong Team Player Searches More ❯
Learning & Culture Coordinator - InformationSecurity (Maternity Cover) - Halifax, United Kingdom Salary: Dependent on ExperienceWe have an exciting opportunity to join us here at Covéa Insurance as a Learning & Culture Coordinator , within our InformationSecurity team, on a 9 month fixed term contract (maternity cover). At Covéa Insurance , we're all about protecting what matters most … confident being yourself in your team at work. In this role, you'll be working in a team where the goal is to ensure we continue to have excellent security awareness, education, and training to make our organisation resilient to the ever-changing threat landscape. We value our colleagues' contributions in the fight against these threats and we are … creating a security culture that gives everyone the tools, skills, and knowledge to keep themselves safe and our customers. This is a hybrid position, combining the best of both worlds - working from home and spending time in our Halifax office. The hours in this role can be flexible and agreed upon offer, with 3 days minimum required. This is More ❯
Senior InformationSecurity Officer Our Business Support teams deliver the vital services to ensure the continued success of our business divisions. These services include HR, Finance, Procurement, Marketing, Legal and Commercial, Estates and Facilities, Core Technology, Corporate Security, IT, and Fleet. Every person in every team is contributing the lasting impact our Team makes. Help build and … keep the nation's critical infrastructure connected and protected 24/7. Reporting into the Network Services Business Unit Security Manager, the Senior InformationSecurity officer will ensure security is embedded into all areas of the business and appropriate technical controls are in place throughout our infrastructure. This company facing role will assist new initiatives such … to be in our Warwick a few times per month. What you'll do: Assist on all Governance, Risk and Compliance activities across Network Services Business Unit. Provide specialist security expertise for multiple internal projects across the Network Services business area. Provide guidance in secure software development throughout the lifecycle. Lead on risk and compliance technical assessments of all More ❯
Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
InformationSecurity Senior Analyst Location: Surrey (Hybrid) Our client, a large corporate organisation based in Surrey, is seeking an InformationSecurity Senior Analyst with experience of Risk & Controls to join their team. The successful candidate will have proven experience in risk management, controls, and governance frameworks, who can lead initiatives … mentor others, and collaborate effectively across business units. You should be both strategic and hands-on, with a passion for proactive security and continuous improvement. Responsibilities: Lead the InfoSec risk register - Identify, assess, and mitigate informationsecurity risks. Own control frameworks - Maintain and improve controls to ensure alignment with standards like NIST CSF and COBIT. Drive assurance … risk & controls within the informationsecurity, ideally in a regulated industry. Experience in large, complex enterprise environments (e.g., multiple sites, technologies). Hands-on leadership in technical InfoSec initiatives. Strong understanding and implementation of control frameworks (NIST CSF, COBIT). Ability to run threat intelligence and vulnerability assessments. Experience collaborating with 2nd and 3rd line governance teams (e.g. More ❯
Head of Security Architecture - GDS - G6 £71,370 - £103,924 (London)/£67,126 - £91,453 (National) - Based on capability. Published on 12 September 2025. Deadline 28 September 2025. Location Bristol, London, Manchester Job summary The Government Digital Service (GDS) is the digital centre of government. We are responsible for setting, leading and delivering the vision for a modern … part of the Department for Science, Innovation and Technology (DSIT) and employ more than 1,000 people all over the UK, with hubs in Manchester, London and Bristol. The InformationSecurity team at GDS protects the people, services and information used to deliver critical government digital infrastructure such as GOV.UK and One Login. We do this by … supporting a secure software development lifecycle, setting and checking proportional organisation policies and building a positive, no-blame security culture across the organisation. The Government Digital Service is where talent translates into impact. From your first day, you'll be working with some of the world's most highly-skilled digital professionals, all contributing their knowledge to make change More ❯
