Senior Information Security Manager
Listed on 2025-11-05
-
IT/Tech
Cybersecurity, Information Security, Systems Engineer, Data Security
Senior Information Security Manager, London About Nscale
Nscale is the GPU cloud engineered for AI. We provide cost-effective, high-performance infrastructure for AI start-ups and large enterprise customers. Nscale enables AI-focused companies to achieve superior results by reducing the complexity of AI development. Our GPU cloud bolsters technical capabilities and directly supports strategic business outcomes, including cost management, rapid innovation, and environmental responsibility.
We thrive on a culture of relentless innovation, ownership, and accountability, where every team member takes pride in their work and drives it with excellence and urgency. As an Nscaler, you’ll build trust through openness and transparency, where everyone is inspired to do their best work. If you join our team, you’ll be contributing to building the technology that powers the future.
Role OverviewWe are seeking a Senior Information Security Manager to work closely with the Head of Information Security in building and managing Nscale’s end-to-end security framework cross physical, technical, and organisational domains.
You’ll be hands‑on, execution-focused, and comfortable working in a complex environment that spans hyperscale GPU clusters, critical infrastructure, and compliance programmes (SOC 2 Type II, ISO 27001/17/18, Cyber Essentials Plus, ISO 22301, and ISO 22237).This role will directly support ongoing certification, audit readiness, and incident response initiatives, while driving operational maturity across all Nscale sites and systems.
This role requires
UK government security clearance up to DV
- Support ongoing delivery of ISO 27001, ISO 27017/27018, SOC 2 Type II, Cyber Essentials Plus, and ISO 22301 frameworks.
- Maintain the Information Security Management System (ISMS), risk register, and control evidence for internal and external audits.
- Support third‑party risk management (TPRM) ensuring supplier compliance and onboarding reviews.
- Develop and track KPIs/KRIs for security operations and compliance health.
- Oversee vulnerability management, EDR posture, and security incident workflows in partnership with or MSSPs.
- Support incident detection, triage, investigation, and root‑cause analysis.
- Own operational runbooks for containment, eradication, and recovery procedures.
- Review access control lists, privileged‑user logs, and infrastructure security baselines.
- Maintain asset inventory, patch cadence, and configuration compliance (servers, workstations, and Kubernetes workloads).
- Support the physical security programme at all Nscale data centres, ensuring alignment with ISO 27001 Annex
A.11 and ISO 22237. - Maintain visitor management and access audit trails, assisting with incident reviews and compliance documentation.
- Support security awareness and phishing simulation programmes.
- Develop clear communications and training materials to reinforce security accountability across teams.
- Contribute to architecture reviews, change‑control boards, and project assessments.
- Identify and implement automation opportunities to reduce manual compliance and reporting overhead.
- Track and report on control effectiveness, audit findings, and remediation progress to senior leadership.
- 5+ years in information or physical security management within a data centre, cloud, or MSP environment.
- Deep familiarity with ISO 27001, SOC 2, NIST CSF, and Cyber Essentials Plus frameworks.
- Experience leading or supporting audits and external assessments.
- Strong understanding of incident response, vulnerability management, and access control processes.
- Excellent documentation, communication, and stakeholder management skills.
- Hands‑on with GRC tooling.
- Experience with GPU/HPC or cloud infrastructure security.
- Familiarity with ISO 22237 (data‑centre design & operations).
- Knowledge of Kubernetes, container security, and hybrid cloud architectures.
- Familiarity with Darktrace, Tenable, Checkpoint Harmony, and Exabeam SIEM.
- Security certifications (CISSP, CISM, ISO 27001 LA/LI, CompTIA Sec+, or similar).
At Nscale, you'll find a collaborative, supportive, and…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: