Information Security Manager

4 weeks ago


Cheltenham, United Kingdom Sanderson Full time

**Information Security Manager**

**Cheltenham - Hybrid Working (1 or 2 days per week in the office)**

**£60,000 - £65,000 + Benefits**

Fantastic new permanent opportunity for an experienced Information Security Manager with a strong background within governance, risk and compliance. My client is a specialist engineering/manufacturing business based in Cheltenham who are looking to developand expand their Information Security and Cyber Security teams.

As Information Security GRC Manager you will lead an energetic, dynamic, team of Information Security professionals supporting a global business and internal customer base. You will provide the guidance and advice to the business to support their governance,compliance and privacy risk reduction requirements. Reporting into the Group Head of Information Security, you will help design and support the Information Security Management System, compliance and risk reduction initiatives which includes educating the businessin simple terms via a series of enterprise training & awareness initiatives.

**Main responsibilities**:

- Plan and execute the Group security and compliance audits/assessments, following up with partners as required.
- Plan and maintain a central repository of customer security and compliance questions and projects.
- Develop and monitor the security and compliance queue for incoming customer requests (security evaluations or questions), ensuring that a ticket is created/maintained for all requests.
- Develop and deliver weekly stats and relevant metrics across the GRC team capability stack.
- Plan, build and run an enterprise training & awareness program to educate the business on security risks.
- Support the Group Head of Information Security in the management and maintenance of the Information Security Management System (ISMS) to advance the business's compliance accreditations such as Cyber Essentials, CMMC (US) or MLPS (China).
- Plan, build, develop the GRC team process and procedure documentation.
- Plan, build, develop playbooks for GRC standard operating procedures.
- Build and maintain repository of standard responses for customer compliance assessments.
- Plan, build, run a capability delivering customer security assessment questionnaires quickly and accurately.
- Plan, build, run the vulnerability management service including risk reduction measures and providing metrics to develop outcomes.

**Skills Required**:

- Proven experience of working within a similar Information Security Lead or Manager position.
- Proven experience participating in customer security assessments, and other forms of security and compliance oversight.
- Working knowledge of Information Security Management Systems (ISMS) and popular frameworks such as ISO 27001, NIST CSF, CIS 18 Controls.
- Experience planning, developing and delivering training & awareness programs that are business friendly.
- Knowledge of regulatory compliance and privacy standards including GDPR and related sensitive data types.
- Proven experience planning, building, and delivering audits, assessments, and other forms of security and compliance oversight.
- A firm understanding of the differences and relationships between security, risk, compliance, and privacy principles.
- Experience with leveraging GRC tools for internal use and in managing third-party risk including building processes and procedures to do so.
- Strong initiative, proactive, enthusiastic, drive and desire to learn continuously.
- Comfort with change and a fast-paced environment.

For any further queries regarding the role, please contact Danny Palmer on or at



  • Cheltenham, United Kingdom Opus Recruitment Solutions Ltd Full time

    **Information Security Officer | Part-Time | Remote** **ISO 27001 | ISO | NIST** My client is a small financial services company looking for an Information Security Officer to come and maintain the systems of the company. This role is perfect for someone who is looking to take a step back in their career, or perhaps require increased flexibility!! You will...


  • Cheltenham, United Kingdom Salus Cyber Full time

    This role's purpose is to identify, assess, and mitigate risks, both internally and for our clients. This includes aligning client policies, processes, and procedures to best practices and ensuring that any network that requires it follows the principles of Secure by Design.Increase your chances of an interview by reading the following overview of this role...


  • Cheltenham, United Kingdom Salus Cyber Full time

    This role's purpose is to identify, assess, and mitigate risks, both internally and for our clients. This includes aligning client policies, processes, and procedures to best practices and ensuring that any network that requires it follows the principles of Secure by Design.Responsibilities·      Assess, maintain, and mitigate security risks including...


  • Cheltenham, United Kingdom Salus Cyber Full time

    This role's purpose is to identify, assess, and mitigate risks, both internally and for our clients. This includes aligning client policies, processes, and procedures to best practices and ensuring that any network that requires it follows the principles of Secure by Design.Increase your chances of an interview by reading the following overview of this role...


  • Cheltenham, United Kingdom Salus Cyber Full time

    This role's purpose is to identify, assess, and mitigate risks, both internally and for our clients. This includes aligning client policies, processes, and procedures to best practices and ensuring that any network that requires it follows the principles of Secure by Design.Responsibilities·      Assess, maintain, and mitigate security risks including...


  • Cheltenham, United Kingdom Salus Cyber Full time

    This role's purpose is to identify, assess, and mitigate risks, both internally and for our clients. This includes aligning client policies, processes, and procedures to best practices and ensuring that any network that requires it follows the principles of Secure by Design.Responsibilities·      Assess, maintain, and mitigate security risks including...


  • Cheltenham, United Kingdom Salus Cyber Full time

    This role's purpose is to identify, assess, and mitigate risks, both internally and for our clients. This includes aligning client policies, processes, and procedures to best practices and ensuring that any network that requires it follows the principles of Secure by Design.Responsibilities·      Assess, maintain, and mitigate security risks including...


