Light Grey Kablio Logo
Kablio AI
AI Turbo Recruiter
Want to hear how I work? Hit play.Kablio AI applies for you. You just show up to the interviewKablio AI helps you secure roles in construction, clean energy, facilities management, engineering, architecture, sustainability, environment and other physical world sectors.
3D Shield
Get hired, get rewarded!
Land a job through Kablio and earn a 5% salary bonus.
Exclusive benefits
5%Bonus
City Facilities Management Holdings Ltd

Information Security Manager

Company logo
City Facilities Management Holdings Ltd
Provides integrated facilities management services across commercial, residential and public sector assets.
Lead 2nd line cyber risk, data security, and compliance initiatives for the organization.
10d ago
£70,000 - £70,000
Expert & Leadership (13+ years)
Full Time
Glasgow, Scotland, United Kingdom
Office Full-Time
Company Size
3,500 Employees
Service Specialisms
Facilities Management
Maintenance Services
Mechanical Services
Electrical Services
Building Services
Cleaning Services
HVAC Services
Security Services
Sector Specialisms
Retail
Food and Consumer Goods Distribution
Commercial Estate
Healthcare (NHS Trusts)
Planned and Reactive Maintenance
Public Spaces
Education (Schools, Colleges, Universities)
Grocery
Role
What you would be doing
risk assessment
incident response
security audits
data governance
disaster recovery
cyber assurance

The role will work collaboratively with 1st Line cyber team to ensure business assurance plans are shared and the requirements of 2nd Line are understood.

This role sits within the 2nd Line of defence, where you will lead and support the business, managing cyber risk and information protection positions effectively. Protecting the business from security threats, by identifying risks and developing appropriate risk migration plans. Providing senior leadership with independent assurance of their cyber risk and information protection posture.

You will also take the lead in delivering a defined list of cyber assurance reviews, projects, and initiatives as well as achieving the cyber assurance and compliance related objectives. You will also help shape the City cyber security strategy for data security, monitoring and reporting, risk and threat assessment, incident response, business continuity and disaster recovery.

  • Input to and fulfil the development hiring plan for the team, including sourcing, screening, and interviewing
  • Managing 3rd parties
  • Set personal goals for each team member as well as direction while ensuring they are aligned with team goals
  • Contribute and maintain the current information security risk management framework, articulate risk in business terms, identify appropriate mitigation measures and drive their delivery to ensure the security of our information and services
  • Responding to information security incidents in line with the appropriate standards and processes, meeting or exceeding agreed KPIs.
  • Contribute to the annual information security business plan including audits, tests, risk assessment activities and additions to the information security delivery framework, e.g. policy updates.
  • to advise on, and to maintain data protection impact assessments
  • Identify relevant information security activities in response to changes in standards and regulations.
  • Liaise with key stakeholders to prioritise information security and compliance initiatives.
  • Liaise with internal departments and external suppliers to identify and address Information Security related risks.
  • to be the first point of contact for supervisory authorities and for individuals whose data is processed (colleagues, customers etc).
  • Perform security risk assessments and adversarial testing to establish proportionate risk advising of any relevant enhancements to the information security delivery framework.
  • to perform any activities relating to information security and compliance such as awareness-raising, training needs analysis, data migrations, security hardening, breach management and data protection based RFI.
  • Liaise with key stakeholders to prioritise technology, process and people-based security initiatives to mitigate risks identified and use continuous improvement principles to ensure the evolution of our information security delivery framework.
  • Set team goals and technical direction while ensuring that they align with the goals of the Technology and Information Security roadmaps
  • Conducting audits, developing controls & risk assessments
  • Assist with the development of City’s disaster recovery and business continuity plan.
  • Accountable for data security measures being in place to meet our policies. This includes accountability for City’s data governance platform Microsoft Purview
  • Following a regular timetable of security and data protection compliance audits and tests, taking appropriate steps to mitigate any risks discovered.
  • Implement effective engineering processes and policies that emphasize quality and forward progress
  • Initiate, facilitate and promote activities to foster information security and data protection awareness throughout City and its suppliers.
  • Provide assistance in business development bids, PQQs and ITT responses.
What you bring
nist csf
cissp
iso 27001
microsoft purview
degree
risk analysis
  • NIST CSF
  • CISSP, CRISC or CISM certified
  • Cyber security essentials
  • ISO 27001
  • Strong Technical Background in Data Classification and Data Loss Prevention
  • Hold regular 1-1s with all direct reports
  • Degree level qualification or equivalent experience in Cyber risk management and information protection
  • Experience of implementing and operating Microsoft’s unified data governance platform Purview
  • Strong risk-based analysis and decision making skills
  • Experience in information security governance, policy and procedure definition
Benefits

Salary: £70,000

Training + Development
Information not given or found
Company
Overview
  • Born from a merger of specialist FM firms, the company has grown into a national provider of end-to-end building services.
  • Delivers HVAC, cleaning, security and maintenance across offices, retail spaces and residential estates.
  • Tackles complex site environments—from high-rise urban offices to multi-unit housing complexes.
  • Works closely with public and private clients to streamline operations and reduce lifecycle costs.
  • Known for customizing FM solutions, it adapts to heritage buildings, modern offices and mixed-use developments.
  • Regularly undertakes large-scale contracts, managing hundreds of sites simultaneously with centralised control.
  • It operates with a commercial mindset, delivering measurable performance improvements and cost efficiencies.
  • Unexpectedly, it also steps into niche projects like seasonal event support or specialist compliance audits, showcasing versatility.
Culture + Values
760 audits
Health & Safety Excellence
The company conducted over 760 health and safety audits in 2020, emphasizing the importance of HSE standards for every employee.
70% promoted
Leadership Programme Success
Over 200 graduates of the Pathways leadership programme advanced into leadership roles, showcasing the company's investment in employee growth.
50% SME spend
Procurement Commitment
The company dedicates over 50% of its UK spend to supporting SMEs, exceeding the government's 33% target.
  • “Strive to Improve”
  • OneCity Taking Action Together—structured community giving, volunteering and apprenticeship support
Environment + Sustainability
49.7% Reduction
GHG Emissions Target
Reduction in Scope 1 & 2 greenhouse gas emissions by 2030, validated by the Science Based Targets initiative.
15% Energy Savings
Client Stores Initiative
Energy use reduction achieved across client stores in the US through various sustainability programs.
34% Energy Reduction
Retailer Case Study
Example showing significant improvements in energy efficiency and carbon reduction over years.
25 MW Demand-Response
ENough Project Contribution
Deployment under the EU Horizon 2020 project focused on food chain decarbonization.
  • Committed to achieving Net Zero emissions (Scopes 1, 2 & 3) by 2040
  • Member of Business Ambition for 1.5 °C, Race to Zero, SBTi & UN Global Compact
  • Science‑based emissions strategy—member since 2021
  • Carbon Reduction Plan includes dedicated initiatives on fleet fuel, energy, waste & travel
  • Australian lighting programme delivered ~105,000 ACCUs under Emissions Reduction Fund
Inclusion & Diversity
Over 200 Graduates
Pathways Leadership Programme
Initiative with a successful track record of developing future leaders, with 70% of participants advancing into leadership roles.
  • Sustainability feedback loop (no specific gender data publicly available)
  • No publicly disclosed DEI metrics or gender-split statistics found
Big Kablio Logo
Kablio AIIf you're someone who helps build and power the world (or dreams to), Kablio AI is your pocket-sized recruiter that gets you hired.
Copyright © 2025 Kablio