Kaizen
Information Security Manager

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
The Information Security Manager
The Information Security Manager is responsible for establishing, implementing, and maintaining Kaizen’s information security programme. The role ensures the confidentiality, integrity, and availability of information assets while supporting business objectives, regulatory compliance, and cyber resilience.
We are a multi-award winning RegTech company on a mission to transform the quality of regulatory reporting in the financial services industry. We've combined regulatory expertise with advanced technology to develop our market-leading quality assurance services. Unique in being able to fully assess data quality, our services are used by some of the world’s largest investment banks, asset managers, hedge funds and brokers, helping them to reduce costs, improve quality and increase confidence in their regulatory reporting.
Kaizen partners with Cybernetic Controls Limited to assist with our recruitment process and provide an optimum candidate experience.
Key Responsibilities
- Ensure the Kaizen’s group data and information is protected from unauthorised access
- Lead and manage the the offshore Information security function
- Implementing and ensuring security policies across the Kaizen Group
- Own and be accountable for the defence in depth and other programmes of work
- Ensure alignment with, and ongoing compliance of, Kaizen’s ISO27001:2022 & SOC2 certifications
- Maintain staff awareness of information security policies and standards
- Advise on security policy and processes across the organisation
- Respond to security related incidents and post event reporting
- Monitor security vulnerabilities and threats across the organisation’s services
- Coordinate security assessments across the organisation’s services
- Maintain relationships both internal and external to the function by attending meetings and as required and escalate findings and concerns to the CISO or CTO
- Ensure third party risk assessments are carried out and maintained
- Maintenance of the Kaizen Group Information Security Management System
- Ensure client due diligence and risk management questionnaires are completed in a timely manner
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Skills, Knowledge and Expertise
Skills:
- Information Security Management
- Security Operations and Incident Response
- Vulnerability Management
- Cloud Security (AWS, Azure, Microsoft 365)
- Identity and Access Management
- Modern cloud computing and network environments
- Leadership & team management
- Stakeholder engagement
Knowledge:
- Information Security Management Systems
- ISO27001:2022 requirements and certification processes
- SOC 2 control frameworks
- Risk management methodologies
- Security operations, incident response and forensic principles
- Vulnerability management and testing


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Experience:
- Solid background in Information Security (ideally 3+ years at a mid to senior level)
- Management of ISO27001/SOC2 Type II compliance regimes
- Security incident response and conducting investigations.
- Risk assessments and management.
- Supplier and audit management.
Qualifications:
- Higher level education qualification or equivalent experience in Information Security, Cyber Security or other related discipline
- One or more recognised security certifications such as:
- CISM
- CISA
- ISO27001 Lead auditor
- CRISC
- CCSP
- CEH
Benefits
- Company pension (5% of your base salary)
- 25 days' annual leave, plus UK bank holidays and your birthday
- Employee Assistance Programme
- Annual pay review
- Discretionary bonus (paid across three years, as per contract schedule)
- Private medical insurance
- Discount on private health assessment
- Upfront cost of an Apple watch covered via the health scheme
- Medical cashback plan
- Wellbeing allowance of up to £50 per month
- Up to £1,000 per year towards learning any new skill of your choosing
- Salary sacrifice electric car scheme
- Salary sacrifice bike scheme
- Childcare contribution of up to £3,000 per year for dependants ages five and under
- Various retail discounts via Shop st.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location