523 IT Security Managers jobs in the United Kingdom

Defence & National Security - Management Consultants.

London, London Maybridge Associates

Posted today

Job Viewed

Tap Again To Close

Job Description

Maybridge Associates are proud to be partnering with an award-winning Consultancy that is entering a significant growth phase following a series of new client wins. To support this expansion, they are hiring across all levels—offering a fantastic opportunity to join a dynamic, high-impact team operating within the Defence and National Security sector.

The firm delivers strategic advisory and transformation projects across a range of critical areas, including:


  • Strategy
  • Complex Transformation
  • Operating Model Design
  • Digital Transformation
  • Business Analysis
  • Product Development
  • Solutions & Data Architecture
  • Real Estate Advisory


You’ll be joining a close-knit, high calibre team working directly with clients on intellectually challenging assignments that have real-world significance. Their work spans key sectors such as Defence, Government, Intelligence, and National Security , often operating at the cutting edge of transformation and innovation.

Candidate Requirements:

To be considered, you should have:


  • 4–12 years of experience in a relevant management consulting environment
  • Current and active UK Security Vetting at DV (Developed Vetting) level or higher


This is an ideal role for someone who feels limited in a larger firm and is looking to make a greater personal impact in a smaller, fast-growing organisation—while continuing to work on meaningful and mission-critical projects.

If you're interested in learning more, please send your CV to .

This advertiser has chosen not to accept applicants from your region.

Defence & National Security - Management Consultants.

Maybridge Associates

Posted today

Job Viewed

Tap Again To Close

Job Description

Maybridge Associates are proud to be partnering with an award-winning Consultancy that is entering a significant growth phase following a series of new client wins. To support this expansion, they are hiring across all levels—offering a fantastic opportunity to join a dynamic, high-impact team operating within the Defence and National Security sector.

The firm delivers strategic advisory and transformation projects across a range of critical areas, including:


  • Strategy
  • Complex Transformation
  • Operating Model Design
  • Digital Transformation
  • Business Analysis
  • Product Development
  • Solutions & Data Architecture
  • Real Estate Advisory


You’ll be joining a close-knit, high calibre team working directly with clients on intellectually challenging assignments that have real-world significance. Their work spans key sectors such as Defence, Government, Intelligence, and National Security , often operating at the cutting edge of transformation and innovation.

Candidate Requirements:

To be considered, you should have:


  • 4–12 years of experience in a relevant management consulting environment
  • Current and active UK Security Vetting at DV (Developed Vetting) level or higher


This is an ideal role for someone who feels limited in a larger firm and is looking to make a greater personal impact in a smaller, fast-growing organisation—while continuing to work on meaningful and mission-critical projects.

If you're interested in learning more, please send your CV to .

This advertiser has chosen not to accept applicants from your region.

Information Security Analyst | Risk Management

London, London MastarRec

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

Overview

Job Description. We are seeking a proactive and detail-oriented Information Security Analyst to help safeguard our clients’ digital assets and IT infrastructure. The ideal candidate will be responsible for monitoring security events, responding to incidents, and supporting continuous security risk management, compliance initiatives, and vulnerability assessments. This is a hands-on role for professionals with strong experience in threat detection, SIEM tools, cyber risk analysis, and security best practices. You will work closely with security teams to prevent breaches, enhance cyber resilience, and ensure policy enforcement across the enterprise.nResponsibilities

Monitor, analyse, and respond to security alerts using SIEM platforms (e.g., Splunk, Sentinel).nConduct incident investigations, root cause analyses, and escalate critical threats.nSupport vulnerability scans, patch assessments, and mitigation planning.nMaintain security policies, procedures, and compliance documentation.nAssist in security audits, risk assessments, and internal/external reporting.nCollaborate with IT and compliance teams to strengthen the organization’s security posture.nPerform regular reviews of access controls, firewall logs, and endpoint security events.nStay up-to-date with evolving threats, tools, and security frameworks (e.g., NIST, ISO 27001).nRequirements & Details

Experience:

RequirednEmployment:

Full-timenSalary:

£45,000 – £70,000 yearlynBenefits:

Job Benefits • Competitive salary and bonus structure • Hybrid or remotenAbout MastarRec:

We are seeking a proactive and detail-oriented Information Security Analyst to help safeguard our clients’ digital assets and IT infrastructure. The ideal candidate will be responsible for monitoring security events, responding to incidents

#J-18808-Ljbffrn
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst | Risk Management | Incident Response | SIEM

BS1 Canon's Marsh, South West MastarRec

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Permanent

We are seeking proactive and detail-oriented Information Security Analyst to help safeguard our clients’ digital assets and IT infrastructure. The ideal candidate will be responsible for monitoring security events , responding to incidents , and supporting continuous security risk management , compliance initiatives , and vulnerability assessments .

