Chief Information Security Officer

Foreign, Commonwealth & Development Office (FCDO)
Milton Keynes, UK
15 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
£75,055.0 - £82,400.0
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Cloud Platform System Cyber Threat Analysis Cybercrime Cyber Warfare

Job description

Our Digital, Data and Technology team are at the forefront of digital innovation. They provide best-in-class solutions for our clients, helping to shape and support a data driven future for UK government. Whether itÂ’s creating bespoke, secure software, offering programme and application support or moving an entire embassyÂ’s servers to a Cloud platform. No matter the task, they are on hand to support. Now, youÂ’ve got the opportunity to join them.

Providing innovation to government partners. Delivering best-in-class solutions. Working at the cutting-edge of technology It all matters.

Drive operational security and digital transformation

As Chief Information Security Officer, you’ll provide strategic leadership for information and cyber security across FCDO Services. You’ll ensure that security objectives support organisational priorities, enable digital transformation and strengthen operational resilience. Playing a key role in developing and communicating FCDO Services’ Information Security and Cyber Assurance Vision and Strategy, you’ll bring different teams together to establish shared direction for delivering this new strategy. Leading our Information and Cyber Security functions, you’ll ensure we develop, maintain and continually improve a comprehensive, risk-based security capability that protects the confidentiality, integrity and availability of information, systems and services. Covering both project and service delivery and live-service security monitoring, you’ll own cyber and information security risk across the organisation – promoting governance and assurance as an enabling approach. Enabling FCDO Services to innovate safely and securely, you’ll create and own the delivery of Information Security initiatives to ensure the organisation and its products are capable of protection against the latest vulnerabilities and cyber threats.

Extend your expertise, working to defend the UKÂ’s global interests

To succeed in this role, you should be able to drive cyber and information security and assurance across a variety of business areas, projects and programmes. YouÂ’ll bring a broad range of experience gained in a Deputy CISO, Head of Cyber Security or equivalent role. This could include working in incident response, SOC, security architecture, vulnerability and compliance, governance or risk. Preferably, youÂ’ll have experience of working in both the public and private sectors, but this isnÂ’t essential. YouÂ’ll also bring significant technical experience in cloud and mobile technologies and enterprise level architectures, along with knowledge of how different products and services may impact business security risks. As well as working with different technical teams to deliver complex solutions, you should be able to translate cyber and information security issues into meaningful language for non-specialist audiences across the business. You should also have a professional qualification such as CISSP, NCSC Certified Professional or Level 6 equivalent qualification, or a Certified CISO qualification like CISA, CISM or CRISC., Your CV and personal statement will not form part of the assessment they will provide an insight into your work history and experience.

Your CV should include:

  • no personal identifying details
  • career history with key responsibilities
  • achievements
  • qualifications

Your personal statement should outline your interest in the role.

Candidates will only be sifted on answers provided to the technical/ job specific questions which are outlined in the application form.

Those that are successful will be invited to a Face to face interview.

At the interview you will be asked a blend of questions on technical/job specific skills and behaviours.

The candidate will need to complete a presentation along with the interview questions.

Candidates who are judged to be close to meeting the criteria may be considered for other positions in FCDO Services which may be at a lower grade, but have a potential skills match. Feedback will only be provided if you attend an interview or assessment.

Security

Successful candidates must meet the security requirements before they can be appointed. The level of security needed is developed vetting .

See our vetting charter . People working with government assets must complete baseline personnel security standard (opens in new window) checks.

Requirements

o Cyber Security Operations

o Incident Management, Incident Investigation and Response

o Information Risk Assessment and Risk Management

o Risk Understanding and Mitigation

o Security Architecture:

o Threat Intelligence and Threat Assessment

o Threat Understanding

  • Able to directly brief the Board and Executive team on all matters pertaining to information security and cyber operations.
  • Track record of driving information security, information assurance and cyber security at the strategic level across a broad range of business areas, projects and programmes delivering complex solutions, substantial business change, influencing enterprise level architectural designs in terms of direction and change.
  • Significant technical experience in enterprise level architectures, cloud and mobile technologies, a wide knowledge of products and services and how these may impact business security risks.
  • Demonstrable substantial combined experience in information security and information risk management frameworks,
  • Appropriate professional qualification in relevant discipline, e.g. CISSP, NCSC Certified Professional or level 6 equivalent qualification, Certified CISO qualification, e.g. CISA, CISM, CRISC.
  • Experience managing supply chain risks within Government.
  • Experience implementing / maintaining ISO27001 compliance or certification at an enterprise level, or other equivalent/ similar information security and assurance governance standards, Appropriate professional qualification in relevant discipline, e.g. CISSP, NCSC Certified Professional or level 6 equivalent qualification, Certified CISO qualification, e.g. CISA, CISM, CRISC, * Making Effective Decisions
  • Seeing the Big Picture
  • Communicating and Influencing

Technical skills

We’ll assess you against these technical skills during the selection process:

  • Track record of driving information security, information assurance and cyber security at the strategic level across a broad range of business areas, projects and programmes.
  • Demonstrable substantial combined experience in information security and information risk management frameworks
  • Experience implementing / maintaining ISO27001 compliance or certification at an enterprise level, or other equivalent/similar information security and assurance governance standards
  • Appropriate professional qualification in relevant discipline, e.g. CISSP, NCSC Certified Professional or level 6 equivalent qualification, Certified CISO qualification, e.g. CISA, CISM, CRISC, This vacancy is using Success Profiles , and will assess your Behaviours, Experience and Technical skills., Successful candidates will be expected to have a medical.

Nationality requirements

Open to UK nationals only.

Benefits & conditions

Salary: £75,055 - £82,400 plus a location allowance of £1,750 and excellent benefits Location: Based in Hanslope Park, Milton Keynes with the flexibility of hybrid working depending on business need Free shuttle bus is available between central Milton Keynes and Hanslope Park

At FCDO Services we protect the UK’s interests at home and overseas. We design and construct secure government buildings and courier diplomatic packages worldwide, safeguard government tech and a whole lot more. Our work is as varied and vital as it gets, but we never lose sight of our people. Their skills, aspirations and growth mean as much as the global mission we’re on. In our world, it all matters., Working with us you’ll help keep people, information, and assets safe around the world. It’s a role you can feel proud of; and we aim to make every part of your career just as rewarding. That’s why when you join us, expect to receive a competitive salary, good holiday entitlement and a Civil Service Pension. Along with this, you’ll also have access to training and other development opportunities to help grow your career with us. Our offices have an on-site gym, nursery, café, and restaurant, and we offer interest-free loans on season tickets and bikes to help you get there. It’s a great set of benefits made to support all you do, and all you need., Alongside your salary of £75,055, FCDO Services contributes £21,743 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides .

  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • A Civil Service pension
  • A leave allowance of 25 days per annum
  • 9 days per annum public and privilege days

About the company

If you are not satisfied with the response you receive from FCDO Services, you can contact the Civil Service Commission. For more information, please visit their website.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

Videos

See all

Related articles

See all