Information Security Training & Awareness Specialist Senior
Location: London, UK (Remote job)
Length: 16 month assignment from mid-Jan to early Feb (covering Maternity Leave)
Rate: £430 per day umbrella/£316.81 per day direct PAYE (Inside IR35)
Hours: 40 hours (Remote job)
Job description
Our clients and consumers secure by joining our Information Security Training and Awareness team. You will support our behavioral change program that works to embed a security-first culture for over 29,000 staff globally. As part of the team, you will work to build a strategic plan that is based on a threat-informed defense model to reduce security risk by ensuring all employees, staff and contractors know, understand, and follow security requirements and behave in a secure manner.
If you are someone with a passion to make a difference in the world, this role might be the opportunity you are looking for. One of the most critical elements of our company’s security portfolio is our people. We teach our people the skills they need to be secure at work and at home. You will use your leadership skills to build cybersecurity programs and engage executive stakeholders globally to enable our people to perform their jobs securely.
Staying current with evolving threats and emerging trends in global regulations, standards and frameworks is vital as this role will develop relevant, timely and engaging content that will accelerate learning and understanding across the organization. You will be responsible for presenting strategic plans to Client’s Global Chief Information Security Officer that will enhance cyber judgement across all areas of Client.
Your responsibilities will include:
- Develop and execute strategic plans to enhance cyber judgment across Client, with a strong focus on mitigating social engineering risks and fostering a global community of users with a security-first mindset. This includes driving measurable outcomes such as reduced phishing susceptibility, improved individual and regional risk scores, and adoption of secure-by-design principles.
- Present and secure buy-in from regional leadership on proposed strategies while building lasting partnerships that embed security into business priorities.
- Deliver threat-informed strategic programs through collaboration with internal and external teams across Client’s Global Security Office.
- Partner with Cyber Threat Intelligence, Regional Information Security Officers, Global Communications, and Business Leaders to integrate secure-by-design principles into role‑based training and awareness initiatives.
- Evaluate and measure the impact of behavior‑change programs using a risk‑based approach and KPIs such as phishing report rates, risk scorecards, and regional compliance benchmarks.
- Lead Client’s defense against social engineering by deploying global phishing assessments and reporting actionable metrics to executive and regional stakeholders.
- Stay ahead of emerging cyber threats and trends, translating insights into strategic awareness campaigns and communicating key developments to Regional CEOs and global audiences.
- Ensure compliance with industry regulations, standards, and best practices across all security training and awareness programs.
- Confidently manage large virtual meetings and deliver engaging presentations on security topics to diverse audiences when required.
Key experience required:
We are looking for a security‑focused, future leader who is passionate about increasing cyber judgement throughout a global organization. This individual will play a pivotal role in building a security‑first culture and reducing risk by ensuring Client staff is well‑versed in security requirements and consistently exhibiting secure behaviors.
- Proven experience in developing strategic Information Security programs, with the ability to design innovative behavior‑change initiatives and secure executive‑level buy‑in.
- Strong capability to influence global executive stakeholders in a fast‑paced, dynamic environment.
- Expertise in transforming cyber threat intelligence into actionable, strategic programs that reduce risk to Client’s data, people, and technology.
- Demonstrated experience applying behavioral science principles to drive secure habits and mitigate human risk.
- Comfort with leveraging GenAI tools for scalable content creation, automation, and advanced risk analysis.
- Resilience and problem‑solving skills, showing grit in challenging situations and delivering feasible, impactful solutions.
- Hands‑on experience with Agile methodologies and supporting tools to enable iterative program delivery.
- Exceptional communication, presentation, and interpersonal skills, with the ability to simplify complex technical concepts for executive leaders and global audiences.
- Proven ability to drive measurable behavior change across regions while fostering partnerships and building security‑first communities.
- Strong organizational and project management skills, capable of delivering high‑visibility initiatives under tight deadlines.
- Proficiency in process development, documentation, and identifying opportunities for automation and GenAI integration.
- Undergraduate degree required, preferably in Cybersecurity, Information Technology, Computer Science, or a related field.
- 8+ years of experience in cybersecurity or relevant technical roles, ideally with exposure to executive leadership engagement.
- In‑depth knowledge of cybersecurity principles, standards, and frameworks such as ISO 27001, CMM, NIST, and related best practices.
While the following is not required to be successful in the position, it is a plus if you have it.
- Certifications or credentials in cyber security, such as CISSP, CISM, CISA, SANs, etc.