At a Glance
- Tasks: Lead and enhance Information Security across the UK and Europe, ensuring compliance and risk management.
- Company: Join a dynamic team at Cabot, a leader in information security.
- Benefits: Competitive salary, career development opportunities, and a supportive work environment.
- Why this job: Make a real impact on cybersecurity while shaping the future of information security.
- Qualifications: 12+ years in Information Security with leadership experience and strong communication skills.
- Other info: Collaborative culture with opportunities for professional growth and innovation.
The predicted salary is between 80000 - 100000 £ per year.
We have an exciting permanent opportunity for a Head of Information Security based in the UK. Your role is leading the Information Security business partner in the UK and Europe for all Cabot security organizational activities. You will prioritize activities to ensure the ongoing effectiveness of Information Security and Cybersecurity controls, working with risk and control owners to evaluate control design, effectiveness, and standards. The primary areas of focus include ongoing compliance and regulatory activities, operational performance, and enterprise information and cyber risk.
This position requires an individual that can effectively balance the elements of each of these activities, while keeping the overall program on track and in alignment with the Global InfoSec strategy and objectives. The Head of Information Security will not only be forward-looking to ensure new requirements are planned but will work with leaders across the business to ensure the goals of Encore and Cabot are met securely, and with compliance to all rules and regulations that may apply.
Key Accountabilities & Responsibilities
- Member of Encore InfoSec leadership team, acting in support of Cabot Group.
- Accountable for the overall security service received by the Business Unit(s) from internal resources, shared services and external partners.
- Responsible for executive committee reporting and strategic decision-making/communications.
- Support Cabot BU leaders who have specific InfoSec responsibilities (including under UK FCA Senior Manager & Certification Regime (SMCR) and Ireland CBI Senior Executive Accountability Regime (SEAR)) with delivery of their accountabilities by undertaking effective risk management, as defined by the company policy, and escalating issues to enable sound and prudent management of the firm, including timely resolution of Risk Events, Internal Audit, Risk and Compliance Monitoring actions.
- Demonstrable delivery of regulatory responsibilities, including the completion of assigned learning and timely and accurate completion of documentation associated with ongoing Fitness and Propriety (F&P) activity.
- Manage team members that are direct reports as well as those that are matrixed, helping develop people in their careers and inspiring them to deliver excellence, supporting day-to-day InfoSec responsibilities.
- Maintain awareness of emerging cybersecurity insurance requirements and prioritize related capability maturity activities within the business.
- Support to ongoing program capability that aligns and supports ISO 27001, SOC2, PCI, SOX404, GDPR, CCPA, and other UK, EU, US, India, and Costa Rica requirements.
- Manage and track progress against enterprise Information Security strategy and program goals.
- Working closely with the CISO, IT Risk and Compliance team and InfoSec Program Office to develop and implement strategies for governance and compliance related to corporate-wide security initiatives, operations, and engineering.
- Advise, educate key stakeholders, executives, and business partners on InfoSec trends and technologies.
- Collaborate with the Enterprise Risk team and other specialists including Privacy and Compliance to help optimize the Information Risk management related standards, tools and processes.
- Coordinate security risk measurements, key indicators, and established metrics across BUs.
- Provide oversight and guidance for periodic internal and customer security assessments to ensure compliance with information security policies and established security controls.
- Ensure continual collaboration between InfoSec and cross-functional IT and wider business teams to ensure security controls have been designed effectively and are working as intended.
- Support the CISO with consolidation and harmonisation of security policies, standards, processes and tools.
Person specification
- 12+ years experience with Information Security preferably in a leadership role with executive and board reporting responsibilities.
- Must have 10+ years experience across common industry security policy areas, including, but not limited to ISO, NIST, COSO, COBIT, PCI, FFIEC, SOX, SSAE16, and others.
- Minimum 7+ years of experience in Information Security with an emphasis on IT audit, IT risk management, and/or IT compliance.
- Ability to translate technical risk and vulnerability data into business risk, and effectively communicate potential impacts to the business.
- Excellent analytical, technical and internal assessment skills.
- Excellent organizational and documentation skills.
- Strong project management skills are highly desired.
- Proven ability to manage priorities & deadlines and to work independently in a highly dynamic and diverse environment with multiple concurrent work streams.
- Strong business sense with an ability to balance 'business value' vs 'security risk'.
- Good communication skills with an ability to build strong narratives to highlight the importance of security to employees internally and customers/shareholders externally, including both technical and non-technical audiences.
- Ability to engage and effectively communicate with Executive Management, Legal, Risk, 3rd-party, and IT teams.
- Ability to develop and document policies, standards, and guidelines.
- Excellent oral and written communication skills.
- Professional certification in information security or compliance (for example, CISSP, CISM, or CISA) required or achievable.
Head of Information Security in London employer: Midland Credit Management
Contact Detail:
Midland Credit Management Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Head of Information Security in London
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the industry. Attend events, webinars, or even local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your expertise! When you get the chance to chat with potential employers, don’t hold back on sharing your knowledge about InfoSec trends and technologies. This not only showcases your skills but also demonstrates your passion for the field.
✨Tip Number 3
Prepare for interviews by diving deep into the company’s InfoSec practices. Understand their challenges and think about how you can contribute to their goals. Tailoring your approach will make you stand out as a candidate who truly gets their needs.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at StudySmarter.
We think you need these skills to ace Head of Information Security in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Head of Information Security role. Highlight your experience in leading InfoSec initiatives and managing compliance with regulations like ISO and GDPR. We want to see how your skills align with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how your background makes you the perfect fit for this role. We love seeing genuine enthusiasm!
Showcase Your Leadership Skills: Since this role involves managing teams and collaborating with various stakeholders, make sure to highlight your leadership experience. Share examples of how you've inspired teams and driven security initiatives in the past.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!
How to prepare for a job interview at Midland Credit Management
✨Know Your Stuff
Make sure you’re well-versed in the key areas of information security mentioned in the job description. Brush up on ISO 27001, GDPR, and other relevant regulations. Being able to discuss these confidently will show that you’re not just familiar with the terms but can also apply them in a real-world context.
✨Showcase Your Leadership Skills
As a Head of Information Security, you’ll need to demonstrate your ability to lead teams and manage projects. Prepare examples from your past experiences where you successfully led a team through a challenging security issue or implemented a new compliance strategy. This will highlight your capability to inspire and guide others.
✨Communicate Effectively
You’ll be interacting with various stakeholders, so practice explaining complex security concepts in simple terms. Think about how you would communicate risks and strategies to both technical and non-technical audiences. This skill is crucial for ensuring everyone understands the importance of security measures.
✨Prepare Questions
Interviews are a two-way street! Prepare insightful questions about the company’s current security challenges, their InfoSec strategy, and how they measure success. This shows your genuine interest in the role and helps you assess if the company aligns with your career goals.