Senior Manager Information Security

1 week ago


London Area, United Kingdom asobbi Full time £80,000 - £120,000 per year

Senior Security Information Manager

Location:
Hybrid – UK (Remote with travel to data centres in Norway and other European sites as required)

Reports To:
Head of Information Security

Department:
Security, Compliance & Risk

Role Overview

We are seeking a Senior Security Information Manager to work closely with the Head of Information Security in building and managing an end-to-end security framework across physical, technical, and organizational domains. This is a
hands-on, execution-focused role
in a complex environment spanning hyperscale GPU clusters, critical infrastructure, and compliance programs including SOC 2 Type II, ISO 27001/17/18, Cyber Essentials Plus, ISO 22301, and ISO 22237.

The role involves supporting certification, audit readiness, incident response, and driving operational maturity across multiple sites and systems. UK government security clearance up to DV is required.

Key Responsibilities

Governance, Risk & Compliance

  • Support delivery and maintenance of ISO 27001, ISO 27017/27018, SOC 2 Type II, Cyber Essentials Plus, and ISO 22301 frameworks.
  • Maintain the Information Security Management System (ISMS), risk register, and control evidence for audits.
  • Manage third-party risk, ensuring supplier compliance and onboarding reviews.
  • Develop and track KPIs/KRIs for security operations and compliance health.

Operational Security

  • Oversee vulnerability management, endpoint detection, and security incident workflows in partnership with internal teams or MSSPs.
  • Support incident detection, triage, investigation, and root-cause analysis.
  • Own operational runbooks for containment, eradication, and recovery procedures.
  • Review access control, privileged-user logs, and infrastructure security baselines.
  • Maintain asset inventory, patch cadence, and configuration compliance across servers, workstations, and Kubernetes workloads.

Physical & Data Centre Security

  • Support the physical security program at all data centres, ensuring alignment with ISO 27001 Annex A.11 and ISO 22237.
  • Maintain visitor management and access audit trails, assisting with incident reviews and compliance documentation.

Awareness & Culture

  • Support security awareness and phishing simulation programs.
  • Develop clear communications and training materials to reinforce security accountability across teams.

Continuous Improvement

  • Contribute to architecture reviews, change-control boards, and project assessments.
  • Identify and implement automation opportunities to reduce manual compliance and reporting overhead.
  • Track and report on control effectiveness, audit findings, and remediation progress to senior leadership.

Experience & Skills

Essential

  • 5+ years in information or physical security management within data centre, cloud, or MSP environments.
  • Active CISSP certification.
  • Deep familiarity with ISO 27001, SOC 2, NIST CSF, and Cyber Essentials Plus frameworks.
  • Experience leading or supporting audits and external assessments.
  • Strong understanding of incident response, vulnerability management, and access control processes.
  • Excellent documentation, communication, and stakeholder management skills.
  • Hands-on with GRC tooling.

Desirable

  • Experience with hyperscale GPU clusters, HPC architectures, or AI-focused data-centre environments.
  • Experience implementing SOC 2 Type II evidence automation and continuous-compliance tooling.
  • Knowledge of EU data-sovereignty requirements (GDPR, EUCS, NIS2, DORA) for multi-site HPC operations.
  • Kubernetes security experience, including admission controllers, network policies, and container hardening.
  • Familiarity with physical security technologies: access control, CCTV, SIAM, alarms, and sensors.
  • Experience with enterprise security platforms (Darktrace, Tenable, Exabeam, Thales CipherTrust).
  • Scripting/automation skills (Python, Bash, PowerShell).
  • Knowledge of supply-chain and contractor security in data-centre environments.
  • Experience supporting incident response in complex hybrid cloud/on-prem environments.
  • Additional certifications: CISM, ISO 27001 Lead Auditor, CEH, GIAC (GCIA, GCED, GCIH), CCSP.

