Head of Cyber Security

Head of Cyber Security

Full-Time 80000 - 100000 £ / year (est.) No working from home possible
British International Investment

At a Glance

  • Tasks: Lead a dynamic cybersecurity team to protect BII from evolving cyber threats.
  • Company: Join British International Investment, a mission-driven organisation focused on impactful development.
  • Benefits: Competitive salary, diverse work culture, and opportunities for professional growth.
  • Other info: Embrace a collaborative environment that values diversity and inclusion.
  • Why this job: Make a real difference in cybersecurity while working with cutting-edge technology.
  • Qualifications: Proven leadership in cybersecurity, strong communication skills, and technical expertise.

The predicted salary is between 80000 - 100000 £ per year.

The Cybersecurity Team protects BII’s technology, people, and processes from cyber-attacks. With top-tier tools and a leading Managed Security Service Provider, the team maintains the confidentiality, availability, and integrity of BII’s assets and data, supporting operations across markets. As a core part of the security function, the team is crucial in defending against evolving cyber threats. Given its role, the team is highly visible to the senior leadership of the organisation.

Purpose

The Head of Cyber Security provides operational leadership, governance and accountability for BII’s cybersecurity capability. The role manages a team of cybersecurity professionals responsible for protecting and defending BII from cyber attacks, whilst similarly managing identity as a security enabler. The role holder will own core and emerging cyber risk domains—spanning Cyber security operations, identity and AI—ensuring risks are identified early, governed effectively and managed within appetite. They will strengthen organisational resilience through incident readiness and response. The role also acts as Bronze Incident Manager for cybersecurity incidents.

Role Background

BII’s technology and supplier landscape is evolving, increasing cyber risk. This role provides clear operational ownership of cyber defence, risk governance and incident readiness, embedding security into change and decision-making.

What Success Looks Like

Cyber risks are detected early, managed appropriately, and reported to senior leadership. Controls are proven effective through monitoring, vulnerability management, and measurable resilience improvements. Incidents are handled with rehearsed responses and applied lessons learned.

How the Role Fits into the Organisation

Reporting to the Head of Security, the Head of Cyber Security leads day-to-day cybersecurity and works closely with Technology, senior stakeholders and key suppliers to ensure that the Cybersecurity of BII is maintained and endures. The role turns cyber risk into prioritised actions and provides clear input to senior leadership forums to protect services, enable change and strengthen resilience.

Responsibilities

  • Define and implement Cybersecurity strategy for BII, in order to keep BII safe.
  • Lead and manage the cybersecurity team by setting direction, priorities, performance standards and development plans.
  • Deputise for the Head of Security when required by representing Security in senior forums and making decisions within delegated authority.
  • Lead cybersecurity operations, including monitoring, vulnerability management, readiness and control health reporting.
  • Act as Bronze Incident Manager for cyber incidents by coordinating response and escalating to Silver/Gold when required.
  • Manage cyber risk within agreed appetite by assessing, treating and reporting risks with clear evidence and metrics.
  • Set cybersecurity governance for key domains, including Identity, third-party security, AI risk and data sovereignty.
  • Translate cyber risk into prioritised actions and report clearly to OpCo/ExCo/Audit and other forums.
  • Manage the outsourced Managed Security service provider (MSSP) and specialist suppliers by setting expectations, reviewing SLAs/KPIs and driving remediation.
  • Embed security into change by defining requirements and validating controls for patching, configuration and new services.
  • Maintain cyber playbooks, runbooks and standards to improve consistency and reduce key-person dependency.
  • Define and oversee cyber security training awareness across BII.

The candidate

The successful candidate brings a strong track record in senior cybersecurity roles, leading others to deliver effective security operations, incident management and risk governance in complex environments. The background includes working with outsourced security providers, influencing technology and business stakeholders, and embedding practical security controls into day-to-day operations and change. The ideal candidate has a technical background and can translate complex topics into clear, business-focused discussions.