This is a hands-on role for professionals with strong experience in threat detection , SIEM tools , cyber risk analysis , and security best practices . You will work closely with security teams to prevent breaches , enhance cyber resilience, and ensure policy enforcement across the enterprise.

Job Responsibilities

Monitor, analyse, and respond to security alerts using SIEM platforms (e.g., Splunk, Sentinel)Conduct incident investigations , root cause analyses, and escalate critical threatsSupport vulnerability scans, patch assessments, and mitigation planningMaintain security policies, procedures, and compliance documentationAssist in security audits , risk assessments, and internal/external reportingCollaborate with IT and compliance teams to strengthen the organization’s security posture Perform regular reviews of access controls, firewall logs, and endpoint security eventsStay up-to-date with evolving threats, tools, and security frameworks (e.g., NIST, ISO 27001)Requirements Experience with SIEM tools (Splunk, QRadar, LogRhythm, Sentinel) Knowledge of network security, firewalls , and endpoint protection Familiarity with security frameworks (ISO 27001, NIST, CIS Controls) Strong understanding of incident response, malware  analysis , and threat detection Excellent analytical and communication skills Ability to manage and prioritise multiple alerts and projects

9. Desired Skills

Certifications such as CompTIA Security+, CEH, SSCP , or CISSP (Associate) Knowledge of scripting or automation (Python, PowerShell) Exposure to cloud security (AWS, Azure) Understanding of regulatory requirements (GDPR, PCI DSS, HIPAA) Benefits

Job Benefits

Competitive salary and bonus structureHybrid or remote working optionsPrivate medical insurance and pension schemeProfessional development and training allowance25 days holiday + bank holidaysModern tools and security technologiesCareer progression in a growing security team
This advertiser has chosen not to accept applicants from your region.

Information Security Manager

EC1 London, London Context Recruitment

Posted 9 days ago

Job Viewed

Tap Again To Close

Job Description

full time

Information Security Manager

Location: London, Hybrid
Salary: Up to 75,000

Reports to: Head of Cyber Security

A well regarded Managed Service Provider is seeking an experienced Information Security Manager to join its team on a permanent basis. This role offers the opportunity to lead and deliver strategic security initiatives across a varied client base, with a strong focus on governance, risk, and compliance.

The successful candidate will have a proven background within an MSP or MSSP environment, hold CISSP certification, and demonstrate deep expertise in GRC frameworks, particularly ISO27001. Experience acting as a virtual Chief Information Security Officer (vCISO) is essential.

This business has made significant investment into its SOC-as-a-Service offering, positioning itself at the forefront of managed security solutions and enabling clients to benefit from cutting-edge threat detection and response capabilities.

Key Responsibilities:

  • Serve as a vCISO for clients, providing strategic guidance on security posture and compliance
  • Lead the development and implementation of security policies, procedures, and controls
  • Manage ISO27001 compliance, including internal and external audits
  • Conduct risk assessments and oversee incident response planning
  • Collaborate with technical teams to ensure security is embedded across services
  • Advise on regulatory requirements and emerging threats

Candidate Profile:

  • Extensive experience in information security within an MSP or MSSP
  • CISSP certified
  • Strong working knowledge of GRC frameworks, including ISO27001
  • Demonstrated experience in a vCISO capacity
  • Excellent stakeholder engagement and communication skills
  • Ability to lead complex security programmes across multiple environments

This role offers flexible working arrangements (hybrid), exposure to a wide range of industries and technologies, and the chance to join a collaborative team within a forward-thinking MSP committed to professional development.

Only candidates with the right to work in the UK will be considered .

London - Hybrid

Paying up to 75,000, depending on experience.

This advertiser has chosen not to accept applicants from your region.

