Information Security Manager

4 days ago


Coventry, Coventry, United Kingdom Sainsbury's Full time
Job Title: Information Security Manager

Join Sainsbury's as an Information Security Manager and play a pivotal role in leading and coaching a team of talented security colleagues. As a key member of the Data Governance and Information Security (DGIS) team, you will drive the delivery of solutions that enhance security and drive performance across the business.

Key Responsibilities:
  • Manage and inspire a team of eleven (11) Information Security personnel comprising of Junior, Senior and Lead Analysts
  • Lead and be personally responsible for delivering strategic initiatives from the Chief Information Security Officer
  • Continuously review and evaluate the efficacy of security policies and practices to keep Sainsbury's up-to-date
  • Ensure your team are keeping abreast of latest developments by recommending appropriate CPD activities
  • Thoroughly understand risks that have been raised by Analysts to enable reporting to Senior Management
  • Review team workloads to ensure appropriate tasks are assigned within the competence of the Analysts
  • Deliver great performance to our Tech and Digital teams by ensuring tasks are completed within SLAs
  • Develop mitigation strategies where complicated issues are discovered to allow continuity of operation
  • Assist in the selection of InfoSec specific tooling and whilst considering Capex and Opex constraints
  • Manage, validate and document the integration of NIST controls from service design to improvement
  • Have a deep understand with I.T. Service Model frameworks including ITIL and ISO/IEC 20000
  • Be prepared to justify decisions based upon Sainsbury's success criteria, policies and practice
  • Actively participate in Engineering conversations which aim to improve estate-wide security
  • Assume leadership for incidents which occur by managing and coordinating the response
  • General managerial duties such as: appraisals, recruitment, induction, managing leave etc
  • Provide support to the Head of Product Assurance
Requirements:
  • A strong technical understanding of security to ensure systems are designed and built securely and to help continually improve our security posture
  • Appreciation of containerisation technologies such as Docker, Kubernetes etc.
  • Experience with logging, monitoring, load balancing/proxies and API gateways
  • Working knowledge of GitHub, Jenkins, Ansible, Chef and Puppet
  • In-depth knowledge of the OWASP Top 10, Mitre ATT&CK, NIST frameworks, PCI-DSS and Cyber Kill Chain
  • Familiarity with PAM, EDR, AV, IPS, SIEM, WAF and DLP technologies
  • The ability to verify solutions and gain assurance that they are fit for purpose through demonstrable evidence of controls and testing
  • Strong understanding of the changing threat landscape and how this may affect our systems
  • Nice to have knowledge of Oracle and SAP clouds
  • The ability to challenge concerns and report through appropriate channels
  • Self-drive, motivation and the ability to work independently to deliver expected outcomes
  • Excellent teamwork and problem-solving skills by blending technical knowledge with business requirements
  • In-depth understanding of data and security risks in a large enterprise
  • Risk Management experience and understanding of Risk Management Frameworks
  • Strong analytical and report writing skills
Desirable Qualifications:
  • Preferred: Graduate in computer science or cybersecurity AND;
  • One or more of the following security qualifications (in-date):
  • CompTIA Security+ / CySA+ / CASP+
  • GIAC GX-CS / GCIA / GX-IH / GX-IA
  • Offensive Security Certified Professional (OSCP)
  • One or more of the following technical qualifications (in-date):
  • Certified Kubernetes Security Specialist (CKS)
  • CompTIA Linux+ / LPIC-3 / Red Hat Certified Engineer (RHCE)
  • CompTIA Network+ / Cisco Certified Networking Associate / Professional (CCNA or CCNP)
  • Terraform Associate / Terraform Authoring and Operations Professional
  • Vault Associate / Vault Operations Professional / Consul Associate
  • MongoDB Certified Associate (Developer / Administrator / Data Modeler)
  • One or more of the following governance qualifications (in-date):
  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • Certified AI Governance Professional (AIGP)
  • Certified NIST Cybersecurity Framework Lead Implementer (CSF LI)
  • One or more of the following cloud qualifications (in-date):
  • CompTIA Cloud+
  • Certified Cloud Security Professional (CCSP)
  • Certificate of Cloud Security Knowledge (CCSK)
  • Microsoft Certified: Azure Fundamentals / AWS Cloud Practitioner
  • Google Professional Cloud Security Engineer / Cloud Developer
  • Certificate of Competence in Zero Trust (CCZT)
  • Certificate of Cloud Security Knowledge (CCSK)
What We Offer:
  • Flexible working - tailored approach to balance your working from home and collaboration in the office, sensible freedom to shape your week and day working hours, offices in different locations
  • Colleague discount across our brands - Sainsbury's, Argos and Habitat
  • Health cover
  • Holiday allowance
  • Bonus scheme
  • Pension plan
  • Special offers on gym memberships, restaurants, holidays, retail vouchers and more


