Head of IT and Security
Role details
Job location
Tech stack
Job description
We are seeking an experienced Head of IT & Security to take ownership of our enterprise IT and cyber security landscape. This is a senior, hands-on role responsible for setting direction, owning risk, and ensuring our technology platforms, security controls, and IT operations are robust, scalable, and fit for growth.
Working closely with the CTO and wider leadership team, you will bridge strategy and execution - owning IT and security while collaborating across the business to deliver reliable, secure, and efficient technology services.
What you'll be doing:
IT & technology leadership
- Own and evolve the enterprise IT architecture, including identity, access management, and endpoint strategy.
- Oversee day-to-day IT operations, ensuring high availability, performance, and user satisfaction.
- Design and manage the helpdesk and user support model, ensuring effective service delivery.
- Lead IT vendor and third-party management, including selection, performance, and cost control.
Cyber security and risk
- Own the organisation's cyber security posture and risk management approach.
- Define, implement, and continuously improve security controls, policies, and standards.
- Own incident response for IT and security events, acting as the primary escalation point.
- Monitor and assess control effectiveness over time, driving remediation where required.
- Lead audit, assurance, and risk conversations with internal and external stakeholders.
Governance & continuity
- Own the quality and evolution of IT and security policies.
- Provide leadership continuity and decision-making support in the absence of the CTO.
- Promote a culture of accountability, resilience, and continuous improvement across IT and security.
Requirements
Do you have experience in Leadership?, * Proven experience in a senior IT and/or security leadership role.
- Strong background in enterprise IT architecture, cyber security, and IT operations.
- Demonstrated ownership of security risk, incident response, and audits.
- Experience managing vendors, managed service providers, and internal teams.
- Ability to operate at both strategic and hands-on levels.
- Strong communication skills, able to influence technical and non-technical stakeholders.
- Calm, decisive approach during incidents and high-pressure situations.