Together is seeking an Information Security Manager in Cheadle to drive governance, risk management and assurance, reporting to the Chief Information Security Officer. You will maintain and enhance the information security framework aligned to NIST CSF and CAF, develop risk metrics (KPIs and KRIs), lead third-party security due diligence, deliver security awareness training, support audits and continuously improve policies and controls, with hands-on use of Microsoft Purview and DLP and active incident response. Essential experience includes third-party due diligence, security training, risk governance, regulated environments, and cloud/SaaS. Desirable: CISM or equivalent. To apply, tailor your CV with measurable risk reductions, concrete audit outcomes, and clear stakeholder engagement, and note on-site availability in Cheadle.
We’re Together. For over 50 years, we’ve helped thousands of people, businesses and professionals unlock their property ambitions with our common-sense approach to mortgages and secured loans.
We take the time to understand our customers and our door is always open, so we can often help when other lenders can’t or won’t. Based in Cheadle, Cheshire, our 900 colleagues help our customers throughout the UK, backed by the power of a £7.8 billion loan book.
Reporting to the Chief Information Security Officer, you will play a critical role in supporting the development and continuous improvement of our Information Security governance, risk management, and assurance framework.
You will be a seasoned Information Security professional able to support and maintain governance and leading frameworks such as NIST CSF and the UK Cyber Assessment Framework (CAF) to identify, assess and managing risks across the Group. You will develop risk metrics (KPIs/KRIs), deliver security training and awareness programmes and lead third-party cyber, information and AI security due diligence. This would include ongoing monitoring of risks and incidents. The role also involves supporting audits, driving continuous improvement across policies and controls, and implementing monitoring solutions using Microsoft Purview and DLP. Working closely with the CISO and Cyber Security team, you will contribute to governance, reporting and incident response, while building strong stakeholder relationships across IT, Risk and the wider business.
in a nutshell, responsibilities include:
You are a proactive and detail-oriented Information Security professional with experience working in regulated environments and a passion for improving security maturity.
Essential Experience
Desirable
If you feel you have some of the skills mentioned above, but not all, please do still apply and we would be happy to have a further discussion with you in regards to your suitability for the role.
Together embraces diversity and inclusion, and are proud to be an equal opportunity workplace. Not only do we welcome difference – we celebrate it, support it and really value our colleagues for who they are. We are committed to building a team that represents a variety of backgrounds, perspectives and skills.
If you feel you'd benefit from any support or reasonable adjustments during any stage of the recruitment process, please don’t hesitate to let us know when completing your application. This information will be picked up by our team, so we can try and put steps in place to help you be at your best through this process.
Click here for more information on our Recruitment Process
Please note that all successful applicants will undergo relevant employment reference, financial and criminal record checks.
#TMHP