Jobs
>
London

    Information Security - London, United Kingdom - Investigo

    Default job background
    Description
    Head of Cyber and Information Security
    This position will be a hybrid role based out of London.
    Description


    Purpose of Role:
    The Head of Cyber & Information Security forms part of the senior leadership team within the Security function reporting directly to the Chief Security Officer (CSO)
    You will act as a trusted advisor to the CSO and C-Suite stakeholders across the UK and work with them to ensure the business is secure and compliant with the policies, standards and regulations set out in the Security Operating Model

    This is a highly operational and highly visible leadership role, as you will take overall charge of the UK's Cyber Defence and Security Operations teams.

    You will also have overall responsibility for Security Governance, Risk & Compliance and lead the Business Continuity and Crisis Management teams, working across the whole of the business to ensure we are resilient and prepared should business interruption occur.


    Team Description:

    We work in a heavily regulated environment and must secure one of the most visited websites in the UK, a very large retail channel and numerous back-office systems spread across both on premise datacenters and the Cloud.

    The Security function is comprised of 3 Team Groups
    Enterprise Security
    Security Architecture
    Security Design Engineering
    Security Consultancy
    Security Testing
    Cyber & Information Security
    Governance, Risk & Compliance
    Cyber Defence
    Security Operations
    Protective Security
    Physical Security
    Investigations
    Intelligence

    The Cyber & Information Security team form a key pillar in our security operating model - you will be responsible for leading the activities of the Cyber and Information security team, and you will be expected to get deeply involved in ensuring our key suppliers operate to the same high security standards we demand of ourselves.


    Key Accountabilities or Duties:
    Manage, develop & Lead the Cyber & Information Security teams
    Be a member of the Security SLT
    Identify, measure, control and report on security risks within information systems
    Accountable for the creation and upkeep of our documented security standards, policies, processes
    Manage the budget of the Cyber & Information Security Cost Centre
    Co-create the security strategy
    Manage operational teams that protect, defend and respond to threats
    Anticipate, influence and assist the organization to assess and rapidly adjust to changing threat conditions and trends both internally and externally
    Establish and maintain relationships with industry peers, other Group operating companies and external security organisations, working with Specialist consultants where appropriate
    Implement KPIs and metrics to measure our security performance and assess and track our exposure to risk
    Accountable for continuous improvement / maturity of our Cyber Defence team and ensuring our capabilities are operating at optimal levels to both identify threats and maintain effectiveness of the SOC
    Overall Accountability for overall leadership of the 24/7 SOC and the efficient response to Cyber attacks.
    Overall Accountability for Business Continuity and Crisis Management the UK
    Overall Accountability for ensuring we maintain or achieve certification to ISO22301/2700/27701/27002/PCI DSS/ WLA SCS2020 / NCSC CAF
    As part of the senior nature of this role, you'll be required to be available outside of normal office hours


    Skills & Experience:

    The successful individual will be one of the most important Information Security professional across the global organisation and will advise the most senior of our employees on Security Operations.

    As well as having the experience and influence to operate in this manner, you will have:

    At least five years' experience gained in a technically focussed security role
    Demonstrable experience of successful delivery in a technically focussed role
    Ability to articulate complex technical or sensitive issues to a wide audience is essential
    Experience of managing internet threats and risk mitigation
    Strong understanding of external and internal threat landscapes
    Broad experience of a wide range of security technologies and products
    Understanding of information security governance principles
    Ability to demonstrate an understanding of common security management principles (eg PCI-DSS)
    Bring the skills, experience and ability to adapt to be able to deliver any desired solution potentially using a wide variety of technologies that will help reduce security related risks
    Excellent communication skills
    Excellent judgement
    Line management experience
    Experienced in deploying security technology in a cloud environment.
    Cyber security incident management experience


    Desirable:
    Experience of working with AWS and Azure
    Working in a regulated environment
    #J-18808-Ljbffr

  • Careers In Group

    Information Security

    3 weeks ago


    Careers In Group London, United Kingdom

    **Information Security & Business Continuity Officer** · HQ in London - hybrid or remote offered (w/office commitment once or twice per quarter) · Up to GBP75,000 + bonus + package · We're looking for an Information Security & Business Continuity Officer to join a leading Global ...


  • Natural England London, United Kingdom

    **Details**: · **Reference number**: · **Salary**: · - £33,736- A Civil Service Pension with an average employer contribution of 27%**Job grade**: · - Senior Executive Officer- Senior Adviser**Contract type**: · - Permanent**Type of role**: · - Security**Working pattern**: · - Fu ...

  • Balfour Beatty

    Information Security

    3 weeks ago


    Balfour Beatty London, United Kingdom

    **About the role** · SZC is ultimately owned by two shareholders, EDF and HMG. The shareholders hold their · investment in SZC through NNB Holdings Company (SZC) Limited. Over the course of the · current shareholding arrangements the shareholdings of the two shareholders will cha ...

