Information Security Manager
Central London (Hybrid)
The Information Security Manager will be responsible for building and running an Info Sec function. This team will be the face of the Cybersecurity team and work across the global business to instil a culture of security.
Supporting the CISO to define and deliver security strategy, responsible for creating and updating security policies, risk management, security awareness training, vendor assessment, security maturity assessments and compliance.
This role will have a global impact by advancing company objectives through helping the business identify and manage Cybersecurity risks.
Represent Cybersecurity at IT governance meetings include Design Authority and Change Advisory Board
? Ensure the ongoing compliance of industry security standards including ISO20000 and PCI DSS
? Conduct M&A due diligence and post-merger integration work to ensure the risk of new acquisitions is understood and managed appropriately
? Support the CISO defining and delivering Cybersecurity strategy
? Provide security consulting services to internal stakeholders
? Support the Risk team with Cyber insurance renewals
? Team recruitment and management activities
? Provide KPIs, OKRs and other security metrics to support scheduled and adhoc reporting activities
? Support CISO during Major Incidents and operate Service Owner or Incident Manager role in the Service Escalation Process
Education & Certifications
Certified Information Systems Security Professional (CISSP), Certified Information Security
Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information
Systems Control (CRISC) or other similar credentials Technical and Business Experience
? Knowledge and understanding of relevant legal and regulatory requirements, such as: PII & PCIDSS.
? Knowledge of common information security management frameworks, such as CIS18, ISO/IEC 27001 and NIST Cybersecurity Framework
? Sound knowledge of business management and a working knowledge of information security risk management and cybersecurity technologies
? Up-to-date knowledge of methodologies and trends in both business and IT
Morgan McKinley is acting as an Employment Agency and references to pay rates are indicative.
Morgan McKinley encourages applications from all qualified candidates who represent the full diversity of communities in the UK. Accommodations are available on request for candidates taking part in all aspects of the selection process.
BY APPLYING FOR THIS ROLE YOU ARE AGREEING TO OUR TERMS OF SERVICE WHICH TOGETHER WITH OUR PRIVACY STATEMENT GOVERN YOUR USE OF MORGAN MCKINLEY SERVICES.