IT & Information Security Manager

Be among the first applicants.
Zaizi Ltd
London
GBP 70,000 - 90,000
Be among the first applicants.
5 days ago
Job description

Role overview

Zaizi is a software consultancy specialising in building bespoke digital solutions using open source software and cloud platforms. We predominantly work with central government agencies and adhere to the Government Digital Service standard.

We take security seriously, and are certified to ISO 27001 and Cyber Essentials Plus, demonstrating our commitment to robust information security practices.
To support our continued growth, we are seeking an experienced Information Security Manager.

In this role, you will be responsible for ensuring our ongoing compliance with ISO27001 and Cyber Essentials Plus, including the management of quarterly external audits and the facilitation of Integrated Management System (IMS) meetings.
You will also oversee our adherence to ISO 9001 and ISO 14001, ensuring that all relevant documentation and processes are audited and maintained.

Furthermore, you will conduct internal and external risk management workshops, supporting both our own compliance and that of our clients. You will provide expert analysis and advisory services on security compliance standards for the applications and cloud solutions we develop and support.

Compliance and Security Management:

  • Develop, implement, and maintain comprehensive compliance programs, including integrated management systems for ISO 27001, ISO 9001, ISO 14001, and Cyber Essentials Plus.
  • Oversee security operations, managing internal security tools and processes to ensure optimal protection of company assets.
  • Lead IT Support management, including asset management, budget planning, software deployment, and strategic forward planning.

Team Leadership and Development:

  • Provide effective line management to an IT support team of three support staff, ensuring efficient team processes and driving continuous improvement initiatives.
  • Foster a collaborative and high-performing team environment.

Data Protection and Security Advocacy:

  • Serve as the acting Data Protection Officer, ensuring compliance with data protection regulations.
  • Champion a culture of security awareness, embedding security by design principles throughout the business.

Security Operations and Incident Response:

  • Own and manage critical security processes, including threat detection and incident response, vulnerability and patch management, security advisory and consultancy, and security testing, including the scoping and organisation of external penetration testing.

Strategic Reporting and Collaboration:

  • Collaborate closely with the leadership team, providing insightful reports on key security metrics.
  • Ensure security considerations are integrated into all projects and product development initiatives.

Risk Management:

  • Support enterprise risk and compliance initiatives, taking a lead role in IT risk management.

Experience

  • Extensive industry experience in an IT & Security focused role.
  • You are an experienced supportive manager and can get the best out of your team.
  • You are keen to share your knowledge and are open to giving (and receiving) continuous feedback.
  • Strong communicator who thrives working cross-functionally across multiple teams.
  • You can influence people of all grades to deliver the right outcomes.
  • Security Management.
  • IT management (ITILv4).
  • Continuous Monitoring/Threat Alerts.
  • Managing security incidents and non-conformances.
  • Experience with Data protection duties and GDPR.

Desirable

  • (CISM) certification or CISSP desirable to have.

We are looking for the successful candidate to be able to work in the office for a minimum of two days.

Security Clearance

Certain projects demand that our staff be British and cleared to SC level (or eligible for clearance).

Interview Process:

1st stage: Initial phone screening done by a member of the recruitment team.

2nd stage: Technical interview, this stage evaluates your technical expertise and problem-solving abilities, especially if you're applying for a technical role.

Final Stage: 10-15 min presentation and a panel interview where multiple people from different departments ask you questions.

Salary: £70,000-£90,000

25 days paid holiday, plus bank holidays.

Vitality medical insurance.
Workplace Pension 5% employer contribution.
Group Life Assurance.
Cycle scheme.
5 days a year for approved Training.
WFH equipment allowance.
Buy / Sell Holiday.
2 days paid volunteering days.

Other benefits:
Flexible working.
Work on exciting projects - make a difference.
Empowered to make decisions.
Encouraged to fail fast and learn quickly.
1-2-1 and team coaching / training available to all our staff.

For further information contact- Talentteam@zaizi.com

Nat Hinds-Head of Talent

Kayla Kirby-Talent Acquisition Specialist

Get a free, confidential resume review.
Select file or drag and drop it
Avatar
Free online coaching
Improve your chances of getting that interview invitation!
Be the first to explore new IT & Information Security Manager jobs in London