Information Security Manager in Farnham

Information Security Manager in Farnham

Farnham Full-Time 55000 - 55000 £ / year (est.) No home office possible
Phyllis Tuckwell Hospice Care

At a Glance

  • Tasks: Lead cyber security initiatives and educate teams on best practices.
  • Company: Phyllis Tuckwell, a compassionate hospice care provider in Surrey.
  • Benefits: Six weeks holiday, pension plan, health cash scheme, and career development opportunities.
  • Other info: Join a proud team where 97% of staff love working at Phyllis Tuckwell.
  • Why this job: Make a real impact in a supportive environment while enhancing information security.
  • Qualifications: Strong cyber security knowledge and ability to communicate effectively with diverse teams.

The predicted salary is between 55000 - 55000 £ per year.

Location: Farnham, Surrey (cross site working)

Salary: £55,000 per annum

Hours: 37 hours per week

Phyllis Tuckwell are based in Farnham, Camberley and Guildford and provide bespoke, compassionate palliative and end‑of‑life care for people living with an advanced or terminal illness, across West Surrey and North‑East Hampshire. We are soon opening a new hospice building, creating a modern environment designed around patients, families, and staff. Alongside this, we are investing in our digital capability to better support care, improve efficiency, and strengthen how we work as an organisation.

Job Summary

We are seeking an Information Security Manager to shape how our information security is built into a new environment from the outset, rather than retrofitted later. This exciting, new role will take the next step in managing and developing a more structured, consistent, and visible approach, seeking to embed good practice and build confidence. This is not a purely technical or policy focused role. It will be responsible for ensuring our systems and information are safe, resilient, and used responsibly, helping our teams make secure choices in their day‑to‑day work, and educating staff to understand what this means in practice. The role will play an integral role in ensuring everything we do, and deliver, is secure by default and will ensure a practical, solutions focused approach to risk, helping teams move forward with confidence, building a positive security culture across the organisation.

Responsibilities

  • Leading our approach to cyber security, risk management, and incident response
  • Developing and improving our information security management system, aligned to standards such as Cyber Essentials Plus and NHS DSPT
  • Identifying and managing risks across systems, processes, and suppliers
  • Supporting teams to understand and apply good security practice in real‑world situations
  • Leading response to any cyber or data‑related incidents, ensuring an appropriate and prompt response with a learning mindset
  • Working with senior colleagues, including the SIRO and Caldicott Guardian, to provide assurance and oversight
  • Building awareness and confidence across the organisation through training and engagement
  • Ensuring security is built into new systems, projects, and supplier relationships from the outset
  • Develop and deliver engaging information security training and awareness campaigns
  • Promote a positive, non‑blame culture where people feel confident to report incidents or concerns
  • Provide practical advice that helps teams make secure choices in day‑to‑day work
  • Act as a visible and approachable subject matter expert across the organisation

Candidate

Candidates should possess a balanced skillset across technical cyber security and governance, risk, and compliance (GRC) combined with the ability to translate this into clear, organisation‑wide governance and assurance. They will be comfortable with detail, whilst also providing proportionate, practical oversight at an organisational level.

  • Strong technical grounding in cyber security including networks, endpoints, identity, vulnerabilities, and incident response
  • Experience in applying that knowledge to real world risk management, not just theoretical controls
  • Good understanding of governance, assurance, and security frameworks such as Cyber Essentials Plus, ISO 27001, and NHS DSPT
  • Ability to move comfortably between technical detail and clear, plain‑English communication for non‑technical audiences
  • Experience in providing assurance to senior stakeholders such as risk reporting, audit, or governance forums
  • An enabling, solutions‑focused approach with the ability to balance risk, with the need to get things done
  • Strong focus on behaviour and culture, not just controls and policy
  • Able to challenge constructively while helping teams find workable solutions
  • Comfortable influencing across teams and building trusted relationships

Relevant qualifications or certifications such as CISSP, CISM, or Security+ are helpful. While a hospice background is not required, applicants should understand the importance of working in a people‑focused, regulated environment.

Benefits

  • Six weeks paid holiday plus public holidays
  • Phyllis Tuckwell Group Personal Pension Plan (matched contributions up to 7.5%)
  • Health Cash Plan Scheme
  • Employee Assistance Programme
  • Staff Benefit Scheme
  • Blue Light Discount Card

Excellent Career Development

  • Leadership Development
  • Skill Development, Project‑Based Learning and Diverse training courses
  • Apprenticeships
  • Coaching
  • Cross Departmental Projects

A Great Place to Work

  • Equal Opportunities employer
  • Flexible working
  • Supportive colleagues
  • 97% of our staff are proud to work for Phyllis Tuckwell

We are committed to creating a diverse and inclusive culture, with the principles of fairness and equality at its core. We warmly welcome applications from all sections of the community. All appointments are made following a fair and equitable process, based on merit, job requirements and business need.

