Senior Information Security Manager in London
Senior Information Security Manager

Senior Information Security Manager in London

London Full-Time 43200 - 72000 ÂŁ / year (est.) No home office possible
Go Premium
C

At a Glance

  • Tasks: Lead security initiatives and ensure compliance with the UK Telecommunications (Security) Act.
  • Company: Join iD Mobile, a leading mobile network operator with ambitious growth plans.
  • Benefits: Enjoy hybrid working, ongoing training, and opportunities for career development.
  • Why this job: Make a real impact on security and resilience in the telecommunications sector.
  • Qualifications: Extensive experience in telecoms, cyber security, and regulatory compliance required.
  • Other info: Be part of a diverse team committed to inclusion and sustainability.

The predicted salary is between 43200 - 72000 ÂŁ per year.

We’re iD Mobile, one of the UK’s leading mobile virtual network operators. We launched in May 2015 and have over 2.4 million Pay Monthly customers. We offer everything from super-value Pay-as-you-go and SIM-only deals, right up to the latest smartphones from the big-name manufacturers. We’re delighted about our success so far and have very ambitious plans for the future. iD Mobile is part of Currys PLC, Europe’s leading electrical and mobile retailer.

We’re looking to recruit a senior Information Security manager to act as the key interface between iD Mobile, Commercial, IT operations, and Currys information security & risk teams. The role is crucial to ensuring the security and resilience of iD Mobile’s systems, applications, and data and will also lead iD Mobile’s response to the UK Telecommunications (Security) Act (TSA). Knowledge and prior application of the TSA is essential, and a core responsibility will be delivering measurable improvements to iD Mobile’s risk posture against the TSA Security Measures across architecture, delivery, operations, supplier management, and contractual frameworks.

Alongside regulatory experience, the successful candidate will be highly attuned to developments in telecommunications security to ensure iD is always ahead of the game. The role must also have proficiency across a broad range of Information Security domains and act as the “go-to” security leader for all iD Mobile matters. This will include triaging security incidents, interpreting technical vulnerability data and prioritising remediation, assuring security-by-design, and ensuring TSA compliance & risk reduction are built into decision making across the business.

Formative understanding and acquisition of accurate inventories of all iD Mobile systems, architecture, people and processes will be paramount, aided by strong stakeholder management skills to influence steering groups and governance forums. There will also be opportunity to work with senior Currys Infosec colleagues in making operational improvements to security methodologies and drive future security strategy across iD Mobile and the wider Group.

Role overview

  • TSA Compliance & Governance: Lead the development and continuous improvement of the TSA compliance and control framework to improve iD Mobile’s risk posture. Embed TSA requirements & design checkpoints into Architecture Board, Portfolio governance, project teams and change processes. Provide structured TSA reporting, compliance insights, and risk updates to senior leadership and the Board. Deliver TSA-aligned supplier audits and contract uplifts to reduce supply-chain risk exposure. Establish a TSA Steering Forum with defined RACI, KPIs, and governance cadence.
  • iD Mobile security leadership: Maintain an in-depth understanding of all iD systems, processes and people through hands-on operations. Act as the Information Security & TSA SME within governance forums. Produce monthly iD Mobile Cyber dashboards, reporting on iD project delivery & assurance, incidents and alerts. In conjunction with iD Operations teams: Regularly review IT asset inventories for accuracy and completeness in line with TSA compliance. Annotate inventories with installed security tooling and coverage. Compile a register of iD Mobile third party suppliers, their criticality level and associated risks and any regulatory frameworks (such as TSA) required of them. Maintain an audit-ready evidence repository. Provide security advisory input to Change Approval Board. Collaborate with technical leads, business analysts and project managers on a wide range of technology projects, including software development, package implementations and infrastructure upgrades/changes. Act as a Data Governance champion within iD Mobile ensuring data is classified and processed in an authorised manner.
  • In conjunction with Currys Information Security teams: Provide second-line challenge for iD Mobile security incidents, crisis management and resilience planning. Lead post-incident lessons learned reviews and enact improvements in incident playbooks and operational processes to reduce risk. Liaise with Security Operations to identify trending threat patterns, security tool uptime and SLAs. Design and schedule an annual programme of penetration testing / red teaming (TBEST aligned) for relevant iD Mobile environments. Review penetration test, vulnerability scans and exposure management tool output and determine appropriate risk scores and remedial activities. Assist Capex delivery within iD Mobile through provision of non-functional security requirements, RFP scoring, architectural review and presentation to the Data & Security Approval Board. Regularly review the ID Mobile risk register, drive risk closure and management, monitor for ongoing non compliance, escalating where necessary. Lead the response to regulatory and business-to-business audits and security reviews of iD Mobile operations.

