We build the tech that moves industries forward. We have our eyes set on AI, energy, logistics, sports and other complex and exciting segments.
We believe in an innovative approach to solving deep issues and encourage our people to find their own solutions. We are constantly rethinking processes, business models, architecture, and tech stacks.
We foster a sense of curiosity, experimentation, and passion beyond code. With us, you can easily deepen your knowledge in any field you’re curious about. And because we work across many industries, you’ll be gaining the experience others can only dream of.
As Information Security Manager, you will take ownership of a broad and evolving security function, shaping a practical programme that addresses the risks that matter most. Working across IT, DevOps, engineering, legal, HR, and business teams, you will combine security governance, risk management, compliance, and day-to-day operational oversight. You will help define priorities, strengthen processes, and ensure the organisation’s security technology stack is used effectively, while coordinating internal teams and specialist external partners where deeper expertise is required. This role offers meaningful decision-making responsibility, broad organisational visibility, and the opportunity to build structure and drive security improvements in practice.
In this role, you will: * Own and coordinate the company’s information security programme, priorities, and improvement roadmap * Maintain and develop security governance, policies, procedures, risk registers, and incident response documentation * Assess security risks, identify control gaps, and translate findings into practical, prioritised actions * Work with security tools and platforms such as XDR/EDR, SIEM, vulnerability management, MDM, and security awareness platforms * Coordinate security improvements with IT, legal, and external partners * Support ISO 27001, NIS2, audits, regulatory requirements, and third-party or supplier risk management activities * Evaluate security vendors and services, monitor their effectiveness, and coordinate specialised security activities when external expertise is required * Investigate security alerts and coordinate an effective response to security incidents * Communicate security risks, priorities, and decisions clearly to technical and non-technical stakeholders
Nice to have: