Information Security Manager

Proactive Appointments
United States
3 days ago
Apply on computerjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Software System Penetration Testing Cyber Security Software Vulnerability Management Information Security Management System

Job description

  • Maintain and continually improve the ISO 27001 ISMS, policies, controls and supporting processes.
  • Support ISO 27001 audits, certification activities and customer assurance requests.
  • Manage information security risks, DPIAs, supplier assessments and corrective actions.
  • Coordinate security incidents, business continuity and disaster recovery activities.
  • Support vulnerability management, penetration testing and remediation.
  • Maintain compliance with ISO 9001, Cyber Essentials/Cyber Essentials Plus and relevant regulatory requirements.
  • Provide practical security guidance to technical and business teams.
  • Drive security awareness, continual improvement and a strong culture of compliance.

Requirements

You will have 5-8 years’ experience in information security, cyber security, governance, risk or compliance, with strong practical experience of ISO 27001 and ISMS requirements.

You will be confident working with technical and non-technical stakeholders, managing risk and audit activities, and translating security requirements into practical, effective controls.

Key skills: ISO 27001 ISMS Information Security Risk Management Audit & Assurance Supplier Security Incident Management Business Continuity Vulnerability Management Compliance

About the company

Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on computerjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:58 min

Prioritizing security over rapid feature delivery

Jakub Andrzejewski · World Congress 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

4:25 min

The growing power and security responsibility of developers

Tino Sokic · World Congress 2023

Videos

See all

Related articles

See all