Enable job alerts via email!

Information Security Manager

SSR G&M Ltd

Bristol

Hybrid

GBP 70,000 - 90,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a global defense tech organization as an Information Security Manager, where you'll play a pivotal role in ensuring compliance with UK MOD policies and enhancing the organization's security posture. This hybrid position offers an exciting opportunity to lead initiatives for ISO27001 certification, manage risk assessments, and develop training programs to foster a culture of security awareness among employees. Collaborate with IT and various stakeholders to maintain a robust information security framework while supporting the CISO in delivering strategic objectives. This role is perfect for someone passionate about information security and looking to make a significant impact in a dynamic environment.

Benefits

Bonus Package
Hybrid Working
Professional Development Opportunities

Qualifications

  • Proven experience as an Information Security Manager with MOD knowledge.
  • Strong understanding of risk management and compliance frameworks.

Responsibilities

  • Ensure compliance with information security policies and regulations.
  • Develop and manage risk assessment activities and training programs.

Skills

Information Security Management
Risk Management
Compliance Auditing
Team Collaboration
Communication Skills

Education

Relevant Information Security Certification
Degree in a related field

Tools

ISO 27001 Framework
Cyber Essentials Certification

Job description

Information Security Manager - Corporate Governance, Risk, and Compliance

Information Security Manager - CGRC
£70k + Bonus + Package, Based Bristol (Hybrid working)

This is an exceptional opportunity to work for our client, a global defence tech organisation. In this exciting role the successful candidate will be responsible for providing Information Security support and advice to meet the needs of the UK business in line with all relevant policies, procedures, requirements, and standards. Ensure the information security compliance of the corporate IT infrastructure against company and MoD policy requirements.

The Role:

  • Ensure that Business Unit demonstrates corporate consistency and compliance with company and MoD information security policies and other regulatory requirements GDPR and DPA.
  • Oversee company Supply Chain onboarding approvals.
  • Develop and implement a program leading to ISO27001 Certification.
  • Conduct internal assessments and support Business Units in developing and maintaining effective security processes and procedures.
  • Ensure a robust internal governance framework exists for compliance with company and MoD policies SAL, F1686, DCPP.
  • Develop and manage a program of risk assessment activity and provide support and guidance on the implementation of risk management controls.
  • Develop and manage an information security training awareness programme for all employees and implement a strong cultural awareness campaign.
  • Support essential activity to the business continuity management program for all information assurance activities including BCP Plan testing and reporting.
  • Work closely with IT and wider stakeholders to maintain the corporate security posture around enterprise systems.
  • Manage and oversee information security accreditation requirements, including the maintenance of ISO and Cyber Essentials certification and supporting external compliance audits.
  • Identify and implement continuous improvement in company information security processes, reflecting current best practices. Ensure that policies and processes benefit the business without unnecessary bureaucracy.
  • Support the CISO in delivering the Information Security strategy.
The Person:
  • Knowledge and understanding of UK MOD and Government information security policies, processes, standards, and guidance.
  • Previous experience in a similar role working as an information security manager with knowledge and experience of UK MOD and Government information security policies, processes, standards, and guidance.
  • Experience in risk management including the creation of information security risk assessments, risk acceptance criteria, and risk treatment plans.
  • Experience of security audit and compliance in accordance with ISO 27001 or other recognisable frameworks.
  • Experienced in teamwork and collaboration.
  • The ability to proactively build and manage effective communication within a group or team.
  • In line with company Baseline Security requirements, candidates will be asked to provide evidence of identity & eligibility to work in the UK.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Information Security Manager (Remote)

EnerMech

Aberdeen City

Remote

GBP 60,000 - 100,000

Today
Be an early applicant

Information Security Manager

TieTalent

Bristol

Hybrid

GBP 65,000 - 75,000

Yesterday
Be an early applicant

Information Security Manager

TN United Kingdom

Bristol

On-site

GBP 60,000 - 100,000

2 days ago
Be an early applicant

Senior Information Security Manager

Public Sector Resourcing

Stockland Bristol

On-site

GBP 60,000 - 90,000

5 days ago
Be an early applicant

Information Security Manager (Fixed Term Contract)

Das Group

Bristol

On-site

GBP 50,000 - 80,000

4 days ago
Be an early applicant

Information Security Manager

JR United Kingdom

Bristol

On-site

GBP 60,000 - 100,000

9 days ago

Nuclear Safety Lead

Gold Group Ltd

Bristol

Remote

GBP 80,000 - 100,000

Yesterday
Be an early applicant

Information Security Manager

TRIA

Bristol

On-site

GBP 50,000 - 90,000

27 days ago

Information Security Manager

Cyber UK

Bristol

On-site

GBP 40,000 - 80,000

30+ days ago