Information Security Manager

London, London £65000 - £75000 Annually Context Recruitment

Posted 9 days ago

Job Viewed

Tap Again To Close

Job Description

permanent

Information Security Manager

Location: London, Hybrid
Salary: Up to 75,000

Reports to: Head of Cyber Security

A well regarded Managed Service Provider is seeking an experienced Information Security Manager to join its team on a permanent basis. This role offers the opportunity to lead and deliver strategic security initiatives across a varied client base, with a strong focus on governance, risk, and compliance.

The successful candidate will have a proven background within an MSP or MSSP environment, hold CISSP certification, and demonstrate deep expertise in GRC frameworks, particularly ISO27001. Experience acting as a virtual Chief Information Security Officer (vCISO) is essential.

This business has made significant investment into its SOC-as-a-Service offering, positioning itself at the forefront of managed security solutions and enabling clients to benefit from cutting-edge threat detection and response capabilities.

Key Responsibilities:

  • Serve as a vCISO for clients, providing strategic guidance on security posture and compliance
  • Lead the development and implementation of security policies, procedures, and controls
  • Manage ISO27001 compliance, including internal and external audits
  • Conduct risk assessments and oversee incident response planning
  • Collaborate with technical teams to ensure security is embedded across services
  • Advise on regulatory requirements and emerging threats

Candidate Profile:

  • Extensive experience in information security within an MSP or MSSP
  • CISSP certified
  • Strong working knowledge of GRC frameworks, including ISO27001
  • Demonstrated experience in a vCISO capacity
  • Excellent stakeholder engagement and communication skills
  • Ability to lead complex security programmes across multiple environments

This role offers flexible working arrangements (hybrid), exposure to a wide range of industries and technologies, and the chance to join a collaborative team within a forward-thinking MSP committed to professional development.

Only candidates with the right to work in the UK will be considered .

London - Hybrid

Paying up to 75,000, depending on experience.

This advertiser has chosen not to accept applicants from your region.

Information Security Manager

Birmingham, West Midlands NTT America, Inc.

