Enable job alerts via email!

Head of Information Security

JR United Kingdom

Reading

On-site

GBP 70,000 - 110,000

Full time

Today
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a Head of Information Security to spearhead their security strategy and compliance initiatives. In this pivotal role, you will lead the implementation of ISO27001 and ISO9001 recertifications, develop security policies, and manage the Information Security Management System. You will be responsible for advising senior management on emerging threats and compliance gaps while overseeing training and audits. This is a fantastic opportunity to make a significant impact in a dynamic online retail environment, where your expertise will help shape the future of information security.

Qualifications

  • Proven track record in leading ISO27001 & ISO9001 certifications.
  • Experience in managing information security policies and compliance.

Responsibilities

  • Lead the information security strategy and implementation.
  • Manage the Information Security Management System and audits.
  • Develop security KPIs and track compliance with standards.

Skills

ISO27001 Certification
ISO9001 Certification
Risk Management
Cybersecurity
GDPR Compliance
Security Policy Development
Incident Response Management

Education

ISO27001 Lead Implementer Qualification
ISO27001 Auditor Qualification

Tools

GRC Controls

Job description

Social network you want to login/join with:

Head of Information Security

Required for an online retail business. The role will initially focus on ISO27001 & ISO9001 recertifications.

Responsibilities
  1. Lead on information security strategy and implementation of security roadmap.
  2. Develop security KPIs and track their progress.
  3. Advise senior management on risk levels and any changes impacting security posture, including emerging threats.
  4. Create, maintain, and implement information security policies.
  5. Continuously validate the firm against policies and procedures to ensure compliance with ISO 27001, ISO 9001, Cyber Essentials+, and GDPR.
  6. Manage and continuously improve the firm's Information Security Management System.
  7. Oversee the information security training and awareness program.
  8. Lead internal and external audits and track findings through to mitigation.
  9. Identify and communicate emerging security threats with relevant stakeholders.
  10. Provide security due diligence in procurement processes and oversee ongoing supplier assurance.
  11. Manage security incidents and coordinate incident response processes.
  12. Select and implement GRC controls and assist in the selection and implementation of security technologies.
  13. Identify security requirements specific to IT systems throughout their lifecycle.
  14. Develop or enhance security procedures to mitigate potential threats.
  15. Ensure cybersecurity requirements are embedded into new programs of work.
  16. Provide management and mentorship to security teams and staff.
  17. Create and lead the Security Operations Centre (SOC), ensuring real-time monitoring and incident response.
  18. Drive security awareness training and GRC initiatives.
  19. Report to senior stakeholders on threats, compliance gaps, and mitigation progress.
  20. Conduct risk assessments, maintain risk registers, and develop risk treatment plans.
  21. Support vulnerability management processes, assess risks, and prioritize remediation efforts.
  22. Lead ISO 27001 and ISO 9001 audits and ensure GDPR compliance.
  23. Support IT projects by managing controls, providing guidance, and assessing risks.

Ideal candidates will have a proven track record of leading organizations through ISO27001 & ISO 9001 certifications. ISO27001 lead implementer or auditor qualifications are essential.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Head of Information Security

Barclay Simpson

Reading

On-site

GBP 60,000 - 100,000

9 days ago

Business Execution Lead - Investor Services

TN United Kingdom

London

On-site

GBP 90,000 - 150,000

13 days ago

Business Execution Lead - Investor Services

Citigroup Inc.

London

On-site

GBP 80,000 - 150,000

15 days ago

Head of Information Security & Data Protection

JR United Kingdom

Remote

GBP 80,000 - 120,000

7 days ago
Be an early applicant

Manager, Investor Services

GIST Advisory Pvt. Ltd.

London

On-site

GBP 60,000 - 100,000

9 days ago

Information Security Consultant Compliance Remote - UK

Bulletproof incorporated

Remote

GBP 50,000 - 90,000

3 days ago
Be an early applicant

Head of Information Security

Hawkai

London

On-site

GBP 70,000 - 110,000

27 days ago

Information Security Lead Auditor

TN United Kingdom

Remote

GBP 40,000 - 80,000

10 days ago

Business Execution Lead - Investor Services | London, UK

Citi

London

On-site

GBP 80,000 - 120,000

15 days ago