Group Information & Security Manager

Oscar
Leeds, UK
26 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Cyber Security Identity and Access Management Security Information and Event Management Software Vulnerability Management

Job description

Role

Group Information & Cyber Security Manager

Location

Doncaster or Leeds (Hybrid + Site Visits)

Type

Permanent, Full-Time

Summary

We are looking for a strategic and influential cyber security leader for a Group Information & Cyber Security Manager position in Doncaster or Leeds. The main purpose of this role is to lead, develop, and continuously enhance the client’s information and cyber security posture, ensuring the security, integrity and availability of all systems and data.

This is a fantastic role for a highly experienced Information & Cyber leader with supply chain or manufacturing experience to step into a high-visibility role that combines strategic influence, leadership, and the chance to take ownership of a company’s security protocol. This role operates on a hybrid basis (2 days per week) Doncaster or Leeds, with site travel required.

Key Responsibilities

  • Provide overall leadership for the organisation’s information and cyber security function, continually strengthening the protection of systems and data to maintain confidentiality, integrity, and availability.
  • Set the strategic vision and governance framework for all areas of cyber and information security across the client.
  • Manage third-party providers responsible for cyber monitoring, detection, and incident response, ensuring strong performance, resilience, and effective risk control.
  • Maintain and take ownership of the client-wide cyber security risk register, including conducting risk assessments, threat modelling, and defining mitigation strategies.
  • Take the lead on security incident management, ensuring timely response, clear stakeholder communication, and ongoing improvement of processes.
  • Ensure adherence to relevant regulations and industry standards, including ISO 27001, NIST, GDPR, and the UK Data Protection Act.
  • Promote a strong security-first culture across the organisation through awareness initiatives, training programmes, and targeted education efforts.

Requirements

  • Strong technical understanding across various security toolings, IAM, DLP, SIEM, EDR, and vulnerability management.
  • Deep understanding of compliance frameworks including ISO27001, NIST, GDPR, and industry best practice.
  • Collaborative leadership style with ability to influence and challenge at exec level.
  • Risk-based mindset with ability to balance security with operational and commercial needs.
  • IT Security in supply chain or manufacturing experience.
  • 30% Annual Bonus.
  • Hybrid Working.
  • Company Pension Scheme.

Requirements

  • Strong technical understanding across various security toolings, IAM, DLP, SIEM, EDR, and vulnerability management.
  • Deep understanding of compliance frameworks including ISO27001, NIST, GDPR, and industry best practice.
  • Collaborative leadership style with ability to influence and challenge at exec level.
  • Risk-based mindset with ability to balance security with operational and commercial needs.
  • IT Security in supply chain or manufacturing experience.
  • 30% Annual Bonus.
  • Hybrid Working.
  • Company Pension Scheme.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

2:58 min

Prioritizing security over rapid feature delivery

Jakub Andrzejewski · World Congress 2023

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

4:25 min

The growing power and security responsibility of developers

Tino Sokic · World Congress 2023

4:27 min

Centralizing access with open source identity management providers

Den Prysukhin · LIVE

Videos

See all

Related articles

See all