Enet, part of the Speed Fibre Group, is Ireland's largest, open access network provider, building and operating the largest alternative wholesale telecoms network in Ireland.
Due to continuous growth, we are looking for an Information Security Manager to join the Speed Fibre Group team.
As the Information Security Manager, you will be the second line of defence, providing oversight, governance, and independent assurance of the organization's cybersecurity program.
You will ensure that risks are appropriately identified, assessed, and mitigated while supporting compliance with regulatory requirements and adherence to industry standards.
You will collaborate with business units and technical teams to monitor and enhance security practices, offering expert guidance to reduce risk effectively.
We operate a hybrid working model, with 2 days per week in either our Limerick or Dublin office.
This role reports directly to the CFO
Key Responsibilities:
Governance and Policy ManagementDevelop, implement, and maintain security policies, standards, and procedures aligned with regulatory requirements and industry best practices.
Oversee and provide guidance on the implementation of security frameworks (e.g., ISO/IEC 27001, NIST CSF) and relevant legislation (e.g.
NIS2).Ensure alignment between business objectives and security policies.
Risk Management and AssessmentConduct risk assessments to identify, evaluate, and mitigate potential security risks.
Independently monitor the effectiveness of security controls implemented by the first line of defence.
Develop and maintain the organization's risk register, tracking risk mitigation progress.
Compliance and Audit SupportEnsure compliance with regulatory and legal requirements (e.g., NIS2, GDPR, PCI DSS).Collaborate with internal and external audit teams to support security audits and reviews.
Provide evidence and documentation to demonstrate compliance with security standards.
Monitoring and ReportingEstablish and track key performance indicators (KPIs) and metrics to measure the effectiveness of the cybersecurity program.
Provide regular reporting on security posture, risk exposure, and compliance status to senior management and stakeholders.
Advisory and CollaborationServe as an independent advisor to operational teams, ensuring they understand and manage security risks effectively.
Support business units in embedding security into projects, processes, and systems.
Collaborate with the first line of defence to validate the adequacy of security measures.
Incident Oversight and Response SupportProvide oversight and guidance during cybersecurity incidents to ensure proper escalation, response, and documentation.
Review post-incident reports to identify lessons learned and recommend improvements to the incident response process.
Training and DevelopmentProvide training and awareness programs to ensure employees understand their security responsibilities.
Stay abreast of the changing risk, threat and legislative landscape.
Key Skills / Qualifications:
Bachelor's degree in information security, Computer Science, or a related field.
(Master's degree preferred)5+ years of experience in information security, governance, risk, or compliance.
Experience in a second-line-of-defence or audit-related role is highly desirable.
Excellent communication and presentation skills to engage with stakeholders at all levels.
Strong analytical and critical thinking abilities.
Leadership skills with a collaborative and proactive approach.
ISO/IEC 27001 Lead Implementer or Auditor.
Strong knowledge of security frameworks and standards (e.g., ISO 27001, NIST). Certifications (Preferred but not mandatory):Certified Information Systems Security Professional (CISSP)Certified Information Security Manager (CISM)Certified in Risk and Information Systems Control (CRISC)Certified NIST Cybersecurity Framework 2.0 Lead Implementer (CSF LI)Familiarity with regulatory requirements (e.g., NIS2, GDPR, PCI DSS)Proficiency in risk assessment methodologies and tools.
What we offer:
Generous company pension contribution.
Performance-based annual bonus.25 days annual leave, increasing each year up to 28 days.
Additional day off for your birthday.
Diverse and welcoming work environment – awarded Investors in Diversity Silver award in 2023 & Great Place to Work in 2024.Hybrid working model.
Training & educational assistance programmes.
Monthly wellbeing initiatives.
Charity partnership & community volunteer days.
Employee Assistance Programme.
Death in Service/Long Term Disability Benefit. Speed Fibre Group (the home of Enet and Magnet+) is an inclusive employer, and is committed to providing reasonable accommodations for potential and existing employees with any kind of disability.
Should you wish to request a reasonable accommodation we encourage you to let us know when you apply.