Job description
Information Security ManagerHybrid (3 days onsite)
Are you an experienced Information Security professional looking for a role where you can genuinely influence an organisation's security strategy while remaining hands-on with the latest technologies?
We're working with a well-established financial services organisation seeking an Information Security Manager to take ownership of its cyber security posture. This is an excellent opportunity for someone who enjoys balancing strategic security governance with technical delivery, while also supporting key networking initiatives.
This is a 90% Information Security / 10% Network Engineering role, making it ideal for someone whose passion is cyber security but who is comfortable maintaining and supporting enterprise network infrastructure when required.
Role responsibilities:Information Security (90%)
• Lead the organisation's information security strategy and technical security operations.
• Drive compliance with ISO 27001, NIST and CBEST frameworks.
• Review new infrastructure and cloud-based services, ensuring they meet security standards.
• Conduct vulnerability management activities and coordinate external penetration testing.
• Work alongside outsourced SOC and security partners to investigate and respond to security incidents.
• Ensure comprehensive SIEM monitoring across the technology estate.
• Develop, implement and maintain information security policies, standards and procedures.
• Assess cyber risks and recommend appropriate mitigation strategies.
• Act as the internal security subject matter expert, engaging with stakeholders across the business.
Networking (10%)
• Support the design and maintenance of secure LAN, WAN and VPN environments.
• Assist with Cisco networking infrastructure, firewalls and routing technologies.
• Contribute to disaster recovery planning, network resilience and high availability initiatives.
Skills required:
• Enterprise firewall technologies including Cisco Firepower (ASA/FTD) and Palo Alto.
• Cisco networking technologies including Catalyst switching, Layer 2/3, OSPF and VPNs.
• Network security controls including Cisco ISE, TACACS, IPS and endpoint protection.
• Security monitoring and incident response within SIEM environments.
• Vulnerability management and penetration testing.
• Security governance aligned to ISO 27001, NIST and risk management frameworks.
• Developing security policies, conducting audits and managing security incidents.
Desirable skills:
• Exposure to tools such as Rapid7, LogRhythm SIEM, Trellix and Symantec Endpoint Protection
• CCNP-level networking knowledge is highly desirable.
Information Security Manager
Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted.
Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation
We take our obligations to protect your personal data very seriously. Any information provided to us will be processed as detailed in our Privacy Notice, a copy of which can be found on our website