Posted 13 days ago

Job Viewed

Tap Again To Close

Job Description

**The team you'll be working with:**
**Job Title:** Information Security Manager
**Location:** London, UK or Birmingham hybrid Variable
**Department:** Information Security
**About Us:**
NTT Data is a leading Managed Service Provider (MSP) with a global reach empowering local team, undertaking hugely exciting work and is genuinely changing the world.
We specialise in delivering cutting-edge IT and cybersecurity solutions to our diverse client base. We provide expert-managed services to help clients protect their data, comply with regulations, and manage evolving cyber threats. We are looking for a skilled Information Security Manager to join our team and be billed out to a key client to enhance their information security posture.
**What you'll be doing:**
**What you will be doing;**
We are seeking an experienced Information Security Manager to play a critical role in ensuring the security and resilience of our client's IT systems and data. As a client-facing professional, you will act as the pivotal point of contact for all matters relating to information and cybersecurity. You will collaborate closely with multiple teams to develop, implement, and manage robust information security frameworks, policies, and protocols.
This role combines both strategic leadership and technical expertise, enabling you to influence decision-making, advise on best practices, and ensure continuous improvement in the security posture. You will lead efforts in risk management, regulatory compliance, incident response, and security awareness training, while ensuring the client remains aligned with industry standards and legal requirements (e.g., ISO 27001, GDPR, Cyber Essentials). Your expertise will help mitigate risks, defend against cyber threats, and maintain the highest level of security across the client's infrastructure, all while maintaining a clear focus on delivering outstanding service and value.
Key to your success will be your ability to manage complex security challenges, foster strong relationships with teams, and drive a proactive security culture within their organisation.
**Core responsibilities;**
+ Act as the primary information security point of contact for relevant teams, developing a trusted relationship and advising on all aspects of cybersecurity.
+ Develop, implement, and maintain information security policies, procedures, and frameworks, ensuring alignment with industry standards (e.g., ISO 27001, NIST) and legal requirements (e.g., GDPR, Cyber Essentials).
+ Conduct security risk assessments and vulnerability management for the client, providing actionable recommendations to mitigate risks.
+ Lead incident detection, investigation, and response efforts, ensuring minimal impact to the client's business operations.
+ Collaborate with the client's IT and business teams to integrate security solutions and processes that align with their goals.
+ Deliver regular reporting to the client on security status, incidents, risks, and compliance with agreed SLAs and KPIs.
+ Provide guidance and support for the client in meeting their regulatory obligations (e.g., GDPR compliance, data protection).
+ Oversee and lead security audits, penetration testing, and vulnerability assessments for the client.
+ Manage security awareness training programs for the client's staff, fostering a culture of cybersecurity awareness.
+ Provide ongoing advice on emerging threats, vulnerabilities, and security best practices, helping the client stay ahead of the curve.
+ Ensure that the client's information security posture is continuously improved through proactive security measures, monitoring, and reporting.
**What experience you'll bring:**
**What you will bring;**
Proven experience (typically 5+ years) in information security management or a related role, preferably within an MSP or client-facing environment.
+ Strong understanding of UK and international cybersecurity regulations, including GDPR, Cyber Essentials, and ISO 27001.
+ Experience managing and leading security operations, incident response, and risk assessments.
+ Understanding and knowledge of security technologies (SIEM, firewalls, endpoint protection, encryption, etc.) and practices (vulnerability management, penetration testing).
+ Experience working in a service delivery or consultancy capacity with external clients.
+ Excellent communication skills, able to convey technical security information to non-technical stakeholders at all levels.
+ Relevant certifications such as CISSP, CISM, CISA, or equivalent are highly desirable.
**Desirable Attributes:**
+ Strong stakeholder engagement experiences.
+ Ability to work independently, take initiative, and work in a dynamic environment.
+ Proactive approach to identifying and solving problems before they escalate.
+ Strong leadership and mentoring skills to support junior staff and teams.
+ Ability to translate business needs into security solutions.
**Who we are:**
We're a business with a global reach that empowers local teams, and we undertake hugely exciting work that is genuinely changing the world. Our advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects.
Our inclusive work environment prioritises mutual respect, accountability, and continuous learning for all our people. This approach fosters collaboration, well-being, growth, and agility, leading to a more diverse, innovative, and competitive organisation. We are also proud to share that we have a range of Inclusion Networks such as: the Women's Business Network, Cultural and Ethnicity Network, LGBTQ+ & Allies Network, Neurodiversity Network and the Parent Network.
For more information on Diversity, Equity and Inclusion please click here: Creating Inclusion Together at NTT DATA UK | NTT DATA ( we'll offer you:**
We offer a range of tailored benefits that support your physical, emotional, and financial wellbeing. Our Learning and Development team ensure that there are continuous growth and development opportunities for our people. We also offer the opportunity to have flexible work options.
You can find more information about NTT DATA UK & Ireland here: are an equal opportunities employer. We believe in the fair treatment of all our employees and commit to promoting equity and diversity in our employment practices. We are also a proud Disability Confident Committed Employer - we are committed to creating a diverse and inclusive workforce. We actively collaborate with individuals who have disabilities and long-term health conditions which have an effect on their ability to do normal daily activities, ensuring that barriers are eliminated when it comes to employment opportunities. In line with our commitment, we guarantee an interview to applicants who declare to us, during the application process, that they have a disability and meet the minimum requirements for the role. If you require any reasonable adjustments during the recruitment process, please let us know. Join us in building a truly diverse and empowered team.
Back to search Email to a friend Apply now
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest It security managers Jobs in United Kingdom !

Information Security Manager

London, London Navro

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

This job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board.nLocation:

London, UK (Hybrid: 2 days per week in the office)nCompany:

Navro - Pioneering the Future of PaymentsnArchitecting Trust: Information Security ManagernThis isn't just another Information Security role. No legacy systems. No corporate red tape. No coasting. This is about building something from the ground up. Fast.nWe're Navro, a rapidly scaling B2B payments startup, and we're looking for a bold, proactive, and hands-on

Information Security Manager

to help safeguard our platform and operations. This is your chance to shape our security posture, instill a security first-mindset, ensure compliance with international standards, and make decisions that impact the entire business.nYou won't have layers of approval slowing you down. You will have the freedom to make real, impactful decisions from day one. This isn't a passenger role. We're bringing you in for your expertise and your relentless drive. You will be responsible for understanding our information assets, identifying emerging threats, and implementing robust security measures that protect Navro and our clients.nWho We ArenWe are transforming payments for global platforms and e-commerce businesses. As the world's first payments curation platform, we simplify cross-border transactions by uniting best-in-class infrastructure into a seamless ecosystem, enabling businesses to scale and operate effortlessly across borders. Cross-border workforce payments are slow, expensive, and outdated. We can't be. Businesses rely on us to pay their people accurately and on time - contractors, freelancers, and employees across the globe. When we say we'll deliver, failure isn't an option. If we don't do what we said we would, people don't get paid - not just a transaction delayed, but real workers left without wages. That means a developer in Argentina missing their paycheck, a freelancer in the Philippines unable to pay rent, or a contractor in Poland unable to get to work. No excuses. No passengers. No tolerance for politics or mediocrity.nWhat This Role Demands:nYou Own It

