At a Glance
- Tasks: Lead security governance and compliance for a cutting-edge health-tech platform.
- Company: Join an innovative health-tech company transforming health engagement through software.
- Benefits: Competitive salary, opportunity to shape security strategy, and work in a purpose-driven environment.
- Why this job: Make a real impact in health tech while advancing your career in information security.
- Qualifications: Extensive experience in security roles, ISO 27001 audits, and strong AWS knowledge required.
- Other info: Ideal for those passionate about health tech and regulatory excellence.
The predicted salary is between 64000 - 80000 £ per year.
NearTech have partnered with an innovative health-tech company who are using software to transform how people engage with health wellbeing. With a platform that fuses clinical credibility and digital accessibility, they’re reshaping perceptions — empowering individuals and expanding access in a way that’s genuinely changing lives. As they scale, they’re investing in security as a strategic priority — making this a career-defining opportunity to shape systems, lead audits, and futureproof compliance.
The Information Security Lead will drive end-to-end security governance, embed regulatory excellence into systems and practices, and lead compliance strategy across a pioneering digital health platform (key areas being Web, Cloud Infrastructure & AI).
The new InfoSec Lead will:
- Define and operationalise security & compliance across infrastructure and applications.
- Lead the roadmap to ISO 27001 certification and maintain regulatory readiness.
- Manage internal and external audits, including documentation and stakeholder preparation.
- Embed secure practices into the SDLC alongside engineering and product teams.
- Act as a key interface with customers on security queries and due diligence.
Experience needed:
- Extensive experience in security or compliance roles, ideally in regulated tech or healthcare.
- Proven experience leading ISO 27001 audits and managing UK GDPR requirements.
- Strong AWS knowledge and understanding of modern SaaS/cloud security tools.
- Familiarity with health tech standards, SaMD, or MHRA regulation is a bonus.
- Clear communication skills to liaise across legal, ops, and engineering.
If you’re interested in this InfoSec Lead opportunity and ready to have a real impact within a purpose-led health-tech company please apply with a copy of your CV ASAP!
Head of Information Security employer: NearTech Search
Contact Detail:
NearTech Search Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Head of Information Security
✨Tip Number 1
Familiarise yourself with the latest trends in information security, especially within the health-tech sector. Understanding the unique challenges and regulations in this field will help you demonstrate your expertise during interviews.
✨Tip Number 2
Network with professionals in the information security and health-tech industries. Attend relevant conferences or webinars to connect with potential colleagues and learn about the latest developments, which can give you an edge in discussions.
✨Tip Number 3
Prepare to discuss specific examples of how you've successfully led ISO 27001 audits or managed compliance in previous roles. Being able to articulate your hands-on experience will showcase your capability for the position.
✨Tip Number 4
Research the company’s current security practices and any recent news related to their operations. This knowledge will not only help you tailor your responses but also show your genuine interest in the role and the organisation.
We think you need these skills to ace Head of Information Security
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your extensive experience in security or compliance roles, particularly in regulated tech or healthcare. Emphasise your proven track record with ISO 27001 audits and UK GDPR requirements.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for health-tech and your understanding of the company's mission. Mention specific experiences that demonstrate your ability to lead security governance and compliance strategy.
Highlight Relevant Skills: In your application, clearly outline your strong AWS knowledge and familiarity with modern SaaS/cloud security tools. If you have experience with health tech standards or regulations like SaMD or MHRA, be sure to include that as well.
Showcase Communication Skills: Since clear communication is essential for this role, provide examples in your application of how you've successfully liaised with different teams, such as legal, operations, and engineering, to address security queries and due diligence.
How to prepare for a job interview at NearTech Search
✨Showcase Your Security Expertise
Be prepared to discuss your extensive experience in security and compliance roles. Highlight specific projects where you led ISO 27001 audits or managed UK GDPR requirements, as this will demonstrate your capability to handle the responsibilities of the role.
✨Understand the Health-Tech Landscape
Familiarise yourself with health tech standards, SaMD, and MHRA regulations. Being able to speak knowledgeably about these areas will show that you are not only qualified but also genuinely interested in the sector.
✨Communicate Clearly and Effectively
Since the role requires liaising across legal, ops, and engineering teams, practice articulating complex security concepts in a clear and concise manner. This will help you convey your ideas effectively during the interview.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Think of examples where you successfully embedded secure practices into the SDLC or managed audits, as these will illustrate your hands-on experience.