The Information Security Manager will play a crucial role in protecting the confidentiality integrity and availability of our systems and data. Youll work across the business to support secure delivery of projects conduct thorough risk assessments oversee third-party security engagements and contribute to shaping our evolving security posture.
This is a hands-on role ideal for someone who enjoys both strategic thinking and rolling up their sleeves to get things done.
Responsibilities :
Advise and support project teams to embed security best practices throughout the project lifecycle.
Scope manage and track remediation of penetration testing and vulnerability assessments.
Maintain application security processes standards and guidelines. Translate application security policies into security requirements.
Conduct and document security risk assessments on changes threats vulnerabilities and new initiatives.
Perform third-party vendor risk assessments and ongoing security reviews.
Assist in identifying and assessing new security technologies and vendors.
Lead or support the response to security incidents including investigation containment root cause analysis and reporting. Work with internal teams to continuously improve incident response processes.
Support compliance and alignment with ISO 27001 Cyber Essentials SWIFT NIST and other relevant frameworks.
Communicate effectively with various stakeholders including engineers product managers operations team senior management and auditors about the information security posture risks and mitigation strategies.
Qualifications :
Experience :
Minimum of 8 years experience in information security roles ideally in the financial sector.
Experience working with ISO 27001 Cyber Essentials and preferably NIST CSF SOC 2 or SWIFT frameworks.
Strong understanding of security in the context of software development and application security (OWASP SDLC DevSecOps).
Hands-on pragmatic approach with the ability to operate in a lean fast-paced environment.
Excellent communication skills with the ability to engage both technical and non-technical stakeholders.
Innovative mindset with a passion for staying current in the ever-evolving cyber landscape.
Experience working in or with regulated financial institutions is desirable.
Additional Information :
Remote Work : Employment Type :
Full-time
Key Skills
International Development,EMC,JavaScript,Import & Export,Airlines,Asp.Net MVC
Experience : years
Vacancy : 1
Information Security Manager • London, England, UK