Head of Information Security

Jobtailor

Greater London

On-site

GBP 120,000 - 190,000

Full time

8 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Valarian seeks a senior security leader to own the company's security posture, risk framework, and product compliance. You will embed security into the engineering culture and ensure customer trust across all products and services.

You will design and drive the Zero-Trust roadmap, manage audit readiness for SOC 2 Type II, ISO 27001, Cyber Essentials Plus, and NIST 800-53, and lead DevSecOps integration, vulnerability management, and incident response programs.

Qualifications

  • Experience leading security at senior level with enterprise scope.
  • Proven ability to implement Zero-Trust roadmaps and risk assessments.
  • Experience with SOC 2 Type II and ISO 27001 compliance.

Responsibilities

  • Take ownership of Valarian's security posture and risk framework.
  • Embed security into engineering culture and maintain customer trust.
  • Design and execute Zero-Trust roadmap, policies, and executive reporting.
  • Own audit readiness for SOC 2 Type II, ISO 27001, Cyber Essentials Plus, and NIST 800-53.
  • Embed DevSecOps and secure SDLC into CI/CD pipelines.
  • Oversee penetration testing, red teaming, and threat modeling.
  • Serve as security authority in procurement reviews and vendor risk assessments.
  • Build and manage incident response, continuous monitoring, and vulnerability programs.

Skills

Security leadership
Zero-Trust architecture
Risk assessments
DevSecOps
Executive reporting

Education

Cyber Essentials Plus
NIST 800-53

Tools

CI/CD security tooling
Security Posture Management

Job description

  • Take full ownership of Valarian’s internal security posture, enterprise risk framework, and product compliance
  • Embed security into the engineering culture and maintain customer trust
  • Design and execute Valarian’s Zero-Trust security roadmap, policies, risk assessments, and executive reporting for leadership and the board
  • Own end-to-end audit readiness for SOC 2 Type II, ISO 27001, Cyber Essentials Plus, and NIST 800-53
  • Embed DevSecOps and secure SDLC practices into CI/CD pipelines
  • Oversee penetration testing, red teaming, and threat modeling across core infrastructure
  • Serve as the technical security authority in customer procurement reviews, vendor risk assessments, and defense customer evaluations
  • Build and manage internal incident response capabilities, continuous monitoring, vulnerability management, and employee security awareness programs
Requirements
  • Ambitious, technical security leader
  • Experience suitable for a Senior Security Manager, Architect, or Director stepping into a first CISO-level leadership role
  • Experience with Zero-Trust security roadmaps, policies, and risk assessments
  • Experience with SOC 2 Type II, ISO 27001, Cyber Essentials Plus, and NIST 800-53
  • Experience embedding DevSecOps and secure SDLC practices into CI/CD pipelines
  • Experience overseeing penetration testing, red teaming, and threat modeling
  • Experience with customer procurement reviews, vendor risk assessments (DDQs), and defense customer evaluations
  • Experience building and managing incident response, continuous monitoring, vulnerability management, and employee security awareness programs
Core Competencies

Demonstrates expertise in Zero-Trust security frameworks, compliance standards such as SOC 2 Type II and ISO 27001, and embedding security practices within engineering cultures. Proven ability to lead incident response initiatives, manage risk assessments, and oversee vulnerability management programs.

Highest-signal resume keywords
  • Zero-Trust Security Roadmap
  • SOC 2 Type II Compliance
  • ISO 27001 Certification
  • DevSecOps Practices
  • Incident Response Management
Hard Skills
  • Risk Assessment
  • Penetration Testing
  • Threat Modeling
  • Vulnerability Management
  • Continuous Monitoring
Soft Skills
  • Leadership
  • Ambition
  • Technical Authority
Certifications & Qualifications
  • Cyber Essentials Plus
  • NIST 800-53
Industry Keywords
  • Enterprise Risk Framework
  • Security Awareness Programs
  • Vendor Risk Assessments
  • Customer Procurement Reviews
Tools & Technologies
  • CI/CD Pipelines
  • Security Posture Management
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Leader: Zero-Trust & Compliance Champion
Senior Security Leader: Zero-Trust & Compliance Champion

Jobtailor • Greater London

On-site
GBP 120,000 - 190,000
Head of Information Security
Head of Information Security

Valarian Technologies • Greater London

Hybrid
GBP 110,000 - 150,000
Equity
Competitive salary
Employer pension contributions
+3
Head of Information Security
Head of Information Security

Valarian • Greater London

On-site
GBP 120,000 - 190,000
Equity
Competitive salary
Employer pension contributions
+3
Cyber Security Engineer
Cyber Security Engineer

Jobtailor • Greater London

Hybrid
GBP 70,000 - 110,000
Information Security Manager
Information Security Manager

Jobtailor • Greater London

On-site
GBP 100,000 - 150,000
Chief InfoSec Strategist — Zero-Trust & Compliance
Chief InfoSec Strategist — Zero-Trust & Compliance

Valarian Technologies • Greater London

Hybrid
GBP 110,000 - 150,000
Equity
Competitive salary
Employer pension contributions
+3
SOC Team Lead
SOC Team Lead

Jobtailor • Greater London

On-site
GBP 90,000 - 120,000
Lead Security Operations Engineer
Lead Security Operations Engineer

Jobtailor • Greater London

On-site
GBP 120,000 - 170,000
Security Architect – Entra ID, MS, Azure
Security Architect – Entra ID, MS, Azure

Jobtailor • Greater London

Hybrid
GBP 90,000 - 130,000
Senior Manager – Cyber Advisory, Commercial & Retail Sector
Senior Manager – Cyber Advisory, Commercial & Retail Sector

Jobtailor • Greater London

On-site
GBP 85,000 - 110,000