Head of Security Architecture - GDS - G6 £71,370 - £103,924 (London)/£67,126 - £91,453 (National) - Based on capability. Published on 12 September 2025. Deadline 28 September 2025. Location Bristol, London, Manchester Job summary The Government Digital Service (GDS) is the digital centre of government. We are responsible for setting, leading and delivering the vision for a modern … part of the Department for Science, Innovation and Technology (DSIT) and employ more than 1,000 people all over the UK, with hubs in Manchester, London and Bristol. The InformationSecurity team at GDS protects the people, services and information used to deliver critical government digital infrastructure such as GOV.UK and One Login. We do this by … supporting a secure software development lifecycle, setting and checking proportional organisation policies and building a positive, no-blame security culture across the organisation. The Government Digital Service is where talent translates into impact. From your first day, you'll be working with some of the world's most highly-skilled digital professionals, all contributing their knowledge to make change More ❯
Head of Security Architecture - GDS - G6 £71,370 - £103,924 (London)/£67,126 - £91,453 (National) - Based on capability. Published on 12 September 2025. Deadline 28 September 2025. Location Bristol, London, Manchester Job summary The Government Digital Service (GDS) is the digital centre of government. We are responsible for setting, leading and delivering the vision for a modern … part of the Department for Science, Innovation and Technology (DSIT) and employ more than 1,000 people all over the UK, with hubs in Manchester, London and Bristol. The InformationSecurity team at GDS protects the people, services and information used to deliver critical government digital infrastructure such as GOV.UK and One Login. We do this by … supporting a secure software development lifecycle, setting and checking proportional organisation policies and building a positive, no-blame security culture across the organisation. The Government Digital Service is where talent translates into impact. From your first day, you'll be working with some of the world's most highly-skilled digital professionals, all contributing their knowledge to make change More ❯
network for smart meters is transforming Britains energy system and helping the countrys fight against climate change: we want you to be part of our journey. The role: The InformationSecurity Assurance Manager is a hands-on, multi-disciplinary role combining project assurance, governance, risk management, and compliance. You will work across business units, projects, and suppliers to … ensure security is embedded in everything we dofrom design to delivery. You will also support the development and maintenance of our InformationSecurity Management System (ISMS), lead internal audits, and provide expert guidance on risk mitigation and regulatory compliance. Key Responsibilities: Security Assurance & Project Engagement Provide end-to-end security assurance across the Licence Renewal … programme Attend programme meetings to represent InformationSecurity and provide expert guidance. Review technical documentation (e.g., designs, network diagrams, data flows) to ensure alignment with security policies and architecture. Conduct InformationSecurity Impact Assessments and Data Protection Impact Assessments. Support penetration testing and vulnerability assessments, tracking remediation to closure or handover to BAU. Translate technical More ❯
Northampton, Northamptonshire, England, United Kingdom
Howdens Joinery
Howdens Joinery have an exciting brand-new opportunity as an InformationSecurity Architect to join our growing Cyber team. Responsible for designing secure, scalable solutions that align with Howdens’ business goals and cyber risk strategy. This role will suit a pro-active individual with an investigative nature who will be our key advisor across IT, Architecture, and Cyber … is a permanent opportunity based from our office in Northampton where you will be required to work onsite 2 days per week. What will I be doing as an InfoSec Architect? Collaborate across business, technical, and service teams to design and deliver security solutions that enhance cybersecurity maturity, reduce risk, and align with broader business objectives and priorities. Engage … with stakeholders to understand and balance competing business needs, technical constraints, and security requirements, ensuring practical and effective outcomes. Lead and contribute to solution design and re-architecture initiatives, assessing technical options in partnership with the Head of InformationSecurity and Enterprise Architecture, and ensuring solutions are secure, maintainable, and scalable. Conduct proactive security architecture reviews More ❯
Head of Cyber Governance, Risk and Compliance" - London Hybrid Full-time Personal Contract REQ5121 As a strategic leader in Governance, Risk and Compliance, you will guide SGN's cyber security and regulatory approach, ensuring our operations remain secure, resilient and fully compliant. We deliver safety, warmth, and comfort to homes and businesses. Every role, whether in the office or … ensuring compliance with NIS-R, ISO27001/2, and NIST-2. Oversee delivery plans, resource allocation, and stakeholder engagement for GRC initiatives. Training & Awareness Develop and maintain SGN's InformationSecurity training and awareness materials. Integrate lessons learned from incidents and address feedback from training delivery. InformationSecurity Policy & ISMS Maintain a robust portfolio of security policies, standards, and procedures to support ISO27001, NIST, and NIS eCAF compliance. Ensure policies are current, reviewed regularly, and approved by key stakeholders. Manage SGN's InformationSecurity Management System (ISMS) and policy exceptions. Compliance & Assurance Monitor and report on compliance across SGN and third-party partners. Lead assurance reviews and support internal/external audits for More ❯
