Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
IT & Information Security Manager image - Rise Careers
Job details

IT & Information Security Manager

Role overview 

Zaizi is a software consultancy specialising in building bespoke digital solutions using open source software and cloud platforms. We predominantly work with central government agencies and adhere to the Government Digital Service standard.

We take security seriously, and are certified to ISO 27001 and Cyber Essentials Plus, demonstrating our commitment to robust information security practices
To support our continued growth, we are seeking an experienced Information Security Manager.

In this role, you will be responsible for ensuring our ongoing compliance with ISO27001 and Cyber Essentials Plus, including the management of quarterly external audits and the facilitation of Integrated Management System (IMS) meetings.
You will also oversee our adherence to ISO 9001 and ISO14001, ensuring that all relevant documentation and processes are audited and maintained.

Furthermore, you will conduct internal and external risk management workshops, supporting both our own compliance and that of our clients. You will provide expert analysis and advisory services on security compliance standards for the applications and cloud solutions we develop and support.

Compliance and Security Management:

  • Develop, implement, and maintain comprehensive compliance programs, including integrated management systems for ISO 27001, ISO 9001, ISO 14001, and Cyber Essentials Plus.
  • Oversee security operations, managing internal security tools and processes to ensure optimal protection of company assets.
  • Lead IT Support management, including asset management, budget planning, software deployment, and strategic forward planning.

Team Leadership and Development:

  • Provide effective line management to an IT support team of three support staff, ensuring efficient team processes and driving continuous improvement initiatives.
  • Foster a collaborative and high-performing team environment.

Data Protection and Security Advocacy:

  • Serve as the acting Data Protection Officer, ensuring compliance with data protection regulations.
  • Champion a culture of security awareness, embedding security by design principles throughout the business.

Security Operations and Incident Response:

  • Own and manage critical security processes, including threat detection and incident response, vulnerability and patch management, security advisory and consultancy, and security testing, including the scoping and organisation of external penetration testing.

Strategic Reporting and Collaboration:

  • Collaborate closely with the leadership team, providing insightful reports on key security metrics.
  • Ensure security considerations are integrated into all projects and product development initiatives.

Risk Management:

  • Support enterprise risk and compliance initiatives, taking a lead role in IT risk management.

Experience

  • Extensive industry experience in an IT & Security focused role
  • You are an experienced supportive manager and can get the best out of your team.
  • You are keen to share your knowledge and are open to giving (and receiving) continuous feedback
  • Strong communicator who thrives working cross-functionally across multiple teams
  • You can influence people of all grades to deliver the right outcomes
  • Security Management 
  • IT management (ITILv4)
  • Continuous Monitoring/Threat Alerts
  • Managing security incident and non-conformances 
  • Experience with Data protection duties and GDPR

Desirable

  • (CISM) certification or CISSP desirable to have

We are looking for the successful candidate to be able to work in the office for a minimum of two days.

Security Clearance

Certain projects demand that our staff be British and cleared to SC level (or eligible for clearance). 

You don’t meet all the requirements?

Studies show that women and black, Asian and minority ethnic people are less likely to apply for a job unless they meet every qualification. So if you’re excited about this role but your experience doesn’t align perfectly with the job description, we’d love you to still apply. You might just be the perfect person for this role, or another role here at Zaizi.

We actively welcome applications from people of colour, the LGBTQ+ community, individuals with disabilities, neurodivergent individuals, parents, carers, and those from lower socio-economic backgrounds.

If you need any accommodations to support your specific situation, please feel free to let us know. For candidates who are neurodiverse or have disabilities, we are happy to make any adjustments needed throughout the interview process—just ask!

Interview Process:

1st stage:

Initial phone screening done by a member of the recruitment team

2nd stage:

Technical interview, this stage evaluates your technical expertise and problem-solving abilities, especially if you're applying for a technical role.

Final Stage:

10-15 min presentation and a panel interview where multiple people from different departments ask you questions.

