Information Security Manager

Information Security Manager

Full-Time 65000 - 65000 £ / year (est.) No working from home possible
T

At a Glance

  • Tasks: Enhance information security frameworks and manage risks across the organisation.
  • Company: Join a leading mortgage provider with over 50 years of experience.
  • Benefits: Up to £65,000 salary, 26 days holiday plus birthday off, gym access, and local discounts.
  • Other info: Diversity and inclusion are celebrated; all backgrounds are welcome.
  • Why this job: Make a real impact on cybersecurity while working in a supportive team environment.
  • Qualifications: Experience in information security, risk management, and strong stakeholder engagement skills.

The predicted salary is between 65000 - 65000 £ per year.

Working Hours: Standard (09:00am-17:30pm)

Department: Cybersecurity

Office or Field Based: Office Based (Cheadle, SK8 3GW)

Contract type: Permanent

Compensation: up to GBP 65,000 - yearly

Company Description: Based on site in Cheadle (SK8 3GW) - Monday to Friday

  • 26 days holiday, and a day off for your birthday (increasing with service to 30 days), plus bank holidays
  • Free access to company holiday homes
  • Buy & sell holidays
  • Discretionary annual bonus plus an additional Shared Reward Bonus
  • Life assurance and Critical illness cover
  • Travel season ticket loans and Ride to work scheme
  • Free local gym access
  • Local bar / restaurant discounts

Job Description: Reporting to the Chief Information Security Officer, you will play a critical role in supporting the development and continuous improvement of our Information Security governance, risk management, and assurance framework. You will be a seasoned Information Security professional able to support and maintain governance and leading frameworks such as NIST CSF and the UK Cyber Assessment Framework (CAF) to identify, assess and manage risks across the Group. You will develop risk metrics (KPIs/KRIs), deliver security training and awareness programmes and lead third-party cyber, information and AI security due diligence. This would include ongoing monitoring of risks and incidents. The role also involves supporting audits, driving continuous improvement across policies and controls, and implementing monitoring solutions using Microsoft Purview and DLP. Working closely with the CISO and Cyber Security team, you will contribute to governance, reporting and incident response, while building strong stakeholder relationships across IT, Risk and the wider business.

In a nutshell, responsibilities include:

  • Maintain and enhance Information Security governance frameworks aligned to NIST CSF and CAF
  • Define and report on security risk metrics, KPIs and KRIs
  • Identify and assess Information Security risks across business and technology environments
  • Deliver engaging security awareness and training programmes
  • Conduct third-party cyber, information and AI security due diligence
  • Support audit and assurance activities, including evidence collation
  • Drive continuous improvement across policies, processes and controls
  • Support Microsoft Purview and DLP monitoring capabilities
  • Partner with the CISO on governance, reporting and incident response activities

Qualifications: You are a proactive and detail-oriented Information Security professional with experience working in regulated environments and a passion for improving security maturity.

  • Proven experience in third-party security due diligence
  • Experience delivering Information Security training and awareness
  • Hands-on experience with Microsoft Purview and DLP
  • Strong understanding of risk management and governance
  • Experience working within regulated environments
  • Experience developing policies, processes and standards
  • Knowledge of cloud and SaaS-based environments
  • CISM or equivalent certification
  • Strong presentation and stakeholder engagement skills
  • Experience reviewing technical security designs

Additional Information: If you feel you have some of the skills mentioned above, but not all, please do still apply and we would be happy to have a further discussion with you in regards to your suitability for the role. Together embraces diversity and inclusion, and are proud to be an equal opportunity workplace. Not only do we welcome difference – we celebrate it, support it and really value our colleagues for who they are. We are committed to building a team that represents a variety of backgrounds, perspectives and skills. If you feel you'd benefit from any support or reasonable adjustments during any stage of the recruitment process, please don’t hesitate to let us know when completing your application. This information will be picked up by our team, so we can try and put steps in place to help you be at your best through this process. Please note that all successful applicants will undergo relevant employment reference, financial and criminal record checks.

Information Security Manager employer: Together Recruitment

Together is an exceptional employer located in Cheadle, offering a supportive work culture that prioritises employee well-being and growth. With generous benefits including 26 days of holiday plus your birthday off, access to company holiday homes, and a commitment to diversity and inclusion, we empower our team to thrive both personally and professionally. Join us to be part of a collaborative environment where your contributions are valued and you can make a meaningful impact in the field of Information Security.

T

Contact Details:

Together Recruitment Recruitment Team

We think you need these skills to ace Information Security Manager

Information Security Governance
Risk Management
NIST Cybersecurity Framework (CSF)
UK Cyber Assessment Framework (CAF)
Security Risk Metrics (KPIs/KRIs)
Security Training and Awareness Programmes
Third-Party Security Due Diligence