Information Security Manager
Overview of the Opportunity
Our client is seeking an experienced Information Security Manager to lead and continuously enhance its cyber security, information governance and compliance capabilities across a complex operational environment.
This is a senior leadership opportunity responsible for protecting critical digital assets, strengthening organisational resilience, and ensuring compliance with evolving regulatory and industry standards. Working closely with stakeholders across technology, operations, risk and compliance functions, you will play a key role in shaping security strategy, managing cyber risk and fostering a strong security-conscious culture throughout the business
Key Responsibilities
- Lead the organisation's cyber security, information security and compliance programmes.
- Develop, implement and enforce security, data protection and governance policies.
- Manage cyber incident response processes, ensuring effective detection, investigation and remediation of security events.
- Conduct risk assessments, vulnerability reviews, audits and gap analyses to identify and mitigate security risks.
- Maintain oversight of cyber security risk registers and support enterprise risk management activities.
- Ensure compliance with relevant security frameworks, standards and regulatory requirements.
- Drive security awareness initiatives, developing and delivering training programmes across the organisation.
- Prepare and present security, compliance and risk reports to senior leadership teams.
- Manage third-party security partners, audits and assurance activities.
- Lead and develop a specialist information security team, providing coaching, mentoring and performance management.
- Champion continuous improvement, identifying opportunities to strengthen security controls, processes and overall organisational resilience
Experience / Attributes required
- Proven experience leading cyber security, information security or compliance functions within a medium to large organisation.
- Strong knowledge of cyber security frameworks, governance principles and regulatory compliance requirements.
- Experience managing cyber risk registers, security metrics and compliance reporting.
- Demonstrable track record of delivering security improvement initiatives and managing external audits.
- Strong understanding of information security management systems and security assurance processes.
- Experience leading and developing high-performing teams.
- Excellent stakeholder management and communication skills, with the ability to influence at all levels of an organisation.
- Commercially minded with a proactive and solutions-focused approach to risk management.
- Relevant professional certifications such as CISSP, CISM, CISA or equivalent would be advantageous.
- Passionate about promoting a culture of security awareness, continuous improvement and operational excellence
IT Contract
Newcastle Office
DD: +44 191 269 0686
M: +44 752 581 3551
E: megan.tyrrell@nigelwright.com