Information Security Lead Auditor

Reference: qnu1hpcud07x3eze9kzn

We are seeking an experienced Information Security Lead Auditor to plan, lead and deliver independent security audits across a complex technology and business environment. This role will assess the effectiveness of information security controls, governance frameworks, risk management practices and regulatory compliance arrangements. You will work closely with stakeholders across technology, operations, risk and compliance to identify control weaknesses, evaluate their impact and support the development of practical remediation plans.

Responsibilities will include developing risk-based audit plans; defining audit scope, objectives and testing strategies; conducting interviews, walkthroughs and evidence reviews; and assessing controls against recognised standards and regulations such as ISO 27001, NIST, COBIT, PCI DSS and applicable privacy requirements. You will lead audit engagements from planning through to reporting, document clear and well-supported findings, agree actions with control owners and monitor remediation through to completion. The role will also involve presenting results to senior management, contributing to assurance reporting and advising on emerging information security risks, technology changes and regulatory developments.

Applicants should have substantial experience in information security auditing, IT assurance, risk management or a closely related discipline, together with a strong understanding of security governance, identity and access management, vulnerability management, incident response, cloud security, data protection and third-party risk. A relevant professional certification such as CISA, CISSP, CRISC, ISO 27001 Lead Auditor or an equivalent qualification is highly desirable. You will need excellent analytical, written and verbal communication skills, sound professional judgement and the confidence to challenge constructively at all levels. The successful candidate will be organised, objective and detail-oriented, with the ability to manage multiple priorities, work independently and build effective relationships in a collaborative environment.

COMPETITIVE SALARY
Added 11/09/2026
Reference: qnu1hpcud07x3eze9kzn

Information Security Lead Auditor

Manchester, England, United Kingdom Permanent Compliance

Other similar jobs

Lead Auditor - Information Security

Added 27/07/2026

We are seeking a highly skilled Lead Auditor specializing in Information Security to join our team. In this role, you will be responsible for planning, executing, and overseeing comprehensive audits of the organization's information security management systems. You will assess current security protocols, identify vulnerabilities, and recommend improvements to enhance the overall security posture. Your expertise will ensure compliance with industry standards and regulations, such as ISO 27001, NIST, and GDPR, while also driving a culture of security awareness throughout the organization. As the Lead Auditor, you will collaborate closely with cross-functional teams to evaluate risks, develop audit strategies, and...

Learn more

Principal Auditor - Technology and Security

Added 30/07/2026

We are seeking a highly skilled Principal Auditor specializing in Technology and Security to join our team. In this role, you will be responsible for leading audits focused on the implementation and effectiveness of technology controls within the organization. You will assess risks associated with IT systems, evaluate security protocols, and ensure compliance with regulatory requirements. Collaborating with cross-functional teams, you will provide expert guidance on best practices in security and technology risk management, helping to identify vulnerabilities and enhance overall system integrity. The ideal candidate will possess a strong background in IT auditing, with a deep understanding of information...

Learn more

Principal Auditor - Technology and Security

Added 30/07/2026

We are seeking a highly skilled Principal Auditor - Technology and Security to join our dynamic team. In this role, you will be responsible for leading audits focused on technology and security processes, ensuring compliance with internal policies and regulatory requirements. You will evaluate and enhance the effectiveness of risk management, control, and governance processes within the organization. Your expertise will be vital in identifying potential vulnerabilities and recommending actionable improvements to mitigate risks associated with information technology and cybersecurity. The ideal candidate will possess a deep understanding of auditing principles and practices, particularly in relation to IT systems and...

Learn more

Principal Auditor - Technology and Security

Added 30/07/2026

We are seeking an experienced Principal Auditor - Technology and Security to join our dynamic team. In this pivotal role, you will be responsible for leading audit engagements focused on technology and information security, ensuring compliance with relevant regulations and internal policies. You will assess the effectiveness of controls and risk management processes, while providing insightful recommendations to enhance operational efficiencies and safeguard sensitive data. Your expertise will guide the development of audit strategies and plans that align with organizational objectives, ensuring that technology-related risks are adequately addressed. As a key member of the audit function, you will collaborate closely...

Learn more

ISO 27001 Consultant & Auditor – Defence Cyber Certification

Added 14/09/2026

We are seeking an experienced ISO 27001 Consultant & Auditor to support organisations operating in the defence and wider security-sensitive sectors. This role will involve helping clients establish, improve and maintain robust information security management systems (ISMS) aligned with ISO/IEC 27001 and relevant defence cyber certification requirements. You will work with stakeholders at all levels to assess current controls, identify risks and develop practical, proportionate solutions that meet regulatory, contractual and operational expectations. Key responsibilities will include planning and delivering ISO 27001 gap assessments, internal audits, readiness reviews and certification support engagements. You will document findings, assess corrective actions and...

Learn more

Lead Penetration Tester (Lead Cyber Analyst), Technical Vulnerability Management - Cyber Security Division

Added 17/08/2026

We are seeking a highly skilled Lead Penetration Tester (Lead Cyber Analyst) to join our Technical Vulnerability Management team within our Cyber Security Division. In this role, you will be responsible for leading and executing comprehensive penetration testing engagements, identifying and assessing vulnerabilities within various systems and applications. You will collaborate closely with cross-functional teams to develop and implement effective remediation strategies, ensuring the security posture of the organization is continually enhanced. Your expertise will also be critical in mentoring junior analysts and conducting training sessions to elevate the team's overall capabilities. The ideal candidate will have a strong background...

