img
Permanent

Information Security Manager (Cyber Security Business Partner)

Leeds
money-bag Negotiable
561C1EAE53FB6A4CDD6779D6B09EEF0C
Posted Yesterday

Information Security Manager (Cyber Security Business Partner)The Information Security Manager / Cyber Security Business Partner (CSBP) plays a vital role in ensuring the alignment of cyber security initiatives with the strategic and operational goals of the organisation. This role serves as a key interface between business units and the cyber security function, delivering risk-based guidance, promoting a strong security culture, and enabling security innovation. You will have experience managing customer cyber assurance activities, supporting external audits (e.g., ISO 27001, Cyber Essentials Plus), and maintaining regulatory compliance, particularly with Financial Conduct Authority (FCA) cyber-related controls. Proficiency in cloud security controls and an ability to translate cyber risk into business context are essential. This role does not manage a team.

Key Accountabilities

Cyber Security Partnership and Advisory: Act as the security point of contact for UK business units, aligning cyber security goals with business priorities

Provide guidance on secure-by-design principles during project planning, procurement, and solution development

Build strong relationships across technical and non-technical stakeholders to promote security best practices

Ensure that the business’ information security posture is continuously improved through proactive security measures, monitoring, and reporting

Customer Cyber Assurance and Regulatory Compliance: Lead and manage customer cyber security assurance activities, including due diligence and technical assurance engagements

Support the development and maintenance of materials that evidence the organisation’s cyber maturity and compliance posture

Liaise with internal audit and risk functions to ensure cyber and information security controls align with FCA expectations and industry standards

External Audit and Certification Support: Lead preparation and support for external audits, including ISO 27001, Cyber Essentials and Cyber Essentials Plus, customer and regulatory assessments; collaborate with compliance, risk, and IT teams to ensure audit readiness and implement improvements

Cloud Security and Technology Risk: Provide expertise on cloud security controls (identity and access management, encryption, logging, secure configuration) across AWS and Azure; ensure secure adoption of cloud-native services in accordance with recognised frameworks (e.g., CIS Benchmarks, NIST, OWASP)

Risk Management and Governance: Identify and assess cyber risks within business processes and technology environments; support risk mitigation planning, tracking, and reporting in line with enterprise risk frameworks

Awareness, Culture and Reporting: Contribute to cyber security awareness and education initiatives; promote a culture of shared accountability for security and resilience; produce and maintain reporting information as required

Skills and ExperienceRequired

5+ years’ experience in a cyber security, risk, or assurance role, with strong stakeholder-facing exposure

Demonstrable experience with customer cyber assurance activities

External audit preparation, including ISO 27001, Cyber Essentials Plus

Proficient in cloud security (AWS, Azure, or GCP), including security control implementation and risk assessment

Working knowledge of NIST, ISO 27001, FCA Handbook (SYSC), and relevant NCSC guidance

Excellent verbal and written communication skills, with the ability to engage effectively at all business levels

Desirable

Background in financial services or regulated industries

Experience in third-party/vendor risk assessment and assurance

Relevant Cyber Security or IT degree level education

ISO 27001 Lead Implementer / Auditor

CISSP, CISM, CRISC

AWS/Azure security certifications

Notes: To be conducted as part of post offer employment checks. The personal information we have collected from you will be shared with Cifas to prevent fraud and other improper conduct. Further details on how your information will be used can be found at the privacy notice. By applying for this role, you consent to us processing your personal data in accordance with UK GDPR and the Data Protection Act 2018.

#J-18808-Ljbffr

Other jobs of interest...

Interface Recruitment UK
Yeadon5 days ago
money-bagNegotiable
Interface Recruitment UK
Leeds5 days ago
money-bag£40,000 per annum
Interface Recruitment UK
Leeds5 days ago
money-bagNegotiable
Yorkshire Housing
Leeds1 week ago
money-bag£65,000 per annum
Redcentric
Leeds1 week ago
money-bagNegotiable
Leeds and York Partnership NHS Foundation Trust
Leeds1 week ago
money-bagNegotiable
Kelda Group Limited 0000411940 - Kelda Group Limited
Bradford1 week ago
money-bag£44,942-56,178 per annum
Zenith Vehicles
Leeds1 week ago
money-bag£47,000 per annum
Yorkshire Water
Bradford1 week ago
money-bag£36,538-45,673 per annum
Kelda Group Limited 0000411940 - Kelda Group Limited
Bradford1 week ago
money-bag£36,538-45,673 per annum

Perform a fresh search...

  • Create your ideal job search criteria by
    completing our quick and simple form and
    receive daily job alerts tailored to you!

Jobs. Straight to your inbox!