Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Information Security (InfoSec) Manager image - Rise Careers
Job details

Information Security (InfoSec) Manager

We are seeking an experienced and highly capable Information Security Manager to join our growing team at Prevail Partners. The ideal candidate will bring deep technical knowledge of information security risks, controls and frameworks — with practical experience managing ISO 27001-compliant systems and embedding secure practices across dynamic operational environments. You will work closely with the Counter Intelligence and Security Lead, Compliance Manager, IT department, and project teams to ensure robust, proportionate, and forward-looking protection of our people, data and systems. 

 

This is a key role for a pragmatic and security-minded individual who can operate at both strategic and operational levels, supporting the business as it expands its global footprint and develops sensitive technology solutions. 

 

Key Responsibilities 

 

Security Strategy & Governance 

  • Lead the continued development of Prevail’s Information Security Management System (ISMS) in alignment with ISO 27001, driving forward maturity and integration with wider business goals. 
  • Serve as the lead advisor on information security, ensuring risk-based decision-making and strong stakeholder engagement across the business. 
  • Maintain close working relationships with external stakeholders including NCSC and NPSA, ensuring Prevail remains alert to national-level threat reporting and guidance. 
  • Represent information security within executive-level planning, commercial proposals, and assurance processes. 
  • Implement and lead the Data Loss Prevention function, advising on appropriate software and functionality. 
  • To develop, configure and refine policies and rules, to help prevent data loss and protect sensitive information across the company.
  • Collaborate with the wider, cross-functional company Insider Threat function, including HR, legal, compliance and business leads. 

 

Operational Security & Risk Management 

  • Oversee the planning, implementation and management of technical and procedural controls across endpoint security, data access, and cloud infrastructure (including AWS). 
  • Maintain Prevail’s Cyber Essentials and Cyber Essentials Plus accreditations, including preparation, audit liaison, and continuous improvement of control measures. 
  • Lead structured risk assessments across internal systems and project-specific activities, and develop pragmatic mitigation plans with relevant teams. 

 

Data Protection & Compliance 

  • Work alongside the Compliance Manager and DPO to ensure effective implementation of UK data protection law, including support for Data Protection Impact Assessments (DPIAs) and data mapping. 
  • Oversee the information security training and awareness programme, ensuring it reflects both regulatory obligations and operational realities. 
  • Maintain up-to-date security documentation, incident logs, audit records and policy registers. 

 

Preparedness & Incident Response 

  • Lead and continuously improve the company’s incident response framework, including conducting tabletop exercises and reviewing lessons learned. 
  • Ensure the business is prepared to respond to cyber security incidents, breaches or service disruptions through robust business impact assessment, business continuity and recovery planning. 

 

Internal Engagement & Security Culture 

  • Deliver internal briefings and staff awareness sessions across the year, including during onboarding and company Townhalls. 
  • Champion our security culture, ensuring all staff understand their role in protecting themselves, the organisation and its data. 
  • Collaborate with teams across operations, HR and IT to identify emerging vulnerabilities and strengthen preventative measures. 

 

Governance & Oversight 

  • Chair internal security governance forums to track risks, define priorities, and drive improvement across physical, cyber and personnel domains. 
  • Contribute to security input for new markets, overseas deployments, and sensitive project work. 
  • Support leadership in meeting regulatory, contractual, and reputational requirements in relation to information security. 
  • Demonstrable experience leading or managing an ISO 27001-aligned ISMS, with a track record of successful implementation or certification. 
  • Strong understanding of information security risk management, governance, and technical controls. 
  • Knowledge of UK data protection regulations (GDPR) and security standards relevant to operational delivery. 
  • Excellent communication and stakeholder management skills, including the ability to engage non-technical audiences. 
  • A proactive, solutions-focused mindset, capable of balancing security with business agility. 
  • ISO 27001 Lead Implementer or Lead Auditor certification (desirable).
  • Experience working in or with secure government, defence, or national security environments. 
  • Familiarity with broader frameworks such as ISO 31000, NIST CSF, CIS Controls, or Cyber Essentials. 
  • Experience supporting the secure delivery of software or technology platforms. 

Us: 

Prevail Partners delivers high quality intelligence, research and consultancy services to clients ranging from governments and multinational corporations to non-governmental organisations. These services are delivered predominantly across Europe, the Middle East and Africa.   

We pride ourselves on selecting interesting projects which we believe can genuinely make a difference. You will be joining the company at a time of continued growth, and will be required to support a wide variety of these projects across the whole company. 

What we offer here at Prevail:

Competitive salary, salary sacrifice pension, access to onsite gym facilities, enhanced leave polices, and private healthcare after two years at Prevail.

