At a Glance
- Tasks: Lead security and compliance initiatives, ensuring policies are current and operational.
- Company: Join Inforcer, a leader in cybersecurity solutions with a focus on innovation.
- Benefits: Competitive salary, flexible working hours, and professional development opportunities.
- Why this job: Make a real impact in cybersecurity while shaping a culture of trust and transparency.
- Qualifications: Experience in information security, compliance, and knowledge of ISO 27001 and SOC 2.
- Other info: Dynamic team environment with regular social events and a commitment to diversity.
The predicted salary is between 36000 - 60000 £ per year.
About Us
Inforcer is a leading provider of innovative solutions in the cybersecurity sector and dedicated to enhancing efficiency, improving security and driving success for our clients. We focus on providing MSPs with fundamental tools and technology they need to manage Microsoft Security policies for multiple tenants in a simple and effective way. Our mission is to be inforced in every MSP!
About the Role
We are seeking a Security & Compliance Manager to own and operationalise our information security, risk, and compliance framework as we scale through Series B toward Series C. You will ensure our security controls, policies, and certifications — including ISO 27001 and SOC 2 readiness — remain current, audit-ready, and embedded into day‑to‑day operations. This is a hands-on role with clear ownership, ideal for someone who enjoys building structure, bringing clarity, and acting as the connective tissue between Legal, IT, and the wider business.
What you’ll be doing
- Technology Security
- Ensure security is embedded in the design, implementation, and operation of internal IT systems.
- Partner with IT to ensure infrastructure is secure, scalable, cost‑effective, and aligned with business strategy.
- Support automation, modern workplace adoption, and digital enablement initiatives with appropriate controls.
- Security and Compliance
- Lead and maintain compliance across: ISO 27001, SOC 2 readiness and progression, GDPR and UK DPA 2018, and other applicable regulatory and customer requirements.
- Own Inforcer’s information security roadmap, risk register, and incident response framework.
- Coordinate all external audits, certifications, and assurance activities.
- Embed data governance and privacy‑by‑design principles across operational processes.
- Policy Ownership and Governance
- Act as the single accountable owner for Inforcer’s security, risk, and compliance policy framework.
- Own the annual review, update, approval, and version control cycle for all policies.
- Policies include (but are not limited to): Acceptable Use Policy, Business Continuity Plan, Data Protection Policy, Disaster Recovery Plan, Incident Response Plan, Risk Assessment Policy.
- Coordinate policy reviews with IT, Legal, Engineering, and Finance.
- Ensure policies are accessible, clearly communicated, and embedded in daily operations. Track and remediate gaps where policies are outdated or misaligned with certifications or organisational growth.
- Supplier Governance and Procurement
- Ensure technology and SaaS suppliers meet contractual, security, and compliance standards.
- Support due diligence and ongoing supplier risk assessments with Legal and Finance.
- Trust, Risk, and Assurance
- Develop and maintain trust and compliance reporting, including dashboards for audit readiness, policy status, and risk posture.
- Ensure reporting to SLT, ELT, and the Board is accurate, consistent, and defensible.
- Leadership and Culture
- Champion a culture of security awareness, transparency, and continuous improvement.
- Deliver training and awareness programmes across the business.
What We Can Offer You
- Competitive Compensation: Attractive salary, Pension contribution scheme through Nest, Competitive annual leave allowance
- Work-Life Balance: Flexible working hours and hybrid/remote working options to support a healthy work-life balance
- Regular Team Socials: We celebrate our team, our milestones, and our new businesses with social events every month
- Investing in Your Future: Growth mindset through proactive development opportunities, such as continuous learning opportunities, professional training programs, and career advancement paths
- Inclusive Environment: A supportive and inclusive workplace that values diversity and encourages collaboration and innovation
- Employee Recognition: Programs to recognise and reward employees for their contributions and achievements
Skills We Need for This Role
- Strong operational experience in information security and compliance within a SaaS or technology‑led environment.
- Hands-on knowledge of ISO 27001, SOC 2, GDPR, and risk management practices.
- Experience coordinating audits and certifications end‑to‑end.
- Solid understanding of cloud infrastructure, ideally Microsoft 365 and Azure.
- Comfortable influencing senior stakeholders without formal authority.
- Highly organised and detail‑oriented.
- A genuine commitment to trust, transparency, and accountability.
Don’t quite have all of these skills? Why not apply and our team can review your experience and fit for the role. We’d love to hear from you!
Inforcer is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
Security & Compliance Manager employer: Inforcer ltd
Contact Detail:
Inforcer ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security & Compliance Manager
✨Tip Number 1
Network like a pro! Reach out to folks in the cybersecurity sector, especially those who work at Inforcer or similar companies. A friendly chat can open doors and give you insider info on what they’re really looking for.
✨Tip Number 2
Prepare for the interview by diving deep into Inforcer’s mission and values. Show us how your experience aligns with our goals, especially around security and compliance. We love candidates who are genuinely excited about what we do!
✨Tip Number 3
Don’t just talk about your skills; demonstrate them! Bring examples of how you’ve successfully managed security frameworks or led compliance initiatives in the past. We want to see your hands-on experience in action.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows us you’re serious about joining the Inforcer team. Let’s make it happen!
We think you need these skills to ace Security & Compliance Manager
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Security & Compliance Manager. Highlight your experience with ISO 27001, SOC 2, and any relevant compliance frameworks. We want to see how your skills align with our mission!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how you can contribute to Inforcer's goals. Be genuine and let your personality come through – we love that!
Showcase Your Achievements: Don’t just list your responsibilities; showcase your achievements in previous roles. Did you lead a successful audit or implement a new security policy? We want to hear about it! Numbers and specific examples can really make your application stand out.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at Inforcer!
How to prepare for a job interview at Inforcer ltd
✨Know Your Stuff
Make sure you brush up on ISO 27001, SOC 2, and GDPR regulations. Be ready to discuss how you've applied these in previous roles, as well as any hands-on experience with risk management practices. This will show that you're not just familiar with the terms but can actually implement them.
✨Showcase Your Organisational Skills
As a Security & Compliance Manager, being organised is key. Prepare examples of how you've managed audits or compliance frameworks in the past. Use the STAR method (Situation, Task, Action, Result) to structure your answers and highlight your attention to detail.
✨Engage with Stakeholders
Since you'll be influencing senior stakeholders, practice articulating your ideas clearly and confidently. Think of scenarios where you've successfully communicated complex security concepts to non-technical teams. This will demonstrate your ability to bridge the gap between technical and business needs.
✨Cultural Fit Matters
Inforcer values a culture of security awareness and continuous improvement. Be prepared to discuss how you've fostered a similar culture in your previous roles. Share specific initiatives or training programmes you've led that promote security awareness across teams.