Salary: £70,000-£90,000

25 days paid holiday, plus bank holidays

Vitality medical insurance
Workplace Pension 5% employer contribution
Group Life Assurance
Cycle scheme
5 days a year for approved Training
WFH equipment allowance
Buy / Sell Holiday
2 days paid volunteering days


Other benefits:
Flexible working
Work on exciting projects - make a difference
Empowered to make decisions
Encouraged to fail fast and learn quickly
1-2-1 and team coaching / training available to all our staff

For further information contact- Talentteam@zaizi.com

Nat Hinds-Head of Talent

Kayla Kirby-Talent Acquisition Specialist

Average salary estimate

$80000 / YEARLY (est.)
min
max
$70000K
$90000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About IT & Information Security Manager, Zaizi

Are you ready to take on an exciting new challenge as the IT & Information Security Manager at Zaizi? Join us at our innovative software consultancy, where we focus on crafting bespoke digital solutions using open-source technology and cloud platforms, primarily for central government agencies. At Zaizi, we take security seriously and proudly hold ISO 27001 and Cyber Essentials Plus certifications, reflecting our dedication to robust information security practices. In this pivotal role, you'll ensure our compliance with these standards while also overseeing ISO 9001 and ISO 14001 adherence. Your guidance will be essential as you manage external audits and lead Integrated Management System meetings. Not only will you conduct risk management workshops to support both our compliance and our clients', but you will also offer expert analysis on security compliance standards for the applications and cloud solutions we develop. Leading an IT support team and fostering a high-performance environment, you’ll ensure optimal data protection and security advocacy throughout the business. Your influence will help integrate security into every project, making a significant impact on company operations. With opportunities to champion a culture of security awareness and cultivate a collaborative team atmosphere, this role is perfect for those who are passionate about IT security and looking to make a difference. If you are ready to help us create safe and effective digital solutions while managing critical security processes, we want to hear from you!

Frequently Asked Questions (FAQs) for IT & Information Security Manager Role at Zaizi
What are the key responsibilities of an IT & Information Security Manager at Zaizi?

As the IT & Information Security Manager at Zaizi, your primary responsibilities include ensuring compliance with security standards such as ISO 27001 and Cyber Essentials Plus, managing external audits, conducting risk management workshops, and overseeing the security operations of the company. You'll also be leading an IT support team, developing and maintaining compliance programs, and advocating data protection while integrating security considerations into all projects.

Join Rise to see the full answer
What qualifications are needed for the IT & Information Security Manager position at Zaizi?

To qualify for the IT & Information Security Manager role at Zaizi, candidates should possess extensive experience in IT and security-focused roles, strong communication skills, and be supportive managers who can effectively lead their teams. Familiarity with security management frameworks, ITILv4, and data protection duties under GDPR are essential, with certifications like CISM or CISSP being desirable.

Join Rise to see the full answer
How does Zaizi ensure a collaborative work environment for the IT & Information Security Manager?

Zaizi fosters a collaborative work environment by encouraging teamwork and open communication across multiple departments. As the IT & Information Security Manager, you'll lead by example, creating a high-performing team atmosphere and driving continuous improvement initiatives while promoting a culture of shared knowledge and feedback.

Join Rise to see the full answer
What does the interview process look like for the IT & Information Security Manager at Zaizi?

The interview process for the IT & Information Security Manager at Zaizi consists of an initial phone screening, followed by a technical interview, which assesses your expertise and problem-solving abilities. The final stage includes a presentation and a panel interview with various team members, allowing for a comprehensive evaluation of your skills and fit for the role.

Join Rise to see the full answer
Is security clearance required for the IT & Information Security Manager role at Zaizi?

Yes, certain projects at Zaizi require team members to be British and cleared to SC level or eligible for clearance. This security requirement is crucial for ensuring the safe handling of sensitive information in government-related projects.

Join Rise to see the full answer
Common Interview Questions for IT & Information Security Manager
What is your approach to ensuring compliance with ISO 27001 and Cyber Essentials Plus?

In answering this question, you should highlight your experience with developing and implementing compliance programs. Discuss how you manage regular audits and inspections and how you keep the team informed and trained on compliance protocols.

Join Rise to see the full answer
How do you manage risk and ensure data protection within an organization?

Emphasize your experience conducting risk management workshops, outlining your methodology for identifying and mitigating risks, and discussing the importance of a proactive stance on data protection, including adherence to GDPR regulations.

Join Rise to see the full answer
Can you provide an example of a time you improved security operations?

Share a specific instance where you identified vulnerabilities in security processes and implemented effective solutions. Detail the steps you took, the outcomes achieved, and how your efforts contributed to organizational security enhancement.

Join Rise to see the full answer
How do you foster a security-aware culture within your team?

Discuss strategies you’ve used to educate team members about security best practices and the importance of integrating security into daily operations. Share how you encourage continuous learning and open discussions about security measures.

Join Rise to see the full answer
Describe your experience with leading an IT support team.