Average salary estimate

$80000 / YEARLY (est.)
min
max
$70000K
$90000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Information Security (InfoSec) Manager, Prevail

At Prevail Partners, we are on the lookout for an experienced Information Security (InfoSec) Manager to join our dynamic team! If you have a keen understanding of information security risks and controls, and a proven track record of managing ISO 27001-compliant systems, this could be the perfect role for you. You will play a pivotal role in developing our Information Security Management System (ISMS) while collaborating with key stakeholders across the organization. This position is not just about compliance; it's about creating a security-conscious culture as we expand our global footprint. You will lead initiatives such as implementing Data Loss Prevention strategies, managing Cyber Essentials accreditations, and conducting risk assessments to ensure the safety of our people, data, and systems. Your ability to engage non-technical audiences will make you a valuable asset in championing awareness sessions and nurturing our security culture. Here, at Prevail, we are committed to high quality intelligence and consultancy services that genuinely make a difference. If you’re ready to take your career to the next level and join a company that's dedicated not only to security but also to impactful projects, then we want to hear from you!

Frequently Asked Questions (FAQs) for Information Security (InfoSec) Manager Role at Prevail
What are the main responsibilities of the Information Security (InfoSec) Manager at Prevail Partners?

The Information Security (InfoSec) Manager at Prevail Partners is responsible for developing and maintaining the Information Security Management System (ISMS) in alignment with ISO 27001. This includes leading risk assessments, implementing data loss prevention strategies, and ensuring compliance with UK data protection law. The manager will also engage with stakeholders across the business and represent security within executive-level planning.

Join Rise to see the full answer
What qualifications are required for the Information Security (InfoSec) Manager role at Prevail Partners?

Candidates for the Information Security (InfoSec) Manager at Prevail Partners should have demonstrable experience managing ISO 27001-aligned ISMS and a strong understanding of information security risk management and governance. While an ISO 27001 Lead Implementer or Lead Auditor certification is desirable, strong communication skills and a proactive mindset are equally important.

Join Rise to see the full answer
How does the Information Security (InfoSec) Manager ensure compliance with data protection laws at Prevail Partners?

The Information Security (InfoSec) Manager at Prevail Partners collaborates closely with the Compliance Manager and Data Protection Officer (DPO) to ensure compliance with UK data protection laws. This includes supporting Data Protection Impact Assessments (DPIAs), ensuring effective training programs, and maintaining up-to-date security documentation.

Join Rise to see the full answer
What does the incident response framework look like for the Information Security (InfoSec) Manager at Prevail Partners?

The Information Security (InfoSec) Manager at Prevail Partners is tasked with leading and improving the company's incident response framework. This includes conducting tabletop exercises, reviewing lessons learned, and ensuring that the organization is prepared to respond effectively to cyber incidents or breaches, thereby safeguarding critical data and systems.

Join Rise to see the full answer
What kind of security culture is the Information Security (InfoSec) Manager expected to develop at Prevail Partners?

The Information Security (InfoSec) Manager at Prevail Partners is expected to champion a security culture that empowers all staff to understand their role in protecting data and systems. This includes delivering internal briefings and training sessions, as well as collaborating with various teams to strengthen preventative measures and identify vulnerabilities.

Join Rise to see the full answer
Common Interview Questions for Information Security (InfoSec) Manager
Can you describe your experience with ISO 27001?

When answering this question, share specific examples of your role in developing or managing an ISO 27001-aligned Information Security Management System (ISMS). Highlight challenges you faced, how you overcame them, and the impact of your contributions on the organization's security posture.

Join Rise to see the full answer
How do you approach risk assessments?

Discuss your methodology for conducting risk assessments. Mention specific tools or frameworks you use and emphasize your experience in developing mitigation plans. Providing an example of a successful assessment can demonstrate your analytical and problem-solving skills.

Join Rise to see the full answer
What incident response strategies have you implemented in the past?

Give details about your role in creating or enhancing incident response plans. Share any experiences where your involvement led to improved response times or reduced impact of security incidents. Emphasize any training or simulations you conducted to prepare the teams.

Join Rise to see the full answer
How do you ensure compliance with GDPR and UK data protection regulations?

Explain your process for ensuring compliance, such as conducting Data Protection Impact Assessments (DPIAs) and regular audits. It's beneficial to mention your experience collaborating with legal and compliance teams to develop relevant policies.

Join Rise to see the full answer
How do you promote information security awareness within an organization?

Discuss engaging methods you’ve used to promote security awareness, like workshops, e-learning modules, or regular communications. Provide examples of how you've adapted the content to suit various audiences, displaying your ability to connect with different teams.

Join Rise to see the full answer
What tools and technologies have you used in your security role?

Outline the specific tools, platforms, or technologies you have experienced with, such as endpoint security solutions, security information and event management (SIEM) systems, and data loss prevention software. Highlight how they have enhanced security measures in previous roles.

Join Rise to see the full answer
Can you provide an example of a successful project you led related to information security?

Share a detailed case study of a project where you played a key role, including the objectives, your approach, and the outcome. Discuss any recognitions or changes that resulted, illustrating your impact on the organization.

