> Markdown version of [/jobs/ext/2387400-head-of-enterprise-resilience-information-security-risk](https://www.wearedevelopers.com/jobs/ext/2387400-head-of-enterprise-resilience-information-security-risk). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Head of Enterprise Resilience - Information Security & Risk - **Company:** Pioneer Search Ltd - **Location:** London, UK - **Experience:** Expert - **Salary:** £130,000.0 - £140,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Cyber Threat Analysis - **Published:** August 6, 2026 - **Apply:** https://www.careerboard.com/pt/en/find-jobs-in-United-Kingdom/-E51F2E1C3123820A3D/ ## About the Role * Significant experience leading enterprise resilience, operational resilience, cyber risk, or information security functions. * A strong understanding of governance, risk management, and regulatory environments. * Experience operating within a complex, highly regulated organisation. * A proven track record of influencing senior executives and board-level stakeholders. * Strong leadership skills with the ability to develop high-performing teams. * stakeholder management, and strategic planning capabilities. * Experience within financial services - ideally Insurance. * Certifications - CISM, CISSP, CRISC, CBCI, MBCI, or equivalent. If you have the relevant skills and knowledge and keen to understand more, please forward your profile for an immediate review. ## Description I am working with a leading Insurance client who are seeking an experienced Head of Enterprise Resilience to lead and mature its resilience strategy across operational continuity, cyber risk, information security, supplier oversight, and crisis management. This is a senior leadership opportunity for an individual who can balance strategic vision with practical execution, ensuring the organisation can anticipate, withstand, respond to, and recover from operational disruptions that face organisations in a complex risk environment. You will form key relationships with executive stakeholders, driving resilience initiatives across the business, ensuring strong governance frameworks, and overall embedding a proactive risk culture. Enterprise Resilience & Business Continuity * Develop and enhance the enterprise resilience framework across the organisation. * Lead business continuity, crisis management, and recovery planning activities. * Conduct resilience assessments, scenario testing, and simulation exercises. * Identify operational vulnerabilities and drive mitigation strategies. * Establish meaningful resilience metrics, reporting, and governance processes. Information Security & Risk * Provide leadership across cyber risk and information security programmes. * Oversee security governance, policies, and risk management frameworks. * Support the assessment and management of emerging cyber threats. * Drive security awareness initiatives across the wider business. * Ensure effective oversight of security incidents, control environments, and regulatory obligations. Third-Party & Supplier Risk * Develop a robust supplier governance and outsourcing framework. * Ensure appropriate due diligence and ongoing oversight of critical suppliers. * Monitor supplier performance, risk exposure, and service quality. * Strengthen third-party risk management practices across the organisation. Leadership Lead, mentor, and develop a specialist resilience and risk team. * Build strong relationships with senior business leaders and key stakeholders. * Present insights, recommendations, and risk reporting at executive and board level. * Champion a culture where resilience, security, and risk management are Embedded into business decision-making. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Forecasting Cyber Attacks with Glassdoor Reviews - Lianne Potter](https://www.wearedevelopers.com/videos/2143-forecasting-cyber-attacks-with-glassdoor-reviews-lianne-potter) - [Personal Branding & Job Search - The Most Practical Approach You'll Ever Find](https://www.wearedevelopers.com/videos/576-personal-branding-job-search-the-most-practical-approach-you-ll-ever-find) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)