- You're responsible and proactive, you take the lead and make things happen.nYou Ask Questions

- You don't just gather requirements; you challenge assumptions, to make us better. Why this control, why not another way?nYou Fix What's Broken

- No waiting for permission. If it's clunky or output is inconsistent, you dive in, solve, and fix it.nYou're Hands-On

- One hour you're leading on an external audit, the next assessing a critical vendor's security posture, the next you're deep in the vulnerability rating details with DevOps.nYou Thrive in Chaos

- Startups are messy. Deadlines change, priorities shift, and ambiguity is constant. You bring clarity to define workable security policies and procedures.nYou Handle the Pressure

- Fast-paced. High stakes. You balance multiple projects, manage tight timelines, and keep moving forward.nYou're Here for the Journey

- This is career-defining. It's hard, rewarding, and not for the faint-hearted. If you're ready to grow alongside Navro, let's build something amazing together.nWhat You'll Be Doing:nDay-to-day responsibility for security GRC, help build version 2.0 of Navro's Information Security Management System. Ensure compliance to international standards and regional regulatory requirements.nOwn security GRC automation tooling (Vanta) and work across the business to maintain security compliance posture.nSuccessfully lead internal and external security audits - ISO 27001 / SOC2 Type II / PCI-DSS.nChampion a company-wide culture of security awareness and operational resilience by playing a key role in defining, maintaining, and managing security incident response and threat intelligence procedures.nLead, curate, and report on Navro's on-going and persistent security awareness programme including frequent phishing testing campaigns, secure development, etc.nWork with IT, SRE, and other key stakeholders on implementing and maintaining security policies and standards including disaster recovery and business continuity testing.nWork with Sales and Operations on business critical procedures for onboarding/offboarding clients and vendors. Act as primary contact for security due diligence and assessments.nProject manage initiatives with product and engineering teams to embed "security by design" into products, services, and processes.nHelp make Navro's security posture a value proposition - develop a Trust Centre to easily present and provide security information. Work with Marketing to position excellent posture, certifications, and regulatory compliance as a product differentiator.nWhat We're Looking For:nGRC Experience - You're the go-to person for security governance, risk, and compliance. With a degree in a computer or security discipline and numerous years' GRC experience under your belt.nStart-up - Preferably have worked in a start-up or scale-up environment before where ambiguity and chaos do not faze you.nTool Ninja - You're familiar with various tools and systems and have hands-on experience with market leading security tools including Vanta, KnowBe4, Google Workspace, Microsoft Entra, and Wiz.nDetail-Obsessed - You don't miss a thing. Your attention to detail and decision-making capabilities are top-notch. You're able to horizon scan and research effectively to find the missing details.nISO 27001 et al - You have built and maintained an ISO 27001 certified ISMS before and led other important security audit assessments (SOC2, PCI, etc.). You may have also gained ISO 27001 Lead Auditor or alike certifications (a plus).nCollaborator Extraordinaire - Strong communications skills with the ability to explain technical and security concepts, risks, controls in business terms.nRegulation Machine - You have knowledge of payments and various related regulatory environments including FCA, EMI, DORA, PSD2 (a plus).nYou may not possess every single required skill listed, and that's perfectly fine. If you have most of them, along with grit, passion, a desire to learn quickly, and the willingness to get stuck in, we encourage you to apply.nWhy Navro?nLead and Shape the Future: This is your chance to build and grow a market from zero to one.nMake Real Impact: Your decisions will directly shape Navro's growth journey.nInnovative Environment: Be at the forefront of Fintech innovation and payments disruption.nCareer-Defining Role: This isn't just another job. It's a legacy.nReady to Build Something Big?nThis is your chance to leave your mark. If you're ready to lead, build, and grow with the intensity that only startups offer, we want to hear from you.nApply now

