Information Security & Integrity Manager
Role details
Job location
Tech stack
Job description
We are seeking an experienced and forward-thinking Information Security & Integrity Manager for a period of 12 months, to play a critical role in strengthening how the West Midlands Combined Authority (WMCA) protects, governs, and assures the use of its information assets and data.
This is a high-profile opportunity to lead the development and continuous improvement of the WMCA's Information Security Management System (ISMS), ensuring the organisation has clear, evidence-based assurance over how information is handled, secured, governed, and retained. Working closely with senior leadership, audit, cyber security, data, and technology teams, you will help shape a robust security and governance framework that supports organisational transformation while ensuring compliance with ISO standards, UK GDPR, and best practice.
As the WMCA continues to evolve through ambitious regional programmes and increasingly complex digital services, this role will be central to embedding a culture of security, integrity, and accountability across the organisation. You will provide trusted assurance to leadership on information security risks, controls, compliance, and data integrity, while driving continuous improvement and ensuring security is embedded into operational and strategic decision-making.
We are looking for someone with strong expertise in information security governance, risk management, and data assurance, alongside the confidence to influence at senior level and lead organisation-wide improvements that deliver real impact for the region.
What you will be doing
- Establish and maintain the organisation's Cyber and Resilience Strategy
- Translate organisational needs into a coherent data security and lifecycle governance model
- Define security requirements for Business Continuity and Disaster Recovery
- Work with data owners and engineering teams to embed a culture of data literacy
- Ensure CAB/change includes security readiness criteria
- Maintain evidence packs and ISO/QMS artefacts with the Business Management Unit
- Maintain visibility of organisational data assets through evidence-based mapping
- Implement data quality assurance checkpoints in collaboration with Data Engineering
- Build strong working relationships across Technology and Insight service areas, Corporate PMO, Service Desk, suppliers, and operational teams and technical teams
- Act as a coordinator for the WMCA's formal liaison with national and regional authorities
- Drive continuous improvement in operational processes, We are also proud to be a Ban the Box employer, which means we do not ask about criminal convictions at the initial application stage, and will only ask after an offer is made as part of our onboarding checks, which helps us remove barriers for people with past convictions and supporting fair opportunities for all.
We recognise that certain groups, such as women and people of colour, may be less likely to apply for roles if they feel they do not meet all the requirements. However, we encourage individuals who are passionate about the role and want to make a difference to still apply. We value potential and encourage applicants to highlight their skills, including transferable ones, even if they don't fit the traditional "perfect candidate" mould.
We gladly consider part-time, flexible, and job share arrangements, so please don't let these factors deter you from applying
Right to Work in the UK
Proof of Right to Work in the UK will be required for all applicants in accordance with UK Home Office requirements, before any employment offer can be confirmed.
Non-UK applicants (excluding Ireland) would be required to hold a relevant Visa from the UK Visas and Immigration (UKVI).
Requirements
- CISSP/CISM or ISO 27001 Lead Implementer/Lead Auditor (or equivalent)
- Training or certification in data governance, data quality management, or metadata management (e.g., DCAM, CDMP, DAMA DMBoK-aligned training)
- Experience of working in Agile, Lean or DevOps-aligned delivery practices (e.g., Kanban, flow metrics, sprint planning, CI/CD awareness)
- Experience of working with CABs, release cycles or readiness reviews
- Experience assuring or governing data pipelines, data flows, integrations or data processing environments
- Experience implementing or overseeing data lifecycle governance, including classification, retention, minimisation and defensible deletion
- Experience working with Microsoft Purview, M365 compliance tooling or equivalent enterprise governance platforms
- Strong knowledge of UK GDPR/DPA 2018, ISO 27001, NCSC guidance
- Strong risk and assurance capability, Disability Confident About Disability Confident A Disability Confident employer will generally offer an interview to any applicant that declares they have a disability and meets the minimum criteria for the job as defined by the employer. It is important to note that in certain recruitment situations such as high-volume, seasonal and high-peak times, the employer may wish to limit the overall numbers of interviews offered to both disabled people and non-disabled people. For more details please go to .
Benefits & conditions
We advertise salary ranges, with new appointments typically starting at the lowest salary point. In exceptional cases, the salary point may be adjusted to secure the best candidate. This approach allows for potential year-on-year salary increases, offering progression and appropriate rewards to employees. Requests for salaries above the maximum advertised range will not be considered.
We offer a comprehensive benefits package that includes:
- Local Government Pension Scheme (one of the most generous pension schemes in the UK).
- Shared Cost Additional Voluntary Contributionscheme where you can build an additional pot of money alongside your pension with contributions exempt from Income Tax and National Insurance contributions (NICs).
- 28 days paid annual leave (with an option to purchase more) + Statutory days.
- EV car benefit scheme
- Healthcare plans.
- Discounted gym membership, will writing,andmortgage advice.
- An option to buy a bicycle, including e-bikes and adapted pedal cycles, at a discounted rate.
- 3 days of paid leave each year to volunteer.
- Interest-free financing through SmartTech to buy the latest technology
- Discounted shopping with over 2,000 big-name retailers, and more. You can now also obtain a Costcomembership through the WMCA.
- Boundlessunlocks unlimited entry to top-rated UK attractions and loads of extra benefits and discounts.
- EyeCare Scheme,offering a free eye test and a financial contribution towards your glasses.