Closing date for receipt of applications: 10th May 2026. Interviews to be held week commencing 1st June 2026. We reserve the right to close the role ahead of the closing date should sufficient applications be received. Your early response is therefore encouraged.

Please note that we do not hold a sponsor licence and therefore are unable to provide sponsorship. This post is subject to a standard Disclosure and Barring Service check.

For further information regarding the role or to arrange an informal visit please contact Graham Mayers, Director of IT, Estates and Digital Transformation on graham.mayers@pth.org.uk or phone 01252 729408. If you have any questions about the recruitment process, contact HR on 01252 729408 or email recruitment@pth.org.uk.

Information Security Manager in Farnham employer: Phyllis Tuckwell Hospice Care

Phyllis Tuckwell is an exceptional employer, offering a supportive and inclusive work culture that prioritises employee well-being and professional growth. With generous benefits including six weeks of paid holiday, a matched pension plan, and diverse training opportunities, staff are empowered to thrive in their roles while making a meaningful impact on the lives of patients and families in the community. Located in Farnham, Surrey, the organisation fosters a positive environment where collaboration and innovation are encouraged, ensuring that every team member feels valued and engaged.
Phyllis Tuckwell Hospice Care

Contact Detail:

Phyllis Tuckwell Hospice Care Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Manager in Farnham

✨Tip Number 1

Network like a pro! Get out there and connect with people in the industry. Attend events, join online forums, or even hit up LinkedIn. The more people you know, the better your chances of landing that Information Security Manager role.

✨Tip Number 2

Show off your skills! Prepare a portfolio or a presentation that highlights your experience in cyber security and risk management. When you get the chance to chat with potential employers, let them see what you can bring to the table.

✨Tip Number 3

Practice makes perfect! Get ready for interviews by doing mock sessions with friends or mentors. Focus on how you can communicate complex security concepts in plain English, as this will be key in your new role.

✨Tip Number 4

Apply through our website! We love seeing applications directly from candidates who are genuinely interested in joining us. It shows initiative and enthusiasm, which are always a plus in our book!

We think you need these skills to ace Information Security Manager in Farnham

Cyber Security
Risk Management
Incident Response
Information Security Management System
Cyber Essentials Plus
ISO 27001
NHS DSPT
Governance, Risk, and Compliance (GRC)
Communication Skills
Training and Engagement
Stakeholder Assurance
Problem-Solving Skills
Relationship Building
CISSP
CISM

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter for the Information Security Manager role. Highlight your relevant experience in cyber security, risk management, and how you've made a positive impact in previous roles. We want to see how you can bring your unique skills to our team!

Showcase Your Communication Skills: Since this role involves translating technical jargon into plain English, it's crucial to demonstrate your ability to communicate effectively. Use clear language in your application to show us that you can engage with both technical and non-technical audiences.

Highlight Your People Skills: This isn't just about tech; it's about building a positive security culture. Share examples of how you've worked collaboratively with teams or trained others in security practices. We love seeing candidates who can foster a supportive environment!

Apply Through Our Website: We encourage you to submit your application through our website. It’s the best way to ensure it gets to the right people! Plus, you'll find all the details you need about the role and our organisation there.

How to prepare for a job interview at Phyllis Tuckwell Hospice Care

✨Know Your Stuff

Make sure you brush up on your technical knowledge related to cyber security, risk management, and compliance frameworks like Cyber Essentials Plus and ISO 27001. Be ready to discuss how you've applied this knowledge in real-world situations, as they'll want to see that you can translate theory into practice.

✨Showcase Your Communication Skills

Since this role involves working with non-technical teams, practice explaining complex concepts in plain English. Think of examples where you've successfully communicated security practices to diverse audiences, and be prepared to demonstrate your ability to build trust and rapport across teams.

✨Emphasise a Positive Security Culture

Highlight your experience in promoting a non-blame culture where team members feel comfortable reporting incidents. Share specific strategies you've used to engage staff in security training and awareness campaigns, showing that you understand the importance of behaviour and culture in security.

✨Prepare for Scenario Questions

Expect to face scenario-based questions that assess your problem-solving skills in real-time. Think about past incidents you've managed or hypothetical situations related to cyber security and risk management, and be ready to outline your approach to resolving them effectively.

Information Security Manager in Farnham
Phyllis Tuckwell Hospice Care
Location: Farnham

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>