Information Security Manager in England
Information Security Manager

Information Security Manager in England

England Full-Time 36000 - 60000 ÂŁ / year (est.) No home office possible
Go Premium
S

At a Glance

  • Tasks: Lead the information security strategy and manage a dynamic team in a fast-paced environment.
  • Company: Join Stewarts, a leading law firm with a strong focus on innovation and security.
  • Benefits: Enjoy competitive salary, professional development, and a supportive work culture.
  • Why this job: Make a real impact by safeguarding information and leading security initiatives.
  • Qualifications: Experience in information security management and strong leadership skills required.
  • Other info: Opportunity for career growth in a collaborative and engaging workplace.

The predicted salary is between 36000 - 60000 ÂŁ per year.

We are looking for an Information Security Manager to join our IT team in London.

Job Responsibilities

  • Develop and deliver the firm’s information security strategy and roadmap.
  • Provide subject matter expertise and guidance on information security to partners and staff.
  • Lead and mentor a small team, fostering professional growth and development.
  • Lead the implementation and ongoing management of ISO 27001, including policy and control implementation and stakeholder engagement.
  • Own the information security risk management process, including risk assessment, and risk/information asset register maintenance.
  • Lead the development, implementation, and review of security policies, standards, and procedures.
  • Ensure compliance with ISO 27001 and Cyber Essentials Plus.
  • Oversee third-party risk management, including onboarding/offboarding and ongoing due diligence.
  • Coordinate and respond to client audits and assurance activities.
  • Maintain awareness of the current cyber-risk landscape for the firm and factor into the annual strategic cyber-plan.

Security Operations

  • Own and manage the relationship with the firm’s Managed Security Operations Centre (SOC), acting as the primary point of contact, ensuring service levels are met, and coordinating incident response.
  • Oversee operational security including server and endpoint protection, M365 security, identity and access management, vulnerability assessments, patching, and system hardening.
  • Manage security monitoring activities and support business continuity and disaster recovery initiatives.
  • Monitor emerging threats advising the business on risk and required actions.
  • Renew the firm’s Cyber Essentials Plus certification on an annual basis.

Security Projects

  • Lead the delivery of security projects, ensuring they are completed on time, within scope, and aligned with the firm’s strategic objectives.
  • Collaborate with project managers and business stakeholders to integrate security requirements into both IT and non-IT projects ensuring Secure by Design principles are embedded from the outset.
  • Work with cross-functional teams to identify, assess, and mitigate security risks in business initiatives.

Stakeholder Engagement & Communication

  • Act as the primary point of contact for information security matters across the business.
  • Develop and deliver security awareness training for partners and staff.
  • Represent the firm in external security forums and with clients as required.
  • Prepare quarterly information security management reports for the CIO and Executive Committee.

Key Skills and Experience

  • Extensive experience in information security management, ideally within professional services environments.
  • Proven management capabilities, including team management and effective stakeholder engagement.
  • Hands-on expertise in ISO 27001 implementation and certification, from development through to successful audit.
  • Experience of successfully completing Cyber Essentials Plus audits and a solid understanding of UK GDPR requirements.
  • Demonstrated ability to manage third-party security relationships.
  • Strategic, pragmatic, and business-aligned approach to security risk management and decision-making.
  • Highly desirable certifications such as CISM, CISSP, or ISO 27001 Lead Implementer.

Broad Technical Proficiency Across

  • Endpoint Security: EDR solutions and endpoint management platforms.
  • Microsoft 365 / Entra ID: Identity protection, Conditional Access, MFA, and Privileged Identity Management (PIM).
  • Security Monitoring & Operations: SIEM platforms and SOC processes.
  • Network Security: Firewalls, web application firewalls, and VPN technologies.
  • Encryption: PKI and data encryption for both data at rest and in transit.
  • Email Security: Mimecast and Exchange Online, Tessian plus SPF/DKIM/DMARC configuration.
  • Backup and Recovery Systems: On-premise and Cloud backup solutions.
  • Experience of project management disciplines (e.g. Prince2, Agile) are desirable.

