Enable job alerts via email!

Information Security Lead

JR United Kingdom

Slough

On-site

GBP 70,000 - 90,000

Full time

9 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading health tech startup in the UK is hiring an InfoSec Lead to establish security and compliance frameworks. The role involves overseeing ISO 27001 certification processes and integrating security best practices across systems. Ideal candidates will have a strong background in information security, preferably within regulated environments like healthcare, and a drive to enhance mental health accessibility through innovative technology.

Benefits

Private medical insurance
25 days annual leave + 3 'breather' days

Qualifications

  • 5+ years in information security and compliance, ideally in health tech.
  • Deep knowledge of ISO 27001 and UK GDPR.
  • Experience leading ISO audits.

Responsibilities

  • Define and implement security and compliance policies across systems.
  • Lead development toward ISO 27001 certification.
  • Collaborate with stakeholders to support security-related queries.

Skills

Information Security
Compliance
Communication
Documentation
Cloud Security

Tools

SIEM
CSPM
Vulnerability Scanners
Monitoring Platforms

Job description

Social network you want to login/join with:

I’m hiring for a standout InfoSec Lead to join one of the UK’s most ambitious health tech startups. This is a company on a mission, combining clinical expertise with smart tech to shake up how people access mental health support.

They need someone sharp, hands-on, and forward-thinking to take charge of security, privacy, and compliance as they scale.

What You’ll Do

  • Define and implement security and compliance policies and controls across infrastructure, applications, and internal systems.
  • Lead the development and execution of the roadmap toward ISO 27001 certification and other key compliance frameworks.
  • Collaborate with external stakeholders and customers to support security-related queries and onboarding.
  • Drive internal audits and prepare documentation for external assessments.
  • Work with engineering leadership to integrate security best practices into the SDLC, CI/CD, and cloud infrastructure.
  • Guide secure architectural decisions and deployment processes.
  • Maintain and evolve security training, policy documentation, and incident response plans.
  • Monitor the regulatory landscape to ensure compliance with UK health data and AI-in-health tech regulations.

Your Experience

  • 5+ years of experience in information security and compliance, ideally in regulated environments such as health tech.
  • Deep knowledge of ISO 27001, UK GDPR, and industry best practices.
  • Proven experience preparing for and leading ISO or similar audits.
  • Solid understanding of AWS / Azure / GCP cloud security and web application security principles.
  • Strong communication and documentation skills.
  • Experience with tools like SIEM, CSPM, vulnerability scanners, and monitoring platforms.

Nice to Have

  • Experience working in or with UK healthcare organisations (e.g., NHS or private providers).
  • CISSP, CISM, or ISO 27001 Lead Implementer.
  • Exposure to agile environments or health tech startups.
  • Private medical insurance
  • 25 days annual leave + 3 "breather" days
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Principal Software Safety Consultant

JR United Kingdom

Watford

Remote

GBP 70,000 - 90,000

Yesterday
Be an early applicant

Security Data Loss Prevention Manager (DLP) - Remote (UK) - Permanent

JR United Kingdom

Slough

Remote

GBP 60,000 - 90,000

9 days ago

Security Data Loss Prevention Manager (DLP) - Remote (UK) - Permanent

JR United Kingdom

Dartford

Remote

GBP 60,000 - 90,000

2 days ago
Be an early applicant

Pharmacovigilance / Safety Manager

JR United Kingdom

Slough

Remote

GBP 60,000 - 90,000

9 days ago

Pharmacovigilance / Safety Manager

JR United Kingdom

Guildford

Remote

GBP 55,000 - 80,000

3 days ago
Be an early applicant

Security Data Loss Prevention Manager (DLP) - Remote (UK) - Permanent

JR United Kingdom

High Wycombe

Remote

GBP 60,000 - 90,000

3 days ago
Be an early applicant

Security Data Loss Prevention Manager (DLP) - Remote (UK) - Permanent

JR United Kingdom

Crawley

Remote

GBP 60,000 - 85,000

3 days ago
Be an early applicant

Pharmacovigilance / Safety Manager

JR United Kingdom

Watford

Remote

GBP 60,000 - 90,000

3 days ago
Be an early applicant

Security Data Loss Prevention Manager (DLP) - Remote (UK) - Permanent

JR United Kingdom

Woking

Remote

GBP 60,000 - 80,000

3 days ago
Be an early applicant