Information Security and Compliance Lead
7 days ago
Information Security and Compliance Lead Join to apply for the Information Security and Compliance Lead role at HCRG Care Group 4 days ago Be among the first 25 applicants Join to apply for the Information Security and Compliance Lead role at HCRG Care Group Job Introduction Please note: This is one UK-wide remote role that we are advertising across multiple locations to reach a broad pool of candidates. If you have already applied and see the role listed elsewhere, you do not need to apply again. We’re looking for a motivated and detail-driven Information Security & Compliance Lead to help us strengthen the way we govern, protect and assure our digital environment. You’ll play a key role in ensuring our systems, services and processes meet the national standards and regulatory expectations we work to including DSPT, Cyber Essentials Plus and the Cyber Assessment Framework. Working closely with our Head of Information Security & Enterprise Architecture, you’ll provide senior support across policy development, assurance activity, supplier governance and risk management. You’ll help us maintain a robust and well-evidenced Information Security Management System (ISMS), ensuring our approach to compliance is consistent, well-structured and embedded across the organisation. This is an excellent opportunity for someone with hands‑on security or infrastructure experience who now wants to broaden their impact across compliance, governance and operational assurance. You’ll collaborate with technical teams, service operations and transformation colleagues, helping to embed secure-by-design thinking and maintain a strong security posture across our hybrid digital estate. From time to time, you may need to visit our Runcorn office or another HCRG site as part of the role. Main Responsibility Support the delivery and monitoring of secure infrastructure services across cloud, on-premises and hybrid environments Ensure security and compliance controls are applied consistently across networks, servers, endpoints and backup environments Contribute to the maintenance of the Information Security Management System (ISMS), including policies, procedures and risk registers Support internal and external audit activity, evidence gathering and assurance reviews Monitor compliance with frameworks such as DSPT, Cyber Essentials Plus (CE+) and the Cyber Assessment Framework (CAF) Provide clear, practical security and compliance input for supplier reviews, contract renewals and new technology onboarding Support incident management processes, including root cause analysis and follow-up improvements Contribute to business continuity and disaster recovery planning with relevant technical teams Collaborate closely with Infrastructure, Service Operations, Business Systems and Transformation teams to embed secure-by-design principles across services and projects Share guidance, raise awareness and promote good security and compliance practices across the organisation The Ideal Candidate We’re looking for someone who is genuinely confident working in a compliance‑led security role, someone who understands how to apply standards, manage evidence, guide colleagues, and keep us aligned with national requirements. You’ll be comfortable balancing practical security with robust governance, and you’ll bring a steady, structured approach to maintaining assurance across our digital environment. Essential Strong understanding of information security principles, with the ability to apply them in a compliance and governance context Hands‑on experience supporting compliance with frameworks such as: Data Security and Protection Toolkit (DSPT) Cyber Essentials Plus (CE+) Cyber Assessment Framework (CAF) or ISO 27001 Confident reviewing controls, assessing risks, and producing clear, well‑evidenced mitigation plans Familiarity with public sector or NHS data protection responsibilities, including GDPR and NHS Data Security Standards Experience contributing to incident response and ensuring that lessons learned are properly documented and embedded Strong documentation skills — able to produce accurate policies, procedures, risk records and audit evidence Comfortable working with Infrastructure, Service Operations and Transformation teams to ensure security and compliance requirements are understood and built in from the start Able to work effectively with auditors, suppliers and governance groups, presenting information clearly and professionally Desirable Experience working within private cloud or hybrid environments, particularly where compliance requirements vary across services Familiarity with toolsets such as EDR, vulnerability scanning, SIEM or MDM, particularly in relation to evidence gathering and assurance reporting Relevant professional certifications (e.g., Security+, SSCP, ISO 27001, CISMP, CISSP Associate) Understanding of backup and disaster recovery security principles, including compliance considerations Package Description £50,000 – £55,000 with group pension Private medical insurance with fast access to specialist support, including musculoskeletal and mental health services, available at locations across the UK Membership of My Reward Hub, giving you discounts on everyday purchases such as groceries, plus cashback and voucher offers for you and your loved ones Access to your wages as you earn them, helping you manage unexpected expenses without high interest or overdraft fees Online and face‑to‑face wellbeing support for both mental and physical health, from healthy recipes and activity challenges to counselling, trauma support, career coaching and more Access to eLearning, bespoke career pathways and professional development through our Outstanding Learning Enterprise team An open, supportive culture where your ideas and contributions can shape how we deliver our purpose: changing lives through transforming health and care, supported by at least £100,000 of ringfenced innovation funding each year The pride of working for an organisation committed to the highest clinical and quality standards, with the majority of our services rated “Good” or “Outstanding” by the Care Quality Commission About The Company We change lives by transforming health and care. Established in 2006 we are one of the UK's leading independent providers of community health and care services, working with health and care commissioners and communities to transform services with a focus on experience, efficiency and improved