Exa
Information Security Manager

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Role Purpose
As the Information Security Manager, you will be responsible for managing and maintaining the EXA information security team and program, including procedures and policies designed to protect enterprise communications, systems, and assets from both internal and external threats.
You will need to work alongside other executives to align security initiatives with broader business objectives and offer specialist advice and support regarding anticipating, accessing, and actively managing new and emerging threats. You will oversee the company's IT security strategy and ensure corporate security policies, standards, and procedures align with the current threat landscape and customer requirements and that company policies are upheld by all.
The complexity of this position requires a management approach that is engaging and collaborative, with an ability to work with other leaders to set the best balance between security requirements and other priorities at the enterprise level.
Key Responsibilities
- Maintain the cybersecurity capabilities, processes, and technologies that help protect EXA Infrastructure’s security posture and continuously improve these where required.
- Work with other infrastructure and application teams to understand the technology landscape and assist with aligning to EXA Infrastructure’s security posture.
- Deliver on the existing cyber security program, collate and present evidence for management awareness and regulatory scrutiny where required.
- Oversee a small team responsible for security monitoring, incident management, and engineering of security technologies into EXA Infrastructure’s environment.
- Maintain the team responsible for the development of effective policies to secure sensitive data and ensure information security and compliance with relevant regulatory, legal, and customer certification requirements (ISO27001, SOC2).
- Manage multiple outsourced security providers and ensure the quality and effectiveness of the services.
- Performing research to stay abreast of new technologies and security vulnerabilities.
- Continue championing the culture of appropriate cybersecurity risk assessment and risk acceptance across from stakeholders to end users and IT professionals.
- Review, endorse, and align information security risk management and mitigation plans.
- Advise management on the appropriate cybersecurity solutions and technologies to remediate risks to an acceptable level.
- Review and addressing cybersecurity incidents as well as gain buy-in and oversee remedial activities to mitigate risks which are outside of the risk tolerance.
- Assist in the change management process to ensure changes encompass cybersecurity considerations.
- Conversing regularly with leaders and employees to ensure all IT security policies are deployed, revised, sustained, and overseen effectively.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Individual Profile
- Knowledge on secured on-premise and public cloud deployments for infrastructure and applications running on a hybrid landscape that includes all public cloud technologies: Azure, GCP, AWS.
- Knowledge on Security Software and hardware, including but not only: Privileged Access Control systems, Perimeter security, End point security, Micro Segmentation, Threat analytics.
- An ability to motivate and manage a team of information security staff supporting the organization's goals and an ability to lead the continuous process of evolving the information security vision for the future.
- Deep understanding of the security industry in UK, Europe, and the US.
- An ability to cultivate and build collaborative working relationships with a broad range of enterprise stakeholders.
- Create and deliver effective presentations as a means for communicating project and deliverable progress.
- Ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one.
- Drive change through the ability to effectively influence others to modify their opinions, plans, or behaviours.
- Communicate complex and technical issues to diverse audiences, orally and in writing, in an easily-understood, authoritative, and actionable manner.
- Strong interpersonal, verbal, and written communication skills in English.
- Excellent organizational skills with the ability to multi-task.
- Ability to manage own time effectively and to be prompt and punctual.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Our working environment
We are committed to working in the location where we do our best work. As a small and growing company with great offices in great locations, most employees will aim to be in the office 3 days a week and 2 days working from home/other locations.
Here at EXA, we believe the future includes everyone; we are open to all applications to create an environment and culture that includes one and all. We are a proud global community that wants to drive diversity of thought through our employees and culture. We want you to come as you are and make yourself and EXA successful.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location