Information Security Manager

Jobtailor

Greater London

On-site

GBP 100,000 - 150,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

EXA Infrastructure is seeking a senior information security leader to manage and advance the security program across on-premises and cloud deployments (Azure, GCP, AWS). The role partners with IT and business teams to strengthen security controls, governance, and incident response.

You will oversee a small team, drive risk assessments, and communicate security requirements to executives and engineers, ensuring policy adherence and regulatory readiness.

Qualifications

  • Knowledge of secured on-premise and public cloud deployments for infrastructure and applications across Azure, GCP, and AWS.
  • Knowledge of security software and hardware, including Privileged Access Control systems, perimeter security, endpoint security, micro-segmentation, and threat analytics.
  • Ability to motivate and manage a team of information security staff.
  • Ability to lead the continuous evolution of the information security vision.
  • Deep understanding of the security industry in the UK, Europe, and the US.
  • Ability to build collaborative relationships with enterprise stakeholders.
  • Ability to create and deliver effective presentations.
  • Ability to evaluate relative costs and benefits of potential actions.
  • Ability to influence others to modify opinions, plans, or behaviours.
  • Ability to communicate complex technical issues to diverse audiences in English.
  • Strong interpersonal, verbal, and written communication skills in English.
  • Excellent organisational and multitasking skills.
  • Ability to manage time effectively and be prompt and punctual.
  • Experience or knowledge related to ISO27001 and SOC2 regulatory, legal, and customer certification requirements

Responsibilities

  • Manage and maintain EXA’s information security team and program.
  • Maintain cybersecurity capabilities, processes, and technologies, continuously improving them as required.
  • Work with infrastructure and application teams to align security posture with technology landscape.
  • Deliver the existing cybersecurity program and present evidence for management awareness and regulatory scrutiny.
  • Oversee a small team responsible for security monitoring, incident management, and security technology engineering.
  • Maintain policies securing sensitive data and ensure information security and compliance requirements are met.
  • Manage outsourced security providers and ensure service quality and effectiveness.
  • Research new technologies and security vulnerabilities.
  • Champion cybersecurity risk assessment and risk acceptance across stakeholders, end users, and IT professionals.
  • Review and align information security risk management and mitigation plans.
  • Advise management on cybersecurity solutions and technologies to remediate risks.
  • Review and address cybersecurity incidents and oversee remedial activities.
  • Support change management by ensuring cybersecurity considerations are incorporated.
  • Communicate regularly with leaders and employees to ensure IT security policies are deployed, revised, sustained, and effectively overseen.

Skills

Team leadership
Cybersecurity expertise
Cloud security
Communication (English)
Risk assessment
Presentation skills
Influencing skills

Education

ISO27001 Certification
SOC2 Certification

Job description


  • Manage and maintain EXA’s information security team and program

  • Maintain cybersecurity capabilities, processes, and technologies, continuously improving them as required

  • Work with infrastructure and application teams to understand the technology landscape and align it with EXA Infrastructure’s security posture

  • Deliver the existing cybersecurity program and present evidence for management awareness and regulatory scrutiny

  • Oversee a small team responsible for security monitoring, incident management, and security technology engineering

  • Maintain policies securing sensitive data and ensure information security and compliance requirements are met

  • Manage outsourced security providers and ensure service quality and effectiveness

  • Research new technologies and security vulnerabilities

  • Champion cybersecurity risk assessment and risk acceptance across stakeholders, end users, and IT professionals

  • Review and align information security risk management and mitigation plans

  • Advise management on cybersecurity solutions and technologies to remediate risks

  • Review and address cybersecurity incidents and oversee remedial activities

  • Support change management by ensuring cybersecurity considerations are incorporated

  • Communicate regularly with leaders and employees to ensure IT security policies are deployed, revised, sustained, and effectively overseen


Requirements


  • Knowledge of secured on-premise and public cloud deployments for infrastructure and applications across Azure, GCP, and AWS

  • Knowledge of security software and hardware, including Privileged Access Control systems, perimeter security, endpoint security, micro-segmentation, and threat analytics

  • Ability to motivate and manage a team of information security staff

  • Ability to lead the continuous evolution of the information security vision

  • Deep understanding of the security industry in the UK, Europe, and the US

  • Ability to build collaborative relationships with enterprise stakeholders

  • Ability to create and deliver effective presentations

  • Ability to evaluate relative costs and benefits of potential actions

  • Ability to influence others to modify opinions, plans, or behaviours

  • Ability to communicate complex technical issues to diverse audiences in English

  • Strong interpersonal, verbal, and written communication skills in English

  • Excellent organisational and multitasking skills

  • Ability to manage time effectively and be prompt and punctual

  • Experience or knowledge related to ISO27001 and SOC2 regulatory, legal, and customer certification requirements


Core Competencies

Demonstrates expertise in managing information security programs, ensuring compliance with regulatory standards such as ISO27001 and SOC2, and leading teams in cybersecurity risk assessment and incident management. Proficient in aligning security strategies with cloud deployments across Azure, GCP, and AWS while fostering collaborative relationships with stakeholders.


Highest-signal resume keywords


  • Information Security Management

  • Cybersecurity Risk Assessment

  • Cloud Security (Azure, GCP, AWS)

  • ISO27001 and SOC2 Compliance

  • Team Leadership and Motivation


Hard Skills


  • Cybersecurity Program Delivery

  • Security Monitoring

  • Incident Management

  • Threat Analytics

  • Privileged Access Control

  • Perimeter Security

  • Endpoint Security

  • Micro-Segmentation

  • Security Vulnerability Research

  • Risk Management


Soft Skills


  • Interpersonal Communication

  • Organizational Skills

  • Multitasking

  • Presentation Skills

  • Influencing Skills


Certifications & Qualifications


  • ISO27001 Certification

  • SOC2 Certification


Industry Keywords


  • Cybersecurity

  • Information Security

  • Compliance

  • Security Policies

  • UK Security Industry

  • European Security Industry

  • US Security Industry

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Analyst
SOC Analyst

Jobtailor • Farnborough

On-site
GBP 65,000 - 85,000
SOC Team Lead
SOC Team Lead

Jobtailor • Greater London

On-site
GBP 90,000 - 120,000
Cyber Security Analyst
Cyber Security Analyst

Novia Financial plc • Bath

On-site
GBP 55,000 - 75,000
Security Architect – Entra ID, MS, Azure
Security Architect – Entra ID, MS, Azure

Jobtailor • Greater London

Hybrid
GBP 90,000 - 130,000
Information Security Manager
Information Security Manager

EXA Infrastructure • City Of London

On-site
GBP 90,000 - 120,000
Information Security Manager
Information Security Manager

EXA Infrastructure • Greater London

Hybrid
GBP 70,000 - 110,000
Hybrid work model
Senior IT Security Analyst
Senior IT Security Analyst

Cyber UK • Greater London

Hybrid
GBP 90,000 - 130,000
Hybrid working
Personal pension plan
Private medical & dental insurance
+1
Security Consulting Manager - PRD
Security Consulting Manager - PRD

Accenture UK & Ireland • Greater London

Hybrid
GBP 110,000 - 150,000
Cyber Security Lead
Cyber Security Lead

Chambers & Partners • Greater London

Hybrid
GBP 90,000 - 130,000
Senior Operational Security Engineer
Senior Operational Security Engineer

Crown Agents Bank Ltd. • Greater London

On-site
GBP 70,000 - 90,000