Information Security Manager

EXA Infrastructure

Greater London

Hybrid

GBP 70,000 - 110,000

Full time

9 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Hybrid work model

Job summary

EXA Infrastructure seeks an Information Security Manager to lead the security program, manage the security team and align initiatives with business objectives. You will oversee the IT security strategy and ensure policies meet ISO27001, SOC2 and regulatory expectations.

You will collaborate with leaders to balance security with other priorities, manage outsourced providers and drive the culture of risk assessment across the organization.

Qualifications

  • Knowledge of secured on-prem and public cloud deployments (hybrid landscape: Azure, GCP, AWS).
  • Ability to motivate and manage a security team aligned to business goals.
  • Strong English communication and presentation skills.

Responsibilities

  • Maintain and improve EXA's cybersecurity capabilities, processes and technologies.
  • Oversee security monitoring, incident management and engineering of security into EXA's environment.
  • Ensure policies and controls meet ISO27001, SOC2 and regulatory requirements.

Skills

Cloud security
Team leadership
Stakeholder management
Security governance
English communication

Tools

Privileged Access
Perimeter security
Endpoint security

Job description

Role Purpose

As the Information Security Manager, you will be responsible for managing and maintaining the EXA information security team and program, including procedures and policies designed to protect enterprise communications, systems and assets from both internal and external threats.

You will need to work alongside other executives to align security initiatives with broader business objectives and offer specialist advice and support regarding anticipating, accessing and actively managing new and emerging threats. You will oversee the company's IT security strategy and ensure corporate security policies, standards and procedures align with the current threat landscape and customer requirements and that company policies and are upheld by all.

The complexity of this position requires a management approach that is engaging and collaborative, with an ability to work with other leaders to set the best balance between security requirements and other priorities at the enterprise level.

Key Responsibilities
  • Maintain the cybersecurity capabilities, processes and technologies that help protect EXA Infrastructure's security posture and continuously improve these where required..
  • Work with other infrastructure and application teams to understand the technology landscape and assist with aligning to EXA Infrastructure's security posture.
  • Deliver on the existing cyber security program, collate and present evidence for management awareness and regulatory scrutiny where required.
  • Oversee a small team responsible for security monitoring, incident management and engineering of security technologies into EXA Infrastructure's environment.
  • Maintain the team responsible for the development of effective policies to secure sensitive data and ensure information security and compliance with relevant regulatory, legal and customer certification requirements (ISO27001, SOC2)
  • Manage multiple outsourced security providers and ensure the quality and effectiveness of the services.
  • Performing research to stay abreast of new technologies and security vulnerabilities.
  • Continue championing the culture of appropriate cyber security risk assessment and risk acceptance across from stake holders to end users and IT professionals
  • Review, endorse and align information security risk management and mitigation plans
  • Advise management on the appropriate cyber security solutions and technologies to remediate risks to an acceptable level.
  • Review and addressing cyber-security incidents as well as gain buy-in and oversee remedial activities to mitigate risks which are outside of the risk tolerance.
  • Assist in the change management process to ensure changes encompass cyber security considerations.
  • Conversing regularly with leaders and employees to ensure all IT security policies are deployed, revised, sustained and overseen effectively.
Individual Profile
  • Knowledge on secured on-premise and public cloud deployments for infrastructure and applications running on a hybrid landscape that includes all public cloud technologies: Azure, GCP, AWS
  • Knowledge on Security Software and hardware, including but not only: Privileged Access Control systems, Perimeter security, End point security, Micro Segmentation, Threat analytics
  • An ability to motivate and manage a team of information security staff supporting the organization's goals and an ability to lead the continuous process of evolving the information security vision for the future
  • Deep understanding of the security industry in UK, Europe and the US.
  • An ability to cultivate and build collaborative working relationships with a broad range of enterprise stakeholders
  • Create and deliver effective presentations as a means for communicating project and deliverable progress
  • Ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one
  • Drive change through the ability to effectively influence others to modify their opinions, plans, or behaviours.
  • Communicate complex and technical issues to diverse audiences, orally and in writing, in an easily-understood, authoritative, and actionable manner
  • Strong interpersonal, verbal, and written communication skills in English
  • Excellent organisational skills with the ability to multi-task
  • Ability to manage own time effectively and to be prompt and punctual
Our working environment

We are committed to working in the location where we do our best work. As a small and growing company with great offices in great locations, most employees will aim to be in the office 3 days a week and 2 days working from home/ other locations.

Here at EXA, we believe the future includes everyone, we are open to all applications to create an environment and culture that includes one and all. We are a proud global community, that wants to drive diversity of thought though our employees and culture. We want you to come as you and make yourself and EXA successful.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager
Information Security Manager

EXA Infrastructure • City Of London

On-site
GBP 90,000 - 120,000
Information Security Manager
Information Security Manager

Jobtailor • Greater London

On-site
GBP 100,000 - 150,000
Information Security Executive
Information Security Executive

iFAST Global Bank Limited • Greater London

Hybrid
GBP 50,000 - 70,000
Competitive salary
25 days annual leave plus bank holidays
Performance-based bonus
+4
Security Architect (OT, IT, Network and Physical)
Security Architect (OT, IT, Network and Physical)

Expleo Group • West of England

Hybrid
GBP 70,000 - 110,000
Collaborative environment
ExpleoAcademy programs
Competitive benefits
+1
Information Security Manager — Hybrid & Risk Strategy
Information Security Manager — Hybrid & Risk Strategy

EXA Infrastructure • Greater London

Hybrid
GBP 70,000 - 110,000
Hybrid work model
Hybrid InfoSec Leader: Strategy & Incident Oversight
Hybrid InfoSec Leader: Strategy & Incident Oversight

EXA Infrastructure • City Of London

Hybrid
GBP 90,000 - 120,000
Cyber Security Lead
Cyber Security Lead

Chambers & Partners • Greater London

Hybrid
GBP 90,000 - 130,000
Information Security Analyst
Information Security Analyst

Heywood • Altrincham

Hybrid
GBP 42,000 - 62,000
Information Security and Data Protection Analyst
Information Security and Data Protection Analyst

Interact Software • Manchester

On-site
GBP 45,000 - 65,000
IT Security Manager
IT Security Manager

Onyx-Conseil • Greater London

Hybrid
GBP 75,000 - 85,000