Head of Information Security and Privacy

Morgan Law
Greater London, UK
12 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Cyber Security Information Security Management

Job description

You will be responsible for the implementation and management of the Information management system, including third-party risk, ensuring its effectiveness is regularly assessed through external and internal audits., * Responsible for the development and management of information and cyber security frameworks and overseeing the management of the Information and Records Management.

  • Develop and promote policies to ensure compliance with regulations, standards and good practice relating to information security management.
  • Responsible for research and awareness of emerging security risks, ensuring solutions, services, policies, procedures and information security education programme are updated in reasonable timeframes to mitigate against new risks.
  • Responsible for making sure that the organisation is compliant with Information Security Standards (e.g. ISO 27001), ensuring all governance and audit requirements are undertaken.
  • Ensure that the organisation is appropriately protected in line with business needs against information and cyber risks including third-party and suppliers.

Requirements

  • Information Security Manager or equivalent with relevant industry experience.
  • Experience of managing and overseeing ISO 27001 audits, Cyber Essentials and Cyber Essentials Plus.
  • Develop and lead information and cyber security strategies, roadmaps and maturity plans.
  • Provide technical security guidance and assurance to technical and non-technical stakeholders.
  • Design and deliver security awareness programmes that improve understanding and influence behaviour.
  • Support business continuity and resilience planning, testing and lessons learned.
  • Engage senior stakeholders and committees through clear reporting, influence and constructive challenge

Benefits & conditions

The role is hybrid, 2-3 days a week in their office in South London and comes with a very competitive benefits package.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:25 min

The growing power and security responsibility of developers

Tino Sokic · World Congress 2023

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

1:03 min

Securing applications against exceptional condition mishandling

Christian Wenz Christian Wenz · World Congress 2026 Europe

Videos

See all

Related articles

See all