At a Glance
- Tasks: Lead and develop the organisation's information security and IT risk strategy.
- Company: Dynamic financial services organisation focused on robust security and technology risk governance.
- Benefits: Hybrid work model, competitive salary, and opportunities for professional growth.
- Other info: Collaborate with senior stakeholders and manage high-performing teams.
- Why this job: Shape the future of information security in a leading financial institution.
- Qualifications: Extensive experience in information security and IT risk leadership roles.
The predicted salary is between 72000 - 108000 £ per year.
I am currently supporting a financial services organisation in the search for a Head of Information Security & IT Risk to lead and develop their security and technology risk capability. This is a senior leadership role responsible for shaping and delivering the organisation's information security strategy, ensuring robust protection of systems, data, and operations while embedding strong technology risk governance across the business.
You will work closely with senior stakeholders across technology, risk, and the wider business, providing strategic oversight of cyber security, operational resilience, and IT risk management.
Key Responsibilities- Define and deliver the organisation's information security and IT risk strategy
- Lead and develop a team of information security and technology risk specialists
- Oversee cyber security operations, including security tooling, incident response, and vulnerability management
- Maintain and manage the IT risk framework and risk register
- Ensure alignment with regulatory requirements and industry frameworks (e.g. ISO 27001, NIST, DORA)
- Partner with senior leadership to embed security and risk awareness across the organisation
- Provide regular reporting to executive stakeholders on security posture and technology risk
- Significant experience in information security, cyber security, or IT risk leadership roles
- Experience working within financial services or other regulated industries
- Strong understanding of cyber security frameworks, technology risk management, and operational resilience
- Experience leading security strategy, governance, and security operations
- Proven ability to engage and influence senior stakeholders across technology and risk functions
- Leadership experience managing high-performing security or technology risk teams
Location: Hybrid - 2 days a week
Level: Senior leadership role reporting into the CIO with close engagement across Risk leadership.
Head of Information Security & IT Risk employer: Morson Edge
Contact Detail:
Morson Edge Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Head of Information Security & IT Risk
✨Tip Number 1
Network like a pro! Reach out to your connections in the financial services sector and let them know you're on the hunt for a Head of Information Security & IT Risk role. You never know who might have the inside scoop on an opportunity or can put in a good word for you.
✨Tip Number 2
Showcase your expertise! When you get the chance to chat with potential employers, be ready to discuss your experience with cyber security frameworks and risk management. Bring examples of how you've shaped security strategies in the past – it’ll make you stand out!
✨Tip Number 3
Don’t underestimate the power of follow-ups! After interviews or networking events, drop a quick thank-you email to express your appreciation and reiterate your interest in the role. It keeps you fresh in their minds and shows your enthusiasm.
✨Tip Number 4
Apply through our website! We’ve got some fantastic opportunities waiting for you, and applying directly can sometimes give you a leg up. Plus, it’s a great way to show your commitment to joining our team!
We think you need these skills to ace Head of Information Security & IT Risk
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the job description. Highlight your experience in information security and IT risk, especially in financial services. We want to see how your skills align with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're the perfect fit for the Head of Information Security & IT Risk role. Share specific examples of your leadership in cyber security and how you've influenced stakeholders.
Showcase Your Achievements: Don’t just list your responsibilities; showcase your achievements! Quantify your successes in previous roles, like improving security posture or leading successful incident responses. We love numbers that tell a story!
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of your application and ensures you don’t miss any important updates. Plus, it shows you’re keen on joining our team!
How to prepare for a job interview at Morson Edge
✨Know Your Stuff
Make sure you’re well-versed in the latest information security frameworks like ISO 27001 and NIST. Brush up on your knowledge of cyber security operations, incident response, and vulnerability management. This will not only show your expertise but also demonstrate your commitment to staying current in the field.
✨Showcase Your Leadership Skills
As a senior leadership role, it’s crucial to highlight your experience in managing high-performing teams. Prepare examples of how you've led teams in the past, particularly in developing security strategies or overseeing technology risk governance. Be ready to discuss how you’ve influenced senior stakeholders and fostered a culture of security awareness.
✨Understand the Business Context
Familiarise yourself with the financial services sector and its regulatory requirements. Be prepared to discuss how your previous experiences align with the specific challenges faced by organisations in this industry. This will help you articulate how you can shape and deliver an effective information security strategy tailored to their needs.
✨Prepare for Strategic Discussions
Expect to engage in conversations about aligning security initiatives with business objectives. Think about how you would report on security posture and technology risk to executive stakeholders. Practise articulating your vision for embedding strong technology risk governance across the organisation, as this will be key to your success in the interview.