IT/Information Security Manager in Stirling

IT/Information Security Manager in Stirling

Stirling Full-Time 55000 - 65000 € / year (est.) No home office possible
Robertson Group.

At a Glance

  • Tasks: Lead the charge in securing our IT and data across all Robertson companies.
  • Company: Join the UK's largest family-owned construction and infrastructure business.
  • Benefits: Enjoy 33 days annual leave, a pension scheme, and health support.
  • Other info: Diversity and inclusion are at our core; we welcome all applicants.
  • Why this job: Make a real impact on security and sustainability in a dynamic environment.
  • Qualifications: Experience in IT security and strong leadership skills required.

The predicted salary is between 55000 - 65000 € per year.

Overview

Some see chaos. We see the start of something big.

Challenges. Opportunities. Solutions. At Robertson, we see them our way. We’re bold enough to ask questions. Brave enough to look at things differently. Confident enough to be ourselves. Join us and you’ll join the UK’s largest family‑owned construction, infrastructure and support services business. And as Information Security Manager, you’ll be part of a team that’s doing incredible things – for ourselves, for the built environment around us, and for a truly sustainable future.

Your new role

The Information Security Manager will champion the Robertson IT and Information Security initiative across all Robertson companies to assure the security of our operations, data and technologies and that they align with and meet specific security standards and frameworks. This role is critical in maintaining Robertson's reputation for excellence and sustainability across all aspects of the business. The postholder will engage with a wide range of employees from different backgrounds and who have different levels of technical competencies.

DUTIES:

  • Develop and deliver the Information Security, Information Management and Business Defence Strategies across Robertson.
  • Project manage the implementation of ISO 27001 across Robertson businesses and lead the day-to-day management and ongoing improvement of the Robertson Information Security Management System.
  • Lead the Information Security Risk Management Committee, conducting risk assessments with the team, identifying controls and processes where improvements are required and escalating strategic risks to the Board as necessary.
  • Work with the Data Protection Advisor and Robertson businesses to continually improve compliance with UK data protection legislation as well as with our agreed contractual obligations.
  • Develop a culture of security and data protection awareness across all Robertson businesses by ongoing communication and provision of appropriate and relevant training to all employees.
  • Provide guidance across the company for all security requirements in complex IT environments.
  • Manage the ongoing reporting of IT Security, Information Security and Data Protection Compliance to managers and Executives.
  • Collaborate closely with the Robertson businesses to understand their operations and security needs/expectations.
  • Foster a culture of shared responsibility and compliance with data protection and risk management.
  • Provide ongoing support to ensure that Robertson Security standards are continuously met.
  • Develop and deliver a risk-based audit schedule deploying internal and external auditors as appropriate to assess the standard of information and IT security across Robertson to meet the requirements of ISO 27001, PCI DSS, NIST 800-53 and Cyber Essentials Plus.
  • Answer security questionnaires, assist in bid responses and develop cyber security plans as part of contract execution.
  • Work with Procurement teams to deliver a robust third‑party risk management framework which incorporates information and IT security.
  • Incident management – respond swiftly to all incidents ensuring that an appropriate response is put in place.
  • Carry out incident reviews where appropriate, document action plans and ensure lessons learned are shared with the IT community.
  • Lead the review and enhancement of policies, procedures, forms and guidance in IT and Information Security, Risk management, Training, Data protection etc. to ensure continuous improvement.
  • Publicise, advertise and evangelise IT and Information Security across Robertson.

QUALIFICATIONS/RELEVANT INDUSTRIAL EXPERIENCE:

  • To be an experienced Information, IT and Cyber security professional.
  • Previous responsibilities for developing, implementing and monitoring IT, Information and Cyber risk and security strategies within large and complex organisations.
  • Proven track record of delivering cost effective solutions to protect corporate assets and experience of achieving compliance against industry security standards such as ISO27001, PCI‑DSS, NIST 800 Series.
  • Demonstrable experience in Security Risk management.
  • Leadership experience with ability to mentor a team and to drive IT, Information and Cybersecurity awareness across an organisation.
  • In‑depth level of technical security knowledge including a broad awareness of emerging threats and trends.
  • Relevant security qualification e.g.: CISSP/CRISC/CISM/CISA etc.
  • Excellent communications and influencing skills, capable of engaging with a range of stakeholders on complex security issues to ensure change is adopted and sustained.
  • ITIL Certified and trained.
  • Prince 2 Project Management or equivalent.
  • Experienced auditor; Lead auditor preferred.
  • Knowledge and experience of data protection laws and regulations and of implementation of a Personal Information Management system.
  • Degree level or able to demonstrate the appropriate experience within an equivalent role.

