At a Glance
- Tasks: Lead the charge in protecting data and systems while ensuring compliance with key regulations.
- Company: Join ATCORE, a leader in tech solutions for the leisure travel sector.
- Benefits: Enjoy a competitive salary, pension scheme, healthcare, and more.
- Why this job: Make a real impact in a multi-trillion-dollar industry while growing your career.
- Qualifications: Degree in Cyber Security or related field, plus 5+ years in information security.
- Other info: Be part of a supportive team with low employee turnover and strong leadership.
The predicted salary is between 48000 - 72000 £ per year.
ATCORE is the leading international supplier of technology solutions for the leisure travel sector. With our market-leading reservation and distribution platform, we empower travel businesses to meet the needs of travellers through our suite of bespoke solutions. Our customers range from large vertically integrated groups to smaller specialist operators who enjoy a variety of service offerings. We provide applications support, hosting support and monitoring to keep our customers running 24x7.
We have an exciting opportunity for an Information Security and Compliance Manager to join ATCORE in a key standalone position reporting directly to the CFO.
The Information Security and Compliance Manager is responsible for defining and implementing the organisation’s information security strategy to protect data, systems, and intellectual property. This role ensures compliance with UK, European and North American regulations and industry standards, while embedding security into the software development lifecycle.
Your key responsibilities will be:
- Strategic Leadership
- Develop and execute a security strategy aligned with business and product objectives.
- Advise senior leadership on emerging threats, risk posture, and security investments.
- Governance & Compliance
- Establish and maintain an information security governance framework.
- Ensure compliance with UK and international standards, including: GDPR, PCI DSS, PCI 3DS, SOC 2, NIST 800-61 r3.
- Oversee internal and external audits and certification processes.
- Manage and complete security assessments for 3rd parties, customers and insurance purposes.
- Work in partnership with the Legal team to define information security contractual requirements.
- Interact with customers to demonstrate compliance with legal and contractual requirements.
- Audit risk assessment activity and determine mitigation strategies.
- Manage third-party and supply chain security risks.
- Secure Development
- Work closely with engineering teams to integrate security into the software development lifecycle, define secure coding standards and oversee code review processes.
- Security Operations
- Lead incident response and disaster recovery planning.
- Oversee vulnerability management, penetration testing, and threat intelligence.
- Develop and enforce security policies and standards.
- Deliver security awareness training across the organisation.
Requirements:
- Degree in Computer Science, Cyber Security, or related discipline.
- 5+ years of experience in information security, including leadership roles.
- Professional certifications such as CISSP or CISM.
- Detailed understanding of GDPR.
- Strong knowledge of compliance frameworks (PCI DSS, PCI 3DS, SOC 2).
- Knowledge of the DRATA GRC platform.
- Experience in secure software development practices and cloud security.
- Strategic thinking and ability to align security with business goals.
- Excellent communication and stakeholder engagement skills.
- Strong analytical and problem-solving abilities.
We offer a wide range of benefits, including employer matched contributory pension scheme, business and personal travel insurance, healthcare schemes, life insurance, and many more. We carefully recruit, retain and develop our most talented personnel and, as a result, have a uniquely low level of employee turnover of around 5%. Half of our employees have been with the company for 10 years or more, a level of longevity very rare in the technology sector. Based in Slough, UK, with offices in North London and Cardiff, we are 200 employees strong and hire people with an unparalleled combination of industry and technical expertise. Join in the creation of technologies that impact millions of travellers in a multi-trillion-dollar industry. Be part of a highly motivated family and grow your career with the guidance of strong leadership.
Information Security and Compliance Manager employer: Atcore
Contact Detail:
Atcore Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security and Compliance Manager
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching ATCORE and its products. Understand their security needs and think about how your experience aligns with their goals. This will help you stand out as a candidate who truly gets what they’re about.
✨Tip Number 3
Showcase your skills through practical examples. Be ready to discuss specific projects where you’ve implemented security strategies or navigated compliance challenges. Real-world stories resonate more than just listing qualifications.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the ATCORE family.
We think you need these skills to ace Information Security and Compliance Manager
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security and Compliance Manager role. Highlight your experience with compliance frameworks like GDPR and PCI DSS, and don’t forget to showcase any leadership roles you've held in the past.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how your skills align with our mission at ATCORE. Be sure to mention specific experiences that demonstrate your strategic thinking and problem-solving abilities.
Showcase Relevant Certifications: If you’ve got professional certifications like CISSP or CISM, make them stand out! These credentials are crucial for this role, so be sure to include them prominently in your application.
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s the easiest way for us to keep track of your application and ensure it reaches the right people!
How to prepare for a job interview at Atcore
✨Know Your Stuff
Make sure you brush up on your knowledge of information security frameworks like GDPR, PCI DSS, and SOC 2. Be ready to discuss how these regulations impact the role and how you've applied them in past positions.
✨Showcase Your Leadership Skills
As this role involves strategic leadership, prepare examples of how you've led teams or projects in the past. Highlight your ability to align security strategies with business objectives and how you've advised senior leadership on security matters.
✨Understand the Company’s Needs
Research ATCORE and its technology solutions for the leisure travel sector. Understand their products and how information security plays a crucial role in protecting customer data and ensuring compliance.
✨Prepare for Scenario Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Think about past incidents you've managed, how you approached them, and what the outcomes were. This will demonstrate your analytical abilities and readiness for the role.