and be part of Navro's journey to revolutionise payments with us.nBenefitsnAs part of this role you will receive the following:nYou will enjoy 26 days of annual leave (excluding Bank holidays)nVolunteering & Compassionate leavesnMaternity and Paternity leavesnPrivate HealthcarenCompany Options SchemenTeam socialsnComprehensive, interactive & engaging Training - Leadership, Communication and Presentation Skills, Behavioural Profiling, Conflict Management, etcnCareer frameworksnFlexibility surrounding other commitments; within your team we will work around child-care или other appointments you have. We just ask for advance notice!nFor those London Based 2-3 days per week in officenWorking in a diverse and inclusive environment where we ensure that our people thrivenNavro does not accept unsolicited resumes from search firms/recruiters. Navro will not pay any fees to search firms/recruiters if a candidate is submitted by a search firm/recruiter unless an agreement has been entered into with respect to specific open position(s). Search firms/recruiters submitting resumes on an unsolicited basis shall be deemed to accept this condition, regardless of any other provision to the contrary.

#J-18808-Ljbffrn
This advertiser has chosen not to accept applicants from your region.

Information Security Manager

City of Westminster, London NTT DATA UK Ltd.

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

Overview

We specialise in delivering cutting-edge IT and cybersecurity solutions to our diverse client base. We provide expert-managed services to help clients protect their data, comply with regulations, and manage evolving cyber threats. We are looking for a skilled Information Security Manager to join our team and be billed out to a key client to enhance their information security posture. We are seeking an experienced Information Security Manager to play a critical role in ensuring the security and resilience of our client's IT systems and data. As a client-facing professional, you will act as the pivotal point of contact for all matters relating to information and cybersecurity. You will collaborate closely with multiple teams to develop, implement, and manage robust information security frameworks, policies, and protocols. This role combines both strategic leadership and technical expertise, enabling you to influence decision-making, advise on best practices, and ensure continuous improvement in the security posture. You will lead efforts in risk management, regulatory compliance, incident response, and security awareness training, while ensuring the client remains aligned with industry standards and legal requirements (e.g., ISO 27001, GDPR, Cyber Essentials). Your expertise will help mitigate risks, defend against cyber threats, and maintain the highest level of security across the client's infrastructure, all while maintaining a clear focus on delivering outstanding service and value. Key to your success will be your ability to manage complex security challenges, foster strong relationships with teams, and drive a proactive security culture within their organisation.nResponsibilities

Act as the primary information security point of contact for relevant teams, developing a trusted relationship and advising on all aspects of cybersecurity.nDevelop, implement, and maintain information security policies, procedures, and frameworks, ensuring alignment with industry standards (e.g., ISO 27001, NIST) and legal requirements (e.g., GDPR, Cyber Essentials).nConduct security risk assessments and vulnerability management for the client, providing actionable recommendations to mitigate risks.nLead incident detection, investigation, and response efforts, ensuring minimal impact to the client's business operations.nCollaborate with the client's IT and business teams to integrate security solutions and processes that align with their goals.nDeliver regular reporting to the client on security status, incidents, risks, and compliance with agreed SLAs and KPIs.nProvide guidance and support for the client in meeting their regulatory obligations (e.g., GDPR compliance, data protection).nOversee and lead security audits, penetration testing, and vulnerability assessments for the client.nManage security awareness training programs for the client's staff, fostering a culture of cybersecurity awareness.nProvide ongoing advice on emerging threats, vulnerabilities, and security best practices, helping the client stay ahead of the curve.nEnsure that the client's information security posture is continuously improved through proactive security measures, monitoring, and reporting.nQualifications

Proven experience (typically 5+ years) in information security management or a related role, preferably within an MSP or client-facing environment.nStrong understanding of UK and international cybersecurity regulations, including GDPR, Cyber Essentials, and ISO 27001.nExperience managing and leading security operations, incident response, and risk assessments.nUnderstanding and knowledge of security technologies (SIEM, firewalls, endpoint protection, encryption, etc.) and practices (vulnerability management, penetration testing).nExperience working in a service delivery or consultancy capacity with external clients.nExcellent communication skills, able to convey technical security information to non-technical stakeholders at all levels.nRelevant certifications such as CISSP, CISM, CISA, or equivalent are highly desirable.nStrong stakeholder engagement experiences.nAbility to work independently, take initiative, and work in a dynamic environment.nProactive approach to identifying and solving problems before they escalate.nStrong leadership and mentoring skills to support junior staff and teams.nAbility to translate business needs into security solutions.nBenefits

