Let us know you agree to cookiesWe use cookies to provide you with the best possible browsing experience on our website. You can find out more here.
Cookies are small text files that can be used by websites to make a user's experience more efficient. The law states that we can store cookies on your device if they are strictly necessary for the operation of this site. For all other types of cookies we need your permission. This site uses different types of cookies. Some cookies are placed by third party services that appear on our pages.
+Essential
Essential cookies let you move around the website and use essential features such as secure areas. We use Essential cookies to: Remember information that you have entered on web order forms when you visit different pages in the same session. Balance the overall volume of website visitors between our computer servers. These cookies will not be used to gather information that could be used for marketing or to remember visitor information outside of a single session.
ResolutionUsed to ensure the correct version of the site is displayed to your device.
SessionThese cookies allow the website to keep track of the pages you visit, so that you don’t have to repeatedly enter the same information during one session, or on each new visit.
rm-cookies-consent
Cloudflare
VimeoWe use Vimeo to embed videos on our website, and these videos may set essential cookies that ensure secure video playback. These cookies are necessary for the secure operation of the video player and help manage requests and prevent misuse. No additional tracking or analytics cookies are applied via this function.

+Analytics and advertising
Advertising cookies are employed to deliver advertisements that are more relevant to you and your interests. These cookies track your online behaviour, such as the pages you visit, the products you view, and the links you click. The information collected is used to display targeted advertisements across websites, aiming to provide you with content that aligns with your preferences. Advertisers may also use these cookies to measure the effectiveness of their campaigns. Rest assured, we prioritise your privacy, and these cookies do not store personally identifiable information. If you choose to allow advertising cookies, you may receive a more personalised and engaging advertising experience while using our website.
Google AnalyticsWe employ Google Analytics as a third-party analytics service. This helps us analyse how users interact with our website. Google Analytics IP address anonymisation is also employed, meaning we do not store personal information.
Yes
No

Apply0saved jobsaved jobsViewView all

Job search

Information Technology & Digital
Contractor
2025-05-14 03:00:24RX HealthcareCompany Logo

Information Security Manager

Ref: 4bd6251684e84a3bb1c0ab28771e34bd
Sanderson Recruitment Plc
Information Technology & Digital
Competitive
Reporting into the Group Head of Information Security you will work as part of their Information Security governance and oversight team. This technically focused role includes delivering their Information Security services (such as consultancy, assurance reviews and risk management) and providing governance and oversight across the business to effectively manage Information Security and Cyber risk. The role will suit someone with a strong technical security knowledge who also has a strong focus towards governance, risk and compliance., * You'll play a key part in the implementation and maintenance of established control frameworks such as ISO27001 and PCI-DSS and other relevant security frameworks, including the creation of policies standards and other documentation.
* You'll lead the governance, oversight and assurance on technical security controls and technical design on both new and existing solutions in the network and application portfolio.
* You'll act as an Information Security consultant to the rest of the business and represent Information Security in key forums, e.g. Project teams, Technical Design Authority, Agile Scrum teams, to ensure that technical security standards are met and adhered to.
* You'll work with stakeholders to ensure that technical security patterns, standards and sub-standards are developed and maintained.
* You'll lead and further develop and mature their extensive Pen testing & other testing programmes.
* You'll undertake assurance reviews and assessments, including 3rd Parties, new technical solutions and processes and produce relevant recommendations and reporting.
* You'll understand the business and information risk context, proactively work with teams to develop architectures and countermeasures which mitigate risks to an acceptable level.
* You'll perform information security risk assessments for change, processes and new solutions, etc, producing recommendations and reporting. Contribute to the running of the Information Security risk processes.
* Ongoing identification of emerging security threats through regular engagement with control and risk owners, coupled with external security trends, horizon scanning and analysis.
* You'll contribute to and deliver appropriate security awareness activities and promote good security practice in order to improve Security culture across the business.
Are you an experienced Information Security Manager with a strong technical security background and a strong GRC focus? If so, this could be the ideal opportunity for you. My client, a specialist financial services business with an excellent reputation, is currently investing within their Information/Cyber Security team. As part of this investment, they are looking to hire a Technical Information Security Manager to join the team., * Proven background within a similar Technical Information Security Manager position. * Extensive Information & IT Cyber Security experience. * Experience of maturing extensive Pen test & other testing programmes. * Proficiency in technical security controls and frameworks, including experience and proficiency in cloud security. * Experience and expertise in Azure environment security, vulnerability management and associated processes. * Detailed knowledge of Information Security frameworks and standards, in particular PCI-DSS and ISO27001. * Proven track record of undertaking control assurance reviews against best practice standards and identifying gaps. * Suitable qualifications, e.g. CRISC, CISM, CISSP * Excellent communication and interpersonal skills, both verbal and written. * Excellent stakeholder management skills. * Excellent analytical skills * Excellent organisational skills.
West Sussex, England
Sanderson Recruitment Plc
Information Technology & Digital
Competitive
Apply
Apply