Information Security Manager
Information Security Manager

Information Security Manager

Full-Time 48000 - 72000 Β£ / year (est.) No home office possible
Go Premium
O

At a Glance

  • Tasks: Lead business continuity and enhance information security management across multiple jurisdictions.
  • Company: Join a leading professional services firm with a focus on innovation and security.
  • Benefits: Competitive salary, flexible working options, and opportunities for professional growth.
  • Why this job: Make a real impact in safeguarding information security and business continuity.
  • Qualifications: Experience in information security management and strong communication skills required.
  • Other info: Dynamic role with a culture of continual improvement and resilience.

The predicted salary is between 48000 - 72000 Β£ per year.

As a leading professional services firm, we are seeking a highly skilled Information Security Manager to join our Information Security & Risk department. The successful candidate will be responsible for running our business continuity framework alongside maintaining and enhancing our information security management programme. This pivotal role covers planning, testing and training for business continuity, third party security risk management, business impact assessments, ISO 27001 governance, policy management, and internal auditing in line with global best practices.

Key Responsibilities

  • Business Continuity Management
    • Lead the development, update and ongoing management of the firm's Business Continuity Plans (BCP), ensuring it remains current and effective across all jurisdictions.
    • Organise and conduct BCP tests with local business continuity groups, including documentation, reporting and follow-up of test outcomes.
    • Provide business continuity training and run targeted group business continuity sessions for employees.
    • Undertake Business Impact Assessments (BIAs) with various teams to ensure understanding and documentation of Recovery Time Objectives (RTOs), Recovery Point Objectives (RPOs), system criticality and dependencies, supporting disaster recovery planning.
  • Security and Third Party Risk Management
    • Manage and complete information security assessments and Due Diligence Questionnaires (DDQs) received from clients.
    • Support outgoing third party assessments, onboarding and risk reviews, including working directly with third parties to address security requirements.
    • Oversee third party risk management from a security perspective, ensuring risks are documented, reported and mitigated as appropriate.
  • ISO 27001 Governance and Internal Audit
    • Support the firm's ongoing ISO 27001 certification and framework, including continuous improvement of the ISMS (Information Security Management System).
    • Develop and maintain the firm's information security policies and procedures in line with industry best practice and regulatory requirements across all jurisdictions.
    • Undertake clause-based auditing, policy reviews and control monitoring as part of the ISO 27001 role.
    • Liaise with internal and external auditors and regulatory bodies during information security audits and reviews.
  • Training and Awareness
    • Deliver induction and information security training for all new joiners to the firm.
    • Develop and run targeted information security training and awareness programmes for specific business units.
    • Maintain a high level of information security awareness across the business through communications and engagement initiatives.
  • Other Responsibilities
    • Support the firm's response to information security incidents, including investigation, documentation and coordination as required.
    • Keep abreast of latest trends, threats and technologies; provide advisory and guidance as appropriate.
    • Contribute to a culture of continual improvement, integrity, confidentiality and resilience across the firm.

Skills, Knowledge and Expertise

  • Proven experience in information security management, business continuity planning and risk management, ideally within a professional services or legal firm environment.
  • Experience supporting and/or maintaining ISO 27001 certification and managing an ISMS.
  • Strong knowledge of business impact assessments, disaster recovery, RTOs/RPOs, and system criticality mapping.
  • Excellent communication and interpersonal skills, with the ability to deliver effective training and collaborate across global teams.
  • Analytical and detail-oriented, with a proactive approach to risk identification and mitigation.
  • Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor, CBCP, or equivalent are desirable.

Information Security Manager employer: Ogier

As a leading professional services firm, we pride ourselves on fostering a dynamic work culture that prioritises employee growth and development. Our Information Security Manager role offers the opportunity to engage in meaningful projects across multiple jurisdictions, supported by comprehensive training programmes and a commitment to continuous improvement. With a focus on collaboration and innovation, we provide a rewarding environment where your expertise can thrive, particularly in our vibrant locations of Jersey, Guernsey, London, and Ireland.
O

Contact Detail:

Ogier Recruiting Team

StudySmarter Expert Advice 🀫

We think this is how you could land Information Security Manager

✨Network Like a Pro

Get out there and connect with people in the industry! Attend events, webinars, or even local meetups. We can’t stress enough how important it is to build relationships; you never know who might have the inside scoop on job openings.

✨Show Off Your Skills

When you get the chance to chat with potential employers, make sure to highlight your experience in information security management and business continuity planning. We want to see you confidently discuss your past projects and how they relate to the role you're after.

✨Prepare for Interviews

Do your homework before interviews! Research the company’s current security practices and be ready to discuss how you can enhance their information security management programme. We believe that showing genuine interest can really set you apart from other candidates.

✨Apply Through Our Website

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who take the initiative to engage directly with us.

We think you need these skills to ace Information Security Manager

Information Security Management
Business Continuity Planning
Risk Management
ISO 27001
Business Impact Assessments
Disaster Recovery
Recovery Time Objectives (RTOs)
Recovery Point Objectives (RPOs)
Communication Skills
Interpersonal Skills
Training Delivery
Analytical Skills
Detail-Oriented
Proactive Risk Identification
Professional Certifications (CISSP, CISM, ISO 27001 Lead Implementer/Auditor, CBCP)

Some tips for your application 🫑

Tailor Your CV: Make sure your CV is tailored to the Information Security Manager role. Highlight your experience in business continuity planning and ISO 27001 governance, as these are key aspects of the job. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how your background makes you a perfect fit for our team. Don’t forget to mention any relevant certifications you hold – they can really make you stand out!

Showcase Your Achievements: When detailing your past roles, focus on specific achievements rather than just listing duties. For example, if you led a successful BCP test or improved an ISMS, share those successes! We love to see how you've made a difference in previous positions.

Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy and ensures your application goes directly to us. Plus, you’ll get to see more about our company culture and values while you’re at it!

How to prepare for a job interview at Ogier

✨Know Your Stuff

Make sure you brush up on your knowledge of information security management and business continuity planning. Familiarise yourself with ISO 27001 standards and be ready to discuss how you've applied these in past roles. This will show that you're not just a candidate, but someone who truly understands the field.

✨Showcase Your Experience

Prepare specific examples from your previous work that highlight your experience in managing information security assessments and conducting Business Impact Assessments (BIAs). Use the STAR method (Situation, Task, Action, Result) to structure your answers, making it easy for the interviewer to see your impact.

✨Engage with Questions

Don’t forget to prepare thoughtful questions about the company’s current information security challenges or their approach to business continuity. This shows your genuine interest in the role and helps you assess if the company is the right fit for you.

✨Communicate Clearly

Since this role involves training and collaboration across teams, practice articulating complex security concepts in simple terms. Good communication skills are key, so be prepared to demonstrate how you can convey important information effectively during the interview.

Information Security Manager
Ogier
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

O
  • Information Security Manager

    Full-Time
    48000 - 72000 Β£ / year (est.)
  • O

    Ogier

    200-500
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>