Head of Information Security

Oakley Recruitment Ltd

Birmingham

On-site

GBP 110,000 - 160,000

Full time

5 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Additional benefits package
Birmingham based
Travel as required
Newly created senior leadership posit…
Direct exposure to the CEO and senior…
Autonomy to shape security strategy
Opportunity to become future CISO

Job summary

Oakley Recruitment is partnering with a growing organisation in Birmingham to recruit a Head of Information Security for a full-time, permanent role. You will lead the security function and shape the strategy at executive level, aligning security with business goals.

You will report to the CEO and senior leadership, owning governance, risk management and security operations as the organisation scales towards its future CISO.

Qualifications

  • Strong experience in information or cyber security at management or senior management level.
  • Experience developing security strategies, frameworks, policies and risk-based programmes.
  • Experience with ISO 27001 and ISMS environments.
  • Knowledge of cloud, SaaS, identity, APIs, application security and data protection.
  • Ability to translate technical security risks into clear commercial language for executives.

Responsibilities

  • Developing and maintaining the organisation’s information security strategy, policies and security roadmap.
  • Leading and continually developing an ISO 27001-aligned ISMS.
  • Maintaining the security risk register and ensuring appropriate controls and mitigation plans.
  • Providing clear security reporting and assurance to the CEO and senior leadership team.
  • Overseeing security across cloud infrastructure, SaaS applications, APIs, identity, endpoints and data.
  • Managing vulnerability management, penetration testing, monitoring and remediation activity.

Skills

Information security
Leadership
ISO 27001
ISMS
Cloud security
Risk management
Stakeholder communication

Job description

Oakley Recruitment is working in partnership with an expanding organisation based in Birmingham. This is an excellent opportunity to join the team as a Head of Information Security on a full-time, permanent basis.

Are you an experienced Information Security professional ready to take the next step into a senior leadership position, with the opportunity to develop into a future CISO?

This newly created role would suit an experienced Information Security Manager, Cyber Security Manager, Head of Information Security or senior security professional who is ready to take greater ownership and build their career towards CISO level.

Culture and Environment

This is a growing, technology-led organisation operating across the UK and internationally. As the business continues to develop, information security will play an increasingly important role in supporting its future growth.

This is an exciting opportunity to join at a pivotal stage. Rather than stepping into a large, established security function, you will have the opportunity to shape how information security operates across the organisation.

Working closely with the CEO and senior leadership team, you will have genuine exposure at the highest level of the business, with the autonomy to develop the security strategy, strengthen governance and help shape the future security operating model.

For someone ambitious about progressing their career, there is a clear opportunity to grow with the organisation and develop towards becoming its future CISO.

Personality

We are looking for someone who combines strong information and cyber security knowledge with the ambition and confidence to step into a broader leadership position.

You will be commercially minded, pragmatic and comfortable constructively challenging stakeholders. You will be able to take complex technical risks and communicate them clearly to both technical and non-technical audiences.

You will enjoy taking ownership, identifying where improvements can be made and building something for the future rather than simply maintaining what is already in place.

You do not need to be an established CISO. This opportunity is about finding someone with strong technical and security foundations, leadership capability and the potential to develop into a senior executive security leader as the organisation grows.

Package and Benefits

  • Additional benefits package
  • Birmingham based
  • Travel as required
  • Newly created senior leadership position
  • Direct exposure to the CEO and senior leadership team
  • Genuine autonomy to shape the organisation’s security strategy and framework
  • Clear opportunity to develop into the organisation’s future CISO

