Information Security Assurance Manager in Newquay
Information Security Assurance Manager

Information Security Assurance Manager in Newquay

Newquay Full-Time 36000 - 60000 ยฃ / year (est.) No home office possible
K

At a Glance

  • Tasks: Lead the university's Information Security Management System and ensure compliance with international standards.
  • Company: Join a prestigious university committed to security and innovation in higher education.
  • Benefits: Enjoy hybrid working, generous holiday, performance bonuses, and professional development opportunities.
  • Why this job: Make a real impact on information security while advancing your career in a supportive environment.
  • Qualifications: Experience in information security management and strong communication skills are essential.
  • Other info: Embrace diversity and inclusion in a dynamic workplace with excellent growth potential.

The predicted salary is between 36000 - 60000 ยฃ per year.

The Information Security Assurance Manager is responsible for maintaining and maturing the university's Information Security Management System (ISMS) in alignment with ISO/IEC 27001:2022 and related standards, such as ISO 9001, ISO 27005 and ISO 31000. The role oversees the effective operation and continual improvement of the ISMS, including the expansion of its scope across additional faculties, services, and operational areas where appropriate, with an ultimate goal of implementing an integrated management system for the university.

The postholder will lead a team, providing expert guidance on information security governance, risk management, compliance, and assurance, while working closely with university stakeholders to embed robust security practices. This role is based within the IT Assurance team at King's Service Centre in Cornwall, however, there will be some need to travel to the London campuses.

Key Responsibilities
  • Maintain, continually improve, and expand the university's ISO 27001 certification.
  • Chair management review meetings and maintain the continual improvement log, ensuring all actions are logged, prioritised, and appropriately progressed.
  • Conduct fieldwork for internal audits, working from the annual plan, to keep the timescales for completion on track.
  • Create and present reports to the relevant management teams following audits, including recommendations for improvements where necessary.
  • Contribute to the improvement of information security culture across the university by building relationships and supporting best practice through recommendations.
  • Be the main point of contact for surveillance and certification audits of the ISMS.
  • Work towards an integrated management system, incorporating other ISO standards and best practice as appropriate.

The above list of responsibilities is not exhaustive, and the post holder will be required to undertake such tasks and responsibilities as may be reasonable expected within the scope and grading of this post.

The role holder will have in-depth knowledge of information security management systems (ISMS), including their design, implementation, operation, and continual improvement, ideally within a complex higher education environment. They will demonstrate a strong understanding of relevant international standards, particularly ISO/IEC 27001:2022, ISO/IEC 27002:2022, and ISO/IEC 27005:2022, and how these can be applied pragmatically to support institutional governance, assurance, and risk management while enabling teaching, research, and professional services activity.

Professional information security certifications, such as ISO/IEC 27001 Lead Implementer or Lead Auditor, CISSP, CISM, or an equivalent qualification will be held, and they will have demonstrable experience of expanding the scope of an ISMS or implementing security frameworks across diverse operational, academic, or research environments. Familiarity with data protection requirements, research security considerations, and third-party assurance activities is desirable, including the ability to assess and manage supplier and partner risk.

In addition to strong technical and professional expertise, the postholder will be highly organised, thorough, and attentive to detail, with the ability to work independently and exercise sound professional judgement. They must be an effective communicator, capable of engaging confidently with staff at all levels, including influencing and negotiating outcomes with senior management. A well-developed understanding of risk management is essential, including a practical appreciation of risk appetite and the ability to apply it proportionately to support informed decision-making.

Key Skills & Experience Required
  • Essential Criteria:
  • Strong understanding of information security standards and frameworks, particularly ISO/IEC 27001:2022.
  • Practical experience of security assurance activities, including internal audits, control assessments, and risk management.
  • Strong understanding of information security risk assessment methodologies and treatment planning.
  • Experience leading, managing, and developing a small professional team, with the ability to set clear objectives, manage performance, and support professional development.
  • Proven ability to work effectively with a wide range of stakeholders, including senior leaders, technical teams, and non-technical staff.
  • Strong written and verbal communication skills, with the ability to explain security concepts clearly and pragmatically.
  • Ability to manage multiple workstreams, priorities, and deadlines effectively.
  • Desirable Criteria:
    • Experience or detailed understanding of the UK Higher Education system.
    • Understanding of service management practices, in particular ITIL4.
    • Experience or knowledge of disaster recovery and business continuity planning and scenario testing.
    • Experience or knowledge of ISO 9001 Quality Management Systems Standard.
    • Experience or knowledge of ISO 31000 Risk Management Standard.
    • Experience of budget management.
    Employee Benefits
    • Hybrid Working - Minimum of 5 days per month in the office
    • 10% Performance related bonus
    • 30 Days holiday and maximum of 8 public holidays (proโ€‘ratio)
    • Sick pay
    • Discretionary Christmas Closure Days
    • Contributory pension scheme
    • Life Assurance cover
    • Service time - 3 Volunteer days per year
    • Free onsite parking & Bike racks
    • Annual leave purchase scheme - up to a maximum of 10 days (subject to national minimum wage requirements)
    • Student Discount (access to Totum, Unidays & Student Beans)
    • CycleScheme
    • TechScheme
    • Opportunities for formal training and professional certification
    • Free access to Linkedin Learning
    • Free access to Future Learn short courses
    • Potential for internal promotion and advancement

