Serco West Midlands, England, United Kingdom
Join or sign in to find your next job
Join to apply for the Information Security Manager role at Serco
Serco West Midlands, England, United Kingdom
Join to apply for the Information Security Manager role at Serco
Get AI-powered advice on this job and more exclusive features.
Full time
Competitive Salary + Aligned company benefits
About Us
At Serco, we unite the right people, technology, and partners to solve some of the world's most pressing and complex challenges. From defence and space to healthcare, justice, transport and beyond, our UK operations deliver critical services across government sectors—driven by expertise in service design, programme management, engineering, and more.
Birmingham, Solihull (Hybrid)
Full time
Competitive Salary + Aligned company benefits
About Us
At Serco, we unite the right people, technology, and partners to solve some of the world's most pressing and complex challenges. From defence and space to healthcare, justice, transport and beyond, our UK operations deliver critical services across government sectors—driven by expertise in service design, programme management, engineering, and more.
About The Role
As an Information Security Manager, you’ll play a vital role in safeguarding data and ensuring compliance across one or more key contracts. Taking full operational ownership of information security management processes, you’ll lead the delivery and maintenance of ISO27001 certification or alignment, and work closely with contract Data Protection Champions (DPCs) and senior leaders to uphold data protection legislation. You'll also provide strategic direction and functional leadership to DPCs, helping embed a strong culture of security and compliance. In addition, you’ll take the lead on managing and investigating any information security or data protection incidents within your contracts, ensuring risks are swiftly addressed and lessons learned.
Key Accountabilities
* Lead Information Security Operations across multiple sites, covering risk management, incident response, assurance activities, and the implementation of ISO27001 and Government security controls.
* Provide strategic guidance on data protection and GDPR/DPA 2018 compliance, offering functional leadership to Data Protection Champions and acting as a key advisor across contracts.
* Support secure project delivery, advising on technical and physical security requirements, assurance needs, and the application of relevant policies and best practices, including HMG standards.
* Coordinate and manage security forums and assurance activities, including penetration tests, documentation reviews, and stakeholder engagement to build trust and ensure ongoing compliance.
* Lead external audit and assurance engagements, supporting the scoping, interpretation, and response to IT Security Health Checks and implementing remedial actions where necessary.
* Maintain and review security frameworks, conducting gap analyses, developing action plans, and ensuring alignment with ISO27001 and organisational policies.
* Promote a culture of security and compliance, managing security incidents, maintaining accurate documentation, and driving awareness of information security and data protection responsibilities.
Skills & Experience
* Proven expertise as an ISO27001 Lead Implementer and/or Lead Auditor, with hands-on experience maintaining certification and conducting internal audits.
* Strong knowledge of data protection legislation (GDPR/DPA 2018) and privacy frameworks, ideally supported by relevant certifications (e.g. CIPP/E, CIPM).
* In-depth risk management experience, including identifying, assessing, and mitigating information security risks across complex environments.
* Demonstrated ability to lead incident response activities, including investigation, containment, and implementing preventative measures.
* Skilled in delivering security assurance through engagement with external audit providers, coordinating pen-tests, and interpreting test results.
* Ability to translate security and data protection requirements into practical advice for projects, ensuring alignment with HMG policy, business needs, and technical constraints.
Why Serco:
Serco’s purpose is to impact a better future - we bring together the right people, the right technology, and the right partners to create innovative solutions that deliver positive impact and address some of the most urgent and complex challenges facing governments globally. Our services are powered by more than 50,000 colleagues working across multiple sectors including defence, space, migration, justice, healthcare, transport, and customer services in four regions: UK & Europe, North America, Asia Pacific, and the Middle East.
In this position, your work is vital to the business, in terms of decisions and growth. You will gain a world of opportunity working for a globally operating business delivering essential services across 5 vital sectors, personal growth, achievement, and development won’t be hard to find. You'll also work with great people. You’ll find yourself working in a highly motivated, supportive environment where no two days are the same, with experienced colleagues who strive for excellence.
What we offer:
* 25 days annual leave plus bank holidays.
* Annual leave purchase scheme.
* Up to 6% contributory pension scheme
* Flexible working options.
* Free onsite parking.
* Serco discounts which include cinema, merlin entertainment and online shopping discounts, and discounts on mobile phone plans and leisure centre memberships.
* A range of benefits to support the health and wellbeing of you and your family such as Employee Assistance Programme, Health Cash Plans, free flu jabs and more.
* A wealth of career development training to suit your future aspirations. These range from role specific training, leadership coaching, formal study and much more to support you to build your career with Serco.
* A safe and supportive culture.
* A company passionate about diversity and inclusion
Seniority level
* Seniority level
Mid-Senior level
Employment type
* Employment type
Full-time
Job function
* Job function
Information Technology
* Industries
Outsourcing and Offshoring Consulting
Referrals increase your chances of interviewing at Serco by 2x
Sign in to set job alerts for “Information Security Manager” roles.
Information Security Manager (Defence)-MyTechnology
West Midlands, England, United Kingdom 1 month ago
VodafoneThree - Customer Account Security Manager
Birmingham, England, United Kingdom 3 weeks ago
Birmingham, England, United Kingdom 3 days ago
Internal Audit-Birmingham-Analyst-Technology Audit
West Midlands, England, United Kingdom 6 days ago
West Midlands, England, United Kingdom 1 week ago
Coventry, England, United Kingdom 3 weeks ago
Coventry, England, United Kingdom 1 week ago
Birmingham, England, United Kingdom 3 days ago
Health Care Assistant - St Paul's Clinic
West Midlands, England, United Kingdom 3 weeks ago
Birmingham, England, United Kingdom 5 days ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr