Senior Information Security Manager
Auxilion · Dublin, County Dublin, Ireland
Apply & track with Apply EdgeSenior Information Security Engineering Manager - €110-120KA leading construction and Engineering organisation with a strong focus on the design and construction of Data Centres is looking for a Senior Information Security Leader to join them on a contract basis in advance of an upcoming digital transformation project.Reporting to the Chief Information Security officer, this role shapes and delivers the Organisations information security and IT risk strategy, ensuring strong governance, robust controls, and full regulatory compliance. The Information Security Engineering Manager will protect the Company’s information assets, enhance cyber resilience, and ensure alignment with internal standards while working closely with stakeholders across the business.While the role is at managerial level, the organisation is looking for someone that will also be a hand's on engineer - A player manager that can develop effective solutions while leading/managing an information security teamLocated in South County Dublin, the role will be predominantly based onsite in the initial period with flexibility for hybrid arrangements once the project is properly up and running. This role is permanent, and comes with a highly competitive benefits packageResponsibilities of RoleLead the Company’s information security and IT risk strategy, ensuring strong governance, effective controls, and full regulatory compliance.Own and maintain security policies, standards, and assurance processes that protect the Company’s data and technology environment.Drive security risk identification, assessment, and reporting, ensuring risks are understood, managed, and escalated appropriately.Build and lead the Security function, working closely with risk, compliance, audit, legal, HR, and technology teams.Oversee third party and operational security risks and champion a strong security culture across the Company.Provide governance oversight through security committees, forums, and executive reporting.Deliver a strategic, enterprise wide information security and IT risk programme aligned to business priorities.Manage vendor security assessments, service provider KPIs, and Company wide security awareness training.Guide IT change and project teams on security requirements and technical controls.Maintain a unified control framework aligned to global standards and regulatory expectations.Lead the Security team to deliver high quality, risk based outcomes.Define and deliver the Company’s Information Security Strategy based on ISO 27001 and (1) Maintain Information Security Policies and ensure user education (2) Perform selected operational security activities deliver Security Assurance Framework and (3) Conduct risk assessments and oversee business unit security risk management.Essential Candidate RequirementsThird Level degree in computer science, IT or other area relevant to the role5+ Years experience in a Senior Information Security Management roleCisco - Certified Information Systems Security Professional (CISSP), CISM or other equivalent professional qualificationTOGAF, CoBit or other Architectural certification would be particularly advantageous but relevant experience may sufficeCertification in Business Management, Project Management or other area relevant to the role. Again, relevant experience may suffice for this requirement. Demonstrable experience taking an ISO 27001 implementation through to certification, with personal involvement in producing the ISMS, Statement of Applicability and audit-ready documentation. Strong working knowledge of the Microsoft 365 security stack, including Defender for Endpoint, Intune, Entra ID, Conditional Access, Defender for Cloud Apps and Purview.Hands-on detection engineering and incident response experience, comfortable engineering as well as directing.Proven ability to design and build security automation across the existing security stack, using PowerShell with Microsoft Graph, SOAR or Sentinel Logic Apps, and Python, or other appropriate methods.Experience leading the security workstream for the enterprise adoption of generative AI, including agentic tooling, is highly valued.Experience operating or administering a CTEM, breach-and-attack simulation, or automated penetration testing platform such as Pentera, AttackIQ, Cymulate or SafeBreach.Comfortable challenging assumptions and giving honest, constructive critique to internal staff, suppliers and senior stakeholders.IMPORTANT! All applicants must have UK right to work status as our client cannot provide any kind of Visa or Work Permit sponsorship at present.To Apply: For more information on this role, please contact Níall on +353 1 8690258 or +353 87 384 5327 or send current CV along with brief cover letter through this site