Lead Information Security in Hamilton

Lead Information Security in Hamilton

Hamilton Full-Time 48000 - 72000 £ / year (est.) Home office (partial)
H

At a Glance

  • Tasks: Lead and shape the organisation's information security strategy and governance.
  • Company: Join Hamilton, a global leader in specialty insurance and reinsurance.
  • Benefits: Enjoy hybrid working, competitive salary, generous time off, and professional development support.
  • Why this job: Make a real impact in cyber security while working with a dynamic team.
  • Qualifications: Extensive experience in information security and strong regulatory knowledge required.
  • Other info: Be part of a vibrant culture that values diversity and collaboration.

The predicted salary is between 48000 - 72000 £ per year.

We’re looking for a Lead Information Security professional for a U.S. based role within the Eastern Standard Time Zone. This role reports to Hamilton’s global Chief Information Security Officer. The Lead Information Security professional provides leadership and subject-matter expertise across the organization’s information and cyber security function. This role has a strong regulatory, governance, and operational resilience focus, ensuring the organization meets its obligations under ISO/IEC 27001, ISO 22301, DORA, FCA/PRA, and NYDFS, alongside other applicable global regulatory and supervisory requirements. The role holder plays a critical role in shaping security strategy, influencing risk decisions, and ensuring security and resilience are embedded across technology, business, and third-party operations.

What you will do

  • Information Security Governance & Regulatory Compliance
    • Lead and maintain the organization’s information security governance framework, aligned to ISO/IEC 27001, including policies, standards, and control frameworks.
    • Provide alignment between cyber security program and ISO 22301.
    • Drive compliance with DORA (Digital Operational Resilience Act), including ICT risk management, incident reporting, resilience testing, and third-party oversight.
    • Ensure ongoing alignment with Lloyd's of London, FCA and PRA regulatory expectations, including operational resilience, outsourcing, and technology risk management.
    • Oversee compliance with NYDFS Cybersecurity Regulation (23 NYCRR 500) where applicable.
    • Monitor emerging regulatory requirements and translate them into actionable security and resilience initiatives.
    • Act as a senior point of contact for regulators, auditors, and external assessors, supporting regulatory reviews, audits, and formal submissions.
  • Risk Management & Assurance
    • Provide leadership for enterprise information and cyber security risk management.
    • Support the definition and maintenance of security risk appetite, tolerances, and risk acceptance processes.
    • Review and challenge security risk assessments for critical systems, cloud platforms, major change programs, and third-party arrangements.
    • Oversee security control assurance, testing, and remediation tracking.
    • Produce clear, risk-focused reporting for executive management, risk committees, and the Board.
  • Operational Resilience & Cyber Incident Management
    • Provide oversight of cyber incident management, ensuring compliance with regulatory notification and reporting requirements (e.g. DORA, FCA, NYDFS).
    • Act as a decision-maker during major incidents, crisis situations, and cyber events.
    • Ensure regular testing of incident response, crisis management, and business continuity plans, with lessons learned embedded into practice.
  • Third-Party & Supply Chain Security
    • Oversee third-party and supply-chain security risk management, including due diligence, contractual controls, and ongoing monitoring.
    • Ensure compliance with regulatory expectations for outsourcing, material third parties, and ICT service providers, particularly under DORA and FCA/PRA rules.
    • Work closely with Legal, Vendor Management/Procurement, and Risk functions to embed security and resilience requirements into contracts and operating models.
  • Leadership & Stakeholder Engagement
    • Provide leadership across the information security function.
    • Build strong relationships within Information Technology, Risk, Compliance, Legal, Internal Audit, and Business leadership.
    • Promote a strong security, resilience, and risk-aware culture across the organization.

What you require for the role

  • Essential
    • Extensive senior experience as an information security leader or senior information security professional in complex, regulated environments.
    • Deep practical experience with ISO/IEC 27001 (ISMS design, implementation, and assurance).
    • Strong experience with ISO 22301 and operational resilience frameworks.
    • Demonstrable experience delivering or governing compliance with DORA.
    • Strong understanding of FCA and PRA supervisory expectations related to cyber security, technology risk, and operational resilience.
    • Experience with NYDFS Cybersecurity Regulation (23 NYCRR 500) or equivalent international frameworks.
    • Proven ability to engage confidently with regulators and auditors.
    • Strong ability to translate complex technical and regulatory issues into clear business risk decisions.
  • Desirable
    • Background in financial services, banking, insurance, payments, or other highly regulated sectors.
    • Experience leading regulatory remediation, control uplift, or transformation programs.
    • Exposure to cloud security governance and complex third-party ecosystems.

Qualifications & Certifications

  • Degree in Information Security, Computer Science, Risk Management, or equivalent experience.
  • CISSP certification is strongly preferred. Equivalent certifications such as CISM, CRISC, or ISO 27001 Lead Implementer/Lead Auditor are also highly desirable.

Personal Attributes

  • High integrity with strong ethical judgement.
  • Calm, authoritative presence in high-pressure or regulatory situations.
  • Excellent written and verbal communication skills.
  • Confident, pragmatic leader with the ability to challenge constructively.
  • Team player and business goals oriented.

What you can expect from us

We offer a vibrant, entrepreneurial, and collaborative culture guided by our values: Be Smart, Be Sensible, Be Open and Be More. We know if we welcome and respect differences, we’ll attract and retain talent that brings a valuable diversity of perspectives and experience. We want all our colleagues to feel that they can bring their whole selves to work at Hamilton and know that they can be part of building a great company. Hamilton offers a competitive salary with an annual performance-based target bonus and a comprehensive benefits package, to include:

  • Hybrid working
  • Matching 401K plan
  • Medical, dental, vision, life, disability
  • Generous time off (including parental leave)
  • Continued support for professional development
  • Gym subsidy
  • My day (additional days leave for personal interests/wellness/charity work)

In good company. Hamilton (NYSE: HG) underwrites specialty insurance and reinsurance risks on a global basis through its wholly owned subsidiaries. Its three underwriting platforms: Hamilton Global Specialty, Hamilton Select and Hamilton Re, each with dedicated and experienced leadership, provide access to diversified and profitable business around the world. Headquartered in Bermuda, Hamilton has over 600 employees with key underwriting operations in London, Bermuda, the US and Dublin. We work collaboratively, we share a passion for the service and results we deliver, and we know that what we do each day is meaningful – to our customers and our business. We believe we are ‘In good company.’ with everyone we interact with.

Lead Information Security in Hamilton employer: Hamilton Insurance Group, Ltd.

Hamilton is an exceptional employer that fosters a vibrant, entrepreneurial, and collaborative culture, making it an ideal place for professionals in the Lead Information Security role. With a strong commitment to employee growth, we offer comprehensive benefits including hybrid working, generous time off, and support for professional development, all while ensuring our team members feel valued and respected. Located in the Eastern Standard Time Zone, our dynamic environment encourages innovation and inclusivity, allowing you to thrive while contributing to meaningful work in the insurance and reinsurance sector.
H

Contact Detail:

Hamilton Insurance Group, Ltd. Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Lead Information Security in Hamilton

✨Tip Number 1

Network like a pro! Reach out to your connections in the information security field and let them know you're on the lookout for opportunities. Attend industry events or webinars to meet new people and make a lasting impression.

✨Tip Number 2

Prepare for interviews by brushing up on your knowledge of ISO/IEC 27001 and DORA. Be ready to discuss how you've tackled compliance challenges in the past, as this will show you're the right fit for the role.

✨Tip Number 3

Showcase your leadership skills! During interviews, share examples of how you've led teams through complex security projects or regulatory changes. This will highlight your ability to influence risk decisions and shape security strategy.

✨Tip Number 4

Don't forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, it shows you're genuinely interested in being part of our vibrant and collaborative culture.

We think you need these skills to ace Lead Information Security in Hamilton

Information Security Governance
Regulatory Compliance
ISO/IEC 27001
ISO 22301
DORA (Digital Operational Resilience Act)
FCA/PRA Compliance
NYDFS Cybersecurity Regulation
Risk Management
Cyber Incident Management
Third-Party Security Risk Management
Stakeholder Engagement
Leadership
Communication Skills
CISSP Certification
Cloud Security Governance

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Lead Information Security role. Highlight your experience with ISO/IEC 27001 and operational resilience frameworks, as these are key for us. Use specific examples that showcase your leadership in complex, regulated environments.

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Explain why you’re passionate about information security and how your background aligns with our needs. Don’t forget to mention your experience with regulatory compliance and risk management – we love that!

Showcase Your Soft Skills: While technical skills are crucial, don’t underestimate the power of soft skills. We’re looking for someone who can engage confidently with regulators and auditors, so highlight your communication skills and ability to lead under pressure.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our vibrant team!

How to prepare for a job interview at Hamilton Insurance Group, Ltd.

✨Know Your Regulations

Make sure you’re well-versed in the key regulations mentioned in the job description, like ISO/IEC 27001 and DORA. Brush up on how these frameworks apply to information security governance and operational resilience, as you’ll likely be asked to discuss your experience with them.

✨Showcase Your Leadership Skills

Prepare examples that highlight your leadership in previous roles, especially in complex, regulated environments. Be ready to discuss how you’ve influenced risk decisions and shaped security strategies, as this role requires strong leadership across various functions.

✨Engage with Real Scenarios

Think of specific incidents or challenges you've faced in cyber incident management. Be prepared to explain how you handled these situations, what decisions you made, and the outcomes. This will demonstrate your practical experience and decision-making skills under pressure.

✨Build Relationships

Since this role involves engaging with various stakeholders, prepare to discuss how you’ve built strong relationships in past positions. Highlight your communication skills and how you’ve promoted a culture of security and resilience within teams or organisations.

Lead Information Security in Hamilton
Hamilton Insurance Group, Ltd.
Location: Hamilton

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

H
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>