  • Coventry, Coventry, United Kingdom Sainsbury's Full time

    About the RoleWe are seeking an experienced Information Security Manager to lead our Data Governance and Information Security team. As a key member of our IT leadership team, you will be responsible for developing and implementing security strategies to protect our business and customer data.Key ResponsibilitiesLead and manage a team of security...


  • Coventry, Coventry, United Kingdom Sainsbury's Full time

    About the RoleWe are seeking an experienced Information Security Manager to lead our Data Governance and Information Security team. As a key member of our IT leadership team, you will be responsible for developing and implementing security strategies to protect our business and customer data.Key ResponsibilitiesLead and manage a team of security...


  • Coventry, Coventry, United Kingdom Sainsbury's Full time

    About the RoleWe are seeking an experienced Information Security Manager to join our team at Sainsbury's. As a key member of our Data Governance and Information Security (DGIS) department, you will play a pivotal role in leading and coaching a team of talented security colleagues, driving the delivery of solutions that enhance security and drive performance...


  • Coventry, Coventry, United Kingdom Sainsbury's Full time

    About the RoleWe are seeking an experienced Information Security Manager to join our team at Sainsbury's. As a key member of our Data Governance and Information Security (DGIS) department, you will play a pivotal role in leading and coaching a team of talented security colleagues, driving the delivery of solutions that enhance security and drive performance...


  • Coventry, Coventry, United Kingdom Mpac Group Full time

    Job Title: Information Security and Continuity OfficerJob Summary:The Information Security and Continuity Officer is a critical role within Mpac Group, responsible for safeguarding the organisation's information assets and ensuring the continuous, secure operation of its critical IT services. This senior IT position requires a strong understanding of...


  • Coventry, Coventry, United Kingdom Mpac Group Full time

    Job Title: Information Security and Continuity OfficerJob Summary:The Information Security and Continuity Officer is a critical role within Mpac Group, responsible for safeguarding the organisation's information assets and ensuring the continuous, secure operation of its critical IT services. This senior IT position requires a strong understanding of...


  • Coventry, Coventry, United Kingdom Mpac Group Full time

    Job Title: Information Security and Continuity OfficerJob Summary:The Information Security and Continuity Officer is a critical role within Mpac Group, responsible for safeguarding the organisation's information assets and ensuring the continuous, secure operation of its critical IT services.Key Responsibilities:Develop and implement the organisation's...


  • Coventry, Coventry, United Kingdom Mpac Group Full time

    Job Title: Information Security and Continuity OfficerJob Summary:The Information Security and Continuity Officer is a critical role within Mpac Group, responsible for safeguarding the organisation's information assets and ensuring the continuous, secure operation of its critical IT services.Key Responsibilities:Develop and implement the organisation's...


  • Coventry, Coventry, United Kingdom Stonewater Full time

    Position OverviewStonewater is currently in search of aInformation Security Operations Manager to safeguard our IT infrastructure, technology, and sensitive data by implementing robust security protocols across our business applications and systems. This role emphasizes a security-first mindset in the development of all new technologies, enhancing the...


