At a Glance
- Tasks: Lead and evolve security awareness programmes to enhance organisational security culture.
- Company: Join a dynamic and rapidly growing global organisation focused on security.
- Benefits: Competitive salary, comprehensive benefits, and opportunities for professional growth.
- Other info: Collaborative environment with opportunities to influence across all levels.
- Why this job: Make a real impact by shaping security behaviours and reducing human risk.
- Qualifications: Experience in security awareness and strong communication skills are essential.
The predicted salary is between 60000 - 80000 £ per year.
To lead and evolve TMHCC International's security awareness and culture programme, embedding a strong human-centric security mindset across the organisation. Reporting to the CISO for International, you will define and deliver a comprehensive awareness strategy that reduces human risk, improves security behaviours, and supports compliance with regulatory and internal security requirements. You will work closely with business, HR, technology, and risk teams to ensure security awareness is engaging, measurable, and aligned to organisational priorities.
Responsibilities
- Define and deliver a global security awareness and culture strategy aligned to TMHCC International's risk profile and business objectives.
- Design and implement targeted awareness campaigns, training programmes, and initiatives to address key human risks (e.g., phishing, social engineering, data protection).
- Lead the phishing simulation programme, including scenario design, execution, reporting, and continuous improvement.
- Develop role-based and risk-based training tailored to different user groups, including senior leadership and high-risk populations.
- Collaborate with HR, Communications, and Learning & Development teams to embed security into onboarding, training, and employee lifecycle processes.
- Establish and maintain a network of security champions to promote security awareness and good practices across the organisation.
- Measure programme effectiveness through metrics, behavioural insights, and reporting, driving continuous improvement.
- Provide regular reporting to the CISO and senior stakeholders on human risk, awareness maturity, and programme impact.
- Ensure alignment with regulatory requirements and internal policies related to security training and awareness.
- Stay current with emerging threats and awareness best practices, incorporating innovative approaches to engagement and behaviour change.
Performance Objectives
- Deliver a measurable and effective security awareness programme that demonstrably reduces human-related security risk across TMHCC International.
- Improve employee engagement and security behaviours through targeted, role-based training and awareness initiatives.
- Provide clear, data-driven reporting on programme effectiveness, supporting risk visibility and informed decision-making at senior levels.
Qualifications
- Demonstratable experience in security awareness, information security, risk, or related roles, with a focus on human risk or behavioural change.
- Proven experience designing and delivering security awareness programmes in a global or enterprise environment.
- Strong understanding of common cyber threats, including phishing, social engineering, and insider risk.
- Experience running phishing simulation platforms and interpreting results to drive improvements.
- Familiarity with learning management systems (LMS) and awareness platforms (e.g., KnowBe4 or similar).
- Ability to design engaging training and communication materials for diverse audiences.
- Experience defining and tracking metrics to measure awareness effectiveness and behavioural change.
- Strong stakeholder management skills, with the ability to influence across all levels of the organisation.
- Excellent communication and presentation skills, with the ability to convey security concepts in a clear and engaging way.
Desirable
- Experience within financial services or other regulated industries.
- Knowledge of behavioural science or human risk management approaches.
- Relevant certifications (e.g., CISSP, CISM).
- Experience building and managing security champion networks or community-led initiatives.
Benefits
The Tokio Marine HCC Group of Companies offers a competitive salary and employee benefit package. We are a successful, dynamic organization experiencing rapid growth and are seeking energetic and confident individuals to join our team of professionals.
Security Awareness Lead in City of Westminster employer: HCC Service Co. UK Branch
At Tokio Marine HCC International, we pride ourselves on fostering a vibrant work culture that prioritises employee growth and engagement. As a Security Awareness Lead, you will have the opportunity to shape our security culture while collaborating with diverse teams in a dynamic environment, all supported by a competitive salary and comprehensive benefits package. Join us in making a meaningful impact as we navigate the evolving landscape of security awareness together.
StudySmarter Expert Advice🤫
We think this is how you could land Security Awareness Lead in City of Westminster
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including HCC Service Co. UK Branch, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through HCC Service Co. UK Branch
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at HCC Service Co. UK Branch. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Security Awareness Lead in City of Westminster
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at HCC Service Co. UK Branch insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to HCC Service Co. UK Branch that you’re committed to staying ahead in the game.
How to prepare for a job interview at HCC Service Co. UK Branch
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at HCC Service Co. UK Branch to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at HCC Service Co. UK Branch.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.