Job Description Overview of the Opportunity
Our client is seeking an experienced Information Security Manager to lead and continuously enhance its cyber security, information governance and compliance capabilities across a complex operational environment.
This is a senior leadership opportunity responsible for protecting critical digital assets, strengthening organisational resilience, and ensuring compliance with evolving regulatory and industry standards. Working closely with stakeholders across technology, operations, risk and compliance functions, you will play a key role in shaping security strategy, managing cyber risk and fostering a strong security-conscious culture throughout the business
Key Responsibilities
- Lead the organisation's cyber security, information security and compliance programmes.
- Develop, implement and enforce security, data protection and governance policies.
- Manage cyber incident response processes, ensuring effective detection, investigation and remediation of security events.
- Conduct risk assessments, vulnerability reviews, audits and gap analyses to identify and mitigate security risks.
- Maintain oversight of cyber security risk registers and support enterprise risk management activities.
- Ensure compliance with relevant security frameworks, standards and regulatory requirements.
- Drive security awareness initiatives, developing and delivering training programmes across the organisation.
- Prepare and present security, compliance and risk reports to senior leadership teams.
- Manage third-party security partners, audits and assurance activities.
- Lead and develop a specialist information security team, providing coaching, mentoring and performance management.
- Champion continuous improvement, identifying opportunities to strengthen security controls, processes and overall organisational resilience
Experience / Attributes required
- Proven experience leading cyber security, information security or compliance functions within a medium to large organisation.
- Strong knowledge of cyber security frameworks, governance principles and regulatory compliance requirements.
- Experience managing cyber risk registers, security metrics and compliance reporting.
- Demonstrable track record of delivering security improvement initiatives and managing external audits.
- Strong understanding of information security management systems and security assurance processes.
- Experience leading and developing high-performing teams.
- Excellent stakeholder management and communication skills, with the ability to influence at all levels of an organisation.
- Commercially minded with a proactive and solutions-focused approach to risk management.
- Relevant professional certifications such as CISSP, CISM, CISA or equivalent would be advantageous.
- Passionate about promoting a culture of security awareness, continuous improvement and operational excellence
Information Security Manager in Middlesbrough employer: Nigel Wright Group
The Daylight Company is an exceptional employer, offering a unique opportunity for the Operations Development Executive to play a pivotal role in shaping the future of a successful British product business. With a strong focus on professional growth, a collaborative work culture, and the chance to influence strategic direction, employees are empowered to drive meaningful change within a supportive environment. Located in NW10, this hybrid role not only provides significant autonomy but also positions you at the heart of a dynamic team dedicated to innovation and operational excellence.