Senior Information Security Manager
- EC1A, Farringdon, Greater London
- Permanent·On-site
- Full time
- £60,000 - £65,000 Per Annum
Job Description
Senior Information Security Manager, Risk, Compliance, Security, London, Hybrid / Remote to £65,000
A leading independent authority are requiring a Senior Information Security Manager to play a pivotal role in their Compliance team. Reporting to the Head of Compliance, you will lead the ISO 27001-certified information security management system, strengthen processes, and help shape policy. In this role, you will play a key part in ensuring information risk is managed effectively, overseeing security governance and standards, conducting audits and monitoring, and ensuring policies and processes continue to improve. Your work will be essential in providing assurance that data is secure.
The ideal candidate will have broad experience across information security and governance, including most of the following: identifying and assessing information risk, managing controls, carrying out internal and third-party audits, improving processes, developing training and guidance for staff, managing and reviewing incidents, and contributing to policy development.
The key responsibilities of this role are to oversee information security standards by managing and continually improving ISO 27001-certified Information Security Management System, leading business continuity management for information and technology risks, and supporting the organisation’s development of a proportionate quality management approach, including work towards ISO 9001 certification.
Essential criteria:
You may already be leading information security governance in a smaller organisation, or you may have built strong experience as a key member of a larger information security or governance team. They are looking for someone with at least three years’ experience, ideally five, working in an ISO 27001-certified environment. A CISSP or similar professional or academic qualification is preferred, and an understanding of quality management, or a willingness to develop it, would be an advantage.
- A minimum of 3 years of work experience in an information security governance role within an ISO 27001 certified environment
- ISO 27001 Lead Implementer or Lead Auditor certification
- CISSP, or a degree or equivalent level 6 or above qualification with an information security focus, or computer science or similar including relevant security modules
Skills and core competencies:
- Good knowledge of current information security threats and best practices for information security management and governance
- Delivery focused with excellent organisational skills and attention to detail
- Capable of building and maintaining strong working relationships across teams and working through ambiguity
- Motivated to find practical solutions, yet willing to escalate significant risk
- Confident user of Microsoft tools and comfortable developing skills for use of new technologies