pension scheme – Enhanced maternity/paternity pay – Life assurance – HolidayPlus – Cycle2work Scheme & more REQ5121 As a strategic leader in Governance, Risk and Compliance, you will guide SGN’s cyber security and regulatory approach, ensuring our operations remain secure, resilient and fully compliant. We deliver safety, warmth, and comfort to homes and businesses. Every role, whether in the office or … ensuring compliance with NIS-R, ISO27001/2, and NIST-2. Oversee delivery plans, resource allocation, and stakeholder engagement for GRC initiatives. Training & Awareness Develop and maintain SGN’s InformationSecurity training and awareness materials. Integrate lessons learned from incidents and address feedback from training delivery. InformationSecurity Policy & ISMS Maintain a robust portfolio of security policies, standards, and procedures to support ISO27001, NIST, and NIS eCAF compliance. Ensure policies are current, reviewed regularly, and approved by key stakeholders. Manage SGN’s InformationSecurity Management System (ISMS) and policy exceptions. Compliance & Assurance Monitor and report on compliance across SGN and third-party partners. Lead assurance reviews and support internal/external audits for More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
will: Assess that Cybersecurity is embedded throughout the development lifecycle of Technology Assets by using Deloitte's Secure System Development Lifecyle (SSDLC) to assure paths to production. Oversee that security testing activities like vulnerability scanning, penetration testing, and code reviews are completed to identify weaknesses and potential exploits on the identified security requirements. Identify potential informationsecurity … vulnerabilities. These risk assessments will be presented to risk owners who are either Director or Partner level. Ensure that the project adheres to Deloitte's Cybersecurity capability framework, relevant informationsecurity regulations and industry standards. Examples include GDPR, EU AI Act, ISO 27001, NIST Cybersecurity Framework, and Cyber Essentials +. Communicate security awareness, concerns, and requirements to … project stakeholders, including developers, project managers, and business leaders, to ensure alignment and buy-in. Maintain documentation related to security assessments, risks, mitigation plans, and compliance status, providing regular reports to relevant stakeholders across waterfall and iterative deployment methodologies. Enable the business by being a trusted partner. This means working with Business Relationship Managers, Business Advisers, and Programme Managers More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
will: Assess that Cybersecurity is embedded throughout the development lifecycle of Technology Assets by using Deloitte's Secure System Development Lifecyle (SSDLC) to assure paths to production. Oversee that security testing activities like vulnerability scanning, penetration testing, and code reviews are completed to identify weaknesses and potential exploits on the identified security requirements. Identify potential informationsecurity … vulnerabilities. These risk assessments will be presented to risk owners who are either Director or Partner level. Ensure that the project adheres to Deloitte's Cybersecurity capability framework, relevant informationsecurity regulations and industry standards. Examples include GDPR, EU AI Act, ISO 27001, NIST Cybersecurity Framework, and Cyber Essentials +. Communicate security awareness, concerns, and requirements to … project stakeholders, including developers, project managers, and business leaders, to ensure alignment and buy-in. Maintain documentation related to security assessments, risks, mitigation plans, and compliance status, providing regular reports to relevant stakeholders across waterfall and iterative deployment methodologies. Enable the business by being a trusted partner. This means working with Business Relationship Managers, Business Advisers, and Programme Managers More ❯
Overview London - UK/IT/Navro - Pioneering the Future of Payments Architecting Trust: InformationSecurity Manager This isn't just another InformationSecurity role. No legacy systems. No corporate red tape. No coasting. This is about building something from the ground up. Fast. You won't have layers of approval slowing you down. You will … decisions from day one. This isn't a passenger role. We're bringing you in for your expertise and your relentless drive. You will be responsible for understanding our information assets, identifying emerging threats, and implementing robust security measures that protect Navro and our clients. Who We Are We are transforming payments for global platforms and e-commerce … is inconsistent, you dive in, solve, and fix it. You're Hands-On - One hour you're leading on an external audit, the next assessing a critical vendor's security posture, the next you're deep in the vulnerability rating details with DevOps. You Thrive in Chaos - Startups are messy. Deadlines change, priorities shift, and ambiguity is constant. You More ❯
