Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Exa (prev. Metaphor)

Information Security Manager

Exa (prev. Metaphor)

Information Security Manager leading EXA Infrastructure’s cybersecurity program and team. Protecting enterprise communications, systems, and assets across hybrid cloud environments.

Posted 9/7/2026full-timeLondon • 🇬🇧 United KingdomMid-LevelSenior💰 £85,000 - £100,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in managing information security programs, ensuring compliance with regulatory standards such as ISO27001 and SOC2, and leading teams in cybersecurity risk assessment and incident management. Proficient in aligning security strategies with cloud deployments across Azure, GCP, and AWS while fostering collaborative relationships with stakeholders.

Highest-signal resume keywords
Information Security ManagementCybersecurity Risk AssessmentCloud Security (Azure, GCP, AWS)ISO27001 and SOC2 ComplianceTeam Leadership and Motivation

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Cybersecurity Program DeliverySecurity MonitoringIncident ManagementThreat AnalyticsPrivileged Access ControlPerimeter SecurityEndpoint SecurityMicro-SegmentationSecurity Vulnerability ResearchRisk Management
Soft Skills
Interpersonal CommunicationOrganizational SkillsMultitaskingPresentation SkillsInfluencing Skills
Certifications & Qualifications
ISO27001 CertificationSOC2 Certification
Industry Keywords
CybersecurityInformation SecurityComplianceSecurity PoliciesUK Security IndustryEuropean Security IndustryUS Security Industry

Tech Stack

Tools & technologies
AWSAzureCloudCyber SecurityGoogle Cloud Platform

About the role

Key responsibilities & impact
  • Manage and maintain EXA’s information security team and program
  • Maintain cybersecurity capabilities, processes, and technologies, continuously improving them as required
  • Work with infrastructure and application teams to understand the technology landscape and align it with EXA Infrastructure’s security posture
  • Deliver the existing cybersecurity program and present evidence for management awareness and regulatory scrutiny
  • Oversee a small team responsible for security monitoring, incident management, and security technology engineering
  • Maintain policies securing sensitive data and ensure information security and compliance requirements are met
  • Manage outsourced security providers and ensure service quality and effectiveness
  • Research new technologies and security vulnerabilities
  • Champion cybersecurity risk assessment and risk acceptance across stakeholders, end users, and IT professionals
  • Review and align information security risk management and mitigation plans
  • Advise management on cybersecurity solutions and technologies to remediate risks
  • Review and address cybersecurity incidents and oversee remedial activities
  • Support change management by ensuring cybersecurity considerations are incorporated
  • Communicate regularly with leaders and employees to ensure IT security policies are deployed, revised, sustained, and effectively overseen

Requirements

What you’ll need
  • Knowledge of secured on-premise and public cloud deployments for infrastructure and applications across Azure, GCP, and AWS
  • Knowledge of security software and hardware, including Privileged Access Control systems, perimeter security, endpoint security, micro-segmentation, and threat analytics
  • Ability to motivate and manage a team of information security staff
  • Ability to lead the continuous evolution of the information security vision
  • Deep understanding of the security industry in the UK, Europe, and the US
  • Ability to build collaborative relationships with enterprise stakeholders
  • Ability to create and deliver effective presentations
  • Ability to evaluate relative costs and benefits of potential actions
  • Ability to influence others to modify opinions, plans, or behaviours
  • Ability to communicate complex technical issues to diverse audiences in English
  • Strong interpersonal, verbal, and written communication skills in English
  • Excellent organisational and multitasking skills
  • Ability to manage time effectively and be prompt and punctual
  • Experience or knowledge related to ISO27001 and SOC2 regulatory, legal, and customer certification requirements

Benefits

Comp & perks
  • 15% bonus
  • Hybrid working: typically 3 days in the office and 2 days working from home/other locations