At a Glance
- Tasks: Lead Yeo Valley’s Cyber and Information Security strategy to protect our systems and data.
- Company: Join Yeo Valley, a proud British brand dedicated to quality food and sustainability.
- Benefits: Enjoy competitive holidays, healthcare cashback, and learning opportunities.
- Why this job: Make a real impact on security while nurturing people and the planet.
- Qualifications: Proven experience in cyber security and strong knowledge of relevant standards.
- Other info: Be part of a dynamic team with excellent career growth potential.
The predicted salary is between 60000 - 75000 £ per year.
At Yeo Valley, we are here to Nurture & Nourish People & Planet by Making Great Food the Right Way. Forever. As a co-owned business, we invest in our people, encourage growth, and believe in doing things properly.
To lead Yeo Valley’s Cyber and Information Security function — ensuring our systems, data, and people remain secure while enabling the business to operate efficiently and confidently. You’ll own and deliver the organisation’s cyber and information security strategy, manage the protection and monitoring of our technology estate, and embed a strong culture of security awareness across all teams. Working closely with IT, data, and operational leaders, you’ll ensure our defences are robust, risks are managed proactively, and Yeo Valley remains compliant with all relevant standards and regulations.
Your Responsibilities
- Design, own and lead the Cyber and Information Security strategy, aligning it to Yeo Valley’s wider business and IT objectives.
- Design, implement, and manage security controls, processes, and technologies that protect the confidentiality, integrity, and availability of information assets.
- Own the Information Security Management System (ISMS), ensuring compliance with relevant frameworks as deemed appropriate.
- Oversee incident response and threat management, leading investigations and coordinating with IT and external partners to contain, resolve, and learn from security incidents.
- Maintain proactive awareness of the external threat landscape, staying informed on emerging risks, vulnerabilities, and trends. Translate this intelligence into actionable improvements to strengthen Yeo Valley’s defences.
- Monitor and report on security posture, using metrics and dashboards to inform the business and executive team of risk levels, improvements, and vulnerabilities.
- Define and own the vulnerability management process, ensuring regular assessments, patching, and remediation of security weaknesses across the estate.
- Lead supplier assurance and third-party risk management, ensuring external partners meet Yeo Valley’s security requirements.
- Work closely with IT infrastructure and delivery teams to ensure new systems, applications, and solutions are secure by design.
- Create and embed a culture of security awareness, running training, communications, and engagement programmes to upskill colleagues.
- Support business continuity and disaster recovery planning, ensuring security requirements are embedded in wider IT resilience activities. Coach and enable the Cyber Security Engineer to contribute to develop the business continuity plan for cyber incidents.
Essential
- Proven experience in leading or managing information and cyber security operations.
- Strong knowledge of information security standards, frameworks, and regulations (e.g. ISO27001, NIST, Cyber Essentials Plus, GDPR).
- Experience developing and implementing security strategies, policies, and controls across hybrid IT environments.
- Demonstrated ability to manage incidents, risks, and vulnerabilities effectively.
- Excellent communication and influencing skills, capable of engaging both technical and non-technical stakeholders.
- Experience managing security suppliers, SOC providers, or MSSPs.
Desirable
- Experience in manufacturing, FMCG, or supply chain environments.
- Hands-on knowledge of modern cloud and on-premises security tooling (Microsoft 365 Defender, Sentinel, Azure, Fortinet, etc.).
- Security certifications (e.g. CISSP, CISM, CompTIA Security+, ISO27001 Lead Implementer).
- Understanding of disaster recovery, business continuity, and risk management.
We’re independent, British and proud to be making the highest quality yogurts, desserts and ice cream under the Yeo Valley brand and for many of the UK’s major retailers. Operating from four dairies and two logistics centres in Somerset and Devon, we employ over 1900 staff and produce more than 25% of the UK’s packaged yogurt.
Benefits
We offer a whole host of benefits including:
- Competitive holiday allowance
- Non-contributory pension scheme
- Life cover
- Healthcare cash back plan
- Cycle to work scheme
- Subsidised Yeo Valley products and services
- Preferential rates with our partners
- Learning and development opportunities; we’re committed to ensuring all of our employees have the chance to grow
Our closing dates are a guide for when the application window should close, although we may close the advert sooner if we can. So, we recommend you get your application in straight away - and don’t miss the opportunity to join us!
Unfortunately, we’re not able to provide employment sponsorship to candidates at this moment in time. Please note that Yeo Valley do not accept speculative agency applications; we will only accept applications from preferred suppliers that have been submitted to us via our recruitment portal at the point of instruction.
Cyber & Information Security Manager in Highbridge employer: Yeo Valley Production Ltd
Contact Detail:
Yeo Valley Production Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber & Information Security Manager in Highbridge
✨Tip Number 1
Get your networking game on! Connect with folks in the cyber and information security field, especially those who work at Yeo Valley or similar companies. Attend industry events, webinars, or even local meetups to make those valuable connections.
✨Tip Number 2
Prepare for interviews like a pro! Research Yeo Valley’s values and their approach to security. Be ready to discuss how your experience aligns with their mission to nurture and nourish people and the planet while keeping their systems secure.
✨Tip Number 3
Show off your skills! If you’ve got hands-on experience with tools like Microsoft 365 Defender or Azure, be sure to highlight that. Share specific examples of how you’ve implemented security strategies or managed incidents in past roles.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining the Yeo Valley team and contributing to their mission.
We think you need these skills to ace Cyber & Information Security Manager in Highbridge
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber & Information Security Manager role. Highlight your relevant experience and skills that align with Yeo Valley's needs, especially in security strategy and compliance.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how you can contribute to Yeo Valley’s mission of nurturing and nourishing people and the planet.
Showcase Your Achievements: Don’t just list your responsibilities; showcase your achievements in previous roles. Use metrics or examples to demonstrate how you've successfully managed security incidents or improved security posture.
Apply Through Our Website: We encourage you to apply through our website for the best chance of being noticed. It’s the easiest way for us to keep track of your application and ensure it gets to the right people!
How to prepare for a job interview at Yeo Valley Production Ltd
✨Know Your Cyber Security Standards
Familiarise yourself with key information security standards like ISO27001 and GDPR. Be ready to discuss how these frameworks apply to Yeo Valley's operations and how you can ensure compliance while aligning with their business objectives.
✨Showcase Your Incident Management Skills
Prepare examples of past incidents you've managed, focusing on your approach to threat detection and response. Highlight how you coordinated with teams to resolve issues and what you learned from those experiences to improve future security measures.
✨Communicate Effectively with All Stakeholders
Practice explaining complex security concepts in simple terms. Yeo Valley values strong communication skills, so be ready to demonstrate how you can engage both technical and non-technical stakeholders in fostering a culture of security awareness.
✨Stay Updated on Emerging Threats
Research current trends in cyber threats and vulnerabilities relevant to the food manufacturing sector. Bring insights to the interview about how you would proactively address these risks and enhance Yeo Valley’s security posture.