outcomes. We deliver and transform adult and children community health services, primary care services including urgent care, sexual health, dermatology and MSK services as well as adult social care and wellbeing services. Across England, we support communities of many millions and directly help more than half a million people each year - guided by our simple values: we care, we think, we do. We're committed to equal opportunities and welcome applications from a broad, diverse range of people who want to join our team. We’re a Disability Confident Committed company, so we work to provide facilities, work environment adjustments and technical solutions to be as inclusive of everyone. While it doesn’t happen often, sometimes a role is very popular, and we’ll need to close it earlier than the date we’ve shown here. If you’re keen to join our team, we’d love to hear from you so please apply as soon as you can. As you’d expect, safeguarding and protecting the children, young people and vulnerable adults that we work with is of the utmost importance so we have policies and procedures in place to promote safeguarding and safer working practices and everyone who joins the team is subject to a safer recruitment process, including the disclosure of criminal records and vetting checks. Finally, we need to let you know that the company you’ll work for is part of HCRG Care Group Holdings Limited and by applying for this job we’ll need to process and hold information about you. If you would like to know a little more about how we use your information, please see our website's privacy policy. Attached documents Seniority level Mid‑Senior level Employment type Full‑time Job function Information Technology Industries Hospitals and Health Care Referrals increase your chances of interviewing at HCRG Care Group by 2x Sign in to set job alerts for “Information Security Specialist” roles. We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI. #J-18808-Ljbffr
-
Remote Information Security
7 days ago
Manchester, United Kingdom HCRG Care Group Full timeA leading UK healthcare provider is seeking an Information Security and Compliance Lead to ensure compliance with national standards and regulatory expectations. The role involves supporting risk management and governance across digital environments. Ideal candidates will have strong experience in information security, hands-on compliance support, and...
-
Information Security Compliance Manager
2 weeks ago
Manchester, United Kingdom Page Personnel Full timeOpportunity to lead infosec compliance across a dynamic technology organisation.Competitive salary and benefitsAbout Our ClientThe employer is a leading technology and telecoms service provider. They are committed to delivering innovative solutions while maintaining high-security standards to support their operations. The company offers a broad portfolio of...
-
Information Security
3 days ago
Manchester, United Kingdom CDW UK Full timeCoworkers who genuinely believe in supporting our customers and one another. As the Head of Information Security for the UK and International business you will report into the global CISO and also dotted line into the Director of Technology for UK&I and will be accountable for all aspects of Information Security in the UK&I business. You will work as part of...
-
Information Security
3 days ago
Manchester, United Kingdom CDW UK Full timeCoworkers who genuinely believe in supporting our customers and one another. As the Head of Information Security for the UK and International business you will report into the global CISO and also dotted line into the Director of Technology for UK&I and will be accountable for all aspects of Information Security in the UK&I business. You will work as part of...
-
Information Security Manager
2 weeks ago
Manchester, New Hampshire, United Kingdom Found Talent Full time £60,000 - £90,000 per yearAre you a hands-on security professional with experience managing IT security operations and driving improvements across infrastructure and processes?This Manchester based organisation is looking for an Information Security Manager to take ownership of information security, risk management and ongoing security enhancement activities. You'll work closely with...
-
Lead Security Compliance Manager
5 days ago
Manchester, United Kingdom PlatformX Communications Full timeWe are PXC, the UK's largest provider of wholesale connectivity. Our vision is to be the UK's #1 wholesale platform, a one-stop shop provider of connectivity, voice, cloud and security underpinned by the UK's most robust, secure, resilient and reliable network.Born from the combination of Virtual1 and TalkTalk's wholesale services and national network...
-
Lead Security Architect
3 days ago
Manchester, United Kingdom UK Health Security Agency Full timeJob overviewUKHSA’s Cyber Security Architecture Delivery team is responsible for defining cyber security technical standards for the organisation, providing technical guidance and consulting to help service teams to deliver against those standards, and supporting the selection of security tools and technology.The team (of ten) works across the organisation...
-
Information Security
7 days ago
Manchester, United Kingdom Innovate Healthcare Ltd Full time**Job Title**:Business Process Improvement & Compliance Lead **Salary**:£35,000 - £40,000 pro rata per annum **Working Hours**:Up to 22.5 hours per week **Job Type**: Permanent **Location**:Manchester (remote/hybrid working available) **Reporting to**:Exec Team **Role Objective**: To be responsible process improvements across the business, as well as...
-
Information Security Analyst
2 weeks ago
Manchester, United Kingdom Adria Solutions Ltd Full timeInformation Security Analyst - Fully Remote - Circa £45k On behalf of our industry-leading client, we are recruiting for a talented Information Security Analyst. As an Information Security Analyst you will play a vital role within the Information Security team that is accountable for our client’s overall securityposture, including all aspects of the...
-
Information Security Officer
2 weeks ago
Manchester, United Kingdom NQC Full timeInformation Security Officer Manchester / Hybrid NQC is a well established, successful and growing Manchester City Centre based software company specialising in supply chain risk management platforms. We’re in the ‘Tech for Good’ space, providing online web platforms which are in use by some of the largest organisations across a number of industries...