Information Security Team Lead in London

Information Security Team Lead in London

London Full-Time 36000 - 60000 ÂŁ / year (est.) No home office possible
Go Premium
E

At a Glance

  • Tasks: Lead and enhance Elliptic's information security programme while collaborating with various teams.
  • Company: Join a forward-thinking tech company focused on cybersecurity innovation.
  • Benefits: Enjoy hybrid working, generous leave, and a ÂŁ1,000 learning budget.
  • Why this job: Make a real impact in cybersecurity and shape the future of secure tech.
  • Qualifications: Experience in cloud security and strong stakeholder management skills required.
  • Other info: Dynamic role with excellent growth opportunities and a supportive work culture.

The predicted salary is between 36000 - 60000 ÂŁ per year.

The impact you will have:

  • Lead the day‐to‐day operation uplift of Elliptic's information and cyber security programme.
  • Drive SSDLC v2.0 adoption, improve cloud and SaaS security posture, and ensure external audit and customer due diligence readiness.
  • Partner with Engineering, Platform, Legal, Procurement and Customer teams to reduce risk while enabling delivery and revenue, including Enterprise Tier security features.

What we expect from you:

  • Programme ownership and delivery: Own delivery of the InfoSec roadmap and metrics. Translate strategy into quarterly plans with measurable outcomes. Establish gates, controls and reporting for SSDLC v2.0 across build and deploy pipelines. Lead CSPM/SSPM baselining and targeted burn‐down of misconfigurations and vulnerabilities.
  • Risk, assurance and audit readiness: Maintain ISMS processes aligned to ISO 27001. Coordinate evidence for customer audits and external assurance (e.g., pen test, TPOs). Chair or contribute to risk forums. Ensure timely remediation, risk acceptance and exception tracking.
  • Cloud and SaaS security: Partner with Platform to harden AWS (IAM, KMS, network segmentation, Security Hub, GuardDuty, logging). Uplift endpoint, identity and access, vulnerability management, and logging across the estate.
  • People leadership and ways of working: Provide day‐to‐day guidance to TISO, Analysts and cross‐functional contributors. Embed a pragmatic, developer‐friendly security culture through enablement, playbooks and training.
  • Vendor and data governance: Oversee vendor security due diligence with clear SLAs and evidence trails. Support data protection and BC/DR control owners.

You must have:

  • Proven security delivery in a cloud‐native product company.
  • Strong understanding of AWS security architecture, modern CI/CD, and application security practices.
  • Experience operationalising ISMS controls and preparing audit evidence for enterprise customers.
  • Excellent stakeholder management and communication skills.
  • Relevant certifications are a plus (e.g., CISSP, CCSP, AWS Security), but practical impact matters most.

Success measures in the first 12 months:

  • SSDLC v2.0 gates defined and enforced across critical services. Coverage reported monthly.
  • 40% reduction in outstanding high/critical vulnerabilities and misconfigurations.
  • Green audit outcomes for priority customers with evidence pack library established.
  • Baseline CSPM/SSPM metrics in place with trend improvement quarter‐on‐quarter.
  • Vendor DD process with SLAs and scorecards operating and measured.

How We Work:

  • Hybrid working and the option to work from almost anywhere for up to 90 days per year.
  • ÂŁ500 Remote working budget to set up your home office space.
  • $1,000 Learning & Development budget to use on anything (agreed with your manager) that contributes to your growth and development.
  • Holidays: 25 days of annual leave + bank holidays.
  • An extra day for your birthday.
  • Enhanced parental leave: we provide eligible employees, regardless of gender or whether they become a parent by birth or adoption, 16 weeks fully‐paid leave.
  • Private Health Insurance - we use Vitality!
  • Full access to Spill Mental Health Support.
  • Life Assurance: 4 times your salary to your beneficiaries.
  • ÂŁ100 cryptocurrency for you!
  • Cycle to Work Scheme.

Information Security Team Lead in London employer: Elliptic Enterprises Ltd.

Elliptic is an exceptional employer that prioritises the growth and well-being of its employees, offering a hybrid working model that allows for flexibility and a generous remote working budget. With a strong focus on learning and development, employees benefit from a substantial training budget and a supportive work culture that fosters collaboration across teams. Additionally, Elliptic provides comprehensive benefits, including private health insurance and enhanced parental leave, making it a rewarding place to build a meaningful career in information security.
E

Contact Detail:

Elliptic Enterprises Ltd. Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Team Lead in London

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their security challenges and think about how your experience aligns with their needs. This will help you stand out as a candidate who’s genuinely interested.

✨Tip Number 3

Showcase your skills through practical examples. When discussing your experience, focus on specific projects where you’ve made an impact, especially in cloud security or risk management. Numbers and results speak volumes!

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who take that extra step to engage with us directly.

We think you need these skills to ace Information Security Team Lead in London

Information Security Management
Cloud Security
AWS Security Architecture
CI/CD Practices
ISMS Operationalisation
Stakeholder Management
Communication Skills
Risk Management
Audit Preparation
Vulnerability Management
Security Culture Enablement
Vendor Security Due Diligence
Metrics Reporting
Team Leadership

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter for the Information Security Team Lead role. Highlight your experience with cloud security, AWS architecture, and any relevant certifications. We want to see how your skills align with our needs!

Showcase Your Achievements: When detailing your past roles, focus on specific achievements that demonstrate your ability to lead security programmes and manage risks. Use metrics where possible to show the impact you've made – numbers speak volumes!

Be Clear and Concise: Keep your application straightforward and to the point. Avoid jargon unless it’s relevant to the role. We appreciate clarity, so make it easy for us to see why you’re a great fit for the team.

Apply Through Our Website: We encourage you to submit your application through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it shows you’re keen to join our team!

How to prepare for a job interview at Elliptic Enterprises Ltd.

✨Know Your Stuff

Make sure you have a solid understanding of AWS security architecture and the principles behind SSDLC v2.0. Brush up on your knowledge of cloud and SaaS security practices, as well as how to operationalise ISMS controls. This will show that you're not just familiar with the concepts but can also apply them effectively.

✨Showcase Your Leadership Skills

Prepare examples of how you've led teams or projects in the past, especially in a security context. Highlight your experience in guiding cross-functional teams and embedding a security culture. This will demonstrate your capability to lead the Information Security Team and collaborate with various departments.

✨Be Ready for Scenario Questions

Expect questions that ask how you would handle specific security challenges or incidents. Think about potential vulnerabilities or misconfigurations you might encounter and how you would address them. This will help you illustrate your problem-solving skills and practical impact in real-world situations.

✨Communicate Clearly

Since excellent stakeholder management is key, practice articulating complex security concepts in simple terms. Be prepared to discuss how you would communicate security risks and strategies to non-technical stakeholders. This will show that you can bridge the gap between technical and non-technical teams effectively.

Information Security Team Lead in London
Elliptic Enterprises Ltd.
Location: London
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

E
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>