Birmingham, West Midlands, England, United Kingdom Hybrid / WFH Options
Hays Specialist Recruitment Limited
Type: PermanentLocation: Hybrid (West Midlands)Overview:We are looking for a detail-oriented and proactive InformationSecurity Compliance Analyst to join our team on a permanent basis. This role is pivotal in supporting the development and continuous improvement of our global informationsecurity compliance program.You will be responsible for ensuring that all corporate and subsidiary operations … comply with internal security policies, regulatory requirements, and internationally recognised frameworks such as ISO27001, NIST, SOX, GDPR, CMMC, amongst others.Key Responsibilities: Support the execution and enhancement of the global informationsecurity compliance program. Conduct internal audits, third-party risk assessments, and due diligence reviews. Ensure alignment with regulatory and industry standards including ISO27001, NIST, SOX, GDPR, SOC … HIPAA, CCPA, LGPD. Collaborate with cross-functional teams across multiple jurisdictions to drive compliance initiatives. Identify gaps in security controls and recommend corrective actions. Maintain and update security policies, procedures, and documentation. Monitor changes in global regulations and assess their impact on business operations. Minimum of 3 years experience.Skills Required: Proven experience in informationsecurity compliance More ❯
IT Security Officer - Up to £50k - New Role (REF39) A leading organisation requires an IT Security Officer to lead and develop a team to protect its customer's systems, data and users from cyber threats. Suitable candidates will: Be an experienced leader in Cyber with a proven track record of managing people and risks. Have a good knowledge … of informationsecurity risk management, data protection and cybersecurity technologies including common informationsecurity management frameworks, such as ISO/IEC 27001, ITIL, COBIT. Have excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate informationsecurity and risk-related concepts to both technical and nontechnical audiences. Possess a … management skills with the ability to manage multiple projects under firm timelines, as well as the ability to work well in a demanding, dynamic environment. Ideally have a professional security management certification such as Certified Information Systems Security Professional (CISSP), Certified InformationSecurity Manager (CISM) or other similar credentials. Possess excellent stakeholder, contract and vendor More ❯
IT Security Officer - Up to £50k - New Role (REF39) A leading organisation requires an IT Security Officer to lead and develop a team to protect its customer's systems, data and users from cyber threats. Suitable candidates will: Be an experienced leader in Cyber with a proven track record of managing people and risks. Have a good knowledge … of informationsecurity risk management, data protection and cybersecurity technologies including common informationsecurity management frameworks, such as ISO/IEC 27001, ITIL, COBIT. Have excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate informationsecurity and risk-related concepts to both technical and nontechnical audiences. Possess a … management skills with the ability to manage multiple projects under firm timelines, as well as the ability to work well in a demanding, dynamic environment. Ideally have a professional security management certification such as Certified Information Systems Security Professional (CISSP), Certified InformationSecurity Manager (CISM) or other similar credentials. Possess excellent stakeholder, contract and vendor More ❯
IT Security Officer - Up to £50k - New Role (REF39) A leading organisation requires an IT Security Officer to lead and develop a team to protect its customer's systems, data and users from cyber threats. Suitable candidates will: Be an experienced leader in Cyber with a proven track record of managing people and risks. Have a good knowledge … of informationsecurity risk management, data protection and cybersecurity technologies including common informationsecurity management frameworks, such as ISO/IEC 27001, ITIL, COBIT. Have excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate informationsecurity and risk-related concepts to both technical and nontechnical audiences. Possess a … management skills with the ability to manage multiple projects under firm timelines, as well as the ability to work well in a demanding, dynamic environment. Ideally have a professional security management certification such as Certified Information Systems Security Professional (CISSP), Certified InformationSecurity Manager (CISM) or other similar credentials. Possess excellent stakeholder, contract and vendor More ❯
