Information Security Specialist
New Yesterday
Information Security Management Systems Implementation Specialist (Contract – Outside IR35)
Location: Remote (HQ: Teesside)
Contract Length: 6 months
NRG is delighted to partner with a growing, mid-sized organisation on an exciting new opportunity for an experienced ISMS Implementation Specialist to lead the delivery of a full ISO 27001-aligned Information Security Management System (ISMS).
You’ll be the hands-on lead responsible for designing and implementing an operational, production-ready ISMS , with the potential for certification in a future project phase. You’ll work closely with leadership, IT, and operations to bring structure, compliance, and scalability to their maturing security posture.
What You’ll Be Doing
ISMS Framework & Governance
- Establish a fully compliant ISMS framework aligned to ISO 27001 standards
- Build and formalise the ISMS Governance Council and internal Information Security Team structures
- Develop all core policies, procedures, and controls across the business
- Implement risk assessment processes and treatment plans
- Launch internal audit and management review programmes
Security Configuration & Technical Delivery
- Configure Microsoft 365 security settings (DLP, conditional access, info protection etc.)
- Review and enhance controls for a custom CRM application on AWS (OWASP-compliant)
- Integrate Vanta (existing compliance monitoring platform) with the ISMS
- Directly implement security controls where possible or brief/manage the ITSM provider
- Document all technical processes and configurations for long-term sustainability
Operational Readiness & Handover
- Ensure the ISMS is fully operational and self-sustaining
- Support training and upskilling of governance council and ISMS roles
- Establish competency frameworks, documentation packs, and evidence collection systems
- Formalise key business processes (incident response, risk, continuous improvement)
What We’re Looking For
- Proven track record implementing ISO 27001-aligned ISMS in similar-sized organisations (50–200 employees).
- Hands-on experience configuring Microsoft 365 security tools (DLP, CA, compliance centre, etc.).
- Strong understanding of governance frameworks, especially involving business-led councils and stakeholder engagement.
- Experience working with regulators such as FCA or ICO across diverse technical environments.
- Confident leading ISMS delivery independently, with structured project plans and clear documentation.
- Familiar with Vanta or similar compliance automation platforms (Drata, Tugboat Logic, etc.).
- ISO 27001 Lead Implementer certification preferred but not essential.
Why Apply?
- Autonomy: Full ownership of ISMS Phase 1 - from design to delivery
- Flexibility: Fully remote contract role, with support from a responsive leadership team
- Impact: Shape the organisation’s long-term information security maturity
- Tools: Leverage a modern tech stack (M365, AWS, Vanta, cloud SaaS)
If this role sounds of interest, click ‘apply now’ and a member of our team will be in touch.
- Location:
- Middlesbrough, ENGLAND, United Kingdom
- Salary:
- £80,000 - £100,000
- Job Type:
- FullTime
- Category:
- IT & Technology
We found some similar jobs based on your search
-
New Yesterday
Information Security Specialist
-
Middlesbrough, ENGLAND, United Kingdom
-
£80,000 - £100,000
- IT & Technology
Information Security Management Systems Implementation Specialist (Contract – Outside IR35) Location: Remote (HQ: Teesside) Contract Length: 6 months NRG is delighted to partner with a growing, mid-sized organisation on an exciting new opportunity ...
More Details -
-
1 Days Old
Senior Threat Hunter (Cyber Security) - Specialist I - Information Security
-
London, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Overview Senior Threat Hunter (Cyber Security) – Full time Employee – London, UK - Hybrid CyberProof, a UST company, is a global cybersecurity services and platform provider dedicated to helping organizations stay ahead of evolving threats. We build...
More Details -
-
1 Days Old
Information Security Assurance Specialist
-
London, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Overview We are hiring an Information Security Assurance Specialist to join us here at Genomics England. This role is focused on assurance, governance, and compliance rather than day-to-day technical engineering. It involves managing risk, ensuring ...
More Details -
-
1 Days Old
Information Security Assurance Specialist (we have offices in London, Leeds & Cambridge)
-
London, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Company Description Genomics England partners with the NHS to provide whole genome sequencing diagnostics. We also equip researchers to find the causes of disease and develop new treatments - with patients and participants at the heart of it all. Ou...
More Details -
-
3 Days Old
Information Security & Monitoring Specialist
-
London, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Overview We are seeking a highly skilled and security-focused professional to join our Operational Capability (OC) Team as an Information Security and Monitoring Specialist. Responsibilities Support the detection and investigation of security incid...
More Details -
-
3 Days Old
Information Security Assurance Specialist (we have offices in London, Leeds & Cambridge) London
-
London, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Overview Genomics England partners with the NHS to provide whole genome sequencing diagnostics. We also equip researchers to find the causes of disease and develop new treatments – with patients and participants at the heart of it all. Our mission i...
More Details -