At a Glance
- Tasks: Lead and evolve our security strategy while managing IT services across the organisation.
- Company: Join a people-centric tech company in Newcastle-upon-Tyne.
- Benefits: Enjoy flexible working, private healthcare, and generous leave policies.
- Why this job: Make a real impact on security and technology in a supportive environment.
- Qualifications: Proven leadership in Information Security and IT with strong technical skills.
- Other info: Be part of a dynamic team with opportunities for innovation and growth.
The predicted salary is between 70000 - 90000 ÂŁ per year.
We are seeking a highly capable Head of Information Security & IT to lead and evolve the organisation's security posture and internal technology environment. This senior leadership role will be responsible for ensuring the confidentiality, integrity, and availability of our systems, while delivering reliable internal IT services across the organisation.
Application Deadline: 18 April 2026
Department: IT & Information Security
Employment Type: Permanent
Location: Newcastle-upon-Tyne
Reporting To: Chief Technology Officer
Responsibilities:
- Define and lead the organisation's Information Security strategy, ensuring alignment with business objectives and regulatory requirements.
- Own and maintain the security governance framework, including policies, standards, and controls.
- Ensure ongoing compliance with relevant security and regulatory frameworks such as ISO27001, SOC2, PCI-DSS, and other applicable standards.
- Lead security risk management activities including risk assessments, threat modelling, and mitigation planning.
- Establish strong security assurance processes, ensuring the organisation can clearly demonstrate security capability and compliance through structured reporting, evidence gathering, and audit readiness.
- Provide clear and transparent security reporting to executive leadership, ensuring confidence in the organisation's security posture and the effectiveness of controls.
- Oversee operational security capabilities including vulnerability management, incident response, threat detection, and security monitoring.
- Work closely with engineering and platform teams to embed secure architecture principles and security-by-design practices into the software and platform lifecycle.
- Lead the delivery of secure and reliable corporate IT services supporting the day-to-day operations of the organisation.
- Operate and maintain identity and access management services, including robust JoinerâMoverâLeaver processes, user provisioning, role changes, and timely removal of access through platforms such as Microsoft Entra.
- Manage a mixed endpoint estate across Windows and macOS, ensuring devices are securely configured, hardened, compliant with corporate standards, and effectively managed through Microsoft Intune and Jamf.
- Build and lead a high-performing Information Security and IT function, ensuring the team operates with clear priorities, defined objectives, and measurable outcomes aligned with the wider technology strategy.
- Act as a trusted advisor to the CTO and senior leadership team on security strategy, risk posture, and internal technology capability, while supporting customer, partner, and regulatory engagements related to security assurance, audits, and compliance activities.
- Drive continuous improvement in the organisation's security maturity and resilience.
Qualifications:
- Significant experience in Information Security and IT leadership roles, ideally within highâscale technology platforms or regulated environments.
- Strong technical background with the ability to remain handsâon, guiding teams on security architecture, operational controls, and incident response.
- Proven experience leading both Information Security and Corporate IT functions, including endpoint management, identity services, and internal technology platforms.
- Strong expertise across the Microsoft security ecosystem, including Microsoft Defender, Microsoft Sentinel, Microsoft Entra, Conditional Access, endpoint security, device compliance, and identity protection.
- Strong working knowledge of Microsoft E5 security capabilities, including identity protection, endpoint security, collaboration security, and data protection.
- Experience managing modern enterprise endpoint environments, including mixed Windows and macOS estates, using platforms such as Microsoft Intune and Jamf.
- Strong experience running day-to-day IT operations, including service desk, incident and request management, problem management, and continuous service improvement.
- Experience designing and implementing Zero Trust security models, incorporating identity, device trust, and conditional access controls.
- Strong understanding of modern security practices, including identity and access management, cloud and platform security, security monitoring and incident response, vulnerability and patch management, endpoint protection, and privileged access management.
- Experience operating within recognised security and compliance frameworks such as ISO27001, SOC2, PCI-DSS, or similar regulated environments.
- Strong leadership capability, with experience managing technical teams and improving operational maturity across security and IT functions.
