Information Security Manager in Birmingham
Information Security Manager

Information Security Manager in Birmingham

Birmingham Full-Time 60000 - 80000 £ / year (est.) No home office possible
M

At a Glance

  • Tasks: Lead the charge in safeguarding information security for major UK infrastructure projects.
  • Company: Join Mace Construct, a pioneering force in the construction industry.
  • Benefits: Competitive salary, inclusive culture, and opportunities for professional growth.
  • Other info: Diverse and inclusive workplace that values innovation and ambition.
  • Why this job: Make a real impact on national projects while enhancing your cybersecurity expertise.
  • Qualifications: 5+ years in information security management and relevant certifications required.

The predicted salary is between 60000 - 80000 £ per year.

About the company
Mace Construct, our purpose is to redefine the boundaries of ambition. We are innovators, trusted partners, construction experts. Founded on a belief that the built environment sector could be more efficient, innovative and responsible. We’ve built a reputation and track record for delivering projects better than ever before: safer, faster and greener. Transforming industries, supporting communities and leaving legacies.

About the project
Mace Dragados Joint Venture (MDJV) is the construction partner for the new HS2 Euston and Curzon Street Stations, working with HS2 Ltd and design partners to deliver new platforms, concourse structures, and interchange rail links.

About the role
The Information Security Lead is responsible for maintaining and continuously improving the Information Security Management System (ISMS), including supporting processes, across two major UK public infrastructure programmes delivered under a joint venture in Birmingham and London. The role ensures compliance with the client’s contractual information and cyber security requirements, as well as parent-company and regulatory obligations. The postholder is also accountable for retaining ISO 27001 and Cyber Essentials Plus certifications, and for meeting the security obligations associated with nationally significant infrastructure projects.

What you’ll be doing

  • Develop and own our organisation-wide information security strategy, aligning it with client, parent company and regulatory requirements.
  • Ensure compliance with the client's contractual information security and cyber security obligations, as detailed in the project's Information Security and Cyber Security Management Plan.
  • Maintain the disaster recovery plan and incident management response aligned to parent company and client requirements.
  • Lead the ICT Security team in implementing and maintaining secure IT systems.
  • Lead on Data Protection Compliance through digital / project systems, maintaining / auditing systems and coordinating breach handling.
  • Manage data retention systems across the project.
  • Own the ISMS suite of policies, ensuring they remain current and embedded across the project.
  • Provide IS performance reporting to Senior Leadership and the client.
  • Maintain the ISO 27001, PAS1192-5 and Cyber Essentials Plus certifications through ongoing compliance and surveillance audits.
  • Monitor and enforce information security requirements across the supply chain, including compliance checks and delivering supply chain audits for information security.
  • Lead incident response efforts—investigating, containing, and remediating security events with precision and speed.
  • Oversee security awareness training, empowering every employee to be a first line of defence.
  • Collaborate with other discipline and IT teams to embed security into procurement, design, construction delivery and Handover.
  • Undertake system access reviews and conduct regular risk assessments to identify and address weaknesses.
  • Manage relationships with external auditors, regulators, and security vendors.
  • Keep ahead of evolving threats, tools, and compliance frameworks (ISO 27001, NIST, GDPR, etc.).
  • Manage Contractor Assessment, onboarding and IT exit Plans.
  • Training and developing the project team and contractors around ICSC awareness.

What you’ll bring

  • Minimum 5 years' experience in an information security management role.
  • Strong knowledge of IS principles, frameworks and risk management.
  • Ability to develop and enforce IS policies.
  • Experience in IT security infrastructure, including access controls, network security, endpoint protection, and secure communications.
  • Cyber Essentials auditing.
  • Hold a recognised information security qualification such as CISSP, CISM or ISO/IEC 27001 Lead Implementer / Lead Auditor, with relevant professional membership desirable.
  • Compliance for BPSS clearance.
  • Confident presenting to senior leadership, clients and non-technical audiences.
  • Line management experience.

Nice to have

  • Strong understanding of UK data protection legislation (UK GDPR, Data Protection Act 2018) and NIS Regulations.
  • Competence in leading internal and external information security audits.
  • Experience in creating and delivering training.
  • Bachelor’s degree or equivalent professional experience.

Mace is an inclusive employer and welcomes interest from a diverse range of candidates. Even if you feel you do not fulfil all of the criteria, please apply as you may still be the best candidate for this role or another role within our organisation.

Information Security Manager in Birmingham employer: MACE LIMITED

At Mace Construct, we pride ourselves on being an innovative and responsible employer, dedicated to redefining the construction industry. Our collaborative work culture fosters professional growth and development, offering employees the opportunity to engage in significant infrastructure projects like HS2 while ensuring compliance with the highest information security standards. With a commitment to safety, sustainability, and community support, we provide a rewarding environment where every team member can thrive and contribute to meaningful legacies.
M

Contact Detail:

MACE LIMITED Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Manager in Birmingham

✨Tip Number 1

Network like a pro! Reach out to people in the industry, attend events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching the company and its projects. Understand their values and how they align with your skills. This will help you stand out and show that you're genuinely interested in being part of their team.

✨Tip Number 3

Practice your responses to common interview questions, especially those related to information security. Use the STAR method (Situation, Task, Action, Result) to structure your answers and demonstrate your experience effectively.

✨Tip Number 4

Don’t forget to follow up after your interview! A simple thank-you email can leave a lasting impression and keep you top of mind for the hiring team. Plus, it shows your enthusiasm for the role.

We think you need these skills to ace Information Security Manager in Birmingham

Information Security Management System (ISMS)
ISO 27001
Cyber Essentials Plus
Data Protection Compliance
Incident Management
Risk Management
IS Policy Development
IT Security Infrastructure
Access Controls
Network Security
Endpoint Protection
Cyber Essentials Auditing
CISSP
CISM
UK GDPR

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter for the Information Security Manager role. Highlight your relevant experience and skills that align with the job description, especially around ISMS and compliance.

Showcase Your Achievements: Don’t just list your responsibilities; share specific achievements in your previous roles. Use metrics where possible to demonstrate how you’ve improved security measures or compliance in past projects.

Be Clear and Concise: Keep your application clear and to the point. Use straightforward language and avoid jargon unless it’s relevant to the role. We want to see your qualifications without wading through unnecessary fluff!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re keen on joining our team at Mace Construct!

How to prepare for a job interview at MACE LIMITED

✨Know Your Stuff

Make sure you brush up on your information security principles and frameworks. Familiarise yourself with ISO 27001, Cyber Essentials, and the specific requirements of the role at Mace Construct. Being able to discuss these in detail will show that you're not just a candidate, but a knowledgeable expert.

✨Showcase Your Experience

Prepare to share specific examples from your past roles where you've successfully managed information security systems or led incident response efforts. Use the STAR method (Situation, Task, Action, Result) to structure your answers and highlight your achievements.

✨Understand the Company Culture

Research Mace Construct’s values and their approach to innovation and responsibility in the built environment sector. Be ready to discuss how your personal values align with theirs and how you can contribute to their mission of redefining ambition.

✨Ask Insightful Questions

Prepare thoughtful questions about the role, the team, and the projects you'll be working on. This shows your genuine interest in the position and helps you assess if it's the right fit for you. For example, ask about the biggest challenges they face in maintaining compliance or how they foster a culture of security awareness among employees.

Information Security Manager in Birmingham
MACE LIMITED
Location: Birmingham

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>