Compliance & Information Security Manager

Agilio Software

Greater London

Hybrid

GBP 60,000 - 80,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

A leading software provider in the UK is seeking a Compliance & Information Security Manager to enhance its compliance and security posture. This home-based role, requiring occasional travel, involves managing ISO 27001, PCI-DSS, Cyber Essentials Plus, and GDPR compliance activities. The ideal candidate will have hands-on experience with these standards, strong organizational skills, and excellent communication abilities. Join us in ensuring the highest standards of data protection and security as we grow our team.

Qualifications

  • Hands-on experience managing or supporting ISO 27001 and Cyber Essentials Plus certifications.
  • Working knowledge of PCI-DSS, GDPR, and general data protection principles.
  • Experience coordinating audits and maintaining compliance documentation.

Responsibilities

  • Maintain and improve the ISMS in line with ISO 27001.
  • Oversee Cyber Essentials Plus certification and ensure compliance with PCI-DSS.
  • Act as Data Protection Officer (DPO) for GDPR compliance.

Skills

ISO 27001 management
Cyber Essentials Plus certification
PCI-DSS compliance
GDPR knowledge
Organisational skills
Communication skills

Tools

Eramba
Nessus
Defect Dojo
uSecure
iComply

Job description

Agilio Software Group is the UK’s largest provider of back-office, compliance, and workforce solutions in primary care and dental. We have ambitious and exciting growth plans and are looking for talented individuals to join us on this journey.

The Compliance & Information Security Manager Role:

We are recruiting for a Compliance & Information Security Manager to maintain and enhance the company’s compliance and information security posture. You will manage certifications, audits, and governance activities, ensuring ongoing compliance with ISO 27001, PCI-DSS, Cyber Essentials Plus, GDPR, and other relevant standards and regulations.

Home-based with occasional travel two to three times a month to company offices and suppliers.

Compliance & Information Security Manager Key Responsibilities:

Compliance & Governance
  • Maintain and improve the ISMS in line with ISO 27001.
  • Oversee Cyber Essentials Plus certification and ensure compliance with PCI-DSS and NHS DSP Toolkit standards.
  • Act as Data Protection Officer (DPO) for GDPR compliance, including managing ICO registrations and updates (approx. 30 registrations).
  • Support Subject Access Requests (SARs) and Data Protection Impact Assessments (DPIAs) for customers.
  • Coordinate responses to customer security questionnaires and due diligence requests.
  • Support incident response investigations and post-incident reviews.
  • Maintain risk registers and compliance documentation, tracking remedial actions, reporting key risks to senior management.
  • Plan and execute internal and manage external audits, penetration tests, and vulnerability assessments.
  • Manage security ratings and ensure scores remain above agreed thresholds.
Security Operations & Tools
  • Administer and optimise security tools and platforms including Eramba, Nessus, Defect Dojo, uSecure & iComply.
  • Ensure and track continuous improvements of the security and data protection processes, policies and documentation.
  • Monitor and report on compliance performance metrics.
  • Deliver and manage security awareness programmes across the organisation.
  • Maintain and update training content using platforms such as uSecure.
  • Committee & Governance Meetings
  • Facilitate quarterly meetings for the Physical Security, Risk, and Information Security Steering Committees.
Additional Responsibilities
  • Stay updated on regulatory changes and emerging security threats.
  • Collaborate with IT, Engineering and Product teams to embed secure-by-design practices in development and operations.

Compliance & Information Security Manager Essential Experience & Skills:

  • Hands-on experience managing or supporting ISO 27001 and Cyber Essentials Plus certifications.
  • Working knowledge of PCI-DSS, GDPR, and general data protection principles.
  • Experience coordinating audits and maintaining compliance documentation.
  • Strong organisational skills with attention to detail and ability to manage multiple projects.
  • Excellent communication and stakeholder management skills across business units.

If you feel you have what it takes to join our team, we look forward to receiving your application.

We welcome applications from all backgrounds and are committed to creating an inclusive workplace. If you need adjustments during the recruitment process, please let us know.

Due to the high volume of applications we receive, we are unable to respond to every applicant individually. If your application is shortlisted, we will contact you directly.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security and Compliance Risk Manager
Information Security and Compliance Risk Manager

Bupa • Leeds

On-site
GBP 58,000 - 70,000
10% Bonus
Cyber Security & Compliance Administrator
Cyber Security & Compliance Administrator

Ipsum • North Stainmore

Hybrid
GBP 32,000 - 48,000
Annual leave 25 days + bank holidays
Pension plan
Car allowance
+8
Information Security Compliance Analyst
Information Security Compliance Analyst

Planet Pharma • England

Hybrid
GBP 45,000 - 65,000
Information Security Manager
Information Security Manager

Frontpoint Partners Ltd • Greater London

On-site
GBP 85,000 - 110,000
IT Information Security Analyst - Compliance
IT Information Security Analyst - Compliance

Adecco • West Midlands

Hybrid
GBP 45,000 - 55,000
Compliance and Process Manager
Compliance and Process Manager

SearchWorks • Manchester

On-site
GBP 40,000 - 60,000
Security Manager (EMEA)
Security Manager (EMEA)

Emovis operations • Leeds

Hybrid
GBP 60,000 - 100,000
Information Security and Compliance Risk Manager
Information Security and Compliance Risk Manager

Bupa • Salford

On-site
GBP 54,000 - 74,000
Annual performance bonus
Private medical insurance
Generous pension contribution
+5
ICT Information Security Manager
ICT Information Security Manager

px Group • Stockton-on-Tees

On-site
GBP 50,000 - 80,000
Contribution towards eye test and glasses
Online company discount benefits
Long Service Awards
+3
Information Security and Data Protection Analyst
Information Security and Data Protection Analyst

Interact Software • Manchester

On-site
GBP 45,000 - 65,000