Head of IT Security

Capsticks LLP

Greater London

On-site

GBP 90,000 - 150,000

Full time

7 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Capsticks LLP seeks a senior IT security leader to define, implement and assure the firm’s information and cyber security posture. This new leadership role has broad responsibility for security strategy, standards, controls and services, aligned to CISO capability.

You will lead a proactive, risk-based approach to security across governance, architecture, data, platforms and operations, embedding security into design, delivery and service enablement.

Qualifications

  • Senior IT security leadership experience, ideally with CISO-level responsibilities.
  • Strong knowledge of security operations, IAM, cloud and network security.
  • Experience with ISO27001, Cyber Essentials Plus and CIS/NIST frameworks.
  • Ability to translate risk and compliance into practical controls and services.
  • Experience managing teams, vendors and security services in SaaS/professional services.

Responsibilities

  • Define and implement security strategy, standards and controls aligned to ISO27001 and Cyber Essentials Plus.
  • Oversee security operations: SOC, SIEM, XDR, vulnerability management and incident response.
  • Embed security by design into projects, architecture and delivery.
  • Maintain ISMS, support audits and meet regulatory and client expectations.
  • Provide clear reporting on security posture, risks and improvements to stakeholders.
  • Promote security awareness and practical secure behaviours across the firm.

Skills

Security leadership
ISO27001
Cyber security strategy
Cloud security
Zero Trust / ZTNA
SOC / SIEM / XDR
Risk management
Governance & Risk
Stakeholder engagement

Tools

Vulnerability management
Incident response

Job description

THE ROLE

We are looking for a senior IT security leader to define, implement and assure our information and cyber security posture across the firm. This is a new leadership role with broad responsibility for security strategy, standards, controls and services, operating at a level aligned to CISO capability.

Location

Birmingham, Leeds, London

THE ROLE

We are looking for a senior IT security leader to define, implement and assure our information and cyber security posture across the firm. This is a new leadership role with broad responsibility for security strategy, standards, controls and services, operating at a level aligned to CISO capability.

You will lead a proactive, risk-based approach to security, ensuring it is embedded into technology design, delivery and operations. Working closely with Governance & Risk, Architecture & Data, Platforms and Operations, you will help protect the firm against evolving threats while enabling secure innovation and service delivery.

What You'll Do

You will take ownership of the firm's IT security approach, including:

  • Defining and implementing security strategy, standards and controls aligned to ISO27001, Cyber Essentials Plus and the firm's wider data, AI and innovation strategies.
  • Overseeing security operations, monitoring, detection and response across areas such as SOC, SIEM, XDR, vulnerability management and incident response.
  • Embedding security by design into projects, change and solution architecture, including identity, endpoint, cloud, network, email and secure remote access controls.
  • Working with Governance & Risk to maintain and improve the ISMS, support audits and ensure regulatory and client expectations are met.
  • Providing clear reporting on security posture, risks, incidents and improvement plans to technical and non-technical stakeholders.
  • Promoting a strong security culture through awareness, training and practical guidance on secure behaviours.
What We're Looking For

We are looking for someone who combines senior security expertise with pragmatic leadership and strong stakeholder engagement. You will bring:

  • Senior IT security leadership experience, ideally with exposure to CISO-level responsibilities.
  • Strong knowledge of security operations, identity and access management, cloud and network security, endpoint protection, email security and modern models such as Zero Trust / ZTNA.
  • Experience working with ISO27001, Cyber Essentials Plus and recognised security frameworks such as CIS Controls or NIST.
  • The ability to translate risk and compliance requirements into practical controls, services and improvement plans.
  • Experience managing teams, vendors and managed security services, ideally in a SaaS-focused professional services environment.
  • Clear communication skills, with the confidence to explain complex security topics to senior stakeholders, technical teams and external parties.
  • A pragmatic, outcome-focused and forward-looking approach, with the resilience to work effectively under pressure.
Why join us?

This is an opportunity to shape a new senior security leadership role at a firm where technology, data and innovation are central to how we support our clients and our people. You will have the scope to influence strategy, strengthen resilience and help build secure, modern services across the firm.

Capsticks is an inclusive employer

At Capsticks we value diversity and we are committed to creating an inclusive and supportive working environment where everyone is able to be themselves and reach their full potential. Capsticks is committed to providing equal opportunities for all and therefore we welcome the unique contributions that you can bring in terms of your education, background, culture, ethnicity, race, nationality, sex, sexual orientation, gender identity, age, disability, neurodiversity, religion and beliefs. We will make reasonable adjustments to our application and interview process to ensure that you have the best chance of success. We understand that there's not a "one size fits all" approach to adjustments so our team will work with you individually to understand more about your requirements.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Governance & Risk Analyst
Senior Governance & Risk Analyst

Capsticks LLP • Birmingham, Leeds, Greater London

Hybrid
GBP 45,000 - 65,000
Senior Governance & Risk Analyst
Senior Governance & Risk Analyst

Capsticks Solicitors LLP • Birmingham, Leeds

Hybrid
GBP 60,000 - 90,000
Senior IT Security Leader: Strategy, Risk & Secure Innovation
Senior IT Security Leader: Strategy, Risk & Secure Innovation

Capsticks LLP • Greater London

On-site
GBP 90,000 - 150,000
Cyber Security & Compliance Lead
Cyber Security & Compliance Lead

Russell Cooke LLP • Greater London

On-site
GBP 90,000 - 130,000
Information Security Manager
Information Security Manager

Stewarts • England

On-site
GBP 70,000 - 90,000
IT Security Officer
IT Security Officer

MLM SEARCH • Greater London

On-site
GBP 50,000 - 70,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Control Risks • Greater London

Hybrid
GBP 90,000 - 130,000
Hybrid work arrangement
Global bonus scheme
Equal opportunity employer
Cyber Security Analyst
Cyber Security Analyst

Novia Financial plc • Bath

On-site
GBP 55,000 - 75,000
Information Security GRC Manager
Information Security GRC Manager

AJ Bell • Manchester

Hybrid
GBP 65,000 - 85,000
27 days’ holiday
Pension with matched contributions up to 8%
Discretionary bonus and share awards
+3
Cyber Security Architect & Engineering Lead
Cyber Security Architect & Engineering Lead

Moore Kingston Smith LLP • Greater London

Hybrid
GBP 70,000 - 85,000