Learn more

Cyber Security and Information Assurance Lead

Added 18/09/2026

We are seeking a Cyber Security and Information Assurance Lead to provide strategic and operational leadership across cyber security, information assurance, risk management and data protection. The successful candidate will help safeguard critical systems, information assets and services by developing robust security frameworks, policies and controls aligned with recognised standards and regulatory requirements. You will work closely with technology, operational and business stakeholders to ensure that security is embedded throughout the organisation’s services, projects and change programmes. Key responsibilities will include leading the assessment and management of cyber and information risks; maintaining security policies, standards, procedures and assurance documentation; and...

Learn more

Lead Information Security Operations Analyst

Added 09/09/2026

We are seeking a Lead Information Security Operations Analyst to provide senior-level expertise within a security operations function. This role will lead the monitoring, investigation and response to cyber security incidents across enterprise systems, networks, cloud environments and business applications. You will act as a point of escalation for complex threats, help coordinate incident response activities and ensure that security events are assessed, prioritised and resolved in line with established procedures. Key responsibilities include overseeing the analysis of alerts from security information and event management, endpoint detection and response, identity and access management, vulnerability management and other security tooling. You...

Learn more

Information Security Engineer Lead

Added 09/09/2026

We are seeking an Information Security Engineer Lead to guide the design, implementation, and continuous improvement of security technologies and engineering practices across a complex technology environment. This role will provide technical leadership while remaining hands-on, helping to protect systems, applications, networks, data, and cloud services against evolving threats. You will work closely with infrastructure, software development, architecture, risk, and compliance teams to embed security into projects and day-to-day operations. Responsibilities will include leading the development and maintenance of security controls, monitoring solutions, vulnerability management processes, identity and access management capabilities, endpoint protection, and incident response tooling. You will assess...

Learn more

Information Security GRC Lead

Added 08/09/2026

We are seeking an experienced Information Security GRC Lead to strengthen and mature governance, risk and compliance activities across the organisation. In this role, you will lead the development, implementation and continuous improvement of information security policies, standards, procedures and control frameworks. You will work closely with technology, legal, privacy, risk, audit and business stakeholders to ensure that security requirements are clearly defined, consistently applied and aligned with business objectives and regulatory obligations. Your responsibilities will include maintaining the information security risk management programme, coordinating risk assessments, documenting remediation plans and monitoring progress against agreed actions. You will lead internal...

Learn more

Information and Security Governance Lead

Added 07/09/2026

We are seeking an experienced Information and Security Governance Lead to strengthen organisational resilience, information assurance and security oversight. This role will provide strategic direction across information security governance, risk management, compliance and policy, ensuring that appropriate controls are embedded across business operations and technology environments. You will work closely with senior stakeholders, technology teams, risk specialists and operational leaders to promote a strong, practical and risk-aware security culture. Key responsibilities will include developing, maintaining and continuously improving information security policies, standards, frameworks and governance processes. You will lead the identification, assessment and treatment of information and cyber security risks,...

Learn more

Information Security Consulting Lead

Added 04/09/2026

We are seeking an experienced Information Security Consulting Lead to provide strategic guidance, technical leadership, and practical security solutions across a diverse portfolio of clients and internal stakeholders. This role will lead consulting engagements from initial scoping through delivery, helping organisations understand their cyber risk, strengthen their security posture, and meet relevant regulatory and industry requirements. You will act as a trusted adviser to senior leaders, translating complex security issues into clear, commercially focused recommendations. Responsibilities will include leading information security assessments, maturity reviews, risk assessments, security architecture reviews, and compliance engagements. You will develop and present reports, roadmaps, policies,...

Learn more

Lead Information Security Officer

Added 26/08/2026

We are seeking an experienced Lead Information Security Officer to provide strategic direction and operational leadership across information security, cyber risk and resilience. This is a senior role responsible for protecting critical information, systems and services while supporting a strong, practical and collaborative security culture. You will advise senior stakeholders, translate security risks into clear business decisions and ensure that appropriate controls are embedded across technology, projects, suppliers and day-to-day operations. Your responsibilities will include developing and maintaining the information security strategy, policies, standards and governance framework; leading security risk assessments and treatment plans; and monitoring compliance with relevant legislation,...

Learn more

Information Security Team Lead

Added 26/08/2026

We are seeking an experienced Information Security Team Lead to provide technical leadership and operational direction across a broad information security function. This role will lead a team of security professionals, coordinate day-to-day activities, and help strengthen the organisation’s security posture through effective governance, risk management, and continuous improvement. You will work closely with technology, operational, and business stakeholders to ensure security is embedded into projects, services, and business processes. Key responsibilities will include leading and developing the information security team; setting priorities, managing workloads, and supporting professional growth; maintaining security policies, standards, and procedures; and overseeing risk assessments, control...

Learn more

Information Security Lead

Added 26/08/2026

We are seeking an experienced Information Security Lead to develop, maintain and continuously improve the organisation’s information security strategy. This role will provide technical leadership and practical guidance across security governance, risk management, compliance and operational resilience. You will work closely with technology, data, legal, procurement and business stakeholders to ensure that security is embedded into projects, systems, processes and day-to-day operations. Key responsibilities will include owning and evolving information security policies, standards and procedures; maintaining the information security risk register; leading security assessments and control reviews; and coordinating responses to audits, incidents and regulatory requirements. You will oversee vulnerability...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.