Enable job alerts via email!

Information Security Manager

Cifas

London

Hybrid

GBP 60,000 - 90,000

Full time

3 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Cifas is seeking an experienced Information Security Manager to oversee day-to-day security operations. This hands-on role requires expertise in cloud security, risk management, and compliance, playing a critical part in safeguarding the organization while ensuring alignment with regulatory standards and business objectives. The successful candidate will influence the security strategy and promote a culture of awareness across all levels.

Benefits

Remote working with approximately 2 days a month in the London office
Generous annual leave, plus bank holidays
Excellent pension package through salary sacrifice
Wellbeing breaks and access to wellness programs

Qualifications

  • Exceptional understanding of cloud security architecture principles.
  • Experience with major cloud platforms and cloud-native security tools.
  • Proven track record integrating security into DevOps practices.

Responsibilities

  • Lead the information security improvement program.
  • Oversee implementation and maintenance of security controls.
  • Conduct regular risk assessments and prepare management reports.

Skills

Cloud security architecture principles
Threat modelling
Risk assessment
Security policy development
Communication skills

Education

Recognised security certificate (e.g. CISM, CISSP)

Tools

AWS
GCP
Azure

Job description

Join to apply for the Information Security Manager role at Cifas

Join to apply for the Information Security Manager role at Cifas

Direct message the job poster from Cifas

Cifas is the UK’s leading fraud prevention service, managing the largest database of instances of fraudulent conduct in the country. Our members are organisations from all sectors, sharing their data across those sectors to reduce instances of fraud and financial crime. Operating as a not-for-profit means our teams put all their efforts into our mission of fighting fraud, rather than creating a financial return for shareholders.

Fraud presents a serious and significant threat to the UK and our role in protecting businesses, the public and the economy from fraud is now more important than ever before. As a result, we have ambitious plans to innovate and create new services and products that will significantly improve the way that we and our members tackle fraud.

Our employees play a crucial part in ensuring we remain the UK's leading fraud prevention service, whilst also ensuring our members remain at the heart of everything we do.

The role:

We are seeking an experienced and highly capable Information Security Manager to lead our day-to-day information security operations, reporting directly to the Director of Information Security.

This is a hands-on role requiring a deep understanding of security practices particularly for cloud environments. The successful candidate will play a key role in safeguarding our organisation by working collaboratively with internal teams and external partners to manage information security, governance, and cyber risk.

In this role, you will be responsible for ensuring that our security position aligns with organisational goals, regulatory requirements, and recognised industry standards. This position offers a unique opportunity to influence our security strategy while providing expert guidance and operational oversight across the business.

Responsibilities & accountabilities:

Working alongside our experienced team of industry experts, you will be responsible for:

  • Co -creation of an information security improvement program to ensure the risk profile matures in line with business objectives and the threat landscape, maintaining ongoing compliance with relevant accreditations (e.g. ISO27001, Cyber Essentials, PCI DSS).
  • Overseeing the implementation, maintenance and assurance of security controls across the business in line with company objectives, information security strategy and security architectural principles.
  • Supporting the business with information security risk identification and treatment within the context of the latest threats, conducting regular risk assessments, threat modelling, overseeing mitigation strategies and preparing management reports detailing the state of the risk.
  • Contributing to the development of security policies, standards, and frameworks across the organisation, working with teams to influence embedding them into the business.
  • Providing information security requirements to Cifas’ third parties and obtaining assurance that they are protecting company assets, as well providing assurance to members regarding Cifas’ information security.
  • Leading the technical response to a security incident and ensuring the information security of BCP, as well as developing response plans that are reviewed and tested regularly.
  • Creating and delivering relevant information security training & awareness material as part of a wider program designed to drive a culture of security awareness across the organisation.

To be successful in this role, you will have:

  • Exceptional understanding of cloud security architecture principles and emerging threats
  • Experience with major cloud platforms (AWS, GCP, Azure) and cloud-native security tools
  • A strong background in threat modelling and risk assessment across applications and infrastructure
  • Knowledge of Application Security, including secure coding and vulnerability management
  • Proven track record integrating security into DevOps practices and CI/CD pipelines
  • Expertise in corporate security technologies (IAM, EDR, network security)
  • Experience designing and implementing comprehensive security solutions
  • Knowledge of key security frameworks (ISO 27001, NIST CSF, CIS Controls)
  • Excellent communication skills, particularly in translating technical concepts for business stakeholders
  • A recognised security certificate is preferred but not essential (e.g. CISM, CISSP)

In return we offer:

In return for helping us take the fight to fraud, all our employees receive an impressive benefit package, which includes:

  • Remote working with approximately 2 days a month in the London office
  • Generous annual leave, plus bank holidays
  • Excellent pension package through salary sacrifice
  • Personal and professional growth
  • Employee wellbeing – Wellbeing breaks, wellbeing hub access including exercise programmes, meditation guides, sleep stories and yoga.

