Information Security Manager - HYBRID WORKING
Information Security Manager - HYBRID WORKING

Information Security Manager - HYBRID WORKING

Full-Time 36000 - 60000 £ / year (est.) Home office (partial)
Go Premium
P

At a Glance

  • Tasks: Lead and manage security strategies while mentoring a dynamic team in a hybrid work environment.
  • Company: Exciting client based in the heart of Bristol, focused on innovative security solutions.
  • Benefits: Flexible hybrid working model, competitive salary, and opportunities for professional growth.
  • Why this job: Make a real impact by protecting against security threats and shaping the future of information security.
  • Qualifications: Experience in information security frameworks and strong technical skills required.
  • Other info: Join a culture of collaboration and drive organisational change in security practices.

The predicted salary is between 36000 - 60000 £ per year.

We are working in partnership with a fantastic client of ours who are based in the heart of Bristol. We are looking for an experienced Information Security Manager to join them on a hybrid working model.

ROLE SUMMARY

This role will report on findings and apply recommendations for corrective & preventative action and will identify opportunities to reduce security risks. This role will also document remediation options regarding acceptance or mitigation of risk scenarios as well as facilitating and monitoring performance of risk remediation tasks, changes related to risk mitigation & will report on findings. This role will help the client understand security threats and help create strategies to protect against them. The role will include strategic and hands-on work as well as managing a small team, driving the IT Security strategy, leading projects, co-ordinating the team’s work and mentoring, coaching & developing them. There will also be a responsibility to work with others in Digital Services and the wider organisation to ensure appropriate leadership and accountability in the security space. The role holder will possess strong technical, organisational and communication skills to fulfil this role. You will also be accountable for contributing to audit responses, specifically in the InfoSec area, and establishing improvements in the response process and standardisation.

KEY ACCOUNTABILITIES AND RESPONSIBILITIES

  • Establish a clear security charter for the management of security and a long-term strategy.
  • Drive organisational change and develop a culture of security.
  • Drive the security operations pillars of excellence, competence, reliability and collaboration.
  • Articulate the security vision, mission and objectives within the context of three critical priorities: Alignment with the company’s overall risk posture, support the company’s goals and help the company meet its compliance requirements.
  • Delivery of meaningful value and metrics to key stakeholders that aligns with the company’s interests.
  • Contribute to the IT Strategy planning process with regards to Information Security, ISO27001/27002.
  • Manage, mentor and maintain the internal ISO auditor programme including audit schedules, audit reviews and recommendation resolution.
  • Evolve the existing security strategy in collaboration with the Digital Services Management Team.
  • Keeping up to date with current security best practice.
  • Identify, draft and maintain security policies, guidelines, procedures, processes, baselines and documentation based on known industry standards and best practice.
  • Managing the day-to-day security work-streams simultaneously and the day-to-day activities of the security team.
  • Co-ordinating security planning through producing time and resource estimates for the purpose of demand planning.
  • Mentoring the security team in the security design, planning and monitoring processes.

Qualifications (Desirable)

  • CISSP: Certified Information Systems Security Professional
  • ISO/IEC 27001 Lead Implementer/Auditor

Professional skills/experience

  • Demonstrate a good understanding of information security frameworks, standards and security best practice (ISO27001, NIST CSF, Cyber Essentials, OWASP).
  • Knowledge and adherence to data protection legislation and regulatory requirements (e.g. GDPR, FCA SYSC, PCI DSS).
  • Extensive experience and understanding of security analysis tools, defensive technologies and other security technologies (e.g. SIEM, VAS, IDS/IPS, Firewalls, IAM, NAC, patch management, anti-malware).
  • Solid understanding of security incident management and incident response processes and activities.
  • Strong working knowledge of authentication technologies (e.g. two-factor, multifactor).
  • Good knowledge of Zero trust principles (e.g. limiting access to confidential information, limiting remote access to applications, differentiating between corporate and personal devices, trusted endpoints).
  • Knowledge of endpoint security solutions (e.g. HIDS, anti-malware, file integrity, DLP).
  • AWS and cloud platforms (e.g. SaaS, IaaS, PaaS).
  • System administration, supporting multiple platforms and applications.
  • Skilled in conducting vulnerability scans and identifying vulnerabilities in systems.
  • Good awareness of the current Threat Landscape.
  • Good understanding of modern malware: execution methods, persistence, detection, delivery mechanisms and entry points.

Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted.

Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation. We take our obligations to protect your personal data very seriously. Any information provided to us will be processed as detailed in our Privacy Notice, a copy of which can be found on our website.

Information Security Manager - HYBRID WORKING employer: Proactive Appointments

Join a forward-thinking organisation in the heart of Bristol, where you will play a pivotal role as an Information Security Manager in a hybrid working environment. Our company fosters a collaborative and innovative work culture, offering ample opportunities for professional growth and development, while prioritising employee well-being and work-life balance. With a commitment to security excellence and a supportive team atmosphere, this is an ideal place for those looking to make a meaningful impact in the field of information security.
P

Contact Detail:

Proactive Appointments Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Manager - HYBRID WORKING

✨Tip Number 1

Network like a pro! Reach out to your connections in the industry, attend relevant events, and engage with professionals on platforms like LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.

✨Tip Number 2

Prepare for interviews by researching the company and its security practices. Understand their current challenges and think about how you can contribute to their security strategy. Tailor your responses to show how your skills align with their needs.

✨Tip Number 3

Practice makes perfect! Conduct mock interviews with friends or use online resources to refine your answers. Focus on articulating your experience with security frameworks and incident management clearly and confidently.

✨Tip Number 4

Don’t forget to apply through our website! We’ve got loads of opportunities waiting for you, and applying directly can sometimes give you an edge. Plus, it’s super easy to keep track of your applications!

We think you need these skills to ace Information Security Manager - HYBRID WORKING

Information Security Management
Risk Assessment
ISO27001/27002
Security Policy Development
Incident Response
Security Frameworks (NIST CSF, Cyber Essentials, OWASP)
Data Protection Legislation (GDPR, FCA SYSC, PCI DSS)
Security Analysis Tools (SIEM, VAS, IDS/IPS)
Authentication Technologies (two-factor, multifactor)
Zero Trust Principles
Endpoint Security Solutions (HIDS, DLP)
Cloud Platforms (AWS, SaaS, IaaS, PaaS)
Vulnerability Scanning
Threat Landscape Awareness
Team Leadership and Mentoring

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Information Security Manager role. Highlight your experience with security frameworks and your ability to manage teams, as these are key aspects of the job.

Craft a Compelling Cover Letter: Your cover letter should tell us why you're the perfect fit for this role. Share specific examples of how you've driven security strategies or managed risk in previous positions.

Showcase Your Technical Skills: Don’t forget to mention your technical skills! We want to see your knowledge of security tools and frameworks like ISO27001 and NIST CSF. This will help us understand your expertise in the field.

Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It helps us keep track of your application and ensures you don’t miss any important updates!

How to prepare for a job interview at Proactive Appointments

✨Know Your Security Frameworks

Make sure you brush up on your knowledge of information security frameworks like ISO27001 and NIST CSF. Be ready to discuss how you've applied these standards in previous roles, as this will show your understanding of best practices and your ability to implement them effectively.

✨Showcase Your Technical Skills

Prepare to talk about your experience with security analysis tools and technologies such as SIEM, firewalls, and IAM. Highlight specific instances where you've used these tools to mitigate risks or respond to incidents, as this will demonstrate your hands-on expertise.

✨Articulate Your Security Vision

Be prepared to discuss your vision for the security strategy and how it aligns with the company's goals. Think about how you would drive organisational change and foster a culture of security, as this is crucial for the role.

✨Demonstrate Leadership and Mentoring Skills

Since this role involves managing a small team, be ready to share examples of how you've mentored or coached others in the past. Discuss your approach to team management and how you ensure that everyone is aligned with the security objectives.

Information Security Manager - HYBRID WORKING
Proactive Appointments
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

P
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>