Well organised, uses initiative, prioritises appropriately, applies self, shows attention to detail, manages own workload and meets deadlines. Demonstrates excellent communication and interpersonal skills (respectful, positive, articulate, professional and sympathetic). Delivers helpful internal services with a “can do” approach, shows commercial awareness and represents the department/firm appropriately. Shares information and ideas. Accepts and follows instructions, listens, makes notes, questions appropriately, co-operates. Shows sound judgement and decision-making skills; acts within boundaries. Shows commitment, passion and enthusiasm. Is a respectful, reliable and supportive team player. Reflects the firm’s culture.

Seniority level: Mid-Senior level

Employment type: Full-time

Job function: Legal and Information Technology

Location: London, England, United Kingdom

Information Security Manager in England employer: Stewarts

Stewarts is an exceptional employer, offering a dynamic work environment in the heart of London where innovation and professional growth are at the forefront. As an Information Security Manager, you will lead a dedicated team while benefiting from a culture that prioritises collaboration, continuous learning, and a commitment to excellence in information security practices. With comprehensive training opportunities and a focus on employee well-being, Stewarts ensures that you can thrive both personally and professionally in your role.
S

Contact Detail:

Stewarts Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Manager in England

✨Tip Number 1

Network like a pro! Attend industry events, webinars, and meetups to connect with folks in the information security field. You never know who might have the inside scoop on job openings or can refer you directly to hiring managers.

✨Tip Number 2

Showcase your expertise! Create a personal website or LinkedIn profile that highlights your skills in ISO 27001, Cyber Essentials Plus, and other relevant areas. Share articles or insights about current cyber threats to demonstrate your knowledge and passion for the field.

✨Tip Number 3

Prepare for interviews by practising common questions related to information security management. Be ready to discuss your experience with risk assessments and stakeholder engagement, as well as how you've led teams in past roles. Confidence is key!

✨Tip Number 4

Apply through our website! We love seeing candidates who are genuinely interested in joining our team. Tailor your application to highlight your hands-on experience with security projects and your strategic approach to risk management.

We think you need these skills to ace Information Security Manager in England

Information Security Management
ISO 27001 Implementation
Cyber Essentials Plus Compliance
Risk Management
Security Policy Development
Stakeholder Engagement
Team Leadership
Incident Response Coordination
Endpoint Security Management
Microsoft 365 Security
SIEM Platforms
Network Security
Data Encryption
Project Management
Communication Skills

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Information Security Manager role. Highlight your experience with ISO 27001 and Cyber Essentials Plus, as well as any relevant certifications like CISM or CISSP. We want to see how your skills align with our needs!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how you can contribute to our team. Be sure to mention specific projects or experiences that relate to the job description.

Showcase Your Leadership Skills: Since this role involves leading a small team, make sure to highlight your management experience. Share examples of how you've mentored others and fostered professional growth in previous roles. We love seeing candidates who can inspire and lead!

Apply Through Our Website: We encourage you to apply directly through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to submit all your documents in one go. Plus, we love seeing applications come through our own platform!

How to prepare for a job interview at Stewarts

✨Know Your ISO 27001 Inside Out

Make sure you’re well-versed in ISO 27001 standards and how they apply to the role. Be ready to discuss your experience with implementation and audits, as this will show your expertise and readiness to lead the firm’s compliance efforts.

✨Showcase Your Leadership Skills

Prepare examples of how you've successfully led teams in the past. Highlight your mentoring abilities and how you've fostered professional growth within your team. This will demonstrate that you can effectively manage and inspire others in the role.

✨Understand the Cyber-Risk Landscape

Stay updated on current cyber threats and be prepared to discuss how these could impact the firm. Showing that you can factor these risks into strategic planning will impress interviewers and prove your proactive approach to security.

✨Engage with Stakeholders

Think about how you’ve engaged with various stakeholders in previous roles. Be ready to share specific instances where you’ve communicated complex security concepts clearly and effectively, as this is crucial for the position.

Information Security Manager in England
Stewarts
Location: England
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

S
  • Information Security Manager in England

    England
    Full-Time
    36000 - 60000 ÂŁ / year (est.)
  • S

    Stewarts

    200+
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>