
Enable job alerts via email!
Generate a tailored resume in minutes
Land an interview and earn more. Learn more
A leading cybersecurity consultancy in the UK is seeking an experienced Information Security Manager to lead GRC engagements for large enterprise clients. You will provide strategic advice to senior stakeholders and mentor junior team members, operating within a supportive environment that values collaboration and professional growth. The role requires a strong understanding of ISO standards and excellent communication skills. Competitive salary and benefits including training budget and private healthcare are offered.
Salary: up to £60,000 DOE + Training Budget + Bonus Scheme
Join a fast-growing cybersecurity consultancy that partners with enterprise-scale clients across finance, healthcare, technology, and energy helping them build resilience, meet compliance goals, and stay ahead of evolving threats.
You’ll be part of a collaborative, award‑winning team that blends deep technical knowledge with commercial insight, supporting global organisations with frameworks including ISO 27001, SOC 2, PCI‑DSS, GDPR, DORA, and NIS2.
Lead and deliver GRC engagements for large enterprise clients, including readiness assessments, internal audits, and advisory projects.
Act as a trusted advisor to senior stakeholders, translating complex frameworks into clear, actionable strategies.
Mentor and guide junior consultants, contributing to team development and quality assurance.
Work closely with technical teams to align governance and compliance with operational security practices.
Operate autonomously while helping refine and enhance consultancy methodologies.
Proven experience in GRC consulting, audit, or information security management within large or regulated organisations.
Strong knowledge of ISO 27001 and SOC 2 (experience with PCI‑DSS, NIST, DORA, or NIS2 advantageous).
Excellent communication and presentation skills, confident in C‑level workshops and stakeholder management.
Organised, self‑motivated, and experienced managing multiple enterprise projects simultaneously.
Certifications such as CISM, CISA, CISSP, or ISO Lead Auditor desirable.
Mid‑Senior level
Full-time
Information Technology
Computer and Network Security