Skip to content
Working at Sodexo - engineer fixing large machinery

Our vacancies

Search Jobs  

Information Security Manager

Please Note: The application deadline for this job has now passed.

Job Introduction

Sodexo Justice are recruiting for a Information Security Manager at HMP Forest Bank to lead the information security approach for the custodial side of the justice business.

HMP Forest Bank serves the courts of Greater Manchester and maintains strong links to the local community with a focus on resettlement. We aim to deliver quality of life services and support people to change their lives for the better.

Opportunities for learning and developing work-ready skills are on offer for all who come in to custody, but our commitment to reducing reoffending in local communities does not end at the prison gate. We support people released from custody through innovative partnerships in substance misuse services in Bury and Oldham, working with people to maintain recovery and lead law-abiding lives.

As well as the 16 residential units on site, there is a healthcare centre, gym, library, workshop complex, visits hall, chaplaincy and kitchen. The prison’s capacity stands at 1,460, holding adult men both on remand or sentenced and young prisoners between the ages of 18-21 years.

For more information on working in Justice within Sodexo please see Careers in Justice

Role Responsibility

  • Lead the current drive to obtain ISO27001 & Cyber essentials plus certification for all custodial sites
  • Ensure appropriate handling and management of security incidents, problems and changes
  • Conduct routine data protection audits and co-ordinate ongoing learning across staff and contractors
  • Report on information security incidents, and present data protection reports to the security working group
  • Define, document and implement security policies for custody, working to develop the ISMS
  • Review processes currently in place against all relevant legalisation (GDP, PSO’s & PSI’s) and ensure the justice custody business adheres to these
  • Managing and maintaining the ISMS document set
  • Running regular audits of the activities within each site to ensure they conform to the agreed standards
  • Tracking the status of preventative and corrective actions
  • Facilitating the Security working group (SWG) meetings
  • Feeding KPI information to each SWG to ensure the groups decisions/priorities are aligned to the risks facing the business
  • Ensure training & awareness is driven within the site.
  • Developing and updating the Information security training package after any major incidents or legislative changes and at least once per year

The Ideal Candidate

Essential

  • Knowledge and practical use of ITIL v3 guidelines especially as they apply to Information Security
  • Graduate calibre
  • Able to identify information risks and the commensurate controls
  • Able to articulate security advice, and explain directly to stakeholders of varying levels
  • Aware of architectural frameworks and experience in applying security principles to projects
  • Experience of implementing information security risk systems, performing risk assessments and developing risk treatment plans
  • High-level of IT literacy with direct experience of working with data security applications, systems and solutions.
  •  Ability to get things done without direct authority over a team.
  • Good negotiating and influencing skills. Capable of communicating effectively at all levels in both written and oral presentation.
  • Experience of providing training and guidance around data security issues, to staff with varying abilities.
  • Expert knowledge and practical experience of data protection law specifically GDPR.

Desirable: 

  • Qualified ISO27001 lead auditor,  Certified Information Security Manager (CISM) or Certified Information Systems Security professional (CISSP)

Package Description

Starting Salary £48,000, bonus, flex fund, 25 days holiday

Please note you will need to complete CTC Clearance

About the Company

In the UK and Ireland, Sodexo employs some 35,000 employees to deliver integrated facilities management services to clients at over 2,000 locations in the corporate, healthcare, education, leisure, defence and justice sectors. With an annual turnover of over £1bn, we provide everything from catering, cleaning and reception to security, laboratory and grounds maintenance services, enabling our clients to focus on their core business.

We are building on our support to the Armed Forces community through the development of specific pathways within our recruitment process to  support ex-forces personnel and reservists, those applying for jobs with us who meet the ideal candidate criteria for the role advertised are guaranteed to progress to the selection process.

Sodexo and our clients are committed to safeguarding and promoting the welfare of children and adults within a regulated activity. Certain roles will require applicants to undergo screening appropriate to the post, including checks with past employers and the Disclosure and Barring Service (DBS) and/ or Disclosure Scotland.

Please note all roles within Sodexo Justice are subject to security and recruitment checks which may include a Social Media Check. You will also be asked to provide 3 years’ worth of references and request employment history details from the HMRC

This website is using cookies to improve your browsing experience. If you navigate to another page without changing the settings bellow you consent to this. Read more about cookies.