GRC Analyst This is a hybrid role and can be based from either our Peterborough, Manchester, Stoke, Tunbridge Wells or Chesterfield office. Role Purpose: Reporting to the Head of InformationSecurity to provide BAU operational technical security support. The Senior GRC Analyst will be responsible for compliance governance to security standards, delivering required GRC processes and … provide ongoing assurance that digital systems and data are safe and secure. Key Accountabilities & Responsibilities: Be an SME for PCI DSS and contribute to and ensure compliance governance to security standards. Contribute to business and technology audits. Engagement with 3rd party partners as a SME and to ensure due diligence process adherence. Management IT Security GRC activities and … end-to-end delivery of informationsecurity practices and processes. SME, advice, oversight and governance of security policies, processes, procedures and standards. Contribute to the delivery of the security roadmap and a continuous improvement model for security. Ensure InformationSecurity controls are operating effectively. Ensure where gaps are identified that these have remediation plans More ❯
Cyber Security Lead - Up to £50k - New Role (REF39) A leading organisation requires a Cyber Security Lead to be responsible for leading and developing a team of specialists to protect its customer's systems, data and users from cyber threats. Suitable candidates will: Be an experienced leader in Cyber with a proven track record of managing people and … risks. Have a good knowledge of informationsecurity risk management, data protection and cybersecurity technologies including common informationsecurity management frameworks, such as ISO/IEC 27001, ITIL, COBIT. Have excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate informationsecurity and risk-related concepts to both technical … management skills with the ability to manage multiple projects under firm timelines, as well as the ability to work well in a demanding, dynamic environment. Ideally have a professional security management certification such as Certified Information Systems Security Professional (CISSP), Certified InformationSecurity Manager (CISM) or other similar credentials. Possess excellent stakeholder, contract and vendor More ❯
IT Manager (Cyber Security) - Up to £50k - New Role (REF39) A leading organisation requires an IT Mananger (Cyber Security) to lead and develop a team to protect its customer's systems, data and users from cyber threats. Suitable candidates will: Be an experienced leader in Cyber with a proven track record of managing people and risks. Have a … good knowledge of informationsecurity risk management, data protection and cybersecurity technologies including common informationsecurity management frameworks, such as ISO/IEC 27001, ITIL, COBIT. Have excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate informationsecurity and risk-related concepts to both technical and nontechnical audiences. … management skills with the ability to manage multiple projects under firm timelines, as well as the ability to work well in a demanding, dynamic environment. Ideally have a professional security management certification such as Certified Information Systems Security Professional (CISSP), Certified InformationSecurity Manager (CISM) or other similar credentials. Possess excellent stakeholder, contract and vendor More ❯
IT Manager (Cyber Security) - Up to £50k - New Role (REF39) A leading organisation requires an IT Mananger (Cyber Security) to lead and develop a team to protect its customer's systems, data and users from cyber threats. Suitable candidates will: Be an experienced leader in Cyber with a proven track record of managing people and risks. Have a … good knowledge of informationsecurity risk management, data protection and cybersecurity technologies including common informationsecurity management frameworks, such as ISO/IEC 27001, ITIL, COBIT. Have excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate informationsecurity and risk-related concepts to both technical and nontechnical audiences. … management skills with the ability to manage multiple projects under firm timelines, as well as the ability to work well in a demanding, dynamic environment. Ideally have a professional security management certification such as Certified Information Systems Security Professional (CISSP), Certified InformationSecurity Manager (CISM) or other similar credentials. Possess excellent stakeholder, contract and vendor More ❯
Senior Cyber Security Specialist - Exeter - Up to £50k - New Role (REF39) A leading organisation requires a Cyber Security Specialist to be responsible for leading and developing a team to protect its customer's systems, data and users from cyber threats. Suitable candidates will: Be an experienced leader in Cyber with a proven track record of managing people and … risks. Have a good knowledge of informationsecurity risk management, data protection and cybersecurity technologies including common informationsecurity management frameworks, such as ISO/IEC 27001, ITIL, COBIT. Have excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate informationsecurity and risk-related concepts to both technical … management skills with the ability to manage multiple projects under firm timelines, as well as the ability to work well in a demanding, dynamic environment. Ideally have a professional security management certification such as Certified Information Systems Security Professional (CISSP), Certified InformationSecurity Manager (CISM) or other similar credentials. Possess excellent stakeholder, contract and vendor More ❯