At a Glance
- Tasks: Lead information security initiatives and ensure robust data protection strategies.
- Company: Join a rapidly growing UK pharmaceutical company dedicated to improving patient lives.
- Benefits: Competitive salary, generous holiday, pension scheme, and wellness support.
- Why this job: Make a real impact in a vital industry while advancing your career.
- Qualifications: Experience in information security management and risk frameworks required.
- Other info: Inclusive culture with excellent growth opportunities and exciting company events.
The predicted salary is between 50000 - 65000 £ per year.
Competitive Salary & Company Benefits | Ideally located close to Hampshire or Leicestershire. Monday to Friday, 9.00am - 5.00pm (potential for flexibility on start/end times based on 7.5hrs/day).
Are you looking to work for a rapidly growing UK Pharmaceutical company, who are passionate about improving patients’ lives across the world? Aspire Pharma is an asset-light pharmaceutical manufacturer. It licenses and develops niche pharmaceutical products that offer innovative formulations, value for money for payors, and reliable supply arrangements in markets which are often underserved. The business has a highly diversified portfolio of more than 250 products across a number of categories, including branded specialty products and unbranded niche generics in therapeutic areas such as urology, ophthalmology, CNS and dermatology.
The Role
We are currently looking to recruit an Information Security Manager for our Technology team. This role is responsible for the integrity of the internal control environment relating to Data & Technology operations, and the successful execution of the IT General Controls that underpin our regulatory obligations. It covers the cyber and information security and privacy-related policies, standards, procedures, technologies and associated processes that are designed to provide reasonable assurance that business objectives will be achieved and undesired events will be prevented, detected and corrected.
What will you be doing?
- Develop and maintain policies and procedures for risk and information security management, aligned with industry best-practice frameworks.
- Ensure implementation, operation and evidencing of all IT controls in place to manage risk, including standard IT General Controls (ITGC).
- Conduct risk assessments and develop risk management plans.
- Integrate risk planning into the system acquisition and change processes.
- Develop and maintain disaster recovery plans and business continuity plans for Data & Technology operations.
- Develop and maintain security awareness training programs.
- Manage security incidents and events, ensuring alignment to the QMS where applicable, and that all departmental processes remain effective (e.g., configuration management).
- Ensure security is built into change and development of new systems.
- Work with the DPO / GDPR owner to ensure that the technical controls associated with privacy are effective.
The Person Required
- Demonstrable experience implementing and/or maintaining an Information Security Management Systems.
- Experience with a risk and control framework such as COBIT or Secure Controls Framework (SCF).
- Experience with an information security framework such as ISO 27000 Lead Implementor, NIST CSF v1.1 and/or NIST 800-53.
- Experience with information and cyber security in supply chains (outsourced management) and cloud environments.
- Experience working in an information security team, this role would suit somebody looking to take overall responsibility for the topic.
Desirable
- Experience with GAMP v5 pharmaceutical guidelines or comparable regulatory obligations.
- Experience with GDPR.
- Relevant certifications, including ISO 27000 Lead Implementor (or comparable experience), ITIL, CISSP / CISM / CompTIA Security+.
- Training in pharmaceutical regulatory frameworks (GAMP v5).
Why join us?
As well as a fantastic, inclusive company culture, where employees are truly valued and a competitive salary, we also offer an ever-improving benefits scheme to support your physical and mental well-being which include:
- Generous Pension Scheme.
- Life Assurance cover and Employee Assistance Program.
- 25 days’ holiday plus Bank Holidays.
- Learning and Development opportunities.
- Excellent opportunities for progression.
- Fantastic Company events and celebrations throughout the year.
Information Security Manager employer: Aspire Pharma Limited
Contact Detail:
Aspire Pharma Limited Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Manager
✨Tip Number 1
Network like a pro! Reach out to people in the industry, attend events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their products and values, especially since they focus on improving patients' lives. Tailor your answers to show how you align with their mission.
✨Tip Number 3
Practice common interview questions related to information security management. Be ready to discuss your experience with frameworks like ISO 27000 or NIST. Confidence is key, so rehearse your responses!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive about joining our team.
We think you need these skills to ace Information Security Manager
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security Manager role. Highlight your experience with risk management frameworks and information security policies, as these are key for us at Aspire Pharma.
Craft a Compelling Cover Letter: Your cover letter should tell us why you're passionate about improving patients' lives through technology. Share specific examples of how you've implemented security measures in previous roles to show us what you can bring to the team.
Showcase Relevant Experience: When detailing your experience, focus on your work with information security frameworks like ISO 27000 or NIST. We want to see how your background aligns with our needs, so be specific about your achievements!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity to join our growing team!
How to prepare for a job interview at Aspire Pharma Limited
✨Know Your Stuff
Make sure you brush up on your knowledge of information security frameworks like ISO 27000 and NIST. Be ready to discuss how you've implemented these in past roles, as well as any experience with risk management plans and IT controls.
✨Showcase Your Experience
Prepare specific examples from your previous work that demonstrate your ability to manage security incidents and develop disaster recovery plans. Use the STAR method (Situation, Task, Action, Result) to structure your answers effectively.
✨Understand the Company
Research Aspire Pharma and their portfolio of products. Understand their mission to improve patients' lives and think about how your role as an Information Security Manager can contribute to that goal. This shows genuine interest and alignment with their values.
✨Ask Smart Questions
Prepare insightful questions about their current security policies, challenges they face, or how they integrate security into their development processes. This not only shows your expertise but also your enthusiasm for the role and the company.