At a Glance
- Tasks: Lead the charge in safeguarding sensitive information and enhancing digital security.
- Company: Join Holland & Barrett, a top health and wellness retailer with a vibrant culture.
- Benefits: Enjoy 33 days holiday, private medical care, and a 25% discount on products.
- Why this job: Make a real impact in information security while developing your career in a supportive environment.
- Qualifications: 4+ years in information security management and relevant certifications like CISSP or CISM.
- Other info: Be part of a diverse team committed to employee wellbeing and career growth.
The predicted salary is between 43200 - 72000 £ per year.
About the Role: Are you passionate about safeguarding sensitive information and ensuring the security of digital assets? Holland & Barrett, a leading health and wellness retailer, is seeking a dynamic and experienced Information Security Manager to join our team.
Responsibilities:
- Information Security Management System (ISMS): Develop, implement, and continuously refine an ISMS aligned with business goals and ISO27001 standards. Play a pivotal role in the ISO27001 roadmap, ensuring adherence to industry best practices.
- Security Governance: Establish and maintain an effective information security governance framework aligned with ISO27001. Ensure security strategies align with business objectives and compliance requirements.
- Security Policies and Procedures: Develop, enforce, and communicate information security policies, standards, procedures, and guidelines. Drive awareness and understanding of security policies throughout the organization.
- Security Awareness: Foster a culture of security awareness among employees. Provide information security training and awareness programs to empower employees in safeguarding company assets.
- Risk Management: Lead identification, assessment, and prioritization of information security risks. Implement controls to mitigate risks effectively, including those in the supply chain.
- Data Loss: Develop, implement, and manage Data Loss Prevention (DLP) strategies and controls. Collaborate with cross-functional teams to integrate DLP measures into existing and future systems.
- Security Audits and Assessments: Coordinate and participate in security audits, assessments, and compliance checks for ISO27001 certification. Collaborate with internal and external auditors to ensure a robust security framework.
- Vendor Security: Assess and monitor the security practices of third-party vendors and partners. Ensure adherence to established security standards.
Requirements:
- Certifications: Relevant certifications (e.g., CISSP, CISM, CISA) highly advantageous.
- Experience: Extensive experience in information security, with at least 4 years in a leadership or management role within a complex organization.
- Governance: Strong understanding of security governance principles and frameworks, including NIST and ISO27001.
- Risk Management: Demonstrated expertise in risk management methodologies and practices.
- Vendor Management: Experience in assessing and monitoring the security practices of third-party vendors and partners.
- Communication: Excellent communication and interpersonal skills, with the ability to convey complex security concepts to diverse audiences.
- Leadership: Exceptional leadership skills, with a track record of building and leading high-performing information security teams.
- Innovation: Forward-thinking mindset, committed to staying updated on emerging security trends and technologies.
If you are a dynamic Information Security professional ready to make a significant impact, apply now and be part of our commitment to ensuring the highest standards of information security at Holland & Barrett.
Holland & Barrett is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
What we offer:
- Pension company contribution = 3%
- Incentive scheme up to 10% of annual salary, based on company performance.
- Your wellbeing is paramount so you can get away and take 33 Days Holiday per year.
- Private Medical Care (Self after 1 year)
- Learning and Development opportunity with Holland & Barrett is a great base for career development long term.
- Career progression.
- Refer and Earn Scheme – as we’re growing you can earn money by referring people to join us from your network.
- Epic Extras gives you access to exclusive benefits, free advice and savings from a range of retailers and providers.
- Stay healthy with Discounted Products – from day one you’ll get a 25% discount (on top of other promotions) when you shop at H&B on anything that you buy.
- We all need a little help sometimes, so we offer Free 24/7 Confidential Advice & Colleague Welfare.
- Mental Health First Aiders – we have lots of qualified Mental Health First Aiders because it's all about your health & wellbeing.
- Stay active in the Onsite Gym at our Nuneaton Hub!
- We have colleague Reward and Recognition Schemes, so your hard work and loyalty won’t go unnoticed.
- And many more!
We’re passionate about helping every colleague thrive across all dimensions of wellbeing, and we’re committed to having a diverse and inclusive workplace. In line with our EPIC values (Expertise, Pioneering, Inclusive, Caring), we embrace and actively celebrate all our colleagues' unique and varying experiences, backgrounds, identities and cultures.
Information Security Manager in City of London employer: Holland & Barrett
Contact Detail:
Holland & Barrett Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Manager in City of London
✨Tip Number 1
Network like a pro! Reach out to your connections in the industry, attend relevant events, and engage with professionals on platforms like LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching Holland & Barrett's values and recent initiatives. Tailor your responses to show how your experience aligns with their mission. Remember, it’s not just about what you’ve done, but how it fits into their goals!
✨Tip Number 3
Showcase your expertise! Bring examples of your past work, especially around information security management and risk mitigation. Use real-life scenarios to demonstrate your problem-solving skills and how you’ve successfully led teams.
✨Tip Number 4
Don’t forget to follow up after your interview! A quick thank-you email reiterating your interest in the role and highlighting a key point from your conversation can keep you top of mind. Plus, it shows you’re genuinely interested in joining the team!
We think you need these skills to ace Information Security Manager in City of London
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the Information Security Manager role. Highlight your experience with ISO27001 and risk management, as these are key aspects of the job.
Showcase Your Skills: Don’t just list your qualifications; demonstrate how your skills align with the responsibilities mentioned in the job description. Use specific examples to illustrate your expertise in security governance and team leadership.
Be Clear and Concise: Keep your application straightforward and to the point. Use clear language and avoid jargon where possible, making it easy for us to see why you’re a great fit for the role.
Apply Through Our Website: We encourage you to apply directly through our website. This way, your application will be processed more efficiently, and we can get back to you quicker!
How to prepare for a job interview at Holland & Barrett
✨Know Your ISO27001 Inside Out
Make sure you’re well-versed in ISO27001 standards and how they apply to the role. Prepare to discuss how you've implemented or improved ISMS in your previous positions, as this will show your practical experience and understanding of security governance.
✨Showcase Your Risk Management Skills
Be ready to talk about specific examples where you've identified and mitigated information security risks. Highlight your approach to risk management methodologies and how you’ve successfully integrated them into business operations.
✨Communicate Complex Concepts Simply
Since you'll need to convey complex security concepts to diverse audiences, practice explaining technical terms in layman's language. This will demonstrate your communication skills and ability to foster a culture of security awareness within the organisation.
✨Prepare for Vendor Security Discussions
Think about your experience with third-party vendors and how you've assessed their security practices. Be prepared to discuss any challenges you faced and how you ensured compliance with established security standards.