We offer a range of tailored benefits that support your physical, emotional, and financial wellbeing. Our Learning and Development team ensure that there are continuous growth and development opportunities for our people. We also offer the opportunity to have flexible work options.nWe are an equal opportunities employer. We believe in the fair treatment of all our employees and commit to promoting equity and diversity in our employment practices. We are also a proud Disability Confident Committed Employer - we are committed to creating a diverse and inclusive workforce. We actively collaborate with individuals who have disabilities and long-term health conditions which have an effect on their ability to do normal daily activities, ensuring that barriers are eliminated when it comes to employment opportunities. In line with our commitment, we guarantee an interview to applicants who declare to us, during the application process, that they have a disability and meet the minimum requirements for the role. If you require any reasonable adjustments during the recruitment process, please let us know. Join us in building a truly diverse and empowered team.nProven experience (typically 5+ years) in information security management or a related role, preferably within an MSP or client-facing environment.nNTT Data is a leading Managed Service Provider (MSP) with a global reach empowering local team, undertaking hugely exciting work and is genuinely changing the world. We are a business with a global reach that empowers local teams, and we undertake hugely exciting work that is genuinely changing the world. Our advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects.nOur inclusive work environment prioritises mutual respect, accountability, and continuous learning for all our people. This approach fosters collaboration, well-being, growth, and agility, leading to a more diverse, innovative, and competitive organisation. We are also proud to share that we have a range of Inclusion Networks such as: the Women's Business Network, Cultural and Ethnicity Network, LGBTQ+ & Allies Network, Neurodiversity Network and the Parent Network.nUpon joining the NTT DATA UK family, you will experience a culturally diverse organisation living our values of Clients First, Teamwork and Foresight as we partner with our customers every day. At NTT DATA UK, we are proud to support and invest in our people. We offer a variety of rewarding career paths and opportunities to develop professionally - with access to cutting edge innovation.

#J-18808-Ljbffrn
This advertiser has chosen not to accept applicants from your region.

Information Security Manager

London, London Navro

Posted 23 days ago

Job Viewed

Tap Again To Close

Job Description

Permanent

Location: London, UK (Hybrid: 2 days per week in the office)
Company: Navro – Pioneering the Future of Payments

Architecting Trust: Information Security Manager

This isn’t just another Information Security role. No legacy systems. No corporate red tape. No coasting. This is about building something from the ground up. Fast.

We’re Navro, a rapidly scaling B2B payments startup, and we’re looking for a bold, proactive, and hands-on Information Security Manager to help safeguard our platform and operations. This is your chance to shape our security posture, instill a security first-mindset, ensure compliance with international standards, and make decisions that impact the entire business.

You won’t have layers of approval slowing you down. You will have the freedom to make real, impactful decisions from day one. This isn’t a passenger role. We’re bringing you in for your expertise and your relentless drive. You will be responsible for understanding our information assets, identifying emerging threats, and implementing robust security measures that protect Navro and our clients.

Who We Are 

We are transforming payments for global platforms and e-commerce businesses. As the world’s first payments curation platform, we simplify cross-border transactions by uniting best-in-class infrastructure into a seamless ecosystem, enabling businesses to scale and operate effortlessly across borders. Cross-border workforce payments are slow, expensive, and outdated. We can’t be. Businesses rely on us to pay their people accurately and on time - contractors, freelancers, and employees across the globe. When we say we’ll deliver, failure isn’t an option. If we don’t do what we said we would, people don’t get paid - not just a transaction delayed, but real workers left without wages. That means a developer in Argentina missing their paycheck, a freelancer in the Philippines unable to pay rent, or a contractor in Poland unable to get to work. No excuses. No passengers. No tolerance for politics or mediocrity.

Requirements

What This Role Demands:

You Own It – You’re responsible and proactive, you take the lead and make things happen.

You Ask Questions – You don’t just gather requirements; you challenge assumptions, to make us better. Why this control, why not another way?

You Fix What’s Broken – No waiting for permission. If it’s clunky or output is inconsistent, you dive in, solve, and fix it.

You’re Hands-On – One hour you’re leading on an external audit, the next assessing a critical vendor’s security posture, the next you’re deep in the vulnerability rating details with DevOps.

You Thrive in Chaos – Startups are messy. Deadlines change, priorities shift, and ambiguity is constant. You bring clarity to define workable security policies and procedures.

