Manager: Information Security
Derivco
We're on the hunt for a seasoned security leader to take the reins of our manager: Information Security role — someone who thrives at the intersection of strategy and hands-on endpoint security leadership, and who's ready to shape how Derivco defends its global technology landscape.
This is a high-impact leadership role where you'll direct endpoint detection and response capabilities, drive security governance, and lead a talented team of security professionals across a global, multi-country footprint. If you're energised by staying ahead of emerging threats, building automation-driven security operations, and mentoring the next generation of security talent, this is the role for you.
What You'll Do
- Lead endpoint detection and response capabilities, tuning detection rules and managing exclusions to ensure rapid identification and containment of security threats
- Manage security platform infrastructure and availability, including patch management, database security, and endpoint protection platforms
- Establish and enforce security governance, policies, and compliance standards aligned with ISO 27001, PCI-DSS, and regulatory requirements
- Drive security infrastructure modernization and DevSecOps initiatives, including automation, infrastructure-as-code, custom dashboards, and CI/CD integrations
- Mentor and develop information security team members and technical specialists, building capability and consistent security standards
- Conduct vulnerability assessments and security scanning activities, coordinating remediation efforts to reduce organisational risk
- Manage strategic relationships with security vendors and compliance partners, coordinating audits, renewals, and product evaluations
- Monitor endpoint security performance metrics and compliance status, reporting findings to senior leadership
- Collaborate with cross-functional teams — Network Security, System Services, Database Support, and Compliance — to deliver cohesive, organisation-wide security
- Provide platform expertise and escalation support to the Security Operations Centre, investigating complex security events and guiding forensic analysis
What We're Looking For
- 8–10 years of progressive experience in information security, endpoint security, or security infrastructure management, with demonstrated team leadership
- A Bachelor's Degree in Information Technology, Computer Science, Computer Engineering, Information Systems, or an equivalent professional qualification
- Expert knowledge of endpoint detection and response platforms, SIEM systems, and database security tools
- Advanced proficiency with security governance frameworks, including ISO 27001, PCI-DSS, and regulatory compliance
- Strategic expertise in DevSecOps methodologies — infrastructure-as-code, custom dashboards, CI/CD pipelines, and containerisation
- Advanced experience managing vendor relationships and security platform lifecycles, including renewals and licensing negotiations
- Proven capability leading and mentoring security teams on endpoint platforms, threat detection, and incident response
- A confident communicator who can engage senior leadership, technical teams, and external stakeholders with equal ease
- A strategic, deep-and-broad thinker who can balance operational excellence with long-term security vision
Why Join Us?
- Lead security for a global, multi-country technology landscape with real scope for impact
- Shape the future of endpoint security through automation, DevSecOps, and modern security tooling
- Build and mentor a high-performing information security team
- Work at the centre of a business that takes security posture and regulatory readiness seriously
- Be part of a culture that champions innovation, accountability, and continuous improvement
If you're a security leader who's ready to modernise, mentor, and make a measurable impact on organisational security posture, we want to hear from you.
Closing Date: 28 August 2026