Information Security Manager

Nuvion Tech

Bedford

Hybrid

GBP 80,000 - 110,000

Full time

17 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Nuvion Tech is seeking a Cyber Security Lead to drive information security across GRC and technical domains in a hybrid Bedford setup. You will collaborate with Infrastructure, IT Operations and Software Engineering to strengthen security posture, lead audits and enhance ISMS/ISO 27001 compliance.

The role requires 5+ years in cyber/information security with strong GRC, audit and technical credibility, including vulnerability management, incident response, and supplier assurance.

Qualifications

  • ISO 27001, ISMS governance and audits.
  • Risk management and compliance controls.
  • Security governance and assurance practices.
  • Infrastructure Security, Network Security, Vulnerability Management, Patch Management, Penetration Testing, IAM, Endpoints & Cloud Security.
  • Incident Response, Cyber Essentials, Supplier Assurance, Business Continuity, Disaster Recovery.
  • Infrastructure, Networks, Security Engineering, IT Operations, SaaS/Software environments.

Responsibilities

  • Strengthen security posture across Information Security, Cyber Security, GRC and technical security.
  • Support and improve ISMS and ISO 27001; lead security audits, risk and assurance activities.
  • Collaborate with Infrastructure, IT Operations and Software Engineering teams.
  • Involvement across supplier assurance, Cyber Essentials, business continuity, disaster recovery, DPIAs, BIAs, security policies and security awareness.
  • Manage vulnerability management, patching, incident response and infrastructure security.

Skills

GRC & Audit
Infrastructure Security
Network Security
Vulnerability Management
Patch Management
Penetration Testing
IAM
Endpoints & Cloud Security
Incident Response
Cyber Essentials
Supplier Assurance
Business Continuity
Disaster Recovery
Infrastructure
Networks
Security Engineering
IT Operations
SaaS/Software

Job description

Cyber Security Lead / Information Security Lead
Bedford | Hybrid – 1–2 Days per Week in the Office

Cyber Security | Information Security | GRC | ISO 27001 | ISMS | Security Audits | Infrastructure Security

Are you an experienced Cyber Security / Information Security professional with a technical background and strong GRC, ISO 27001 and security audit experience?

We're recruiting a Cyber Security Lead / Information Security Lead for a leading international SaaS software house, offering the opportunity to take broader ownership across Information Security, Cyber Security, GRC and security assurance.

The ideal candidate will have 5+ years' Cyber Security / Information Security experience, ideally having started within Infrastructure, Networks or Security Engineering before progressing into broader Information Security responsibilities.

Strong GRC and audit experience is essential. You'll need practical experience across ISO 27001, ISMS, internal/external security audits, risk management, policies, controls and compliance, combined with the technical credibility to work effectively with Infrastructure, IT Operations and Software Engineering teams.

The Role

Working closely with the Head of Information Security, you'll help strengthen the security posture of an international SaaS environment across Information Security, Cyber Security, GRC and technical security. You'll support and improve the ISMS and ISO 27001, lead/support security audits, risk and assurance activities, and work with technical teams across vulnerability management, patching, penetration testing, incident response and infrastructure security.

You'll also have involvement across supplier assurance, Cyber Essentials, business continuity, disaster recovery, DPIAs, BIAs, security policies and security awareness.

Skills & Experience

We're particularly interested in experience across:

  • GRC & Audit: ISO 27001, ISMS, Internal/External Audits, Risk Management, Security Governance, Policies, Controls, Compliance and Assurance.
  • Technical Security: Infrastructure Security, Network Security, Vulnerability Management, Patch Management, Penetration Testing, IAM, Endpoints and Cloud Security.
  • Security & Resilience: Incident Response, Cyber Essentials, Supplier Assurance, Business Continuity and Disaster Recovery.
  • Technical Background: Infrastructure, Networks, Security Engineering, IT Operations, Cyber Security or SaaS/Software environments.

The balance is important. We're not looking for a purely technical Security Engineer with limited GRC/audit exposure, or a purely compliance-led GRC candidate with limited technical understanding.

You may currently be working as an Cyber Security Lead, Information Security Lead, Senior Information Security Analyst, Senior Cyber Security Analyst, Information Security Consultant, Cyber Security Consultant, Technical Security Lead, Security Engineer or Infrastructure Security Engineer.

Why Consider It?

A great opportunity to join a leading international SaaS software business and step into a broader Information Security leadership position, combining your technical security background with greater ownership across GRC, ISO 27001, ISMS, audits and security strategy.

Bedford | Hybrid – 1–2 Days per Week in the Office

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager - HYBRID in Bedfordshire
Information Security Manager - HYBRID in Bedfordshire

Energy Jobline ZR • Cambridgeshire and Peterborough

On-site
GBP 70,000 - 95,000
Information Security GRC Specialist
Information Security GRC Specialist

Morson Edge (Financial Services) • Greater London

Hybrid
GBP 90,000 - 120,000
Information Security Manager
Information Security Manager

Frontpoint Partners Ltd • City Of London

On-site
GBP 70,000 - 110,000
Information Security Manager
Information Security Manager

Intec Select • Basingstoke

Hybrid
GBP 51,000 - 85,000
Head of Information Security GRC & Awareness
Head of Information Security GRC & Awareness

TRIA • England

On-site
GBP 165,000 - 344,000
Group Information & Security Manager
Group Information & Security Manager

Oscar • Doncaster

Hybrid
GBP 90,000 - 120,000
30% Annual Bonus
Hybrid Working
Company Pension Scheme
Senior Information Security & GRC Specialist
Senior Information Security & GRC Specialist

Zachary Daniels • Greater London

Hybrid
GBP 75,000 - 85,000
Information Security Officer
Information Security Officer

TyneStack Ltd • Newcastle upon Tyne

Hybrid
GBP 45,000 - 70,000
Hybrid working
Exposure to ISO 27001/NIST in cloud
Regulated financial tech environment
Information Security Analyst
Information Security Analyst

REX Cyber Security • West of England

Hybrid
GBP 55,000 - 70,000
ICT Cyber and Information Security Manager
ICT Cyber and Information Security Manager

ISR RECRUITMENT LIMITED • North East

On-site
GBP 80,000 - 100,000