Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailThe Information Security Manager will play a crucial role in protecting the confidentiality integrity and availability of our systems and data. Youll work across the business to support secure delivery of projects conduct thorough risk assessments oversee thirdparty security engagements and contribute to shaping our evolving security posture.
This is a handson role ideal for someone who enjoys both strategic thinking and rolling up their sleeves to get things done.
Responsibilities:
Advise and support project teams to embed security best practices throughout the project lifecycle.
Scope manage and track remediation of penetration testing and vulnerability assessments.
Maintain application security processes standards and guidelines. Translate application security policies into security requirements.
Conduct and document security risk assessments on changes threats vulnerabilities and new initiatives.
Perform thirdparty vendor risk assessments and ongoing security reviews.
Assist in identifying and assessing new security technologies and vendors.
Lead or support the response to security incidents including investigation containment root cause analysis and reporting. Work with internal teams to continuously improve incident response processes.
Support compliance and alignment with ISO 27001 Cyber Essentials SWIFT NIST and other relevant frameworks.
Communicate effectively with various stakeholders including engineers product managers operations team senior management and auditors about the information security posture risks and mitigation strategies.
Qualifications :
Experience:
Minimum of 8 years experience in information security roles ideally in the financial sector.
Experience working with ISO 27001 Cyber Essentials and preferably NIST CSF SOC 2 or SWIFT frameworks.
Strong understanding of security in the context of software development and application security (OWASP SDLC DevSecOps).
Handson pragmatic approach with the ability to operate in a lean fastpaced environment.
Excellent communication skills with the ability to engage both technical and nontechnical stakeholders.
Innovative mindset with a passion for staying current in the everevolving cyber landscape.
Experience working in or with regulated financial institutions is desirable.
Additional Information :
Remote Work :
No
Employment Type :
Fulltime
Full-time