> Markdown version of [/jobs/ext/3254194-chief-information-security-officer](https://www.wearedevelopers.com/jobs/ext/3254194-chief-information-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Chief Information Security Officer - **Company:** Foreign, Commonwealth & Development Office (FCDO) - **Location:** Milton Keynes, UK - **Experience:** Expert - **Salary:** £75,055.0 - £82,400.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Cloud Platform System, Cyber Threat Analysis, Cybercrime, Cyber Warfare - **Published:** September 18, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=0104b0875cb4502c ## About the Role o Cyber Security Operations o Incident Management, Incident Investigation and Response o Information Risk Assessment and Risk Management o Risk Understanding and Mitigation o Security Architecture: o Threat Intelligence and Threat Assessment o Threat Understanding * Able to directly brief the Board and Executive team on all matters pertaining to information security and cyber operations. * Track record of driving information security, information assurance and cyber security at the strategic level across a broad range of business areas, projects and programmes delivering complex solutions, substantial business change, influencing enterprise level architectural designs in terms of direction and change. * Significant technical experience in enterprise level architectures, cloud and mobile technologies, a wide knowledge of products and services and how these may impact business security risks. * Demonstrable substantial combined experience in information security and information risk management frameworks, * Appropriate professional qualification in relevant discipline, e.g. CISSP, NCSC Certified Professional or level 6 equivalent qualification, Certified CISO qualification, e.g. CISA, CISM, CRISC. * Experience managing supply chain risks within Government. * Experience implementing / maintaining ISO27001 compliance or certification at an enterprise level, or other equivalent/ similar information security and assurance governance standards, Appropriate professional qualification in relevant discipline, e.g. CISSP, NCSC Certified Professional or level 6 equivalent qualification, Certified CISO qualification, e.g. CISA, CISM, CRISC, * Making Effective Decisions * Seeing the Big Picture * Communicating and Influencing Technical skills We'll assess you against these technical skills during the selection process: * Track record of driving information security, information assurance and cyber security at the strategic level across a broad range of business areas, projects and programmes. * Demonstrable substantial combined experience in information security and information risk management frameworks * Experience implementing / maintaining ISO27001 compliance or certification at an enterprise level, or other equivalent/similar information security and assurance governance standards * Appropriate professional qualification in relevant discipline, e.g. CISSP, NCSC Certified Professional or level 6 equivalent qualification, Certified CISO qualification, e.g. CISA, CISM, CRISC, This vacancy is using Success Profiles , and will assess your Behaviours, Experience and Technical skills., Successful candidates will be expected to have a medical. Nationality requirements Open to UK nationals only. ## Description Our Digital, Data and Technology team are at the forefront of digital innovation. They provide best-in-class solutions for our clients, helping to shape and support a data driven future for UK government. Whether it’s creating bespoke, secure software, offering programme and application support or moving an entire embassy’s servers to a Cloud platform. No matter the task, they are on hand to support. Now, you’ve got the opportunity to join them. Providing innovation to government partners. Delivering best-in-class solutions. Working at the cutting-edge of technology It all matters. Drive operational security and digital transformation As Chief Information Security Officer, you’ll provide strategic leadership for information and cyber security across FCDO Services. You’ll ensure that security objectives support organisational priorities, enable digital transformation and strengthen operational resilience. Playing a key role in developing and communicating FCDO Services’ Information Security and Cyber Assurance Vision and Strategy, you’ll bring different teams together to establish shared direction for delivering this new strategy. Leading our Information and Cyber Security functions, you’ll ensure we develop, maintain and continually improve a comprehensive, risk-based security capability that protects the confidentiality, integrity and availability of information, systems and services. Covering both project and service delivery and live-service security monitoring, you’ll own cyber and information security risk across the organisation – promoting governance and assurance as an enabling approach. Enabling FCDO Services to innovate safely and securely, you’ll create and own the delivery of Information Security initiatives to ensure the organisation and its products are capable of protection against the latest vulnerabilities and cyber threats. Extend your expertise, working to defend the UK’s global interests To succeed in this role, you should be able to drive cyber and information security and assurance across a variety of business areas, projects and programmes. You’ll bring a broad range of experience gained in a Deputy CISO, Head of Cyber Security or equivalent role. This could include working in incident response, SOC, security architecture, vulnerability and compliance, governance or risk. Preferably, you’ll have experience of working in both the public and private sectors, but this isn’t essential. You’ll also bring significant technical experience in cloud and mobile technologies and enterprise level architectures, along with knowledge of how different products and services may impact business security risks. As well as working with different technical teams to deliver complex solutions, you should be able to translate cyber and information security issues into meaningful language for non-specialist audiences across the business. You should also have a professional qualification such as CISSP, NCSC Certified Professional or Level 6 equivalent qualification, or a Certified CISO qualification like CISA, CISM or CRISC., Your CV and personal statement will not form part of the assessment they will provide an insight into your work history and experience. Your CV should include: * no personal identifying details * career history with key responsibilities * achievements * qualifications Your personal statement should outline your interest in the role. Candidates will only be sifted on answers provided to the technical/ job specific questions which are outlined in the application form. Those that are successful will be invited to a Face to face interview. At the interview you will be asked a blend of questions on technical/job specific skills and behaviours. The candidate will need to complete a presentation along with the interview questions. Candidates who are judged to be close to meeting the criteria may be considered for other positions in FCDO Services which may be at a lower grade, but have a potential skills match. Feedback will only be provided if you attend an interview or assessment. Security Successful candidates must meet the security requirements before they can be appointed. The level of security needed is developed vetting . See our vetting charter . People working with government assets must complete baseline personnel security standard (opens in new window) checks. ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Hosting a modern justice system](https://www.wearedevelopers.com/videos/332-hosting-a-modern-justice-system) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [UK Business Culture and Etiquette](https://www.wearedevelopers.com/magazine/326-uk-business-culture-and-etiquette) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Guide for Expats Living in the UK](https://www.wearedevelopers.com/magazine/355-guide-for-expats-living-in-the-uk) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)