Information Security Manager
at Physitrack
London, England, United Kingdom -
Start Date | Expiry Date | Salary | Posted On | Experience | Skills | Telecommute | Sponsor Visa |
---|---|---|---|---|---|---|---|
Immediate | 05 May, 2025 | GBP 6000 Monthly | 05 Feb, 2025 | N/A | Communication Skills,Iso | No | No |
Required Visa Status:
Citizen | GC |
US Citizen | Student Visa |
H1B | CPT |
OPT | H4 Spouse of H1B |
GC Green Card |
Employment Type:
Full Time | Part Time |
Permanent | Independent - 1099 |
Contract – W2 | C2H Independent |
C2H W2 | Contract – Corp 2 Corp |
Contract to Hire – Corp 2 Corp |
Description:
INFORMATION SECURITY MANAGER
- Job Type: Fully remote. Occasional travel to build relationships with the team.
- Hours: Full-Time.
- Base Salary: €4-6k per month, B2B contract
- Location: Anywhere within Europe or the UK.
- Organisation: Physitrack
REQUIREMENTS:
- Experience in the information security role.
- Knowledge of relevant legislation (mainly GDPR) and standards (ISO 27001 and ISO 27018)
- Ability to educate a non-technical audience about various security measures.
- Effective verbal and written communication skills.
Responsibilities:
ABOUT THE ROLE
We are looking for an experienced, enthusiastic Information Security Manager who brings a proven toolkit of best-practice ISM resources and experience to design, plan, implement, and enforce policies and procedures to protect Physitrack’s computing infrastructure, network, and data from all forms of security breaches.
You will be responsible for overseeing information security, cybersecurity, and IT risk management programs based on industry-accepted information security and risk management frameworks.
To be successful as an Information Security Manager, you should have excellent analytical skills, in-depth knowledge of best practices, and prior experience with external or internal IT audits. Top candidates will also be excellent communicators who can work with little supervision.
Experience with ISO 27001, ISO 27018, and GDPR is required. Knowledge of medical standards like HIPAA is nice to have.
RESPONSIBILITIES
- Coordination of the continuous development, implementation, and updating of security processes, policies, standards, guidelines, and baselines.
- Take ownership of the audits and facilitate management response and remediation efforts.
- Keeping up to date with developments in IT security standards and threats.
- Collaborating with management and the IT Engineering department to improve security.
- Documenting any security breaches and assessing their damage.
- Acting as the Data Protection Officer, collaborating closely with the Legal team to ensure compliance with data protection regulations and best practices.
- Develop and manage the frameworks, processes, tools, and consultancy necessary for IT to properly manage risk and to make risk-based decisions related to IT activities.
- Proactive identification and mitigation of IT risks as well as responding to observations identified by third-party auditors or examiners while assisting in the development of periodic reports and dashboards presenting the level of controls compliance and current IT risk posture.
- Educating colleagues about security software and best practices for information security and coordinating the company-wide infosec training efforts.
A SELECTION OF TYPICAL TASKS (NOT EXHAUSTIVE):
- Working closely with the Sales team, helping to answer customers’ information security queries as needed, including RFPs
- Run both internal and external audits
- Run security onboarding and off-boarding process including infosec training coordination with the use of dedicated tools
- Review and update security documentation
- Raise non-conformities as needed, and schedule for resolution
REQUIREMENT SUMMARY
Min:N/AMax:5.0 year(s)
Information Technology/IT
IT Software - Network Administration / Security
IT
Graduate
Proficient
1
London, United Kingdom