Information Security Manager

Reed Technology

Cambridge

Hybrid

GBP 85,000 - 100,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Reed Technology is seeking an experienced Information & Cybersecurity Manager to lead information security, product security and cyber risk management across a regulated technology environment.

This role combines strategic thinking with hands-on delivery, working with Software Development, Regulatory, Clinical, IT and Operations teams. Hybrid working in Cambridge is expected, with a strong focus on mature ISMS and security governance.

Qualifications

  • 5+ years' experience in Information Security, Cybersecurity or Product Security.
  • Strong experience with ISO 27001 and recognised frameworks such as NIST and OWASP.
  • Experience conducting risk assessments, threat modelling and vulnerability management.
  • Experience integrating security into software development lifecycles.
  • Strong cloud security knowledge, ideally AWS.
  • Experience supporting audits, regulatory reviews or compliance activities.
  • Excellent stakeholder management and communication skills.
  • Ability to work independently and deliver pragmatic, risk-based solutions.

Responsibilities

  • Maintain and improve the Information Security Management System (ISMS), policies, procedures and controls.
  • Lead cybersecurity risk assessments, threat modelling and security reviews.
  • Oversee penetration testing, vulnerability management and remediation activities.
  • Advise on secure design, cloud security, mobile security, authentication, encryption and access control.
  • Embed cybersecurity requirements within software and product development processes.
  • Support regulatory submissions, audits, inspections and customer security assessments.
  • Monitor emerging threats affecting applications, cloud services and connected technologies.
  • Manage incident response, business continuity and cyber resilience activities.
  • Review third‑party suppliers and technology partners from a security perspective.
  • Provide security awareness training and guidance across the organisation.
  • Present security risks and recommendations to senior leadership.

Skills

Information security
Cybersecurity
Product security
ISO 27001
NIST
OWASP
Cloud security
Stakeholder management

Tools

AWS

Job description

Information Security Manager

12-Month Fixed-Term Contract


Hybrid (Cambridge once a week)


Salary: £85,000 - £100,000 FTE


REED Technology is exclusively partnering with an innovative digital health organisation that develops market-leading healthcare technology used by people across international markets.


We are seeking an experienced Information & Cybersecurity Manager to lead information security, product cybersecurity and cyber risk management across a growing, highly regulated technology environment.


This is a unique opportunity to become the organisation's security subject matter expert, taking ownership of security governance, compliance, product security and cyber risk whilst working closely with Software Development, Quality, Regulatory, Clinical, IT and Operations teams.


The successful candidate will combine strategic thinking with a hands‑on approach, helping strengthen existing security practices while embedding cybersecurity throughout the software and product development lifecycle.


Key Responsibilities


  • Maintain and improve the Information Security Management System (ISMS), policies, procedures and controls.

  • Lead cybersecurity risk assessments, threat modelling and security reviews.

  • Oversee penetration testing, vulnerability management and remediation activities.

  • Advise on secure design, cloud security, mobile security, authentication, encryption and access control.

  • Embed cybersecurity requirements within software and product development processes.

  • Support regulatory submissions, audits, inspections and customer security assessments.

  • Monitor emerging threats affecting applications, cloud services and connected technologies.

  • Manage incident response, business continuity and cyber resilience activities.

  • Review third‑party suppliers and technology partners from a security perspective.

  • Provide security awareness training and guidance across the organisation.

  • Present security risks and recommendations to senior leadership.


Essential Experience


  • 5+ years' experience in Information Security, Cybersecurity or Product Security.

  • Strong experience with ISO 27001 and recognised frameworks such as NIST and OWASP.

  • Experience conducting risk assessments, threat modelling and vulnerability management.

  • Experience integrating security into software development lifecycles.

  • Strong cloud security knowledge, ideally AWS.

  • Experience supporting audits, regulatory reviews or compliance activities.

  • Excellent stakeholder management and communication skills.

  • Ability to work independently and deliver pragmatic, risk-based solutions.


Highly Desirable


  • Medical Devices, HealthTech or Software as a Medical Device (SaMD).

  • Product Cybersecurity experience.

  • Knowledge of ISO 13485, ISO 14971, GDPR, HIPAA and FDA cybersecurity guidance.

  • Experience with connected devices, mobile applications or cloud-hosted healthcare platforms.


Qualifications


  • Professional certifications such as CISSP, CISM, CRISC, CSSLP, ISO 27001 Lead Auditor or Lead Implementer are advantageous.


The organisation is focused on finding the right person with the expertise to lead and mature its cybersecurity capability during an exciting period of growth.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Manager
Information Security Manager

Reed • Cambridgeshire and Peterborough

Hybrid
GBP 85,000 - 100,000
Hybrid work model
Information Security Manager
Information Security Manager

context recruitment • Greater London

On-site
GBP 96,000 - 126,000
Information Security Manager
Information Security Manager

context recruitment • Birmingham

On-site
GBP 111,000 - 120,000
InfoSec Manager: Product Security & Risk (12m, Hybrid)
InfoSec Manager: Product Security & Risk (12m, Hybrid)

Reed Technology • Cambridge

Hybrid
GBP 85,000 - 100,000
Information Security & Product Cybersecurity Lead
Information Security & Product Cybersecurity Lead

Reed • Cambridgeshire and Peterborough

Hybrid
GBP 85,000 - 100,000
Hybrid work model
ICT Cyber and Information Security Manager
ICT Cyber and Information Security Manager

ISR RECRUITMENT LIMITED • Tees Valley

On-site
GBP 90,000 - 130,000
Information Security Manager
Information Security Manager

Intec Select • Basingstoke

On-site
GBP 76,500 - 93,500
Information Technology Security Manager
Information Technology Security Manager

Rising Associates • Normanton on Trent

On-site
GBP 70,000 - 80,000
Hybrid working
Bonus
Cyber Security Manager
Cyber Security Manager

Amtis - Digital, Technology, Transformation • Birmingham

Hybrid
GBP 77,000 - 94,000
Hybrid working
Private healthcare
Dental plan
+5
Information Security Manager - HYBRID
Information Security Manager - HYBRID

Proactive Appointments • Cambridgeshire and Peterborough

On-site
GBP 60,000 - 90,000