Own, shape, and lead enterprise security within a high-impact, technology-driven insurance environment. We’re partnering with a well-established insurance organisation investing heavily in digital transformation and security capability. They are now looking to hire an Information Security Technical Lead to take full ownership of their end-to-end security function.
This is a hands‑on leadership role where you will define strategy, lead a team, and actively engineer and enhance security controls across a complex, business‑critical environment.
The Opportunity
This is not a governance-heavy or purely advisory role. You will:
- Own and deliver the security roadmap across core platforms and systems
- Lead and develop a team of security engineers
- Act as the senior escalation point for security incidents and response
- Work within a modern Microsoft/Azure environment, driving improvements across M365 security and identity
- Play a key role in shaping how security supports both internal operations and external services
You’ll sit at the intersection of infrastructure, operations, and stakeholder engagement—combining deep technical expertise with real business impact.
What You’ll Be Doing
Security Leadership & Programme Ownership
- Define and deliver the enterprise security strategy
- Own tooling and capabilities across PAM, SIEM, EDR/XDR, DLP, vulnerability management, and identity governance
- Translate regulatory requirements into practical, measurable security controls
Hands‑On Security Engineering
- Implement and optimise controls across Azure, M365, and infrastructure environments
- Drive infrastructure hardening across IAM, PAM, AD, and network layers
- Support automation and DevSecOps integration
- Lead real‑time incident response and decision‑making
- Oversee SIEM/SOAR tooling, alerting, and response playbooks
- Investigate threats using logs, forensic techniques, and threat intelligence
Security Advisory & Collaboration
- Provide security guidance across technical teams and business units
- Conduct security reviews, assessments, and improvement planning
- Act as a trusted advisor on risk, controls, and architecture
Vulnerability & Risk Management
- Own vulnerability scanning, assessment, and remediation
- Partner with engineering teams to prioritise and reduce risk exposure
- Drive continuous improvement in security posture and resilience
- 7+ years in cybersecurity, including 3–4+ years in a lead or senior capacity
- Experience across security engineering and incident response / SOC environments
Strong expertise in:
- SIEM (e.g. Sentinel, Splunk, LogRhythm)
- Identity security (IAM, PAM)
- Vulnerability management (e.g. Tenable, Pentera)
- Hands‑on experience in Azure and Microsoft security stack
- Scripting/automation skills (PowerShell, Python, or Bash)
- Strong knowledge of MITRE ATT&CK, OWASP, and modern threat landscapes
Experience in regulated environments (insurance or financial services) is advantageous.
Why This Role Stands Out
- Full ownership of InfoSec across a complex environment
- Hands‑on leadership – lead, build, and improve simultaneously
- High visibility with real influence on business outcomes
- Strong investment in cloud, tooling, and security maturity
- Excellent City location with hybrid flexibility
If you're a technical security leader who enjoys staying hands‑on, and you’re looking for a role where you can shape strategy, lead a team, and deliver real impact, this is a standout opportunity.