Head of IT Security

Jobsoid Inc.

Greater London

Hybrid

GBP 120,000 - 170,000

Full time

43 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Jobsoid Inc. in London seeks a Head of IT Security to define the vision and implement the strategy for IT risk management, information security and cyber security within the UKI Territory.

You will lead on emerging security trends, ensure regulatory compliance, and oversee IT security risk, vulnerability assessments and incident response.

The role manages the Security team and budget, partners with executives, and supports a hybrid working model from SE5 London.

Qualifications

  • Expert level subject matter in IT risk management, information security and cyber security, with the proven ability to apply that knowledge effectively and influence organisational thinking.
  • Ability to plan at a 3- to 5-year strategic horizon.
  • Excellent communication skills to convey complex ideas to board level and diverse audiences.
  • Strong interpersonal skills to influence at senior levels and build collaborative relationships.
  • Proven analytical and critical thinking to improve processes and outcomes.
  • Strong financial management experience including budgets and financial reporting.

Responsibilities

  • Define the vision and implement the strategy for IT risk management, information security and cyber security within the UKI Territory.
  • Develop an organisation-wide risk-based approach to threats, reducing exposure through vulnerability identification and remediation.
  • Take responsibility for IT risk management and information security during product/vendor selection and contract negotiation.
  • Lead IT security incident response planning, investigations, and related disciplinary and legal considerations.
  • Lead and manage the Security team and budgets to ensure reliable operations and value for money.
  • Establish and chair the Information Security Forum to support decision making and awareness.
  • Develop an enterprise information security programme to foster a cyber-savvy workforce and minimise risk.
  • Communicate objectives and key results to the Executive Committee and Board.

Skills

IT risk management
information security
cyber security
strategic leadership
budget management
communication skills
stakeholder management

Education

MSc Information Security
CISSP
CISM
ISO27001 Practitioner

Tools

ITIL

Job description

JOB PROFILE

Job title: Head of IT Security

Hybrid Role (2 Days per Week from HQ Offices SE5 London)

Purpose: Responsible for defining the vision and setting and implementing the strategy for IT risk management, information security and cyber security, within the UK & Ireland (UKI) Territory.

Leading on the understanding of emerging security trends, risks, guidelines , technologies and applicable laws, regulations, and contractual requirements.

Responsible for all IT security risk and vulnerability identification and assessment, and the resulting mitigating actions

Leading on organisational and behavioural change in relation to IT security, at all levels, by education and collaboration.

The organisation has approximately 7000 IT users across approximately 900 locations, comprising of a comprehensive IT infrastructure delivering several line- of-business systems which reach out to all staff. Primarily based at Territorial Headquarters in London the IT Department is responsible for the entire IT infrastructure, service desk support, corporate systems, IT provisioning, information security, telephony (landline and mobile), IT project management, and management information.

Organisation Chart

Chief Information Officer
Head of IT Security
Assistant Head of Information Security

Report to:

Chief Information Officer

Accountable to:

Chief Information Officer, Secretary for Business
Administration, IT Strategy

You will…
  • Define the vision, and set and implement the strategy for IT risk management, information security and cyber security within the UK & Ireland (UKI) Territory, to ensure the organisations information assets are adequately protected
  • Develop an organisation wide risk-based approach to threats, so reducing threat exposure through vulnerability identification, assessment, and remediation actions.
  • Take responsibility for all IT risk management, information security and cyber security matters in relation to product/vendor selection and Missional contract negotiation, to mitigate security threats and ensure ongoing contract compliance
  • Take organisational responsibility for IT security incident response planning at security breach investigation, and assist with any associated disciplinary, public relations and legal matters, to enable recovery and legal compliance in the event of a disaster
  • Lead and manage the Security team of employee’s, vendors & contractors and associated budgets, to ensure uninterrupted service and value for money
  • Establish and lead the Information Security Forum, to support effective decision making and improve organisation understanding
  • Develop an enterprise information security programme, so establishing a cyber savvy workforce that can make the right decisions for safe and efficient operations, so minimising the risk of the organisation being exposed to security threats
  • Communicate objectives and key results to the Executive Committee , Board of Directors, and other stakeholders, including a clear and measurable view of Information and Cyber Security, to ensure that security activities meet strategic objectives.
You have…

Extensive demonstratable IT risk management, information security and cyber security experience at a strategic level, in a geographically diverse and multi-disciplinary organisation

Key working relationships

Senior leaders, regularly with Audit Director, Territorial Risk and Compliance Manager, Mission contract holders, Procurement, HR, Legal, Data Protection Officer and IT Steering Board.

