Chief Information Security Officer (London)

New Today

We are a global insurance business, a powerhouse undergoing rapid technology-enabled transformation across all of our markets. As our Chief Information Security Officer (CISO), you will be at the forefront of safeguarding a multi-billion-pound enterpriseleading cyber strategy, shaping board-level risk appetite, and protecting the trust of millions of customers worldwide.

As one of the worlds leading global warranty providers we offer customers peace of mind for their domestic appliances. We are expanding our horizons and entering new markets at pace and we need your expertise to help make it happen securely and robustly.

As an international company we work with most of the worlds most respected and well-known brands for domestic appliances and consumer goods. Our current CISO is retiring, creating a unique opportunity to join us. We dont advertise very often for roles at this level, so this really is a position not to be missed.

As a high growth ambitious business, this role is not for the cautious. Its for the bold and the visionary, a resilient leader who sees security an enabler of innovation, growth and reputational strength.

About the role

The Chief Information Security Officer (CISO) is responsible for overseeing the shaping, development, implementation, and governance of the companys information security agenda. Working closely with executive leadership, our Technology, Engineering and Product teams, and other stakeholders, you will lead efforts to protect the organisations sensitive information, systems, and infrastructure from cyber threats and breaches. This role requires a strategic security and people leader with extensive experience in information security management, risk assessment, and compliance within a rich, regulated corporate environment. The role is delegate chair for the IT Security and Cyber Security Steering Committee, a delegated body reporting into the Group Risk Committee (GRC) and then the Audit and Risk Committee (ARC).

Your Mission:

What You Bring

Specifically, the role covers:

Leadership:

Policy Management:

Responsibilities

Strategic Planning: Develop and implement a comprehensive information security strategy aligned with business objectives, regulatory requirements, and industry best practices.

Risk Management: Identify, assess, and prioritize information security risks to the organization, and develop strategies to mitigate these risks effectively.

Security Assurance: Oversee the day-to-day assurance of information security activity, including incident response, threat detection, vulnerability management, and security monitoring. Day-to-day Security Operations are managed by Technology Operations so this role acts as a second line of defence.

Compliance: Ensure compliance with relevant laws, regulations, and standards (e.g., GDPR, ISO 27001) by implementing and maintaining appropriate controls and procedures relevant to each of the territories that D&G operates.

Security Architecture: Define and maintain the companys security architecture, including network security, infrastructure security, and cloud security, to protect against evolving threats and ensure this aligns to best practices.

Security Education & Awareness: Promote a culture of security awareness and best practices throughout the organisation by providing training, education, and communication programs.

Vendor Assurance: Review critical third-party vendors and service providers to ensure the security of outsourced systems and services and the data they contain.

Incident Reviews: Lead the review of security incidents and breaches, coordinating with internal teams and external stakeholders to ensure any learnings are effectively applied.

Budget Management: Develop and manage the information security budget, ensuring that resources are allocated efficiently to support security initiatives and priorities.

Reporting: Provide regular reports and updates to executive leadership and the board of directors on the status of the information security program, key metrics, and emerging threats. Ensure the Security Operations Dashboard is maintained and kept up to date, both in terms of content and the KRIs that are relevant to the business.

We offer lots of great benefits!

Location:
Haggerston, Greater London
Job Type:
FullTime

We found some similar jobs based on your search