At a Glance
- Tasks: Lead security governance and manage risks while implementing frameworks like ISO27001.
- Company: Join a forward-thinking organization that prioritizes innovation and security excellence.
- Benefits: Enjoy flexible working options and a supportive, collaborative environment.
- Why this job: Make a real impact in cyber security and shape a strong security culture.
- Qualifications: Strong background in IT security with relevant certifications like CRISC or CISSP required.
- Other info: Ideal for those looking to apply technical expertise in a dynamic setting.
The predicted salary is between 43200 - 72000 £ per year.
Information Security Manager
Are you ready for an exciting new challenge in your cyber security career? Our client is looking for an Information Security Manager to join their Information Security governance and oversight team.
This technically focused role involves delivering Information Security services such as consultancy, assurance reviews, and risk management while providing governance and oversight across the business to manage security risks effectively.
Key Responsibilities:
- Implement and maintain security control frameworks such as ISO27001 and PCI-DSS.
- Lead governance, oversight, and assurance on technical security controls and design.
- Act as an Information Security consultant, ensuring security standards are met in key business projects.
- Develop and maintain technical security patterns and standards.
- Lead and mature penetration testing and other security testing programmes.
- Conduct assurance reviews and assessments, including third-party evaluations and new solutions.
- Assess security risks, proactively developing countermeasures.
- Perform security risk assessments for change management, processes, and new solutions.
- Monitor emerging security threats through external research and internal engagement.
- Enhance information and cyber security maturity across the organisation.
- Deliver security awareness initiatives and promote best practices.
- Support the Information Security Incident Response team when required.
- Ensure compliance with relevant standards and regulations.
What We\’re Looking For:
- Strong background in cyber and IT security.
- Experience with Microsoft security technologies, including endpoint security and Azure.
- Proficiency in security controls and frameworks, particularly in cloud security.
- Hands-on experience with vulnerability management.
- Ability to translate security frameworks and standards into detailed control requirements.
- Experience conducting assurance reviews and identifying security gaps.
- In-depth understanding of ISO27001, PCI-DSS, and other security frameworks.
- Strong communication skills, able to explain complex technical concepts to non-technical audiences.
- Excellent stakeholder management and relationship-building abilities.
- Analytical mindset with great attention to detail.
Qualifications & Experience:
- Extensive experience in Information & IT Cyber Security.
- Proven track record in managing and improving penetration testing programmes.
- Experience working in an Agile change environment.
- Recognised security certifications such as CRISC, CISM, or CISSP.
Benefits:
- Flexible home or office-based working.
- Be part of a forward-thinking organisation that values innovation and security excellence.
- Opportunity to make a real impact.
- Supportive and collaborative work environment.
If you\’re looking to apply your technical expertise in a dynamic environment and shape a strong security culture, we\’d love to hear from you!
Interested? Please Click Apply Now!
#J-18808-Ljbffr
Information Security Manager employer: Adria Solutions
Contact Detail:
Adria Solutions Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Manager
✨Tip Number 1
Make sure to showcase your hands-on experience with Microsoft security technologies, especially endpoint security and Azure. Highlight any specific projects where you implemented these technologies to demonstrate your practical knowledge.
✨Tip Number 2
Familiarize yourself with the ISO27001 and PCI-DSS frameworks if you haven't already. Being able to discuss how you've applied these standards in previous roles will set you apart from other candidates.
✨Tip Number 3
Prepare to discuss your experience with vulnerability management and penetration testing programs. Be ready to share specific examples of how you've identified and addressed security gaps in past positions.
✨Tip Number 4
Since strong communication skills are essential for this role, practice explaining complex technical concepts in simple terms. This will help you demonstrate your ability to engage with non-technical stakeholders effectively.
We think you need these skills to ace Information Security Manager
Some tips for your application 🫡
Understand the Role: Before you start writing your application, make sure you fully understand the responsibilities and requirements of the Information Security Manager position. Tailor your application to highlight your relevant experience in cyber security, governance, and risk management.
Highlight Relevant Experience: In your CV and cover letter, emphasize your extensive experience in Information & IT Cyber Security. Mention specific projects where you've implemented security frameworks like ISO27001 or PCI-DSS, and detail your hands-on experience with vulnerability management and penetration testing.
Showcase Communication Skills: Since strong communication skills are essential for this role, ensure that your application reflects your ability to explain complex technical concepts clearly. Use examples from your past experiences where you've successfully communicated with non-technical stakeholders.
Tailor Your Cover Letter: Craft a personalized cover letter that connects your background and skills to the specific needs of the company. Discuss how you can enhance their information and cyber security maturity and contribute to their security culture.
How to prepare for a job interview at Adria Solutions
✨Showcase Your Technical Expertise
Be prepared to discuss your hands-on experience with security controls and frameworks, especially ISO27001 and PCI-DSS. Highlight specific projects where you've implemented these standards and how they improved security posture.
✨Communicate Clearly
Since you'll need to explain complex technical concepts to non-technical audiences, practice articulating your thoughts clearly. Use simple language and relatable examples to demonstrate your understanding of security principles.
✨Demonstrate Stakeholder Management Skills
Prepare examples of how you've successfully built relationships with stakeholders in previous roles. Discuss how you managed their expectations and communicated security needs effectively to ensure alignment with business objectives.
✨Stay Updated on Security Trends
Research the latest trends and emerging threats in cyber security. Be ready to discuss how these trends could impact the organization and suggest proactive measures to mitigate risks, showcasing your analytical mindset.