- Excellent communication and stakeholder management skills, with the ability to clearly articulate security posture, risk, and assurance to senior leadership and external stakeholders.
Benefits:
- A friendly, flexible and trustâbased approach to working.
- 25 days annual leave, plus 8 bank holidays and usually a generous Christmas break.
- Fully matched private pension scheme (up to 8%).
- Bupa private healthcare from day one, including cash plan benefits, dental and optical cover (covers all preâexisting conditions).
- Life assurance cover of 4x your annual salary.
- Employee Assistance Programme (via Bupa), providing confidential support and practical advice whenever you might need it.
- Access to Calm â the #1 app for meditation and sleep.
- Innovation and learning â space to develop skills, try new ideas and experiment, with an annual hackathon where some ideas make it into real work.
- A workâowned mobile phone or tablet of your choice, with the monthly contract covered by us.
- A great office setâup â free snacks and drinks every day, plus regular food vans from some of the best places in Newcastle.
- Bede Bucks â exclusive colleague discounts and access to a wellbeing platform.
- Lots of social events â both in and outside of working hours.
- Referral programme â help us grow the team and receive a referral bonus up to ÂŁ3,000 (preâtax, subject to scheme terms).
- Bede swag â including hoodies, t-shirts and our muchâloved Bede socks.
- Bede Holidays â extra discretionary days off through the year as a thankâyou for the great work our teams do.
Head of Information Security & IT in Newcastle upon Tyne employer: Bede Gaming Limited
Contact Detail:
Bede Gaming Limited Recruiting Team
StudySmarter Expert Advice đ¤Ť
We think this is how you could land Head of Information Security & IT in Newcastle upon Tyne
â¨Tip Number 1
Network like a pro! Reach out to your connections in the industry, attend relevant events, and engage with professionals on platforms like LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
â¨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their security posture and be ready to discuss how your experience aligns with their needs. Tailor your responses to show how you can lead their Information Security strategy effectively.
â¨Tip Number 3
Practice your pitch! Be clear about your achievements and how they relate to the role. Highlight your leadership skills and technical expertise, especially in areas like Microsoft security solutions, to make a lasting impression.
â¨Tip Number 4
Donât forget to apply through our website! Itâs the best way to ensure your application gets noticed. Plus, we love seeing candidates who take that extra step to connect directly with us.
We think you need these skills to ace Head of Information Security & IT in Newcastle upon Tyne
Some tips for your application đŤĄ
Tailor Your CV: Make sure your CV is tailored to the Head of Information Security & IT role. Highlight your experience in leading security strategies and managing IT functions, as well as any relevant certifications or frameworks you've worked with.
Craft a Compelling Cover Letter: Your cover letter should tell us why you're the perfect fit for this role. Share specific examples of how you've improved security postures or led teams in previous positions. Make it personal and engaging!
Showcase Your Technical Skills: Donât forget to highlight your technical expertise, especially with Microsoft security tools and compliance frameworks. We want to see how your hands-on experience can benefit our organisation's security and IT landscape.
Apply Through Our Website: We encourage you to apply directly through our website. Itâs the best way for us to receive your application and ensures youâre considered for this exciting opportunity. Plus, itâs super easy!
How to prepare for a job interview at Bede Gaming Limited
â¨Know Your Security Frameworks
Make sure youâre well-versed in security frameworks like ISO27001, SOC2, and PCI-DSS. Be ready to discuss how you've implemented these standards in previous roles and how they align with the organisation's objectives.
â¨Showcase Your Technical Skills
Prepare to demonstrate your hands-on experience with Microsoft security tools such as Microsoft Defender and Microsoft Intune. Bring examples of how you've used these tools to enhance security posture and manage endpoint environments effectively.
â¨Communicate Clearly
Practice articulating complex security concepts in a way thatâs easy to understand. Youâll need to convey your security strategy and risk management approach to senior leadership, so clarity is key!
â¨Highlight Leadership Experience
Be ready to share specific examples of how you've built and led high-performing teams in IT and Information Security. Discuss your approach to setting clear priorities and measurable outcomes that align with broader technology strategies.