About this role
Salary: £50,000 - 52,000 per year
Requirements: 3+ years experience in an IT operational role.3+ years experience within an Enterprise Information Security environment.5+ years experience working with Microsoft Information Security tools, with demonstrable improvements to compliance posture.3+ years experience working within an ISO27001 and Cyber Essentials Plus accredited environment.Strong Governance, Risk & Compliance (GRC) experience.Excellent analytical, troubleshooting and problem-solving skills.Strong leadership, communication and stakeholder-management abilities.Experience managing multiple projects and change initiatives concurrently.A strong understanding of IT service management, ideally including ITIL.Experience working with multiple security and technology toolsets.Ideally, hold or have equivalent knowledge of Microsoft Information / Compliance product administration.Ideally, hold or have equivalent knowledge of ITIL Foundation.Ideally, hold or have equivalent knowledge of Information Security certifications or training.Ideally, hold or have equivalent knowledge of ISO27001 Foundation, Auditor or Implementer.Ideally, hold or have equivalent knowledge of CISSP or CISM.Experience with Microsoft Purview, Cyera, Entra, Defender Security and Copilot would also be highly valuable. Responsibilities: Develop, implement and maintain information security policies, procedures and governance frameworks.Manage the security risk register, conduct risk assessments, audits and compliance testing.Maintain and support ISO27001, GDPR and Cyber Essentials Plus compliance.Lead Information Security input into projects, new services and business processes, including DPIAs and security assessments.Manage Business Continuity and Incident Response policies, exercises and improvements.Deliver security projects, governance controls and ongoing improvements through to full adoption.Advise and educate stakeholders across the business to build a strong security-aware culture.Produce management information, executive reports and regular updates for senior stakeholders. Technologies: CopilotSupportITILSecurity More:
We are seeking an experienced Information Security Manager to join our Group IT team in a hands-on role focused on strengthening information security, governance, risk and compliance across the business. This is a 5-day per week office-based position in Central London, with occasional travel to other company locations as required. You will work closely with the Senior Information Security Manager and Cyber Security Manager in a role that involves supporting compliance, delivering security improvements and contributing to a strong security culture.
last updated 35 week of 2026