Information Security Manager

context recruitment

Greater London

Hybrid

GBP 96,000 - 126,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Context Recruitment is seeking an Information Security Manager for a 3-month contract in Central London or Birmingham, hybrid. The role commands up to £600 per day inside IR35 and involves hands-on leadership of cyber security, SOC services and regulatory compliance.

The role reports to the Head of IT and requires managing security incidents, risk control, and a strong security governance mindset across complex transport environments.

Qualifications

  • Senior information security leadership experience.
  • Proven ability to define and deliver cyber security roadmaps.
  • Experience with ISO 27001 and NIST controls.
  • Strong governance and risk management background.
  • Experience managing SOC services and third-party providers.
  • Knowledge of GDPR and data protection regimes.

Responsibilities

  • Work with the Head of IT to deliver a robust Cyber Security Roadmap.
  • Develop and maintain Information Security Strategy, policies and procedures.
  • Oversee technical security controls and SOC services.
  • Lead incident response and remediation activities.
  • Embed Security by Design across projects and initiatives.
  • Drive security awareness across the organisation.
  • Conduct threat, risk, capability and maturity assessments.
  • Manage vulnerability, pen-testing schedules and threat intel.
  • Maintain incident playbooks and security audits.
  • Support ISO 27001 implementation and compliance.

Skills

Cyber security leadership
Security strategy
SOC management
Vulnerability management
Incident management
ISO 27001
NIST framework
GDPR knowledge
Stakeholder management
Threat intelligence

Tools

Rapid7
Sophos MTR
SolarWinds
ServiceNow

Job description

Information Security Manager

3-month contract


Central London or Birmingham (hybrid working)


Up to £600 per day (inside IR35)


IT Information Security Manager sought by a well-known, public-facing organisation operating across a complex and critical transport environment, providing services to hundreds of thousands of customers.As part of a Critical National Infrastructure environment, the IT Information Security Manager will play a crucial role in the day-to-day management of the technical cyber security landscape, SOC services and wider information security management.


Reporting to the Head of IT and managing an IT Security Operations Engineer, this is a hands-on leadership role with responsibility for ensuring appropriate cyber security controls are in place, managing security risk and incidents, and maintaining ongoing compliance with relevant regulatory frameworks and industry standards.


Key Responsibilities


  • , Work with the Head of IT to create, maintain and deliver a robust Cyber Security Roadmap to minimise organisational risk

  • , Develop and maintain the Information Security Strategy, security policies and procedures

  • , Provide day-to-day oversight of the technical cyber security environment and associated security controls

  • , Manage the organisation's third-party SOC service, ensuring effective monitoring, escalation and response

  • , Take ownership of cyber security incidents, coordinating prompt technical response, remediation and mitigation

  • , Embed Security by Design principles across technology projects and initiatives

  • , Drive a strong culture of IT and cyber security awareness and responsibility across the organisation

  • , Conduct ongoing security threat, risk, capability and maturity assessments

  • , Manage vulnerability management, penetration testing schedules, remediation activities and threat intelligence

  • , Maintain and develop incident management processes and security playbooks

  • , Conduct and respond to security audits and support ongoing regulatory and standards compliance

  • , Support the implementation and ongoing management of ISO 27001, including gap analysis and remediation

  • , Oversee areas including patch management, PCI DSS, NIS, GDPR and data protection

  • , Engage and manage specialist third-party security providers across areas such as penetration testing, forensic analysis and security auditing

  • , Provide clear security reporting to senior stakeholders


Required Experience


  • , Previous experience working in a Cyber Security Manager, Information Security Manager, Cyber Risk Manager, Cyber Threat Manager, IT Security Manager or similar role

  • , Strong experience spanning both information security strategy/framework management and oversight of technical security controls

  • , Experience setting up, running and/or managing SOC services, including third-party SOC providers

  • , Strong cyber incident management experience, including coordinating technical response and remediation

  • , Extensive knowledge of security standards and frameworks including ISO 27001 and NIST

  • , Experience assessing an organisation against security standards, identifying gaps and delivering remediation plans

  • , Extensive experience with GDPR, data protection and relevant security legislation/regulatory frameworks

  • , Knowledge of security assessment methodologies including threat modelling, controls assessments and risk assessments

  • , Experience across vulnerability management, penetration testing, threat intelligence, incident playbooks and patch management

  • , Solid understanding of IT infrastructure fundamentals including networks, operating systems, databases, Azure and Microsoft 365

  • , Experience with Rapid7, Sophos MTR, SolarWinds and ServiceNow would be highly advantageous

  • , Exposure to PCI DSS and NIS would also be beneficial

  • , Excellent stakeholder management and reporting skills

  • , Relevant security qualifications such as CISSP, CRISC, CISM or Security+ are highly desirable


The successful candidate will need to be comfortable working across both the strategic and operational sides of information security, with the ability to engage senior stakeholders while maintaining sufficient technical depth to oversee security controls, incidents and third-party security services.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager
Information Security Manager

context recruitment • Birmingham

Hybrid
GBP 111,000 - 120,000
Information Security Manager
Information Security Manager

Frontpoint Partners Ltd • Greater London

On-site
GBP 85,000 - 110,000
Information Security Manager
Information Security Manager

Panoramic Associates • Humber

On-site
Information Security Architect / Manager
Information Security Architect / Manager

Onyx-Conseil • Greater London

Hybrid
GBP 78,000 - 106,000
ICT Cyber and Information Security Manager
ICT Cyber and Information Security Manager

ISR RECRUITMENT LIMITED • Tees Valley

On-site
GBP 90,000 - 130,000
Information Security Manager - Hybrid Contract (3 Months)
Information Security Manager - Hybrid Contract (3 Months)

context recruitment • Greater London

Hybrid
GBP 96,000 - 126,000
IT Security Manager
IT Security Manager

Onyx-Conseil • Greater London

Hybrid
GBP 75,000 - 85,000
Information Security Manager
Information Security Manager

Intec Select • Basingstoke

Hybrid
GBP 51,000 - 85,000
IT Systems Security Manager
IT Systems Security Manager

Onyx-Conseil • Greater London

Hybrid
GBP 75,000 - 85,000
ICT Cyber and Information Security Manager
ICT Cyber and Information Security Manager

ISR RECRUITMENT LIMITED • North East

On-site
GBP 80,000 - 100,000