Information Security & Governance Lead - £80k

Incite-Insight.co.uk

Greater London

On-site

GBP 72,000 - 88,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Incite-Insight.co.uk in London is seeking an Information Security & Governance Lead to establish and maintain the organisation’s information security framework, governance and cyber risk management capabilities.

This is a practical individual contributor role with no direct reports, requiring hands-on ability to translate requirements into workable controls, guidance and evidence, while coordinating with colleagues and external providers.

Qualifications

  • Proven experience in information security, cyber security, technology risk or governance.
  • Strong knowledge of ISO 27001, NIST, CIS Controls and Cyber Essentials.
  • Experience with risk management, audit support and regulatory compliance.
  • Understanding of cloud security, identity management and third‑party risk.
  • Experience supporting vulnerability management, penetration testing and incident responses.
  • Ability to influence colleagues and suppliers and communicate security requirements clearly.

Responsibilities

  • Develop, maintain and improve the information security framework, policies, standards and procedures.
  • Ensure security controls are implemented and evidenced across technology services and suppliers.
  • Own the technology risk register, facilitate risk assessments and track risk treatment plans.
  • Oversee vulnerability management, coordinate penetration testing and monitor remediation.
  • Support security incident management and post‑incident reviews.
  • Coordinate audits, assurance reviews and regulatory requests.
  • Support compliance with FCA, UK GDPR, ICO expectations and internal standards.
  • Conduct supplier security due diligence and ongoing assurance reviews.
  • Support security in procurement and contract reviews.
  • Contribute to operational resilience and control testing.
  • Develop security awareness activities and advise project teams.

Skills

Information security
Cyber security
Technology risk
Governance
Regulatory compliance
Vendor risk

Education

CISSP
CISM

Job description

Salary: £80,000 per annum

Location: London

Reports to: Head of IT Services

The opportunity

An opportunity to work in the Insurance sector working for a Blue Chip employer as an Information Security & Governance Lead.

You will establish and maintain the organisation’s information security framework, technology governance and cyber risk management capabilities. Working closely with colleagues and external service providers, you will ensure security controls are effective, risks are managed and regulatory requirements are supported.

This is a practical individual contributor role with no direct reports. It suits someone who combines strong security and governance knowledge with the ability to turn requirements into workable controls, clear guidance and reliable evidence.

Key responsibilities
  • Develop, maintain and improve the information security framework, policies, standards and procedures.
  • Ensure security controls are implemented and evidenced across technology services and suppliers.
  • Own the technology risk register, facilitate risk assessments and track risk treatment plans.
  • Oversee vulnerability management, coordinate penetration testing and monitor remediation.
  • Support security incident management and post-incident reviews.
  • Coordinate responses to audits, assurance reviews and regulatory requests.
  • Support compliance with FCA requirements, UK GDPR, ICO expectations and internal governance standards.
  • Conduct supplier security due diligence and ongoing assurance reviews.
  • Support procurement and contract reviews from a security and governance perspective.
  • Contribute to operational resilience and control testing.
  • Develop security awareness activities and advise project and operational teams.
  • Ensure information is handled, stored and retained securely, with customer outcomes and Consumer Duty considerations reflected in decisions.
About You

You will bring:

  • Proven experience in information security, cyber security, technology risk or governance.
  • Strong knowledge of ISO 27001, NIST, CIS Controls and Cyber Essentials.
  • Experience of risk management, audit support and regulatory compliance.
  • An understanding of cloud security, identity management and third-party risk.
  • Experience supporting vulnerability management, penetration testing and incident response.
  • The ability to influence colleagues and suppliers and communicate security requirements clearly.
  • A practical approach to balancing security, commercial and operational needs.

Financial services experience is important, with insurance or insurance broker experience particularly relevant. CISSP, CISM or an equivalent qualification would be desirable.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security & Governance Lead - £80k
Information Security & Governance Lead - £80k

Incite Insight • Greater London

On-site
GBP 72,000 - 88,000
Head of Security Governance - Director
Head of Security Governance - Director

Hunter Bond • Greater London

Hybrid
GBP 81,000 - 135,000
InfoSec & Governance Lead — Insurance Sector
InfoSec & Governance Lead — Insurance Sector

Incite-Insight.co.uk • Greater London

On-site
GBP 72,000 - 88,000
Senior Information Security Officer
Senior Information Security Officer

Link Xperts • Greater London

On-site
GBP 54,000 - 66,000
Pension
33 days leave + bank holidays
London office access + gym
+1
Lead Information Security Analyst
Lead Information Security Analyst

Hovis Bakeries • Liverpool City Region

On-site
GBP 45,000 - 55,000
Head Of Information Security
Head Of Information Security

Oakley Recruitment Limited • Tyseley

On-site
GBP 90,000 - 120,000
Additional benefits package
Travel as required
Senior leadership role
Information Security Manager
Information Security Manager

Intec Select • Basingstoke

On-site
GBP 76,500 - 93,500
InfoSec & Governance Lead — Risk, Compliance & Resilience
InfoSec & Governance Lead — Risk, Compliance & Resilience

Incite Insight • Greater London

On-site
GBP 72,000 - 88,000
Senior Security Manager
Senior Security Manager

Peaple Talent Ltd • West of England

Hybrid
GBP 72,000 - 98,000
Information Security Lead (GRC)
Information Security Lead (GRC)

Enorth Resourcing Limited • Bedford

Hybrid
GBP 60,000 - 70,000