IT Security Manager in London

IT Security Manager in London

London Full-Time 75000 - 85000 £ / year (est.) Home office (partial)
Nexus Jobs

At a Glance

  • Tasks: Lead IT security initiatives and enhance information security across the organisation.
  • Company: Join a large international organisation with a focus on innovation and security.
  • Benefits: Competitive salary, benefits package, and opportunities for professional growth.
  • Other info: Dynamic work environment with a mix of remote and office-based work.
  • Why this job: Make a real impact in shaping the future of IT security.
  • Qualifications: 5-8 years in IT security, strong communication, and leadership skills required.

The predicted salary is between 75000 - 85000 £ per year.

Our Client is a large international organisation who are looking to recruit an IT Security Manager with at least 5 to 8 years proven expertise. Provide advice, support and guidance to all Company Corporate functions to assist them to maintain and improve their information security maturity. To work collaboratively with all areas of the Company Corporate and build networks and relationships to promote Information Security.

Act as subject matter expert on IT Security, including legal and regulatory compliance. Advise Company Corporate functions on how to achieve the required controls and assist with solutions to support them, e.g. support in the development of standards and their application in line with Group security policies.

Participate in Company BU’s Projects giving support, guidance, control validation and overall security assurance. This could also involve sitting on major project steering committees. Support and encourage the ethos and methodology of security by design. Aid GRC to build, implement and facilitate a mechanism to aid BU’s to assess and measure their security compliance to policies.

Drive the development of BU/Divisional security roadmaps, giving oversight of key non-conformities to feed into the CISO roadmap. Coach, train and educate the Company IT and Functions to upskill and increase the security maturity in BU’s. Be an active member of the Company’s IS Security community, contributing to and leveraging the experience and lessons learned from other BU’s.

Produce, implement and standardise protocol and guidance material to support Business unit activities – examples include asset register templates and third party due-diligence. Facilitate and chair the security working group meetings. Engage and manage third party relationships to support the Company and its affiliates. Aid Procurement and the tendering process, raising the security baseline controls and standardising where it makes sense to do so. Understanding the different business requirements and aligning to their objectives.

Support Security operations to continuously improve information security awareness across the group, including phishing campaigns and associated reporting.

Experience

  • Experience in an information security risk leadership role within a large organisation.
  • Confident in presenting, discussing and championing ideas and concepts with senior stakeholders.
  • Experience of running information security risk governance processes and structures.
  • Familiarity with relevant industry standards for information security (e.g. ISO27001, NIST CSF).
  • Experience of creating, implementing and assessing against information security policies and standards.

Creativity

  • Able to analyse complex, ambiguous problems and summarise clearly with a view to establishing practical solutions.
  • Able to “bridge the gap” between technologists and business-people, bringing to life information security risks to the business, while maintaining a pragmatic outlook on likelihood and impact of the risk and cost/complexity of the mitigation.
  • Ensuring initiatives/programmes are anchored in best practice whilst still being highly practical/pragmatic.
  • Ability to defuse situations and resolve conflict to a win-win outcome.
  • Influence others to understand their views and agree ways of working that are acceptable to all parties.
  • Business acumen to understand business risks and the information security implications.
  • Able to identify when information security risks need to be escalated to achieve the right level of management visibility.
  • Able to prioritise security risks and controls, differentiating the essential from the “nice to have”.
  • Able to judge how to communicate messages to people to maximise buy-in and/or understanding.
  • Able to analyse data with rigour & reach sound conclusions.
  • Can assess when further data gathering, or analysis will bring diminishing returns.
  • Can place appropriate weight on prevailing (sometimes conflicting) evidence.

Support and manage budget

  • Responsibility of information security incident management.
  • Responsibility for security assessments and assurance activities (e.g. penetration testing) and when to use them.
  • Oversee and manage security compliance management and reporting in relation to any relevant regulatory or legal requirements.
  • Operational responsibility of management of third parties.
  • Responsibility for managing change management around project and change leadership.
  • Able to judge the political and other people aspects of a situation, and tailor messages and approach to bring people along.
  • Able to work with others, setting challenging but realistic targets for team members, and through coaching and appropriate guidance, securing a successful outcome.
  • A positive collegiate approach to developing relationships and networks at all levels across the Company and the gravitas to work persuasively with senior stakeholders.
  • Is aware of different styles of stakeholders and can adjust own leadership style successfully to bridge any gaps.

The Client and the role is based in Central London – and you will be required to be in the office at least 3 days a week.

The salary for this position will be £75K to £85K plus benefits.

Please do send your CV to us in Word format for this exciting new position along with your salary and availability.

IT Security Manager in London employer: Nexus Jobs

Our client, a leading bank in Central London, offers an exceptional work environment that fosters innovation and professional growth. With a strong emphasis on employee development, the company provides comprehensive training opportunities and a collaborative culture that encourages teamwork and knowledge sharing. Employees enjoy a competitive salary package, flexible working arrangements post-probation, and the chance to make a significant impact in a dynamic financial services landscape.

Nexus Jobs

Contact Details:

Nexus Jobs Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land IT Security Manager in London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Nexus Jobs, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Nexus Jobs

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Nexus Jobs. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace IT Security Manager in London

Information Security Management
Risk Governance
ISO 27001
NIST CSF
Security Compliance
Incident Management
Penetration Testing

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Nexus Jobs insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Nexus Jobs that you’re committed to staying ahead in the game.

How to prepare for a job interview at Nexus Jobs

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Nexus Jobs to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Nexus Jobs.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.