Join Rise to see the full answer
How do you stay current with evolving security threats?

Discuss strategies you use to keep your knowledge up-to-date, such as attending industry conferences, participating in training, and following key influencers in the cybersecurity space. Mention how this ongoing education translates into your practical work.

Join Rise to see the full answer
What role does communication play in your approach to information security?

Explain that effective communication is critical for fostering a security culture and for engaging with various stakeholders. Provide examples of how you've successfully communicated complex security topics to non-technical audiences.

Join Rise to see the full answer
How do you balance security with business agility?

Articulate your understanding that while security is crucial, it should not hinder business operations. Give an example of how you have ensured security measures aligned with business goals, thus enabling rather than restricting growth.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User

Join Scientific Research Corporation as a Platform Boundary Defense - Splunk Engineer to optimize defense systems in a dynamic setting.

Photo of the Rise User
Dental Insurance
Disability Insurance
Flexible Spending Account (FSA)
Vision Insurance
Paid Holidays

Kandji is looking for a seasoned Staff Security Engineer to lead security initiatives in their innovative Apple device management platform.

Photo of the Rise User
Roller Hybrid Melbourne, Victoria, Australia
Posted 11 days ago

Join ROLLER as the VP of Enterprise Systems & IT and lead the transformation of their internal systems to support their global growth.

Photo of the Rise User
Posted 14 days ago

As a Cloud Technical Lead at SAS, you will provide technical leadership and enhance service delivery for our cloud-based application environments.

DB Hybrid Pune - Business Bay
Posted 10 days ago

As an IT Application Owner at Deutsche Bank, you'll ensure application management aligns with security, risk, and compliance standards.

Valeo Foods Remote Ballymount Ave, Kilnamanagh, Dublin, Ireland
Posted 15 hours ago

Join Valeo Foods UK as an IT Engineer Infrastructure to lead global IT infrastructure initiatives and ensure optimal performance across IT systems.

Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Customer-Centric
Social Impact Driven
Rapid Growth
Maternity Leave
Paternity Leave
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Paid Holidays
Paid Time-Off

Join Samsara as a Senior Security Operations Engineer, where you'll play a crucial role in incident response and cybersecurity operations.

Photo of the Rise User
Posted 11 days ago

Join Jobgether as a Senior Cloud Security Engineer to protect cloud systems and customer data in a tech-driven environment.

Prevail® products are designed for every single one of us, because LOBC (loss of bladder/bowel control) can affect anyone, at any stage of life. Our commitment to high-quality materials and thoughtful innovation has made us the leader in continenc...

3 jobs
MATCH
VIEW MATCH
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 8, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Delaware just viewed Practice Group Manager at LifeStance Health
Photo of the Rise User
Someone from OH, Youngstown just viewed Event Services Human Resources Coordinator at Allied Universal
Photo of the Rise User
Someone from OH, Columbus just viewed IP Network Engineering Intern - Summer 2025 at Bandwidth
Photo of the Rise User
Someone from OH, Cleveland just viewed Director, Education Programs & Partnerships at Encoura
Photo of the Rise User
8 people applied to IT Intern - Seasonal at Carowinds
Photo of the Rise User
80 people applied to Jr SOC Analyst at IBM
Photo of the Rise User
Someone from OH, Cleveland just viewed Operations Associate (Part-Time) - Pinecrest at Alo Yoga
Photo of the Rise User
Someone from OH, Dayton just viewed Medical Receptionist at LifeStance Health
Photo of the Rise User
Someone from OH, Coldwater just viewed Engineering Design Checker Jobs at Lockheed Martin
Photo of the Rise User
Someone from OH, Loveland just viewed SEO Admin & Business Support at Outliant
Photo of the Rise User
45 people applied to IT Intern at USAA
Photo of the Rise User
Someone from OH, Columbus just viewed Casting: Cedar Lake - Pilot Episode at Backstage
Photo of the Rise User
Someone from OH, Mount Orab just viewed Software Development Manager at Assured Guaranty
H
Someone from OH, Mansfield just viewed Medical Appointment Setter (Remote LatAm) at HireHawk
S
15 people applied to SOC Intern at SHEIN
Photo of the Rise User
Someone from OH, Lewis Center just viewed Third Party Risk Analyst at Experian
Photo of the Rise User
Someone from OH, Columbus just viewed Lead Preschool Teacher at Guidepost Montessori
A
Someone from OH, Cincinnati just viewed Global Supply Manager - Taiwan at Also
Photo of the Rise User
Someone from OH, Cincinnati just viewed Global Supply Manager (Raptor Machining) at SpaceX
Photo of the Rise User
Someone from OH, Reynoldsburg just viewed Summer 2025 Financial Services Internship at Nationwide
Photo of the Rise User
Someone from OH, Brunswick just viewed Staff Software Engineer C++ / Computer Vision at ABBYY