    We are an inclusive and welcoming employer that encourages a wide range of applicants. We embrace diversity and want everyone to be able to bring their whole selves to work and succeed. This is in line with King's College London (KCL).

    Information Security Assurance Manager in Newquay employer: King's Service Centre

    As an employer, King's College London offers a dynamic and inclusive work environment in the picturesque setting of Newquay, Cornwall. With a strong commitment to employee growth, the university provides opportunities for professional development, including access to training and certification, alongside a generous benefits package that includes hybrid working, performance bonuses, and volunteer days. Join us to be part of a forward-thinking institution that values diversity and fosters a culture of collaboration and innovation.
    K

    Contact Detail:

    King's Service Centre Recruiting Team

    StudySmarter Expert Advice ๐Ÿคซ

    We think this is how you could land Information Security Assurance Manager in Newquay

    โœจTip Number 1

    Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

    โœจTip Number 2

    Prepare for interviews by researching the company and its culture. Understand their values and how they align with your skills in information security. This will help you tailor your responses and show you're genuinely interested.

    โœจTip Number 3

    Practice makes perfect! Conduct mock interviews with friends or use online platforms. This will help you get comfortable with common questions and refine your answers, especially around ISO standards and risk management.

    โœจTip Number 4

    Donโ€™t forget to apply through our website! Itโ€™s the best way to ensure your application gets seen. Plus, we love seeing candidates who take that extra step to engage with us directly.

    We think you need these skills to ace Information Security Assurance Manager in Newquay

    Information Security Management Systems (ISMS)
    ISO/IEC 27001:2022
    ISO 9001
    ISO 31000
    Risk Management
    Internal Audits
    Control Assessments
    Security Assurance Activities
    Stakeholder Engagement
    Team Leadership
    Communication Skills
    Project Management
    Data Protection Requirements
    Disaster Recovery Planning
    Business Continuity Planning

    Some tips for your application ๐Ÿซก

    Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience with ISO/IEC 27001 and other relevant standards. We want to see how your skills align with the role of Information Security Assurance Manager!

    Showcase Your Leadership Skills: Since this role involves leading a team, donโ€™t forget to mention your experience in managing and developing teams. Share specific examples of how you've set objectives and supported professional growth in your previous roles.

    Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use clear language to explain your security concepts and experiences, as we value strong communication skills in our team.

    Apply Through Our Website: We encourage you to submit your application through our website for the best chance of being noticed. Itโ€™s the easiest way for us to keep track of your application and ensure it gets to the right people!

    How to prepare for a job interview at King's Service Centre

    โœจKnow Your Standards

    Make sure you have a solid understanding of ISO/IEC 27001:2022 and related standards. Brush up on how these frameworks apply to information security management systems, as you'll likely be asked about your practical experience with them during the interview.

    โœจShowcase Your Leadership Skills

    Be prepared to discuss your experience in leading and developing teams. Highlight specific examples where you've set clear objectives and managed performance effectively. This will demonstrate your capability to lead a small professional team, which is crucial for this role.

    โœจCommunicate Clearly

    Practice explaining complex security concepts in simple terms. Youโ€™ll need to engage with both technical and non-technical staff, so being able to communicate effectively is key. Consider preparing a few scenarios where you successfully communicated security practices to diverse stakeholders.

    โœจPrepare for Scenario Questions

    Expect questions that assess your risk management skills and decision-making abilities. Think of examples from your past experiences where you had to assess risks and make informed decisions. This will show your practical appreciation of risk appetite and how it supports institutional governance.

    Information Security Assurance Manager in Newquay
    King's Service Centre
    Location: Newquay

    Land your dream job quicker with Premium

    Youโ€™re marked as a top applicant with our partner companies
    Individual CV and cover letter feedback including tailoring to specific job roles
    Be among the first applications for new jobs with our AI application
    1:1 support and career advice from our career coaches
    Go Premium

    Money-back if you don't land a job in 6-months

    K
    Similar positions in other companies
    UKโ€™s top job board for Gen Z
    discover-jobs-cta
    Discover now
    >