InfoSec Manager - Governance, Risk & Compliance

Leeds
2 weeks ago
Create job alert

Are you an experienced Information Security Manager looking for your next challenge?

I'm currently working with a leading company in the energy sector who are looking for an Information Security Manager to join the team and lead them through a number of new projects. They are looking to innovate and drive the future of energy, ensuring safety, security, and efficiency in everything they do.

As the Information Security Manager you will oversee the risk management and IT security governance. In this role, you'll develop and implement security processes and policies, ensuring their systems are secure and compliant with industry standards.

What you'll do:

Manage risk and IT security governance, including compliance with standards like ISO27001.
Conduct technical and non-technical risk assessments and monitor compliance with security policies.
Lead internal and external audits, ensuring timely resolution of any issues.
Develop business continuity plans, working with emergency planning teams.
Regularly review and update security policies and procedures.
Manage relationships with security vendors and contractors.
Support the delivery of security regulatory and project assurance.
Continually improve security processes and compliance initiatives.
Deputise for the Head of Cyber Security when needed.What you'll need:

Knowledge of information security risk management (e.g. ISO27001).
IT/IS security qualifications such as CISSP.
Certified Information Systems Auditor (CISA).
Experience with ISO27001, ISO27002, and GDPR.
Understanding of security controls and their effectiveness.
Familiarity with assurance frameworks.
Experience in delivering information security certification and maintaining compliance.
Experience in creating and reviewing IS security policies.
High-level understanding of operational technology systems and their risks.
Ability to obtain UK security clearance and have been a UK resident for 5 years or more.What you'll get:

Up to £75,000 salary DOE.
Annual bonus up to 15%.
Flexible hours and hybrid working.
Up to 12% Employer contribution pension.
25 days holiday (increases with service).
Car allowance/company car scheme.
And many more such as healthcare, course fees etc.Clearance Requirements: Due to the nature of this role, the successful candidate must be eligible for security clearance. To qualify, you must have lived permanently in the UK for 5 years or more.

If you meet a handful of the above requirements and are interest in the role then please apply and I will be in touch shortly to discuss the role in more detail.

To find out more about Computer Futures please visit

Computer Futures, a trading division of SThree Partnership LLP is acting as an Employment Business in relation to this vacancy | Registered office | 8 Bishopsgate, London, EC2N 4BQ, United Kingdom | Partnership Number | OC(phone number removed) England and Wales

Related Jobs

View all jobs

InfoSec Manager - Governance, Risk & Compliance

Information Security Manager

Information Security Senior Manager

Cyber Security Operations Engineer

Senior Product Security Engineer

Security of Operations Threat Detection Analyst

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Transitioning from Academia to the Cyber Security Industry: How Researchers Can Harness Their Skills to Protect Commercial Environments

Cyber security has become a mission-critical field in an era where data breaches, ransomware attacks, and sophisticated hacking techniques threaten businesses and public institutions alike. As digital transformation touches nearly every facet of modern life, the need for highly skilled individuals capable of defending systems and networks continues to grow. For PhDs and academic researchers with expertise in areas like cryptography, network security, or threat intelligence, this presents an exciting opportunity to deploy your analytical prowess in a high-impact, fast-paced commercial setting. In this guide we’ll explore how academics can successfully pivot from the research lab to the cyber security industry. Learn how to apply rigorous, theory-driven approaches to real-world challenges, from designing secure software architectures to neutralising advanced persistent threats. By embracing the industry’s urgency and end-to-end mindset, you can transform your scholarly insights into robust, market-facing security solutions that protect companies and users on a global scale.

Which Cyber Security Career Path Suits You Best?

Discover Your Ideal Role in the World of Digital Defence Cyber threats grow more complex by the day—ranging from sophisticated nation-state attacks to persistent phishing scams. In response, cybersecurity has become one of the fastest-expanding and most in-demand fields. If you’re exploring a career in cybersecurity, you might wonder which specialised role aligns best with your skills and aspirations. This quiz will help you identify your ideal cybersecurity path, from penetration testing to threat intelligence and beyond.

The Ultimate Glossary of Cyber Security Terms: Your Comprehensive Guide to Protecting the Digital World

As our daily lives become increasingly entwined with digital technologies, cybersecurity has emerged as one of the most critical and rapidly evolving fields. From safeguarding personal data on social media to protecting vital infrastructure and corporate networks, cyber threats loom in every corner of our connected world. Whether you’re just entering the workforce, looking to pivot your career, or a seasoned professional sharpening your skill set, understanding core terminology is essential to thrive in this domain. That’s why we’ve prepared this comprehensive glossary of cybersecurity terms and optimised for your career development. We’ll walk through the building blocks of cybersecurity—covering fundamental concepts, advanced techniques, and the latest trends—so you can confidently navigate this complex landscape. If you’re keen to explore or advance your career, be sure to check www.cybersecurityjobs.tech for roles spanning penetration testing, incident response, threat intelligence, and more.