At a Glance
- Tasks: Lead and enhance our Information Security Management System to protect vital data.
- Company: Join a rapidly growing tech company shaping the future of transport technology.
- Benefits: Flexible working hours, 25 days holiday, and a competitive benefits package.
- Other info: Opportunity to influence security practices at a Group level.
- Why this job: Make a real impact on information security in a collaborative environment.
- Qualifications: Strong knowledge of ISO 27001 and experience in information security governance.
The predicted salary is between 60000 - 75000 £ per year.
Our talented people are creating the technology of the future. From scheduling to maintenance to keeping people safe, 2.7 million people are helped by our software daily. Technology makes it possible; people make it happen and you could be part of that.
The Tracsis Group has grown rapidly, diversifying into related transport technologies, and successfully executing a strategy that has seen it make a total of seventeen acquisitions. Today Tracsis is a leading provider of software, hardware, data analytics/GIS and services for the rail, traffic data and wider transport industries. The Group has c.550 permanent employees serving its growing customer base from offices in the UK, Ireland and the US.
The Role
We’re looking for an ISMS Manager to take ownership of our Information Security Management System (ISMS) and help us continually strengthen our approach to information security across the Group. This is a key governance role, responsible for ensuring our ISMS remains effective, proportionate, and aligned with ISO 27001, contractual obligations, and wider business objectives. You’ll work closely with stakeholders across the business, providing practical guidance, coordinating assurance activities, and supporting a strong security-aware culture.
What you will do
- Own and maintain the Group ISMS, ensuring ongoing alignment with ISO 27001 and relevant legal, regulatory, and contractual requirements.
- Coordinate information security risk management activities, including risk identification, assessment, treatment and reporting.
- Develop, review and maintain group-wide information security policies, standards and supporting procedures.
- Prepare for, coordinate and support internal audits, external certification audits and management reviews.
- Oversee the information security incident management framework, ensuring incidents are logged, investigated and lessons learned.
- Provide pragmatic, business-focused information security advice to teams across the Group.
- Promote information security awareness and support onboarding and training activities.
- Act as a key point of contact for external parties such as auditors, consultants, suppliers and managed service providers.
What we’re looking for
- You’ll bring a strong grounding in information security governance, along with the ability to balance assurance with practical delivery.
- Good working knowledge of ISO 27001 and information security management principles.
- Experience operating or supporting a management system within a multi-business or group environment.
- Strong documentation, coordination and stakeholder engagement skills.
- A pragmatic mindset, able to translate security requirements into workable, business-aligned solutions.
- Opportunity to shape and influence information security at a Group level.
- Collaborative culture with supportive stakeholders.
- A role that blends governance, improvement and real-world problem solving.
- Flexible working options and a competitive benefits package.
Ready to make an impact? Apply now to join a forward-thinking team shaping the future of Rail Technology and Services. Flexible working hours to support work-life balance. 25 days holiday +
Information Security Manager in London employer: Tracsis
At Tracsis Group, we pride ourselves on being an excellent employer, offering a collaborative culture that empowers our employees to shape the future of transport technology. With flexible working options, a competitive benefits package, and ample opportunities for professional growth, we ensure that our team members thrive in a supportive environment while making a meaningful impact in the industry. Join us in our mission to enhance safety and efficiency for millions of users daily.
StudySmarter Expert Advice🤫
We think this is how you could land Information Security Manager in London
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Tracsis, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Tracsis
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Tracsis. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Information Security Manager in London
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Tracsis insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Tracsis that you’re committed to staying ahead in the game.
How to prepare for a job interview at Tracsis
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Tracsis to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Tracsis.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.