Job Search and Career Advice Platform

Enable job alerts via email!

Information Security and Compliance Manager

Myairops

Farnborough

On-site

GBP 50,000 - GBP 70,000

Full time

30+ days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading company in the aviation SaaS industry is seeking an Information Security & Compliance Manager to oversee cyber security and maintain compliance standards. This role balances strategic oversight with operational security tasks, ensuring a safe and resilient infrastructure. Key responsibilities include managing SOC 2 accreditation standards, coordinating audits, and assessing vendor security risks while collaborating with cross-functional teams. Ideal candidates will have a solid foundation in cybersecurity and a degree or equivalent experience in the field.

Benefits

Competitive Group Pension Scheme
Comprehensive Life Assurance
Comprehensive Income Protection
Comprehensive Travel Insurance
Comprehensive Private Healthcare after probation
Electric Car Scheme
Free Car Parking
Discounts at popular Retailers
2 Paid Volunteering Days each year
Investment in Training, Qualifications and Professional Development

Qualifications

  • Experience in cloud environments, ideally Azure.
  • Knowledge of application security and DevOps practices.
  • Ability to hold UK security clearance to SC level or higher.

Responsibilities

  • Lead security operations across product and cloud environment (Azure).
  • Coordinate SOC 2 audit process and manage external security relationships.
  • Translate audit findings into actionable tasks for engineering teams.

Skills

Cybersecurity
Information Security
Communication
Teamwork
Risk Assessment
Details Orientation
Process Orientation

Education

Degree in Cyber or Information Security
Job description
Information Security & Compliance Manager

/ Position: Information Security & Compliance Manager
/Location:Farnborough HQ
/Working Hours:Full-Time, 40 Hours per week

We are looking for a hands-on Information Security & Compliance Manager to take ownership of cyber security and data privacy across myairops. This role balances strategic oversight with practical, day-to-day security operations. You’ll be central to maintaining our SOC 2 Type II accreditation, managing third-party relationships, and ensuring our products and cloud infrastructure are secure, resilient, and compliant.

In this role, you will have the unique opportunity to lead our SOC2 audit activities, perform risk management reviews, and drive our vulnerability management program in alignment with industry best practices. Your keen eye for detail and exceptional problem-solving skills will be invaluable in analysing alerts from our monitoring platform and recommending necessary configuration changes and enhancements.

We are looking for a self-motivated individual with excellent communication and teamwork abilities, as you will collaborate extensively with cross-functional teams to achieve our security objectives. Your strong attention to detail, process-oriented mindset, and ability to meet deadlines with minimal supervision will be key to your success in this role.

/About us:
We’re a friendly team of experts, optimists, big-thinkers and problem-solvers. myairops is a leader of SaaS products to the aviation industry with customers across the globe with diverse challenges including corporate flight departments, brokers, medical providers, military and business aviation operators. Solutions are provided through innovative web delivered software and connected mobile applications.

/Responsibilities:

  • Lead security operationsacross our product and cloud environment (Azure), working closely with DevOps and engineering to ensure security best practices are followed.
  • Manage external relationshipswith security providers, including penetration testers and SOC 2 Type II auditors.
  • Own the SOC 2 audit process, coordinating internal preparation, evidence collection, and communication with auditors to ensure compliance is maintained.
  • Respond to customer security questionnaires, due diligence requests, and collaborate with sales and customer success to support commercial activities.
  • Oversee and maintainour public security and compliance portal.
  • Conduct technical audits, regular internal reviews, and assess controls against internal policies and external standards.
  • Translate audit findingsand test results into clear, actionable tasks for the engineering and DevOps teams.
  • Perform vendor security assessments, managing risk across our supply chain.
  • Manage vulnerability and patch management, ensuring critical software libraries are kept up to date.
  • Enforce security policies, particularly regarding open-source software and licensing compliance.
  • Plan and lead annual Business Continuity and Disaster Recovery tests, reporting outcomes and driving improvements.
  • Evaluate and configure Azure security tooling, including firewall, DDoS, and WAF services.
  • Contribute to governance processes, reviewing change requests for potential impact on security, privacy, and service availability.
  • Collaborate with the Group CIO and DPO, contributing to wider organisational security and data privacy initiatives.

/Skills, Qualifications and Experience required:

Essential

  • A solid background in cyber or informationsecurity, with experience operating at a similar level in cloud environments (ideally Azure) OR possess a degree within cyber or information security with the ability to demonstrate the attitude and aptitude to take this next career step
  • Experience working in a software environment that is cloud native
  • Experience of successfully achieving ISO27001 or preferably SOC2 Type 2
  • Strong understanding of application security, cloud infrastructure, and DevOps practices
  • Awareness of industry frameworks, such as NCSC Cyber Assessment Framework, Cyber Essentials Plus and OWASP
  • Experience managing and selecting 3rd party vendors for audit and penetration testing
  • Experience interacting with customer security and data privacy teams
  • Experience conducting or managing penetration tests and security audits
  • Can produce network and security architecture designs using software such as Microsoft Visio
  • Ability to assess risk and prioritise security tasks in a fast-paced environment
  • A pragmatic communicator who can bridge the gap between technical teams and auditors/customers
  • Excellent communication and teamwork skills to collaborate effectively with cross-functional teams
  • Detail-oriented, process-oriented and thorough
  • Must currently hold or be able to hold UK security clearance to SC level or higher

Advantageous

  • Knowledge of security and data privacy controls within Microsoft Azure Cloud stack with hands on experience configuring and monitoring within Azure
  • Knowledge of UK Government security standards
  • Knowledge of PCI-DSS and achieving suitable standards within software
/In addition to a Competitive Salary, we will offer you:
  • Competitive Group Pension Scheme
  • Comprehensive Life Assurance *
  • Comprehensive Income Protection *
  • Comprehensive Travel Insurance *
  • Comprehensive Private Healthcare (after successful passing of probation) *
  • Electric Car Scheme
  • Free Car Parking
  • Discounts at popular Retailers
  • 2 Paid Volunteering Days each calendar year (subject to line manager approval)
  • Investment in Training, Qualifications and Professional Development

*(Subject to insurance underwriting)

Due to the volume of applications received, only candidates selected for interview will be contacted. If you do not hear from us within 20 working days then your application has been unsuccessful on this occasion.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Associate Software Engineer

Myairops

Farnborough
Hybrid
GBP 30,000 - 45,000
Full time
30+ days ago
Support Engineer

Myairops

Farnborough
On-site
GBP 30,000 - 45,000
Full time
30+ days ago
Information Manager

Airbus

Portsmouth
Hybrid
GBP 45,000 - 60,000
Full time
30+ days ago
Azure Engineer

NewOrbit Ltd

Oxford
Hybrid
GBP 60,000 - 80,000
Full time
30+ days ago
Security Operations Analyst (SecOps)

Attio Ltd

United Kingdom
Hybrid
GBP 80,000 - 95,000
Full time
30+ days ago
Data Migration Engineer

Myairops

Farnborough
Hybrid
GBP 35,000 - 50,000
Full time
30+ days ago
Senior Cyber Security Manager

tendersglobal

England
On-site
GBP 70,000 - 120,000
Full time
30+ days ago
Security Operations Analyst (SecOps)

Methodfi

United Kingdom
Hybrid
GBP 80,000 - 95,000
Full time
30+ days ago
Cyber Programmes UK Sales Manager

Airbus

Newport
Hybrid
GBP 60,000 - 80,000
Full time
30+ days ago
Cyber Security Architect

Airbus

Newport
Hybrid
GBP 80,000 - 100,000
Full time
30+ days ago