  • Coventry, Coventry, United Kingdom Sainsbury's Full time

    About the RoleWe are seeking a highly skilled Information Security Specialist to join our team at Sainsbury's. As a key member of our Corporate Services/Data Governance Information Security team, you will play a critical role in managing and reducing threats to our data and systems.Key ResponsibilitiesDevelop and implement risk management strategies to...


  • Coventry, Coventry, United Kingdom Sainsbury's Full time

    About the RoleWe are seeking a highly skilled Information Security Specialist to join our team at Sainsbury's. As a key member of our Corporate Services/Data Governance Information Security team, you will play a critical role in managing and reducing threats to our data and systems.Key ResponsibilitiesDevelop and implement risk management strategies to...


  • Coventry, Coventry, United Kingdom Sainsbury's Full time

    About the RoleWe are seeking a highly skilled Information Security Specialist to join our team at Sainsbury's. As a key member of our Corporate Services team, you will play a critical role in managing and reducing threats to our data and systems.Key ResponsibilitiesDevelop and implement effective risk management strategies to ensure the business operates...


  • Coventry, Coventry, United Kingdom Sainsbury's Full time

    About the RoleWe are seeking a highly skilled Information Security Specialist to join our team at Sainsbury's. As a key member of our Corporate Services team, you will play a critical role in managing and reducing threats to our data and systems.Key ResponsibilitiesDevelop and implement effective risk management strategies to ensure the business operates...


  • Coventry, Coventry, United Kingdom Mpac Group Full time

    Job SummaryThe Mpac Group is seeking a highly skilled Information Security and Continuity Officer to safeguard its information assets and ensure the continuous, secure operation of its critical IT services.Key ResponsibilitiesDevelop and implement the organisation's information security strategy, policies, and procedures.Ensure the security and integrity of...


  • Coventry, Coventry, United Kingdom Mpac Group Full time

    Job SummaryThe Mpac Group is seeking a highly skilled Information Security and Continuity Officer to safeguard its information assets and ensure the continuous, secure operation of its critical IT services.Key ResponsibilitiesDevelop and implement the organisation's information security strategy, policies, and procedures.Ensure the security and integrity of...


  • Coventry, Coventry, United Kingdom Mpac Group Full time

    Job Title: Information Security and Continuity OfficerJob Summary:The Information Security and Continuity Officer is a senior IT role responsible for safeguarding Mpac Group's information assets and ensuring the continuous, secure operation of its critical IT services.Key Responsibilities:Develop, implement, and maintain the organisation's information...


  • Coventry, Coventry, United Kingdom Mpac Group Full time

    Job Title: Information Security and Continuity OfficerJob Summary:The Information Security and Continuity Officer is a senior IT role responsible for safeguarding Mpac Group's information assets and ensuring the continuous, secure operation of its critical IT services.Key Responsibilities:Develop, implement, and maintain the organisation's information...


  • Coventry, Coventry, United Kingdom Coventry Building Society Full time

    About the RoleWe're seeking a highly skilled Senior Information Security Specialist to join our Defensive Operations Team on a full-time, permanent basis. As a key member of our team, you will lead the day-to-day information security risk activities and support our Security frameworks (information security policies, implementation guidance, standards) while...


  • Coventry, Coventry, United Kingdom Coventry Building Society Full time

    About the RoleWe're seeking a highly skilled Senior Information Security Specialist to join our Defensive Operations Team on a full-time, permanent basis. As a key member of our team, you will lead the day-to-day information security risk activities and support our Security frameworks (information security policies, implementation guidance, standards) while...


  • Coventry, Coventry, United Kingdom Coventry Building Society Full time

    About the RoleWe are seeking a highly skilled Senior Information Security Specialist to join our Defensive Operations Team on a full-time, permanent basis. As a key member of our team, you will be responsible for leading the day-to-day information security risk activities and supporting our Security frameworks (information security policies, implementation...