Strategic IT Security Leader — Governance & Risk

Sanderson

England

Hybrid

GBP 68,000 - 83,000

Full time

6 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Sanderson is seeking an IT Security Manager to own the security direction across a large organisation with outsourced IT. The role focuses on governance, risk, and strategy, with accountability for supplier security delivery and improvements.

Based in Wiltshire with only an occasional on-site presence, the role requires strong stakeholder engagement and the ability to drive change through to delivery. A senior security lead in a complex environment is ideal.

Qualifications

  • Significant experience within information security, cyber security or IT security management.
  • Experience developing, owning or delivering an organisation-wide security strategy.
  • Strong experience across security governance, risk management, assurance and policy development.
  • Experience operating within an outsourced or supplier-led technology environment.
  • Strong third-party supplier and vendor management experience, with the confidence to challenge delivery and hold partners accountable.
  • Experience developing and delivering security improvement, transformation or change roadmaps.
  • Broad understanding of cyber security controls, vulnerabilities, incidents and remediation, without necessarily being responsible for hands-on technical implementation.
  • Ability to assess security risk and translate technical issues into clear business risks and priorities.
  • Strong stakeholder management skills, including the ability to influence and provide constructive challenge at a senior level.
  • Experience working across complex organisations with multiple internal and external stakeholders.
  • A proactive approach, with the ability to identify what needs to happen, take ownership and ensure activity is driven through to completion.

Responsibilities

  • Own, develop and continually evolve the organisation's IT security strategy, ensuring it supports wider technology and business objectives.
  • Take ownership of IT security governance, risk and assurance.
  • Develop, maintain and improve security policies, standards and governance processes.
  • Define and shape the IT security roadmap, identifying priorities and driving security improvements and change.
  • Provide security leadership and guidance across technology programmes, projects and wider organisational change.
  • Manage and provide oversight of key third-party technology and security suppliers.
  • Hold suppliers accountable for security delivery, agreed actions, service levels and remediation activity.
  • Proactively challenge suppliers and stakeholders where security standards or delivery are not meeting expectations.
  • Maintain oversight of security risks, vulnerabilities, incidents and remediation activities delivered through third-party providers.
  • Ensure appropriate controls, reporting and assurance are in place across the outsourced technology environment.
  • Provide clear security advice and recommendations to senior stakeholders, translating technical risks into understandable business impacts.
  • Work collaboratively with IT, business stakeholders and external partners to ensure security is embedded within technology decision-making and change.
  • Identify opportunities to strengthen the organisation's overall security posture and ensure agreed improvements are delivered.

Job description

Sanderson is seeking an IT Security Manager to own the security direction across a large organisation with outsourced IT. The role focuses on governance, risk, and strategy, with accountability for supplier security delivery and improvements.

Based in Wiltshire with only an occasional on-site presence, the role requires strong stakeholder engagement and the ability to drive change through to delivery. A senior security lead in a complex environment is ideal.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Hybrid: Senior Cyber Security Manager – OT & Strategy
Hybrid: Senior Cyber Security Manager – OT & Strategy

Sanderson Government & Defence • City Of London

Hybrid
GBP 75,000 - 90,000
Strategic IT Security & Risk Leader (Hybrid)
Strategic IT Security & Risk Leader (Hybrid)

Jobsoid Inc. • Greater London

Hybrid
GBP 120,000 - 170,000
Senior Quality, Risk & Governance Lead
Senior Quality, Risk & Governance Lead

Sanderson Government & Defence • Leatherhead

On-site
GBP 70,000 - 110,000
OT Cyber Security Senior Manager — Lead ICS/SCADA Programs
OT Cyber Security Senior Manager — Lead ICS/SCADA Programs

Sanderson Government & Defence • City Of London

Hybrid
GBP 90,000 - 105,000
Excellent Benefits Package
Cybersecurity Architect & Transformation Advisor
Cybersecurity Architect & Transformation Advisor

Sanderson Government & Defence • Sunderland

On-site
GBP 60,000 - 80,000
Contract Service Manager – Governance & Risk (Security)
Contract Service Manager – Governance & Risk (Security)

Sanderson Government and Defence • Bradley Stoke

On-site
GBP 600 - 650
Cyber Security Programme Lead – Financial Services
Cyber Security Programme Lead – Financial Services

Sanderson • Milton Keynes, Greater London

On-site
GBP 65,000 - 90,000
Remote Security Architect - Cloud Security & Design
Remote Security Architect - Cloud Security & Design

Sanderson Government and Defence • West of England

Remote
GBP 72,000 - 98,000
Private Health Care
Cash Back Plan
Buy/Sell Holiday Options
+1
Strategic ERM Leader for Risk & Board Reporting
Strategic ERM Leader for Risk & Board Reporting

Sanderson • Greater London

On-site
GBP 111,000 - 129,000
Strategic Solutions Architect
Strategic Solutions Architect

Sanderson Government & Defence • Rowberrow

On-site
GBP 70,000 - 110,000