At a Glance
- Tasks: Lead and manage information security strategies to protect our people, data, and systems.
- Company: Join Prevail Partners, a growing consultancy delivering impactful security services globally.
- Benefits: Enjoy gym access, wellness discounts, private medical insurance, and professional development opportunities.
- Why this job: Make a real difference in security while working on exciting projects across diverse sectors.
- Qualifications: Experience with ISO 27001 and strong communication skills are essential.
- Other info: Be part of a values-led culture with opportunities for personal and professional growth.
The predicted salary is between 36000 - 60000 ÂŁ per year.
We are seeking an experienced and highly motivated Information Security Manager to join our growing team at Prevail Partners. The ideal candidate will bring deep technical knowledge of information security risks, controls and frameworks — with practical experience managing ISO 27001-compliant systems and embedding secure practices across dynamic operational environments. You will work closely with the Security Lead, Compliance Manager, IT department, and project teams to ensure robust, proportionate, and forward‑looking protection of our people, data and systems. This is a key role for a pragmatic and security‑minded individual who can operate at both strategic and operational levels, supporting the business as it expands its global footprint and develops sensitive technology solutions.
About Us: Prevail Partners delivers high quality intelligence and security consultancy services to clients ranging from governments and multinational corporations to non‑governmental organisations. These services are delivered predominantly across Europe, the Middle East and Africa. We pride ourselves on selecting interesting projects which we believe can genuinely make a difference. You will be joining the company at a time of continued growth, and be required to support a wide variety of these projects across the whole company.
Key Responsibilities
- Security Strategy & Governance: Lead the continued development of Prevail's Information Security Management System (ISMS) in alignment with ISO 27001, driving forward maturity and integration with wider business goals. Serve as the lead advisor on information security, ensuring risk‑based decision‑making and strong stakeholder engagement across the business. Maintain close working relationships with external stakeholders including NCSC and NPSA, ensuring Prevail remains alert to national‑level threat reporting and guidance. Represent information security within executive‑level planning, commercial proposals, and assurance processes.
- Operational Security & Risk Management: Oversee the planning, implementation and management of technical and procedural controls across endpoint security, data access, and cloud infrastructure (including AWS). Maintain Prevail's Cyber Essentials and Cyber Essentials Plus accreditations, including preparation, audit liaison, and continuous improvement of control measures. Lead structured risk assessments across internal systems and project‑specific activities, and develop pragmatic mitigation plans with relevant teams.
- Data Protection & Compliance: Work alongside the Compliance Manager and DPO to ensure effective implementation of UK data protection law, including support for Data Protection Impact Assessments (DPIAs) and data mapping. Oversee the information security training and awareness programme, ensuring it reflects both regulatory obligations and operational realities. Maintain up‑to‑date security documentation, incident logs, audit records and policy registers.
- Preparedness & Incident Response: Lead and continuously improve the company's incident response framework, including conducting tabletop exercises and reviewing lessons learned. Ensure the business is prepared to respond to cyber security incidents, breaches or service disruptions through robust business impact assessment, business continuity and recovery planning.
- Internal Engagement & Security Culture: Deliver internal briefings and staff awareness sessions across the year, including at onboarding and company townhalls. Champion a culture of secure behaviours, ensuring all staff understand their role in protecting the organisation and its data. Collaborate with teams across operations, HR and IT to identify emerging vulnerabilities and strengthen preventative measures.
- Governance & Oversight: Chair or co‑chair internal security governance forums to track risks, define priorities, and drive improvement across physical, cyber and personnel domains. Contribute to security input for new markets, overseas deployments, and sensitive project work. Support leadership in meeting regulatory, contractual, and reputational requirements in relation to information security.
Requirements
- Essential: Demonstrable experience leading or managing an ISO 27001‑aligned ISMS and Cyber Essentials with a track record of successful implementation or certification. Strong understanding of information security risk management, governance, and technical controls. Knowledge of UK data protection regulations (GDPR) and security standards relevant to operational delivery. Excellent communication and stakeholder management skills, including the ability to engage non‑technical audiences. A proactive, solutions‑focused mindset, capable of balancing security with business agility.
- Desirable: ISO 27001 Lead Implementer or Lead Auditor certification. Experience working in or with secure government, defence, or national security environments. Familiarity with broader frameworks such as ISO 31000, NIST CSF or CIS Controls. Experience supporting the secure delivery of software or technology platforms. Familiarity with JSP 440, Secure by design and other cyber resilience frameworks.
Benefits
- Gym Access & Wellness Discounts: Access to discounted memberships and gym facilities for London‑based employees.
- Cycle to Work Scheme: Tax‑efficient savings on bikes and accessories, available post‑probation.
- Season Ticket Loans: Interest‑free loans for annual commuting costs.
- Private Medical Insurance: Fully funded cover through Vitality Health after two years' service.
- Employee Assistance Programme: Confidential mental health, legal, financial and wellbeing support via Health Hero.
- Enhanced Leave Entitlements: Supporting you through important life moments with flexibility.
- Professional Development Days: Dedicated time off to focus on your personal and professional growth through training, courses, or self‑directed learning.
- Culture & Development: A values‑led culture with regular social events, collaborative initiatives, and meaningful opportunities for personal and professional development.
Information Security Manager employer: Prevail Partners Limited
Contact Detail:
Prevail Partners Limited Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Manager
✨Tip Number 1
Network like a pro! Reach out to people in the industry, attend events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their security practices and be ready to discuss how your experience aligns with their needs. Show them you're not just a fit on paper but also in spirit!
✨Tip Number 3
Practice your responses to common interview questions, especially those related to information security management. Use the STAR method (Situation, Task, Action, Result) to structure your answers and highlight your achievements.
✨Tip Number 4
Don’t forget to follow up after interviews! A quick thank-you email can leave a lasting impression and show your enthusiasm for the role. Plus, it keeps you on their radar as they make their decision.
We think you need these skills to ace Information Security Manager
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security Manager role. Highlight your experience with ISO 27001 and any relevant security frameworks. We want to see how your skills align with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how you can contribute to our team at Prevail Partners. Keep it engaging and relevant to the job description.
Showcase Your Achievements: Don’t just list your responsibilities; showcase your achievements in previous roles. Did you lead a successful ISO 27001 implementation? Tell us about it! We love to see concrete examples of your impact.
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It helps us keep track of your application and ensures you don’t miss out on any important updates from us!
How to prepare for a job interview at Prevail Partners Limited
✨Know Your ISO 27001 Inside Out
Make sure you brush up on your knowledge of ISO 27001 and how it applies to information security management systems. Be ready to discuss your past experiences with implementing or managing these systems, as well as any challenges you've faced and how you overcame them.
✨Showcase Your Risk Management Skills
Prepare to talk about your approach to risk management. Think of specific examples where you've identified risks, implemented controls, and how you communicated these to stakeholders. This will demonstrate your ability to balance security with business needs.
✨Engage with the Company’s Culture
Research Prevail Partners and understand their values and projects. Be prepared to discuss how you can contribute to their mission and culture, especially in promoting a secure environment across teams. Showing that you align with their ethos can set you apart.
✨Prepare for Scenario-Based Questions
Expect questions that ask how you would handle specific security incidents or compliance challenges. Practise articulating your thought process and decision-making strategies in these scenarios, as this will highlight your practical experience and problem-solving skills.