Cyber & Information Security Lead

Computer Network Defence Ltd (CND)

Bath

Hybrid

GBP 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A global healthcare technology company is seeking a Cyber & Information Security Lead to safeguard critical technology platforms. This senior role focuses on risk management, compliance, and security governance, suitable for candidates with CISO-level experience or those ready for strategic leadership. Offers a flexible hybrid work environment with strong employee wellbeing initiatives.

Qualifications

  • Senior-level experience in information security, ideally in a CISO role.
  • Knowledge of UK healthcare security frameworks.
  • Experience implementing ISO 27001:2022-certified ISMS.

Responsibilities

  • Define and maintain a robust security strategy aligned with business goals.
  • Ensure adherence to key standards including DSPT and Cyber Essentials Plus.
  • Manage the full lifecycle of security incidents.
  • Oversee secure system and software design throughout the development lifecycle.
  • Manage lifecycle of security incidents, including regulatory reporting.
  • Drive a strong security culture through staff training and awareness initiatives.
  • Support ongoing compliance with UK and EU data protection laws.
  • Provide strategic leadership within the governance, risk, and compliance team.
  • Senior-level security leadership in software/health tech contexts.
  • Knowledge of UK healthcare security frameworks like DSPT, DTAC and NCSC CAF.

Skills

Security Strategy
Compliance
Risk Management
Security Architecture
Incident Response
Policy & Governance
CISO experience
UK health tech security

Job description

Overview

Job Title: Cyber & Information Security Lead

Type: Full Time & Permanent

Location: Hybrid/Bath, England

About the Role: Seeking a senior cyber and information security professional to lead on safeguarding critical healthcare technology platforms. This role focuses on compliance, risk management, and security governance—particularly within public sector or regulated environments. The role is suitable for someone who has been working at CISO level or is ready to step into a strategic leadership position.

A global, forward-thinking organisation that prioritises staff wellbeing with flexible hybrid working, and a strong commitment to quality and compliance in healthcare technology.

Responsibilities
  • Security Strategy: Define and maintain a robust security strategy aligned with business goals and growth.
  • Compliance: Ensure adherence to key standards including DSPT, Cyber Essentials Plus, and ISO27001:2022.
  • Risk Management: Lead the identification and mitigation of information security risks across all operations.
  • Security Architecture: Oversee secure system and software design throughout the development lifecycle.
  • Incident Response: Manage the full lifecycle of security incidents, including reporting to relevant authorities.
  • Awareness & Training: Drive a strong security culture through staff training and awareness initiatives.
  • Regulatory Compliance: Support ongoing compliance with UK and EU data protection laws and regulations.
  • Leadership: Provide strategic leadership and mentorship within the governance, risk, and compliance team.
  • Security Leadership: Senior-level experience in information security, ideally in a CISO or equivalent role within software or health tech.
  • Healthcare Standards: Knowledge of UK healthcare security frameworks like DSPT, DTAC, and NCSC CAF.
  • ISO 27001: Experience implementing and maintaining ISO 27001:2022-certified ISMS.
  • Secure by Design: Deep understanding of secure SDLC and embedding security into product and system architecture.
  • Risk Management: Expertise in building and managing security risk frameworks using methodologies like OCTAVE or FAIR.
  • Incident Response: Hands-on experience leading incident response, including regulatory reporting and crisis management.
  • Policy & Governance: Skilled in developing and enforcing comprehensive security policies and governance structures.
  • Regulatory Compliance: Strong grasp of GDPR, the Data Protection Act, and NIS Directive within a health tech context.
How to Apply

If this sounds like an environment where you would excel, please send your CV and a covering letter outlining your suitability, salary requirements, and availability to CNDJobs@CNDLtd.com.

Details
  • Seniority level: Mid-Senior level
  • Employment type: Full-time
  • Job function: Management and Quality Assurance
  • Industries: Computer and Network Security

We’re unable to display the remaining content from the original listing and recommend reviewing the job posting on the employer site for any additional details.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Lead
Cyber Security Lead

Chambers & Partners • Greater London

Hybrid
GBP 90,000 - 130,000
Cyber Security Consultant (Senior Security Advisor - CISO)
Cyber Security Consultant (Senior Security Advisor - CISO)

NHS England • Leeds

Hybrid
GBP 70,000 - 100,000
Deputy Director Cyber Security Engagement and Compliance
Deputy Director Cyber Security Engagement and Compliance

NHS England • City Of London

On-site
GBP 110,000 - 150,000
Cyber Security Consultant (Senior Security Advisor - CISO) | NHS England
Cyber Security Consultant (Senior Security Advisor - CISO) | NHS England

Allscreens Nationwide Ltd • Leeds, Exeter

On-site
GBP 69,000 - 78,000
RRP payment 20%
Deputy Director Cyber Security Engagement and Compliance | NHS England
Deputy Director Cyber Security Engagement and Compliance | NHS England

Allscreens Nationwide Ltd • Greater London, Leeds

On-site
GBP 113,000 - 130,000
Head of Information and Cyber Security
Head of Information and Cyber Security

Sadler Recruitment • England

Hybrid
Cyber Security Consultant - Healthcare
Cyber Security Consultant - Healthcare

Claims Recruitment Services • Greater London

On-site
GBP 70,000 - 110,000
Senior Information Security Analyst
Senior Information Security Analyst

Sopra Steria • Leeds, Southampton

Hybrid
GBP 32,000 - 39,000
25 days annual leave + buy extra days
Health cash plan
Life assurance
+1
Head of Cyber Security – 11820SR
Head of Cyber Security – 11820SR

Proactive.IT Appointments Limited • West of England

Hybrid
GBP 90,000 - 120,000
Bonus package (15-25% dependent on/)**
Private Medical Insurance
Pension
Cyber Security Manager - Governance, Risk and Compliance (GRC)
Cyber Security Manager - Governance, Risk and Compliance (GRC)

Essex Partnership University NHS Foundation Trust • Grays

On-site
GBP 49,000 - 57,000
£8,000 relocation package
NHS benefits
Season ticket loans