  • Cheltenham, United Kingdom Salus Cyber Full time

    This role's purpose is to identify, assess, and mitigate risks, both internally and for our clients. This includes aligning client policies, processes, and procedures to best practices and ensuring that any network that requires it follows the principles of Secure by Design. Responsibilities ·      Assess, maintain, and mitigate security risks...


  • Cheltenham, Gloucestershire, United Kingdom Salus Cyber Full time

    Job Description This role's purpose is to identify, assess, and mitigate risks, both internally and for our clients. This includes aligning client policies, processes, and procedures to best practices and ensuring that any network that requires it follows the principles of Secure by Design. Responsibilities · Assess, maintain, and mitigate security...


  • Cheltenham, Gloucestershire, United Kingdom Salus Cyber Full time

    This role's purpose is to identify, assess, and mitigate risks, both internally and for our clients. This includes aligning client policies, processes, and procedures to best practices and ensuring that any network that requires it follows the principles of Secure by Design. Responsibilities · Assess, maintain, and mitigate security risks including...


  • Cheltenham, Gloucestershire, United Kingdom Salus Cyber Full time

    Job Description This role's purpose is to identify, assess, and mitigate risks, both internally and for our clients. This includes aligning client policies, processes, and procedures to best practices and ensuring that any network that requires it follows the principles of Secure by Design. Responsibilities · Assess, maintain, and mitigate security...

  • Security Officer

    1 month ago


    Cheltenham, United Kingdom TSS (Total Security Services) Ltd Full time

    **TSS have exciting new career opportunities for Security Officers, working alongside our client Tesco.** **With growth opportunities and a speedy onboarding process, TSS is a perfect fit for starting or progressing your security career!** **Why work for TSS?** TSS is as an ‘employer of choice’. We go above and beyond to ensure our employees wellbeing...

  • Security Researcher

    4 weeks ago


    Cheltenham, United Kingdom Microsoft Full time

    Overview Do you enjoy the challenge of discovering and analyzing vulnerabilities in software and services to understand how they work and how an attacker might exploit them? Are you excited by the idea of analyzing real-world exploits and researching new attack techniques? Are you passionate about driving meaningful security improvements into...


  • Cheltenham, United Kingdom Microsoft Full time

    Do you enjoy the challenge of discovering and analyzing vulnerabilities in software and services to understand how they work and how an attacker might exploit them? Are you excited by the idea of analyzing real-world exploits and researching new attack techniques? Are you passionate about driving meaningful security improvements into products and services to...


  • Cheltenham, Gloucestershire, United Kingdom Security Cleared Jobs Full time

    Job Description Summary The Control Account Manager leads and manages the assigned engineering team, and is accountable to the Engineering Project Manager (EPM) for delivering the scope associated with the designated control accounts (CAs), within the committed cost, schedule and quality constraints Job Description Roles and Responsibilities Leads the...

  • Contracts Manager

    5 days ago


    Cheltenham, Gloucestershire, United Kingdom Security Cleared Jobs Full time

    Job Description Summary The GE Aerospace Defence and Systems Contracts team is a critical member and trusted and proactive partner to the business. Contracts is the face of GE to our US, foreign government, airframer, and shipbuilder customers. We are charged with cradle-to-grave contract management duties in all phases of a program, from proposal strategy,...


  • Cheltenham, United Kingdom Northrop Grumman Full time

    **Requisition ID: R10110874**: - **Category**:Engineering - **Location**:Cheltenham, Gloucestershire, UK - **Citizenship Required**:United Kingdom Citizenship - **Clearance Type**: Highest Level of Government Clearance - **Telecommute**:Yes-May consider hybrid teleworking for this position - **Travel Required**:Yes, 25% of the Time - **Relocation...

  • Security Officer

    4 weeks ago


    Cheltenham, United Kingdom G4S Full time

    Location: Cheltenham, Gloucestershire | Salary: £31,566.12 - £32,240.04 | Posted: 28 Jun 2023 | Closes: 21 May 2024 | Job Type: Full Time and Permanent | Business Unit: UK Facilities Management | Region / Division: UK & Ireland | Reference: 9627 **ROLE RESPONSIBILITY**: **SECURITY OFFICER** **Salary: £32,240 per annum** **Working Hours: Permanent,...

  • Security Researcher

    22 hours ago


    Cheltenham, United Kingdom NCC Group Full time

    Role: Security Researcher Location: Cheltenham office Thanks for checking out our job opening; we are excited that YOU are interested in learning more about NCC Group. We are on a mission to make society a safer and more secure place. Our people are the ones who make that possible; a global community of talented individuals working together towards a...


  • Cheltenham, Gloucestershire, United Kingdom Salus Cyber Full time

    Job Description At Salus our mission is to elevate security standards through collaboration, innovation, and personalised client-centric solutions, empowering clients to protect their digital assets effectively. This role is key to supporting the Company with consistently high standards in the delivery of the range of penetration testing that we offer...