External suppliers and out-tasked service providers

Government bodies e.g., Home Office

Sub Contracted service providers

People management:

Assistant Head of Information Security and other specialist
consultants/contractors and out tasked service providers(3-6
people).

Operating budget:

c£1.5- 2m covering specialist security tools, audits, services,
awareness courses, certifications

  • Expert level subject matter in IT risk management, information security and cyber security, with the proven ability to apply that knowledge effectively within the workplace, with the drive to keep updated with all relevant statutory and best practice developments, and influence organisational thinking
  • Demonstrable proven ability of planning at a strategic level with a 3-5 year time horizon
  • Demonstrable excellent communication skills (written, verbal, and presentational) with the proven ability to convey complex ideas/processes/procedures to technical & non technical audiences, up to Board level, with the intention of influencing decision making and/or changing behaviours
  • Excellent interpersonal skills with the ability to influence at a senior level, and develop strong, successful, collaborative, and influential working relationships at all levels of seniority within an organisation
  • Proven ability to think critically, you are a solution focussed individual with demonstrable ability to analyse and improve existing processes and procedures to positively influence performance and outcomes
  • Proven strong financial management skills with previous experience of managing budgets developing spending plans, and delivering financial reporting as required
  • Excellent leadership and management skills with the ability to motivate employees and teams, identify and nurture talent, manage performance effectively, and provide practical emotional and pastoral support to deliver organisational objectives
  • Educated to MSc Information Security degree level and/or with equivalent relevant practical experience and certified Information Systems Security Professional, Certified Information Security Manager and ISO27001 Practitioner
  • The ability to work flexibly to deliver the requirements of your role such as evening work, weekend work, unsociable hours and occasional overnight stays for meetings and visits throughout the Territory. Often at short notice as critical changes must be made outside core hours.
You may have…
  • Experience of successfully implementing complex projects with responsibility for delivering the full project management cycle including initiation, planning, execution monitor and control
  • Experience of working in the not-for-profit sector
  • Understanding of ITIL service processes and management relevant to information security

How criteria will be assessed - (A) application form; (I) interview; (T) test;
(P) presentation and (R) references.

We expect you to exhibit behaviours that model our values of

Integrity; accountability; compassion; passion; respect and boldness.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

ICT Cyber and Information Security Manager
ICT Cyber and Information Security Manager

ISR RECRUITMENT LIMITED • Tees Valley

On-site
GBP 90,000 - 130,000
Chief Security Officer - HMRC - SCS2
Chief Security Officer - HMRC - SCS2

Manchester Digital • Manchester

On-site
GBP 120,000 - 180,000
Security Assurance Lead
Security Assurance Lead

Motability Operations Ltd • Greater London

On-site
GBP 70,000 - 100,000
Information Security Manager
Information Security Manager

context recruitment • Greater London

On-site
GBP 96,000 - 126,000
Head of Information Security
Head of Information Security

MJA (London) Ltd • Greater London

On-site
GBP 120,000 - 180,000
Security Engineer
Security Engineer

Lamb Personnel ltd • Redhill

On-site
GBP 65,000 - 90,000
ICT Cyber and Information Security Manager
ICT Cyber and Information Security Manager

ISR RECRUITMENT LIMITED • North East

On-site
GBP 80,000 - 100,000
Information Security Manager
Information Security Manager

Frontpoint Partners Ltd • Greater London

On-site
GBP 85,000 - 110,000
Information & Cybersecurity Assurance Manager
Information & Cybersecurity Assurance Manager

Surrey Satellite Technology Ltd (SSTL) • Guildford

On-site
GBP 90,000 - 120,000
IT Manager
IT Manager

Edwards & Pearce • Greater Lincolnshire

On-site
GBP 90,000 - 160,000
Equal opportunities employer