Talk about your leadership style, how you handle team dynamics, ensure efficient processes, and drive continuous improvement. Share specific examples of team successes that resulted from your management.

Join Rise to see the full answer
What tools or methodologies do you use for monitoring and responding to security incidents?

Describe the security tools and frameworks you are familiar with and how you utilize them in your work. Discuss the importance of timely responses to incidents and how you have led such efforts in previous roles.

Join Rise to see the full answer
How do you integrate security into project development cycles?

Talk about your strategies for collaborating with development teams to ensure that security protocols are incorporated into project planning and execution. Stress the significance of early engagement in the project lifecycle.

Join Rise to see the full answer
What is your strategy for managing external audits effectively?

Outline your approach to preparing for audits, ensuring documentation is up-to-date, and making sure all team members are aware of audit protocols, so the process runs smoothly and successfully.

Join Rise to see the full answer
How do you handle conflicts within your team, especially related to security practices?

Explain your method for conflict resolution, focusing on communication and collaboration to reach a consensus while maintaining a commitment to upholding security standards.

Join Rise to see the full answer
What trends do you see affecting information security today?

Share your perspective on current trends in information security, such as cloud security, the rise of cyber threats, and the importance of continuous education and adaptation to maintain robust security operations.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 13 days ago

Join Agile Defense as a Cybersecurity Engineer where your expertise will support crucial national security missions.

Photo of the Rise User

We are looking for an experienced Application System Analyst III to join the University of Maryland Medical System's team, focusing on enterprise document management systems.

Photo of the Rise User
Posted 2 days ago
Photo of the Rise User
Posted 7 days ago

ING Bank Romania seeks a motivated Tech Service Level Manager to drive their technology partnerships and enhance operational efficiency.

Photo of the Rise User

Peraton is looking for Network LAN/WAN Administrators to bolster their support for USSOCOM’s vital network operations.

Photo of the Rise User
Initiate Government Solutions Remote Washington, District of Columbia, United States
Posted 9 days ago

As a remote Sr. Systems Engineer at IGS, you will deliver critical IT solutions for the Department of Veterans Affairs, contributing to federal health services.

MKS2 Technologies is in search of a skilled Network Security Technician to join our team and support the security compliance for our network systems.

Photo of the Rise User

Wieland is looking for a Remote Oracle Business Analyst to enhance and support their Oracle EBS applications while working remotely with minimal supervision.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 4, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Columbus just viewed Scrum Master at Sysco Costa Rica
Photo of the Rise User
54 people applied to Cybersecurity Intern at Dewberry
X
Someone from OH, Cincinnati just viewed Senior Java Engineer (Remote) at Xenon7
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior, Software Engineer- Java at Walmart
Photo of the Rise User
Someone from OH, Cincinnati just viewed Java, Javascript, Python, NodeJS Software Engineer at Walmart
Photo of the Rise User
6 people applied to Security Analyst at ANS
Photo of the Rise User
52 people applied to Security Analyst Jr at DEUNA
Photo of the Rise User
Someone from OH, Pickerington just viewed Senior Business Analyst (Salesforce) at Protolabs
H
Someone from OH, Akron just viewed Brand Marketing Manager at Huntington
R
Someone from OH, Hamilton just viewed Forklift Operator Warehouse at Ryder
Photo of the Rise User
Someone from OH, Cincinnati just viewed Ad Ops Specialist, Display at System1
Photo of the Rise User
Someone from OH, Cincinnati just viewed FQHC Billing & Collections Manager at OhioGuidestone
Photo of the Rise User
Someone from OH, Cleveland just viewed Enrollment Specialist- Remote at Adtalem Global Education
o
Someone from OH, Dayton just viewed Marketing and Communications Specialist at osu
Photo of the Rise User
Someone from OH, Columbus just viewed Construction Coordinator at Meijer
Photo of the Rise User
Someone from OH, Steubenville just viewed Legal & Compliance Internship at Smiths Group
Photo of the Rise User
Someone from OH, Warren just viewed Senior Front-End Developer at Worldly
Photo of the Rise User
Someone from OH, Tiffin just viewed Game Operations Specialist at Genius Sports
u
Someone from OH, Loveland just viewed Customer Service Agent - Part Time at uhaul
Photo of the Rise User
Someone from OH, Cleveland just viewed HR Manager at Shearer's Foods
Photo of the Rise User
Someone from OH, Columbus just viewed Mid Level, System Administrator - (ETS) at Delivery Hero