Data Security Manager - 106 Great Western Street, Manchester - Stockport
Security Ltd
Stockport, United Kingdom
3 days ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Compensation
£ 48KJob location
Stockport, United Kingdom
Tech stack
Microsoft Antivirus
Software System Penetration Testing
Cloud Computing Security
CompTIA Security+
Computer Security
Data Security
Network Security
Microsoft Security Essentials
Security Information and Event Management
Software Vulnerability Management
Cyber Threat Analysis
Information Technology
Microsoft Sentinel
Vulnerability Analysis
Job description
We are seeking an experienced Data Security Manager to oversee the development and implementation of information security strategies for both internal operations and client environments. The successful candidate will work closely with technical teams and clients to manage cyber security risks, ensure regulatory compliance, and enhance overall data security across multiple business sectors., * Develop, implement, and maintain information security policies, standards, and procedures.
- Conduct cyber security risk assessments and recommend appropriate mitigation measures.
- Ensure compliance with UK GDPR, the Data Protection Act 2018, ISO 27001, and Cyber Essentials requirements.
- Manage vulnerability assessments, security audits, and remediation activities.
- Support Security Operations Centre (SOC) activities by reviewing security incidents and coordinating responses.
- SOC Code: 2135 - Cyber Security Professionals, * Develop, implement, and maintain information security policies, standards, and procedures.
- Conduct cyber security risk assessments and recommend appropriate mitigation measures.
- Ensure compliance with UK GDPR, the Data Protection Act 2018, ISO 27001, and Cyber Essentials requirements.
- Manage vulnerability assessments, security audits, and remediation activities.
- Support Security Operations Centre (SOC) activities by reviewing security incidents and coordinating responses.
- Oversee security monitoring using SIEM, endpoint protection, firewalls, and related security technologies.
- Coordinate penetration testing activities and ensure identified vulnerabilities are resolved.
- Produce security reports, risk registers, and recommendations for senior management and clients.
- Deliver security awareness training and promote information security best practices.
- Monitor emerging cyber threats and recommend improvements to strengthen organisational security.
Requirements
- Bachelor's degree in Cyber Security, Computer Science, Information Technology, or a related discipline.
- Minimum 3 years' experience in cyber security, information security, or data protection.
- Strong knowledge of information security governance, risk management, incident response, vulnerability management, network security, and cloud security.
- Practical experience with UK GDPR, ISO 27001, Cyber Essentials, and security compliance frameworks.
- Experience with Microsoft Defender, Microsoft Sentinel, SIEM platforms, endpoint protection, vulnerability scanning tools, and firewall technologies.
- Excellent analytical, organisational, and communication skills.
Desirable Qualifications
- CISSP
- CISM
- ISO 27001 Lead Implementer or Lead Auditor
- CompTIA Security+
- CEH (Certified Ethical Hacker)
- Microsoft Security Certifications
Benefits & conditions
- Competitive salary of £42,000 - £48,000 per annum
- Company pension scheme
- Paid annual leave
- Professional development and certification support
- Opportunities for career progression
- Supportive and collaborative working environment, £42,000 - £48,000 yearly
About the company
iSoft is a UK-based cyber security consultancy providing organisations with comprehensive cyber security, governance, risk management, and compliance solutions. Our services include Security Operations Centre (SOC) support, penetration testing, vulnerability management, ISO 27001 implementation, Cyber Essentials certification, GDPR compliance, and managed security services. We help businesses strengthen their security posture and protect critical information against evolving cyber threats.