Job Role

  • Developing and maintaining the organisation’s information security strategy, policies and security roadmap
  • Leading and continually developing an ISO 27001-aligned Information Security Management System (ISMS)
  • Maintaining the security risk register and ensuring appropriate controls and mitigation plans are in place
  • Providing clear security reporting, insight and assurance to the CEO and senior leadership team
  • Overseeing security across cloud infrastructure, SaaS applications, APIs, identity, endpoints and data
  • Managing vulnerability management, penetration testing, monitoring and remediation activity
  • Working alongside technology and development teams to embed secure-by-design and DevSecOps principles
  • Owning and developing the cyber incident response framework
  • Supporting business continuity, disaster recovery and wider cyber resilience planning
  • Managing information security risks across suppliers and technology partners
  • Coordinating specialist external security providers where required
  • Developing security awareness and supporting a strong security culture across the organisation
  • Monitoring emerging cyber threats, regulatory requirements and technology risks, including those associated with AI
  • Continuing to develop the security function and operating model as the organisation grows
  • Building the capability and executive-level experience required to progress towards future CISO responsibility

Skills and Experience

  • Demonstrating strong experience within information or cyber security, ideally at management or senior management level
  • Experience developing or contributing to security strategies, frameworks, policies and risk-based programmes
  • Working knowledge and experience of ISO 27001 and ISMS environments
  • Strong understanding of cloud, SaaS, identity, APIs, application security and data protection
  • Experience overseeing vulnerability management, penetration testing and incident response
  • Ability to translate technical security risks into clear commercial language for senior stakeholders
  • Experience assessing third-party and supply-chain security risks
  • Strong knowledge of UK data protection and cyber security requirements
  • Confident communication skills with the ability to influence and constructively challenge stakeholders
  • Leadership capability with the ambition to continue developing at a senior level
  • Experience within technology, SaaS, automotive, financial services, regulated or data-sensitive environments would be advantageous
  • Exposure to Cyber Essentials Plus, SOC 2, NIST, CIS Controls, OWASP, AWS, Azure or Google Cloud would be beneficial

This is an excellent opportunity for an ambitious Information Security professional who is ready to take greater ownership and influence within a growing organisation.

You will have the opportunity to make the role your own, shape how information security operates as the business develops and build your presence at executive level, with a genuine pathway towards becoming the organisation’s future CISO.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Head Of Information Security
Head Of Information Security

Oakley Recruitment Limited • Tyseley

On-site
GBP 90,000 - 120,000
Additional benefits package
Travel as required
Senior leadership role
Head of Information Security
Head of Information Security

MJA (London) Ltd • Greater London

On-site
GBP 120,000 - 180,000
Head of Information Security - Path to CISO Leadership
Head of Information Security - Path to CISO Leadership

Oakley Recruitment Ltd • Birmingham

On-site
GBP 110,000 - 160,000
Additional benefits package
Birmingham based
Travel as required
+4
Cyber Security Manager
Cyber Security Manager

Amtis Professional Ltd • Birmingham

On-site
GBP 51,000 - 85,000
Hybrid work model
Annual bonus 30%
Pension contributions 1.5x
+7
Cyber Security Manager
Cyber Security Manager

Amtis - Digital, Technology, Transformation • Birmingham

Hybrid
GBP 77,000 - 94,000
Hybrid working
Private healthcare
Dental plan
+5
Group Head of Information Security & Cyber Operations
Group Head of Information Security & Cyber Operations

William Scott Consulting Ltd • Gerrards Cross

On-site
GBP 115,000 - 125,000
Principal Cyber Officer
Principal Cyber Officer

Maxwell Bond • Reading

Hybrid
GBP 63,000 - 77,000
Head of Information and Cyber Security
Head of Information and Cyber Security

Sadler Recruitment • England

On-site
GBP 76,050 - 92,950
Head of IT Security, Professional Services, Cyber
Head of IT Security, Professional Services, Cyber

Carrington Recruitment Solutions Limited • Birmingham

On-site
GBP 90,000 - 130,000
Head Of IT Security, Professional Services, Cyber, Birmingham, Legalit
Head Of IT Security, Professional Services, Cyber, Birmingham, Legalit

Carrington Recruitment Solutions • Fox Hollies

Hybrid
GBP 90,000 - 150,000