> Markdown version of [/jobs/ext/2108039-information-security-specialist](https://www.wearedevelopers.com/jobs/ext/2108039-information-security-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Specialist - **Company:** Ridgacre - **Location:** Quinton, UK - **Contract:** Contract - **Skills:** Cyber Security, Information Security Management, Software Vulnerability Management, Qualys - **Published:** August 19, 2026 - **Apply:** https://www.apply4u.co.uk/jobs/x/44387932/ ## About the Role ISO 27001 certified and fully conversant with information security management frameworks. Proven experience supporting audit remediation and evidencing control improvements. Strong understanding of joiners, movers and leavers security controls. Hands-on experience with Qualys VMDR or similar vulnerability management tooling. Ability to manage remediation activity, influence stakeholders and work at pace. Excellent documentation, reporting and communication skills. ## Description Support the delivery of ISO 27001 controls, governance and audit remediation plans. Address external audit findings relating to starters, leavers and joiners processes. Monitor, evidence and report on information security compliance activity for auditors. Provide training, guidance and awareness support across relevant teams. Use Qualys VMDR to support vulnerability management, detection, response and remediation tracking. Produce clear reports, dashboards and updates for technical and non-technical stakeholders.Essential Skills ## Related Videos - [Don't Be A Naive Developer: How To Avoid Basic Cybersecurity Mistakes](https://www.wearedevelopers.com/videos/498-don-t-be-a-naive-developer-how-to-avoid-basic-cybersecurity-mistakes) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Security Basics for Vibe Coders](https://www.wearedevelopers.com/magazine/598-security-basics-for-vibe-coders) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)