IT Systems Security Manager

Company: Nexus Jobs
Apply for the IT Systems Security Manager
Location: London
Job Description:

Overview

In this role you will lead information security across a large international organisation, advising corporate functions to raise security maturity. You will collaborate across business units and projects to embed security controls and governance. You’ll champion security by design, drive roadmaps, and strengthen third‑party risk and compliance. This position offers a strategic blend of policy, risk governance and stakeholder engagement in a London-based setting.

Responsibilities

  • Advise corporate functions to maintain and improve security maturity
  • Build networks across the organisation to promote information security
  • Act as SME on IT security including legal and regulatory compliance
  • Develop and apply standards aligned with group security policies
  • Support BU projects with security guidance and assurance
  • Promote security by design across initiatives
  • Assist GRC in measuring security policy compliance
  • Drive BU/divisional security roadmaps and feed CISO roadmap with non-conformities
  • Coach and upskill IT staff to raise security maturity
  • Produce and standardise security guidance materials and templates
  • Chair security working group meetings and manage third‑party relationships
  • Support procurement and tendering processes with security inputs
  • Raise baseline controls and standardise where appropriate
  • Align security with diverse business requirements
  • Support security awareness campaigns across the group
  • Participate as a security community member to share lessons learned
  • Oversee security assessments, including penetration testing and third‑party risk
  • Manage changes in security projects and governance

Key requirements

  • 5–8 years in an information security leadership role within a large organisation
  • Confident in presenting to senior stakeholders
  • Experience running information security risk governance processes
  • Familiarity with ISO27001 and NIST CSF
  • Experience creating, implementing and assessing information security policies and standards
  • Stakeholder management
  • Clear communication and influencing
  • Pragmatic problem solving
  • ISO27001
  • NIST CSF
  • Information security policies and standards

…

Posted: October 1st, 2026