Benefits of working with Robertson:

  • 33 days annual leave (pro‑rata for part time or FTC positions, increases with length of service)
  • Salary Sacrifice Pension Scheme
  • Life Assurance
  • Cycle to Work Scheme
  • Discounts (gym memberships, restaurants, days out etc.) with Hapi Rewards App
  • Annual Flu Vaccine
  • Access to E‑Learning
  • Health & Wellbeing Support
  • Life Management & Financial Support

Diversity & Inclusion:

When it comes to diversity and inclusion, we see things differently at Robertson. That’s why we’re working hard to create an environment where everyone can feel welcome, and where we can all be ourselves. We encourage applications from people of all races, ages, genders, religions, sexual orientations and more - so whoever you are, we hope you’ll see things our way, too.

This role will be subject to pre‑employment screening, including references. The level of screening may vary depending on role responsibilities and will be discussed at interview.

IT/Information Security Manager in Stirling employer: Robertson Group.

At Robertson, we pride ourselves on being the UK's largest family-owned construction and infrastructure business, offering a dynamic work environment in Stirling that fosters innovation and collaboration. As an Information Security Manager, you'll benefit from a supportive culture that prioritises employee growth, with access to extensive training and development opportunities, alongside a comprehensive benefits package including generous annual leave and health support. Join us to make a meaningful impact while working in a diverse and inclusive setting that values every individual.

Robertson Group.

Contact Detail:

Robertson Group. Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land IT/Information Security Manager in Stirling

Tip Number 1

Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their values and how they align with your own. This will help you answer questions confidently and show that you're genuinely interested in being part of their team.

Tip Number 3

Practice common interview questions and scenarios related to IT and information security. Role-play with a friend or use online resources to get comfortable with articulating your experience and skills.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are proactive about their job search.

We think you need these skills to ace IT/Information Security Manager in Stirling

Information Security Management
ISO 27001
Risk Management
Data Protection Compliance
Cyber Security
Incident Management
Stakeholder Engagement

Some tips for your application 🫡

Tailor Your CV:Make sure your CV speaks directly to the role of Information Security Manager. Highlight your experience with ISO 27001, risk management, and any relevant qualifications like CISSP or CISM. We want to see how your skills align with our needs!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to tell us why you’re passionate about information security and how you can contribute to our mission at Robertson. Be bold and let your personality come through!

Showcase Your Achievements:Don’t just list your responsibilities; showcase your achievements! Whether it’s leading a successful project or improving compliance rates, we want to know how you’ve made an impact in your previous roles.

Apply Through Our Website:We encourage you to apply through our website for a smoother application process. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates from us!

How to prepare for a job interview at Robertson Group.

Know Your Stuff

Make sure you brush up on the key security standards like ISO 27001, PCI-DSS, and NIST 800-53. Be ready to discuss how you've implemented these in past roles, as well as any challenges you faced and how you overcame them.

Show Your Leadership Skills

As an Information Security Manager, you'll need to lead a team and foster a culture of security awareness. Prepare examples of how you've mentored others or driven change in your previous positions. Highlight your ability to engage with diverse teams.

Communicate Clearly

You’ll be dealing with various stakeholders, so practice explaining complex security concepts in simple terms. Think about how you can convey your ideas effectively to non-technical audiences, as this will be crucial in your role.

Prepare for Scenario Questions

Expect questions that ask how you would handle specific security incidents or risk assessments. Think through potential scenarios and your responses, focusing on your problem-solving skills and ability to act swiftly under pressure.