We have introduced agile ways of working, allowing teams to decide how best they work, while ensuring regular opportunities to collaborate and innovate. We create an environment to help you to unleash your potential and perform the most rewarding work of your career, whist keeping your wellbeing at the foremost with initiatives in place to promote the wellness of our people.

We are committed to building a diverse and inclusive culture and have dedicated inclusion champions across the business to celebrate and promote our uniqueness. We also have a dedicated team of volunteers looking for innovative ways to give back as part of our commitments under our Corporate Social Responsibility. We are delighted to be recognised in the 2021, 2022 and 2024 best companies to work for listings. We have also been awarded the Investors In People Gold accreditation.

If you are passionate about our purpose and would like an opportunity to make a valuable contribution to fraud prevention, we would like to hear from you.

Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    Financial Services and Non-profit Organizations

Referrals increase your chances of interviewing at Cifas by 2x

Sign in to set job alerts for “Information Security Manager” roles.

London, England, United Kingdom 1 week ago

Surrey, England, United Kingdom 2 weeks ago

London, England, United Kingdom 3 weeks ago

London, England, United Kingdom 1 week ago

Information Security Manager with 2nd and 3rd Line Support

London, England, United Kingdom 2 days ago

Information Security Architect / Manager

London, England, United Kingdom 1 week ago

London, England, United Kingdom 3 weeks ago

Manager, Security Governance Risk and Compliance (GRC)
IT Data Protection Security Engineer - Senior Manager

London, England, United Kingdom 2 days ago

EMEA Senior Manager Compliance (Certifications)

London, England, United Kingdom 2 hours ago

London, England, United Kingdom 4 days ago

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 2 days ago

IT Procurement Software and Security Category Manager

Watford, England, United Kingdom 1 week ago

Program Manager, Regional Risk and Compliance

London, England, United Kingdom 1 week ago

Head of Programme - Justice and Emergency Services and Fraud, Bluetownonline

London, England, United Kingdom 1 week ago

Guest Experience Front Office Supervisor Grosvenor Square

London, England, United Kingdom 6 days ago

London, England, United Kingdom 4 days ago

Software Engineering Manager, SRE, Cloud Incident Response

London, England, United Kingdom 3 days ago

Associate/Vice President, Relationship Manager - Commodity Finance (Metals & Agri Team)

London, England, United Kingdom 3 weeks ago

London, England, United Kingdom 1 month ago

London, England, United Kingdom 3 weeks ago

Uxbridge, England, United Kingdom 1 week ago

Business Information Security Officer, Europe

London, England, United Kingdom 1 day ago

Bromley, England, United Kingdom 4 weeks ago

London, England, United Kingdom 3 days ago

London, England, United Kingdom 2 weeks ago

Information Security Manager - Corporation

London, England, United Kingdom 6 hours ago

London, England, United Kingdom 5 hours ago

Leatherhead, England, United Kingdom 4 hours ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Information Security Manager

JR United Kingdom

London

Remote

GBP 45.000 - 65.000

9 days ago

Information Security Manager

JR United Kingdom

Crawley

Remote

GBP 50.000 - 80.000

9 days ago

Information Security Manager

JR United Kingdom

Chelmsford

Remote

GBP 50.000 - 75.000

9 days ago

Information Security Manager

JR United Kingdom

Brighton

Remote

GBP 40.000 - 70.000

9 days ago

Information Security Manager

JR United Kingdom

Bedford

Remote

GBP 50.000 - 80.000

9 days ago

Information Security Manager

JR United Kingdom

Basildon

Remote

GBP 50.000 - 75.000

9 days ago

Information Security Manager

JR United Kingdom

Maidstone

Remote

GBP 50.000 - 70.000

9 days ago

Information Security Manager

LexisNexis Risk Solutions

London

Hybrid

GBP 65.000 - 95.000

5 days ago
Be an early applicant

Information Security Manager

JR United Kingdom

Cheltenham

Remote

GBP 60.000 - 80.000

9 days ago