You Handle the Pressure – Fast-paced. High stakes. You balance multiple projects, manage tight timelines, and keep moving forward.

You’re Here for the Journey – This is career-defining. It’s hard, rewarding, and not for the faint-hearted. If you’re ready to grow alongside Navro, let’s build something amazing together.

What You’ll Be Doing:

  • Day-to-day responsibility for security GRC, help build version 2.0 of Navro’s Information Security Management System. Ensure compliance to international standards and regional regulatory requirements.
  • Own security GRC automation tooling (Vanta) and work across the business to maintain security compliance posture.
  • Successfully lead internal and external security audits - ISO 27001 / SOC2 Type II / PCI-DSS.
  • Champion a company-wide culture of security awareness and operational resilience by playing a key role in defining, maintaining, and managing security incident response and threat intelligence procedures.
  • Lead, curate, and report on Navro’s on-going and persistent security awareness programme including frequent phishing testing campaigns, secure development, etc.
  • Work with IT, SRE, and other key stakeholders on implementing and maintaining security policies and standards including disaster recovery and business continuity testing.
  • Work with Sales and Operations on business critical procedures for onboarding/offboarding clients and vendors. Act as primary contact for security due diligence and assessments.
  • Project manage initiatives with product and engineering teams to embed “security by design” into products, services, and processes.
  • Help make Navro’s security posture a value proposition - develop a Trust Centre to easily present and provide security information. Work with Marketing to position excellent posture, certifications, and regulatory compliance as a product differentiator.

What We’re Looking For:

GRC Experience – You’re the go-to person for security governance, risk, and compliance. With a degree in a computer or security discipline and numerous years’ GRC experience under your belt.

Start-up – Preferably have worked in a start-up or scale-up environment before where ambiguity and chaos do not faze you.

Tool Ninja – You’re familiar with various tools and systems and have hands-on experience with market leading security tools including Vanta, KnowBe4, Google Workspace, Microsoft Entra, and Wiz.

Detail-Obsessed – You don’t miss a thing. Your attention to detail and decision-making capabilities are top-notch. You’re able to horizon scan and research effectively to find the missing details.

ISO 27001 et al – You have built and maintained an ISO 27001 certified ISMS before and led other important security audit assessments (SOC2, PCI, etc.). You may have also gained ISO 27001 Lead Auditor or alike certifications (a plus).

Collaborator Extraordinaire – Strong communications skills with the ability to explain technical and security concepts, risks, controls in business terms.

Regulation Machine – You have knowledge of payments and various related regulatory environments including FCA, EMI, DORA, PSD2 (a plus).

You may not possess every single required skill listed, and that's perfectly fine. If you have most of them, along with grit, passion, a desire to learn quickly, and the willingness to get stuck in, we encourage you to apply.

Why Navro?
  • Lead and Shape the Future: This is your chance to build and grow a market from zero to one.
  • Make Real Impact: Your decisions will directly shape Navro’s growth journey.
  • Innovative Environment: Be at the forefront of Fintech innovation and payments disruption.
  • Career-Defining Role: This isn’t just another job. It’s a legacy.
Ready to Build Something Big?

This is your chance to leave your mark. If you’re ready to lead, build, and grow with the intensity that only startups offer, we want to hear from you.

Apply now and be part of Navro’s journey to revolutionise payments with us.

Benefits

As part of this role you will receive the following:

  • You will enjoy 26 days of annual leave (excluding Bank holidays)
  • Volunteering & Compassionate leaves
  • Maternity and Paternity leaves
  • Private Healthcare 
  • Company Options Scheme
  • Team socials 
  • Comprehensive, interactive & engaging Training - Leadership, Communication and Presentation Skills, Behavioural Profiling, Conflict Management, etc
  • Career frameworks
  • Flexibility surrounding other commitments; within your team we will work around child-care or other appointments you have. We just ask for advance notice!
  • For those London Based 2-3 days per week in office 
  • Working in a diverse and inclusive environment where we ensure that our people thrive

Navro does not accept unsolicited resumes from search firms/recruiters. Navro will not pay any fees to search firms/recruiters if a candidate is submitted by a search firm/recruiter unless an agreement has been entered into with respect to specific open position(s).  Search firms/recruiters submitting resumes on an unsolicited basis shall be deemed to accept this condition, regardless of any other provision to the contrary.

This advertiser has chosen not to accept applicants from your region.

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All IT Security Managers Jobs