Information Security Officer
Location: Reading (Hybrid)
Salary: Up to £57,000 basic
We’re working with a growing technology business that provides everything from hardware and software distribution through to cloud solutions, technology services, fulfilment and managed services.
They’re looking for an Information Security Officer to join their internal Information Security function, with a strong focus on GRC, ISMS, security assurance and third-party risk.
This would suit someone at InfoSec Analyst, Information Security Officer or Security Consultant level who has hands-on experience with ISO 27001 and security governance, but also enjoys working with technical teams to understand risks and drive remediation rather than being purely policy focused.
Key Responsibilities
- Support and maintain the organisation’s Information Security Management System (ISMS)
- Manage security risks, controls, policies and associated documentation
- Support ISO 27001 compliance, audits and ongoing improvements
- Maintain risk registers and work with teams to identify and remediate security risks
- Conduct security assurance activities across internal teams and third-party suppliers
- Assess and manage third-party / supplier security risk
- Work closely with technical teams to understand security requirements and control implementation
- Track remediation activity and ensure identified issues are progressed through to resolution
- Support wider GRC, compliance and security assurance initiatives
- Contribute to the development and continual improvement of security processes and controls
What We’re Looking For
- Hands-on experience working with ISO 27001 / ISMS
- Experience across GRC, information security risk and compliance
- Practical experience with audits, policies, risk registers and remediation
- Experience with third-party / supplier security risk and assurance
- Ability to work effectively with technical teams and understand security controls and requirements
- A practical, hands-on approach to information security rather than purely policy-focused experience
- Strong communication and stakeholder management skills
This is a great opportunity for someone looking to develop their career within a broad Information Security function, with exposure across GRC, ISMS, assurance, risk and technical security.
If this sounds like a good fit for you, or you know someone who would be a good fit, please get in touch either via , or call on 07401 087324 for a confidential chat.
…
