Information Security Manager

Together - loans, mortgages & finance

Cheadle

On-site

GBP 60,000 - 90,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

26 days holiday
Birthday day off
Discretionary annual bonus
Shared Reward Bonus
Life assurance
Critical illness cover
Travel season ticket loans
Ride to work scheme
Gym access
Bar/restaurant discounts
Company holiday homes

Job summary

Together is seeking an experienced Information Security professional to support governance, risk management and assurance across the Group. You will drive risk metrics, oversee third‑party security due diligence and develop training programmes to raise awareness of cyber security.

You will work with the CISO and Cyber Security team to improve policies, controls and monitoring using Purview and DLP, in a regulated, financial services environment.

Qualifications

  • Proven experience in third‑party security due diligence.
  • Experience delivering Information Security training and awareness.
  • Hands-on experience with Microsoft Purview and DLP.
  • Strong understanding of risk management and governance.
  • Experience working within regulated environments.
  • Experience developing policies, processes and standards.
  • Knowledge of cloud and SaaS-based environments.

Responsibilities

  • Maintain and enhance Information Security governance frameworks aligned to NIST CSF and CAF.
  • Define and report on security risk metrics, KPIs and KRIs.
  • Identify and assess Information Security risks across business and technology environments.
  • Deliver engaging security awareness and training programmes.
  • Conduct third‑party cyber, information and AI security due diligence.
  • Support audit and assurance activities, including evidence collation.
  • Drive continuous improvement across policies, processes and controls.
  • Support Microsoft Purview and DLP monitoring capabilities.
  • Partner with the CISO on governance, reporting and incident response activities.

Skills

Third-party security due diligence
Security training & awareness
Risk management & governance
Regulated environments
Policies, processes & standards
Cloud & SaaS environments

Tools

Microsoft Purview
DLP

Job description

  • Based on site in Cheadle (SK8 3GW) - Monday to Friday
  • 26 days holiday, and a day off for your birthday (increasing with service to 30 days), plus bank holidays
  • Free access to company holiday homes
  • Buy & sell holidays
  • Discretionary annual bonus plus an additional Shared Reward Bonus
  • Life assurance and Critical illness cover
  • Travel season ticket loans and Ride to work scheme
  • Free local gym access
  • Local bar / restaurant discounts

We’re Together. For over 50 years, we’ve helped thousands of people, businesses and professionals unlock their property ambitions with our common-sense approach to mortgages and secured loans.

We take the time to understand our customers and our door is always open, so we can often help when other lenders can’t or won’t. Based in Cheadle, Cheshire, our 900 colleagues help our customers throughout the UK, backed by the power of a £7.8 billion loan book.

Job Description

Reporting to the Chief Information Security Officer, you will play a critical role in supporting the development and continuous improvement of our Information Security governance, risk management, and assurance framework.

You will be a seasoned InfoSec professional able to support and maintain governance and leading frameworks such as NIST CSF and the UK Cyber Assessment Framework (CAF) to identify, assess and managing risks across the Group. You will develop risk metrics (KPIs/KRIs). However, what is critical for the role is the ability to deliver security training and awareness programmes as well as leading third‑party cyber, information and AI security due diligence. This would include ongoing monitoring of risks and incidents. The role also involves supporting audits, driving continuous improvement across policies and controls, and implementing monitoring solutions using Microsoft Purview and DLP. Working closely with the CISO and Cyber Security team, you will contribute to governance, reporting and incident response, while building strong stakeholder relationships across IT, Risk and the wider business.

in a nutshell, responsibilities include:

  • Maintain and enhance Information Security governance frameworks aligned to NIST CSF and CAF
  • Define and report on security risk metrics, KPIs and KRIs
  • Identify and assess Information Security risks across business and technology environments
  • Deliver engaging security awareness and training programmes
  • Conduct third‑party cyber, information and AI security due diligence
  • Support audit and assurance activities, including evidence collation
  • Drive continuous improvement across policies, processes and controls
  • Support Microsoft Purview and DLP monitoring capabilities
  • Partner with the CISO on governance, reporting and incident response activities
Qualifications

You are a proactive and detail-oriented Information Security professional with experience working in regulated environments and a passion for improving security maturity.

Essential Experience
  • Proven experience in third‑party security due diligence
  • Experience delivering Information Security training and awareness
  • Hands‑on experience with Microsoft Purview and DLP
  • Strong understanding of risk management and governance
  • Experience working within regulated environments
  • Experience developing policies, processes and standards
  • Knowledge of cloud and SaaS-based environments
Desirable
  • CISM or equivalent certification
  • Strong presentation and stakeholder engagement skills
  • Experience reviewing technical security designs
Additional Information

Together embraces diversity and inclusion, and are proud to be an equal opportunity workplace. Not only do we welcome difference – we celebrate it, support it and really value our colleagues for who they are. We are committed to building a team that represents a variety of backgrounds, perspectives and skills.

If you feel you'd benefit from any support or reasonable adjustments during any stage of the recruitment process, please don’t hesitate to let us know when completing your application. This information will be picked up by our team, so we can try and put steps in place to help you be at your best through this process.

Please note that all successful applicants will undergo relevant employment reference, financial and criminal record checks.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Officer
Information Security Officer

Recognise Bank • Greater London

Hybrid
GBP 90,000 - 120,000
Hybrid working
Private medical care
Enhanced pension
+2
Information Security GRC Specialist
Information Security GRC Specialist

Motor Insurers' Bureau (MIB) • Milton Keynes

Hybrid
GBP 55,000 - 70,000
Contributory Group Pension scheme
Life Assurance
Employee Incentive Scheme
+5
Information Security GRC Manager
Information Security GRC Manager

AJ Bell • Manchester

Hybrid
GBP 65,000 - 85,000
27 days’ holiday
Pension with matched contributions up to 8%
Discretionary bonus and share awards
+3
Principal Information Security Engineer
Principal Information Security Engineer

Manchester Digital • Manchester

On-site
GBP 70,000 - 95,000
26 days holiday
Pension 7% matched
Discretionary bonus
+6
Information Security GRC Specialist
Information Security GRC Specialist

Motor Insurers' Bureau • Milton Keynes

Hybrid
GBP 60,000 - 74,000
Contributory Group Stakeholder Pension
Life Assurance
Employee Incentive Scheme
+5
Principal Information Security Engineer
Principal Information Security Engineer

AJ Bell Management Limited • United Kingdom

On-site
GBP 70,000 - 90,000
26 days holiday, increasing with service
7% Pension with matched contributions
Discretionary bonus scheme
+2
Principal Information Security Engineer
Principal Information Security Engineer

AJ Bell Business Solutions Limited • Salford

Hybrid
GBP 90,000 - 120,000
Competitive salary
Holidays 26–31 days
Pension matched 7%
+5
Cyber Security Manager
Cyber Security Manager

Which? • Greater London

Hybrid
GBP 73,000 - 80,000
Hybrid work
Health insurance
Pension 6-11%
+3
Cyber Security Analyst/Lead
Cyber Security Analyst/Lead

Chambers & Partners • Greater London

Hybrid
GBP 90,000 - 130,000
NIST Cyber Assurance Analyst
NIST Cyber Assurance Analyst

Cyber UK • Wolverhampton

Hybrid
GBP 52,000 - 60,000
Enhanced family-focused benefits
Hybrid working (3 days in office, 2 days from home)