Head of Cyber Defence in London

Head of Cyber Defence in London

London Full-Time 80000 - 100000 £ / year (est.) No working from home possible
Ingenico

At a Glance

  • Tasks: Lead cyber defence strategy and protect Ingenico from cyber threats.
  • Company: Ingenico, a global leader in payment solutions with a focus on innovation.
  • Benefits: Competitive salary, inclusive culture, and opportunities for professional growth.
  • Other info: Diverse and inclusive workplace with a commitment to employee well-being.
  • Why this job: Make a real impact in cybersecurity while working with cutting-edge technology.
  • Qualifications: Proven leadership in cyber defence and strong understanding of security architectures.

The predicted salary is between 80000 - 100000 £ per year.

Ingenico is the global leader in payments acceptance solutions. As the trusted technology partner for merchants, banks, acquirers, ISVs, payment aggregators and fintech customers, our world‑class terminals, solutions and services enable the global ecosystem of payments acceptance. With 40 years of experience, innovation is integral to Ingenico’s approach and culture, inspiring our large and diverse community of experts who anticipate and help shape the evolution of commerce worldwide. At Ingenico, trust and sustainability are at the heart of everything we do.

The Head of Cyber Defense is accountable for protecting the organisation from cyber threats by leading the strategy, governance, and operational execution of all defensive security capabilities. Reporting directly to the Chief Information Security Officer (CISO), the role provides leadership across threat detection, incident response, vulnerability management, application security, cloud and platform security, and identity security.

The organisation operates a Managed Security Service Provider (MSSP/MSP) model for Security Operations. The Head of Cyber Defense owns the relationship, performance oversight, and strategic direction of the MSP to ensure high quality, risk aligned security operations. The role leads five specialist domains through the following direct reports: Lead – SecOps Incident Management & Response, Lead – Application Security & Vulnerabilities, Lead – Cloud & Platform Security, Lead – IAM/PAM, and Lead – Incident Response and Cyber Resilience.

Key Results Areas

  • Strategic Leadership & Cyber Defense Architecture: Define and execute the organisation's Cyber Defense Strategy, ensuring alignment with business objectives and the wider security strategy set by the CISO. Own the end‑to‑end cyber defense operating model across Enterprise and Tech Ops BAU, ensuring consistent protection and response. Develop and maintain a cohesive defense architecture across detection, response, identity, cloud, and application security. Ensure alignment between internal teams, Tech Ops, and third‑party providers (MSSP, platform teams). Drive continuous improvement and maturity uplift across all defensive capabilities. Ensure cyber defense strategy, architecture and control priorities are informed by current threat intelligence, attacker techniques and incident trends.
  • Security Engineering & Platforms: Own cybersecurity engineering across endpoint protection (EDR/XDR), network security, email and collaboration security, and cloud and platform security (including Azure, AWS, GCP). Drive secure‑by‑design implementation for security tooling, platforms, and integrations. Ensure scalability, resilience, and operational effectiveness of all security controls.
  • Security Operations Oversight (MSP-Delivered): Act as the senior owner of the MSP relationship for Security Operations. Set performance expectations, SLAs, KPIs, and quality standards for SOC services. Ensure effective threat detection, triage, escalation, and incident response processes. Own the quality, coverage and continuous improvement of security detection use cases, including validation, tuning and effectiveness of detections delivered by internal platforms and the MSP. Ensure clear escalation paths, governance, and continuous improvement of MSSP services. Lead service reviews, challenge performance, and ensure the MSP delivers measurable risk reduction.
  • Security Incident Response, Crisis & Tabletop Exercises: Provide executive oversight of major cyber incidents, ensuring coordinated response across internal teams, MSP, and external partners. Serve as the senior escalation point for high‑severity incidents. Ensure effective coordination during major incidents with Legal, Data Protection, Communications and senior management, including regulatory and customer impact assessment where required. Ensure post‑incident reviews, root‑cause analysis, and remediation plans are completed and embedded. Lead crisis management, preparedness, incident tabletop exercises and crisis simulations across Enterprise IT, and coordinate with Technology security/operations where required. Ensure lessons learned are captured and translated into improved controls and processes. Ensure cyber resilience and technical recovery readiness are embedded into incident response, including coordination with IT disaster recovery and business continuity teams from a cyber perspective.
  • Vulnerability, Application, and Platform Security: Oversee the organisation's vulnerability management programme, ensuring timely identification, prioritisation, and remediation of risks. Ensure cloud and platform security controls are effectively designed, implemented, and monitored to support proactive vulnerability management. Define prioritisation, risk‑based remediation expectations, and escalation for unaddressed vulnerabilities and weaknesses. Ensure effective coordination between teams, including MSP, Product Security, and Technology Ops.
  • Identity, Access, and Privileged Access Management: Provide strategic direction for IAM and PAM capabilities, ensuring robust identity governance, access control, and privileged account security. Own global IAM and PAM security from a cyber defense perspective, including technical security architecture, monitoring and detection of identity‑based threats, and privileged access controls and abuse detection. Oversee the adoption of Zero Trust principles across identity and access.
  • Governance, Risk & Compliance: Ensure all cyber defense activities align with regulatory, legal and policy requirements. Contribute to enterprise risk assessments and provide expert input on cyber risk posture. Support the Head of Security Risk Management with evidence and material for audits, risk assessments and customer assurance. Produce clear reporting for the CISO, senior leadership, and governance committees.
  • Leadership & People Management: Lead, mentor, and develop a team of senior security specialists and domain leads. Foster a culture of accountability, innovation, and continuous improvement. Build strong relationships with technology, risk, compliance, and business stakeholders.

Candidate Requirements

Skills & Experience – Essential:

  • Proven leadership experience in cyber defense, security operations, or incident response at scale.
  • Strong understanding of modern security architectures, cloud security, identity security, and application security.
  • Experience managing or governing MSP/MSSP‑delivered security services.
  • Demonstrated ability to lead during high‑pressure cyber incidents.
  • Strong stakeholder management and communication skills, including reporting to senior executives.
  • Deep knowledge of threat landscapes, attacker techniques, and defensive controls.

Skills & Experience – Desirable:

  • Experience in regulated industries.
  • Certifications such as CISSP, CISM, CCSP, GIAC, or equivalent.
  • Experience implementing Zero Trust, DevSecOps, or advanced detection engineering.

As part of our values, we embrace diversity and inclusion at Ingenico. We are an equal opportunity employer and do not discriminate on the basis of an individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status or any other protected characteristic under applicable law, whether actual or perceived. Ingenico welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process. We want to adapt our processes and create a safe work environment that welcomes everyone.

Head of Cyber Defence in London employer: Ingenico

Ingenico is an exceptional employer, offering a dynamic work environment that fosters innovation and collaboration among a diverse community of experts. With a strong commitment to trust and sustainability, employees benefit from comprehensive growth opportunities, a culture of continuous improvement, and the chance to lead in cutting-edge cyber defense strategies. Located in a vibrant area, Ingenico provides a supportive atmosphere where every team member's contributions are valued, making it an ideal place for those seeking meaningful and rewarding careers in cybersecurity.

Ingenico

Contact Details:

Ingenico Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Head of Cyber Defence in London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Ingenico, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Ingenico

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Ingenico. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Head of Cyber Defence in London

Cyber Defense Strategy
Threat Detection
Incident Response
Vulnerability Management
Application Security
Cloud Security
Identity and Access Management (IAM)

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Ingenico insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Ingenico that you’re committed to staying ahead in the game.

How to prepare for a job interview at Ingenico

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Ingenico to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Ingenico.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.