Personal Attributes

  • Calm, structured, and decisive under pressure.
  • Pragmatic and collaborative, bridging technical teams, compliance partners, and auditors.
  • High attention to detail with the ability to prioritize effectively.
  • Strong sense of integrity, confidentiality, and accountability.


  • London Area, United Kingdom asobbi Full time

    Senior Security Information Manager – UK (Hybrid) Location: UK (Remote with occasional travel across European data-centre sites) Clearance: Must be eligible for UK government security clearance (up to DV) A rapidly growing European infrastructure organisation is seeking a Senior Security Information Manager to support the development and operation of...


  • London, United Kingdom Information Security Solutions Full time

    Company: Financial Services Location: Hybrid - City of London Reports to Information Risk Manager **Salary**: £80,000 Benefits: Generous No. Required: 1 Start Date: ASAP **The Role** As the Information Security Risk Specialist, you shall support the Information Risk Manager which has responsibility for all Governance Risk and Compliance activities in the...


  • London Area, United Kingdom Lorien Full time £80,000 - £100,000 per year

    Info sec manager - Third Assurance - 12‑Month FTCLocation:London (Hybrid: ~2 days/week on‑site)Fixed term contract duration: 12month (annual salary)A global law and professional service firm is seeking an experienced Information Security professional to lead and embed a robustSupplier/Third‑Party Assurance model, ensuring the firm maintains and...

  • Security Manager

    1 week ago


    London, Greater London, United Kingdom Information Security Solutions Full time £120,000 - £160,000 per year

    We are searching for candidates that match the role below:Title………………………Security ManagerCompany………………Financial ServicesLocation………………..LondonWorking pattern……Hybrid – 2 days per week in the officeSalary……………………£120,000 - £160,000The RoleWe are seeking a Security Manager to lead security...


  • London Area, United Kingdom Context Recruitment Full time £70,000 - £75,000 per year

    Information Security Manager£70,000 - £75,000 PACentral LondonA well-established construction engineering business is seeking an experienced Information Security Manager to join them on a permanent basis. You'll be joining at a critical time as the organisation expands its technical capability, with ambitious growth plans and multiple acquisitions planned...


  • London Area, United Kingdom Context Recruitment Full time

    Information Security Manager£70,000 - £75,000 PACentral LondonA well-established construction engineering business is seeking an experienced Information Security Manager to join them on a permanent basis. You'll be joining at a critical time as the organisation expands its technical capability, with ambitious growth plans and multiple acquisitions planned...


  • London Area, United Kingdom dnevo Partners Full time

    Information Security AnalystHyrbrid Working Offered**Note Preference will be given to candidates from a financial services / banking environments**Salary: Up to £65,000Purpose of the RoleSupporting the organisation's Information Security function by helping to develop, operate, and improve its Information Security Management System (ISMS). The role is...


  • London Area, United Kingdom Assist Security Group Full time £50,000 - £60,000 per year

    We're Hiring: Pre-Sales Senior Technical Manager – Security SystemsLocation: United Kingdom (Hybrid / Field-Based, Head Office: London)Reports to: Chief Business Development OfficerEmployment Type: Full-Time, PermanentAbout Assist Security Group:With over 30 years' experience, Assist Security Group is a trusted provider of security solutions, known for...


  • London, United Kingdom Revlon Full time

    “Empowering Beauty Through Security – Join Revlon as Global Senior Manager, Information Security” Senior Manager, Information Security – Global Role Location: London (Global remit) 3 days office, 2 days remote Division: Technology Reports to: Chief Information Security Officer Join Revlon and help us protect the beauty of innovation. We’re seeking...


  • London, United Kingdom asobbi Full time

    Senior Security Information Manager – UK (Hybrid)Location: UK (Remote with occasional travel across European data-centre sites)Clearance: Must be eligible for UK government security clearance (up to DV)A rapidly growing European infrastructure organisation is seeking a Senior Security Information Manager to support the development and operation of security...