Experience:

  • Extensive experience in telecoms, cyber security, operational risk, or regulatory compliance.
  • Deep knowledge of the UK Telecommunications (Security) Act and Ofcom Security Measures.
  • Strong track record influencing senior governance forums and decision-making bodies.
  • Hands-on experience with supplier assurance, third-party risk management, and security audits.
  • Ability to drive improvements that strengthen organisational risk posture.
  • Certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Auditor.
  • Knowledge of MNO/MVNO network environments and telecom operational processes.
  • Experience in second-line assurance or internal audit functions.

Why join us:

Join our team and we’ll be with you every step of the way, helping you develop the career you want with new opportunities, on-going training and skills for life. Not only can you shape your own future, but you can help take charge of ours too. As the biggest recycler and repairer of tech in the UK, we’re in a position to make a real impact on people and the planet. Every voice has a space at our table and we’re committed to making inclusion and diversity part of everything we do, including how we strengthen our workforce. We want to make sure you have a fair opportunity to show us your talents during our application process, so if you need any additional assistance with your application please email careers@currys.co.uk and we’ll do our best to help.

Senior Information Security Manager in London employer: currysplc.com

At iD Mobile, we pride ourselves on being an excellent employer, offering a dynamic work culture that fosters innovation and collaboration. Located in Waterloo with hybrid working options, we provide our employees with ongoing training, career development opportunities, and the chance to make a meaningful impact in the telecommunications sector. Join us and be part of a diverse team where every voice is valued, and together we can shape the future of mobile technology.
C

Contact Detail:

currysplc.com Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Information Security Manager in London

✨Tip Number 1

Network like a pro! Get out there and connect with folks in the industry. Attend events, join online forums, or even hit up LinkedIn. The more people you know, the better your chances of landing that Senior Information Security Manager role.

✨Tip Number 2

Show off your expertise! When you get the chance to chat with potential employers, make sure to highlight your knowledge of the UK Telecommunications (Security) Act and how you've applied it in past roles. This will set you apart from the crowd.

✨Tip Number 3

Prepare for interviews by brushing up on common security scenarios. Think about how you'd handle incidents or improve risk posture. Practising these responses will help you feel confident and ready to impress during those crucial conversations.

✨Tip Number 4

Don't forget to apply through our website! We want to see your application and help you take the next step in your career. Plus, it shows you're serious about joining our team at iD Mobile!

We think you need these skills to ace Senior Information Security Manager in London

Knowledge of UK Telecommunications (Security) Act
TSA Compliance
Risk Management
Information Security Leadership
Stakeholder Management
Cybersecurity Incident Response
Supplier Assurance
Third-Party Risk Management
Security Audits
Data Governance
Penetration Testing
Vulnerability Management
Regulatory Compliance
Certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Auditor
Understanding of MNO/MVNO network environments

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Senior Information Security Manager role. Highlight your experience with the UK Telecommunications (Security) Act and any relevant certifications. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how you can contribute to iD Mobile's mission. Keep it concise but impactful – we love a good story!

Showcase Your Achievements: Don’t just list your responsibilities; showcase your achievements! Use metrics and examples to demonstrate how you've improved security postures or led successful projects in the past. We’re all about measurable results!

Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications and ensures you get the best experience possible. Plus, it shows you're keen on joining our team!

How to prepare for a job interview at currysplc.com

✨Know Your TSA Inside Out

Make sure you have a solid understanding of the UK Telecommunications (Security) Act and its implications for iD Mobile. Brush up on how it affects risk management and compliance, as you'll need to demonstrate your expertise in this area during the interview.

✨Showcase Your Leadership Skills

Prepare examples of how you've influenced governance forums or led security initiatives in previous roles. Highlight your ability to communicate complex security concepts to non-technical stakeholders, as this will be crucial for the senior position you're applying for.

✨Familiarise Yourself with iD Mobile's Systems

Research iD Mobile’s current systems, processes, and any recent news about their operations. Being able to discuss specific aspects of their infrastructure or security challenges will show that you're genuinely interested and ready to contribute from day one.

✨Prepare for Scenario-Based Questions

Expect questions that assess your problem-solving skills in real-world scenarios, such as handling security incidents or managing third-party risks. Think through past experiences where you successfully navigated similar challenges and be ready to share those stories.

Senior Information Security Manager in London
currysplc.com
Location: London
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>