Information Security Manager
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
The Security and BizTech team holds broad responsibility across Faculty. We manage all aspects of Information, Cyber, and Personnel risk, alongside overall ownership of IT and Systems Engineering. As a team of passionate specialists, we are dedicated to leveraging technology to help people. With Faculty expanding globally, our team plays a central role in ensuring a smooth and secure transition to a global operating model., As an Information Security Manager at Faculty, you will drive our compliance and secure our scaling global operations. Acting as the authoritative voice on internal information security, you will lead the evolution of our ISO 27001:2022 management system and serve as an essential partner to our business operations. This high-impact, individual contributor position is designed for an ambitious professional looking to own our governance roadmap and influence senior stakeholders.
What you’ll be doing:
- Owning and continuously improving our ISO 27001:2022 Information Security Management System (ISMS) to ensure robust compliance.
- Designing and executing comprehensive internal audit schedules to verify adherence to security policies across central functions.
- Serving as the authoritative technical partner when responding to client security questionnaires and due diligence requests.
- Collaborating closely with engineering and IT teams to implement innovative security controls and enterprise architecture.
- Reporting regularly to the Director of Security on compliance metrics, GRC progress, and technical threat landscapes.
- Evaluating security policies and risk management processes to prepare the organisation for future global growth.
Requirements
- You possess proven hands-on expertise managing and auditing ISO 27001 frameworks within complex, fast-paced corporate environments.
- You communicate complex technical security concepts clearly and confidently to both engineering professionals and commercial executives.
- You thrive in collaborative spaces, displaying the resilience and diplomacy needed to constructively debate and align with senior stakeholders.
- You hold, or are fully eligible to obtain, UK Security Check (SC) clearance to support our critical public sector partnerships.
- You bring a strong working knowledge of cloud ecosystems (AWS, Azure, or GCP), with any exposure to securing generative AI seen as a valuable asset.
Benefits & conditions
- Unlimited Annual Leave Policy
- Private healthcare and dental
- Enhanced parental leave
- Family-Friendly Flexibility & Flexible working
- Sanctus Coaching
- Hybrid Working
About the company
We established Faculty in 2014 because we thought that AI would be the most important technology of our time. Since then, we’ve worked with over 350 global customers to transform their performance through human-centric AI. You can read about our real-world impact here.
We don’t chase hype cycles. We innovate, build and deploy responsible AI which moves the needle - and we know a thing or two about doing it well. We bring an unparalleled depth of technical, product and delivery expertise to our clients who span government, finance, retail, energy, life sciences and defence.
Our business, and reputation, is growing fast and we’re always on the lookout for individuals who share our intellectual curiosity and desire to build a positive legacy through technology.
AI is an epoch-defining technology, join a company where you’ll be empowered to envision its most powerful applications, and to make them happen.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.totaljobs.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
IT Salaries in UK
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
UK Business Culture and Etiquette
Understanding and Mitigating Common Web Vulnerabilities