  • AWS EMEA SARL (UK Branch)

    Information Security

    3 weeks ago


    AWS EMEA SARL (UK Branch) London, United Kingdom

    Bachelor's degree or equivalent from an accredited university and/or relevant work experience. · - Extensive information security management experience, delivering on large scale and cross-functional programs in software or hardware industry · - Strong analytical and quantitative ...


  • Comtecs Ltd London, United Kingdom

    IT Security Officer / InfoSec Officer / Information Security Officer - Governance, Risk, Compliance; Implementation of Security Controls; Risk Assessments; Security Audits; InfoSec Advisory; Incident Management. CISM, CISSP, CySA+, CASP+ etc; ISO 27001,NIST, Cyber Essentials Plus ...


  • Centre for Health and Disability Assessments London, United Kingdom

    **Introduction** · **Be part of something great** · Maximus is a global organisation that specialises in providing health and employment services to millions of people every year. Here in the UK we employ around 5,000 people across the country to deliver services that have a prof ...


  • AJ Fox Compliance London, United Kingdom

    A well-respected national law firm is hiring an Information Security Officer to join their team. This exciting role will involve conducting internal audits and assisting with supplier reviews and risk assessments. · This role can be performed in various locations, including Birmi ...


  • Oliver James London, United Kingdom

    We are looking for an Information Security Manager to join a global, leading organisation. This reputable company is going through a period of growth due to continued success so now is a really exciting time to join · This role involves taking responsibility & ownership across In ...


  • Computappoint London, United Kingdom

    **Job Title**:Information Security Analyst · **Location**:London · **Hybrid Model**: Flexible hybrid model, but may be a few days per week in London office (1-2 days pw), with remaining days remote · **Type**:Permanent · **About the Client and Role**: · My client, a globally oper ...


  • eFinancialCareers London, United Kingdom

    **About Columbia Threadneedle Investments** · You'll find the promise we make to our clients is the same one we make to our employees**:Your success is our priority.** · Here, you'll find growth and career opportunities across all our businesses. We're intentionally built to help ...


  • Kubapay London, United Kingdom

    · Kuba is looking for an Information Security Officer (ISO) responsible for the strategic planning, development and administration of an effective information security program. As the ISO, you will have system and information ownership and develop, establish and maintain standar ...


  • Tes Global London, United Kingdom

    **Title**: Head of Information Security · **Department**: Technology · **Location**: Sheffield or London · Full time, permanent · **Salary**: £90,000 · Tes is an international provider of software-enabled services passionate about using technology to make life easier for schools ...


  • Akkodis London, United Kingdom

    **Information Security Officer** · Akkodis are currently working in partnership with a global technical service provider to recruit an experienced Information Security Officer who will be responsible for maintaining ISMS that align with company standards. · **Please note this is ...


  • First Achieve Ltd London, United Kingdom

    Head of Information Security · A growing fintech with a innovative B2B Cloud platform offering fintech as a service to Asset Managers, Wealth managers, Bank & Building societies and Fintechs are in the process of evolving their platform to offering services which will disrupt the ...


  • AJ Fox Compliance London, United Kingdom

    Our client is a US global law firm hiring an Information Security Analyst to support the General Counsel, information security and privacy issues across the UK, US and EMEA. · Key roles and responsibilities will include: · - Advising external stakeholders on certification audits ...


  • Lewisham and Greenwich NHS Trust London, United Kingdom

    Lewisham and Greenwich NHS Trust is looking for an experienced and enthusiastic Cyber Security professional to join our team and assist in managing and maintaining the security of ITC systems. · - Work directly with Network Infrastructure Manager and the IT Team to complete risk ...


  • Nigel Frank International London, United Kingdom

    Security Information Officer - Azure - London - Up to £100k · My client is a global investment management company who have offices across the UK & America. Over the last decade, they've grown from being a company of 2, into now, a company which proudly employees 30 people across ...


  • Opus Recruitment Solutions London, United Kingdom

    **Information Security Consultant | £60,000-£70,000 | Central London | Hybrid** · My client is an award-winning Governance, Risk and Compliance consulting practice and it is expanding its information security team due to increased demand. Are you an experienced information securi ...


  • Kroo London, United Kingdom

    **What We're All About at Kroo** · We're creating the world's most social bank and improving people's relationship with money for good. Our mission is to remove the stress and social awkwardness that money creates, allowing people to freely enjoy their lives in a connected and me ...


  • Adecco UK London, United Kingdom

    My Client based in Central London are looking for a Information Security and Compliance Administrator for a 4-6 week project outside of IR35. This can be performed as a fully remote contract · The company are in the process of undergoing their regulary security and audit checks. ...