Essential skills

  • Proven people leadership and the credibility to represent Security in senior forums and deputise for the Head of Security.
  • Ability to set security standards and governance, and to present risk and control status clearly to senior stakeholders.
  • Strong communication skills, with the ability to articulate complex technical matter to non-technical and senior audiences.
  • Significant experience leading cybersecurity operations, including detection/monitoring and vulnerability management.
  • Experience managing cyber incidents end-to-end, including communications, decision logs and lessons learned.
  • Strong knowledge of current threats, identity security and third-party risk.
  • Experience managing MSSPs and specialist suppliers through governance and SLAs/KPIs.
  • Broad technical understanding across cloud, endpoints, networks and logging sufficient to challenge and guide technical teams.
  • Demonstrable understanding of emerging AI-driven threats, their implications for cyber security and their mitigations.
  • A relevant cybersecurity qualification and/or recognised certification (e.g., CISSP, CISM, SANS) with ongoing professional development.
  • Experience with cloud security controls and monitoring (e.g., Microsoft 365/Azure).
  • Experience with SIEM/SOAR, detection engineering or incident automation.
  • Experience implementing IAM tooling and access governance (e.g., PAM, IGA).
  • Experience commissioning security testing and remediation programmes (e.g., pen tests, scanning).
  • Experience delivering security awareness and incident exercising programmes.
  • Working knowledge of assurance frameworks and resilience expectations (e.g., ISO 27001, SOC 2, NIST CSF).

Candidates should be strongly motivated by BII’s development mission and ideally demonstrate some commitment to development or social goals through previous executive or non-executive activity.

Our cultural values

  • Impact-led, commercially rigorous
  • Tenacious in the face of challenges
  • Collaborative and caring

British International Investment is committed to diversity and inclusion and welcomes all applicants regardless of age, disability, gender reassignment, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex, sexual orientation or educational background.

Head of Cyber Security employer: British International Investment

At British International Investment, we pride ourselves on being an exceptional employer, particularly for the Head of Cyber Security role. Our commitment to employee growth is evident through our collaborative and caring work culture, where you will lead a talented team in a dynamic environment that values innovation and resilience. With access to top-tier tools and a focus on professional development, you will play a crucial role in shaping our cybersecurity strategy while making a meaningful impact across markets.

British International Investment

Contact Details:

British International Investment Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Head of Cyber Security

Tip Number 1

Network like a pro! Reach out to your connections in the cybersecurity field, attend industry events, and join relevant online forums. The more people you know, the better your chances of landing that Head of Cyber Security role.

Tip Number 2

Show off your expertise! Prepare to discuss your past experiences with incident management and risk governance in detail. Use real-life examples to demonstrate how you've tackled cyber threats and improved security operations.

Tip Number 3

Be proactive! Research BII’s current cybersecurity challenges and come up with ideas on how you can address them. Presenting these insights during interviews will show that you're not just a candidate, but a potential leader who can drive change.

Tip Number 4

Apply through our website! It’s the best way to ensure your application gets noticed. Plus, it shows your commitment to being part of the BII team right from the start.

We think you need these skills to ace Head of Cyber Security

Cybersecurity Strategy Development
People Leadership
Risk Governance
Incident Management
Vulnerability Management
Communication Skills
Technical Understanding of Cloud Security

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Head of Cyber Security role. Highlight your experience in leading cybersecurity teams and managing incidents, as well as any relevant qualifications. We want to see how your skills align with our needs!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how you can contribute to BII’s mission. Be sure to mention specific experiences that demonstrate your leadership and technical skills.

Showcase Your Achievements:Don’t just list your responsibilities; showcase your achievements! Use metrics and examples to illustrate how you've successfully managed cyber risks or improved security operations in previous roles. We love seeing tangible results!

Apply Through Our Website:We encourage you to apply through our website for the best chance of being noticed. It’s straightforward and ensures your application goes directly to us. Plus, we’re excited to see what you bring to the table!

How to prepare for a job interview at British International Investment

Know Your Cybersecurity Stuff

Make sure you brush up on the latest trends and threats in cybersecurity. Be ready to discuss your experience with incident management, vulnerability assessments, and how you've handled cyber risks in previous roles. This will show that you're not just familiar with the basics but are also on top of current challenges.

Showcase Your Leadership Skills

As the Head of Cyber Security, you'll be leading a team, so it's crucial to demonstrate your people leadership abilities. Prepare examples of how you've successfully managed teams, set performance standards, and developed talent. Highlight any experience you have in representing security in senior forums.

Communicate Clearly

You’ll need to articulate complex technical matters to non-technical stakeholders. Practice explaining your past projects or strategies in simple terms. This will help you convey your ideas effectively and show that you can bridge the gap between technical and business discussions.

Prepare for Scenario Questions

Expect to face scenario-based questions that test your problem-solving skills in real-time situations. Think about past incidents you've managed and how you would approach hypothetical scenarios. This will demonstrate your readiness to act as a Bronze Incident Manager and your ability to handle pressure.