Envitia · 5 hours ago
Security Manager
Envitia is a UK-based software and services company that helps organisations unlock the full value of their data to make better, faster decisions. They are seeking a Security Manager to lead their Information Security strategy and ensure compliance with high-assurance security standards while managing incident response and fostering a strong security culture.
GeospatialGovernmentInformation TechnologyNational SecuritySoftware
Responsibilities
Standards Management: Lead the implementation and maintenance of key frameworks (e.g., ISO 27001, Cyber Essentials Plus, and defence-specific standards like DCC, NIST or JSP 440)
Security Strategy: Develop and enforce internal security policies that protect both our company data and our clients' intellectual property
Risk Assessment: Conduct regular gap analyses and risk assessments to identify vulnerabilities in our digital workflows and supply chain
Defence Liaison: Act as the primary point of contact for defence-related security audits and government vetting processes
Incident Response: Manage the "Security Incident Response Plan," ensuring the team knows exactly how to react to potential breaches or data leaks and lead any incident response activities
Culture & Training: Run security awareness sessions for our teams to ensure "Security by Design" is part of every project we deliver
Tooling & Monitoring: Oversee the selection and management of security tools (EDR, SIEM, Encryption) used across our remote or hybrid workforce
Collaboration: Support and collaborate with the Quality Manager and Head of Operations in maintaining ISO standards and other required certifications
Sales Support: Support the business in pre-sales activities, specifically relating to the security aspects of a tender / project
Qualification
Required
Leading or owning an Information Security Management within a consultancy or defence-adjacent firm
Implementing, maintaining, and evidencing compliance against recognised security frameworks such as ISO 27001 and Cyber Essentials Plus, with exposure to defence-specific standards (e.g. DCC, NIST, JSP 440)
Acting as a primary point of contact for external audits, security assessments, and government or customer assurance activities
Conducting risk assessments, gap analyses, and security reviews across systems, processes, and supply chains
Working closely with software engineers, cloud architects, and technical teams to embed security controls into real-world delivery
Developing and enforcing security policies, procedures, and incident response plans
Supporting or leading security incident response, including investigation, containment, and reporting
The successful candidate must be eligible for a DV (Developed Vetting) security clearance
Benefits
Annual Leave: 25 days plus your birthday off, with the ability to buy or sell up to five additional days
Private Healthcare: Comprehensive coverage with additional options for family members
Training & Skills Development: Ongoing learning opportunities to help you advance your career
Fitness Reimbursement: Support for gym memberships or fitness-related expenses
Life Assurance: Extensive life insurance coverage for peace of mind
Pension Contribution: Competitive options to help you plan for a secure financial future
Perkbox Subscription: Discounts on a wide range of products and services
Flexible Work Arrangements: Designed to support work-life balance and personal commitments
Internal Reward Schemes: Recognition initiatives to celebrate your contributions and achievements
Community Engagement & Volunteering: Opportunities to support meaningful causes through company-sponsored programs
Company
Envitia
Envitia is a geospatial software and solutions provider, serving defence, government and industry.
Funding
Current Stage
Growth StageTotal Funding
unknown2020-12-14Acquired
Recent News
Company data provided by crunchbase