At a Glance
- Tasks: Lead and evolve the cybersecurity strategy for a values-driven non-profit organisation.
- Company: Join a top 100 Employer known for inclusivity and social impact.
- Benefits: Competitive salary, hybrid work, and opportunities for professional growth.
- Why this job: Make a real difference in cybersecurity while shaping a lasting legacy.
- Qualifications: Proven leadership in cyber security with strong stakeholder management skills.
- Other info: Enjoy autonomy in a dynamic environment focused on community impact.
The predicted salary is between 80000 - 84000 Β£ per year.
This is a pivotal leadership role in shaping and strengthening the cybersecurity landscape of a values-driven, non-profit organisation. The organisation is recognised as a top 100 Employer, historically named as one of the most inclusive employers in the UK.
The Head of Information and Cyber Security will design, develop, and coordinate all aspects of the Information Security strategy, encompassing governance and risk management, incident response, and disaster recovery. The Head of Information and Cyber Security will manage a multitude of third-party partnerships from the SOC, to vulnerability management, to patching, and network and firewall operations.
The organisation has made significant strides in recent years, establishing its first dedicated security function and partnering with a managed SOC provider. The next phase is about refinement: enhancing capability, strengthening partnerships, and driving strategy.
The Role
Reporting to the Director of Technology, the Head of Information and Cyber Security will:
- Own and evolve the organisation's security strategy and roadmap, aligned to NIST.
- Oversee a small internal team (2 privacy/GDPR specialists).
- Manage all external 3rd party security contracts/relationships - SOC, vulnerability management, patching, and firewall operations.
- Oversee incident response, risk mitigation, and disaster recovery planning.
- Support delivery of Cyber Essentials Plus accreditation.
- Present cyber and data risks at risk, audit, and board level.
- Champion security awareness and training across the organisation (including phishing simulations and user education).
Experience needed
- Held Senior/Lead positions in Information and Cyber Security.
- Strong grounding in cyber security leadership, risk, and governance, ideally within regulated or complex environments (public, charity, or enterprise).
- Experience managing SOCs or third-party security services.
- Solid understanding of technical principles (firewalls, phishing, vulnerabilities, routing, MFA, etc) - you can challenge, not necessarily configure.
- Knowledge of NIST and experience supporting Cyber Essentials Plus or similar certifications.
- Excellent stakeholder management and communication skills and comfortable presenting to execs, trustees, and end users alike.
- Leadership style that builds trust and collaboration, more about influence than command.
- Strategic mindset with patience for long-term delivery.
Why Join
This is a genuine opportunity to build and lead something lasting. You'll inherit a capable foundation, a clear roadmap, and the autonomy to shape how security evolves, from partnerships and tooling to policy and culture. You'll also play a part in an organisation with a strong social mission, making a real impact on the communities it serves.
Head of Information and Cyber Security employer: Sadler Recruitment
Contact Detail:
Sadler Recruitment Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Head of Information and Cyber Security
β¨Network Like a Pro
Get out there and connect with folks in the cybersecurity field! Attend industry events, webinars, or local meetups. The more people you know, the better your chances of landing that Head of Information and Cyber Security role.
β¨Show Off Your Skills
When you get the chance to chat with potential employers, donβt hold back! Share your experiences managing SOCs and third-party security services. Highlight your strategic mindset and how you've built trust in previous roles.
β¨Tailor Your Approach
Every organisation is different, so make sure you tailor your discussions to their specific needs. Research their current cybersecurity landscape and come prepared with ideas on how you can enhance their strategy and partnerships.
β¨Apply Through Our Website
Donβt forget to apply through our website! Itβs the best way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive about their job search.
We think you need these skills to ace Head of Information and Cyber Security
Some tips for your application π«‘
Tailor Your CV: Make sure your CV reflects the specific skills and experiences that align with the Head of Information and Cyber Security role. Highlight your leadership experience in cybersecurity and any relevant certifications, like NIST or Cyber Essentials Plus.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to tell us why you're passionate about cybersecurity and how your strategic mindset can help shape our security landscape. Donβt forget to mention your experience with third-party partnerships!
Showcase Your Communication Skills: Since this role involves presenting to execs and stakeholders, make sure your application demonstrates your excellent communication skills. Use clear, concise language and provide examples of how you've effectively communicated complex information in the past.
Apply Through Our Website: We encourage you to apply directly through our website for the best chance of being noticed. Itβs the easiest way for us to keep track of your application and ensure it gets into the right hands!
How to prepare for a job interview at Sadler Recruitment
β¨Know Your Cybersecurity Stuff
Make sure you brush up on your knowledge of cybersecurity principles, especially around NIST and Cyber Essentials Plus. Be ready to discuss how you've applied these in previous roles, as well as any challenges you've faced and how you overcame them.
β¨Showcase Your Leadership Style
This role is all about influence and collaboration, so think about examples that highlight your leadership style. Prepare to share stories that demonstrate how you've built trust within teams and managed stakeholders effectively.
β¨Prepare for Technical Questions
Expect some technical questions related to firewalls, phishing, and incident response. While you donβt need to configure systems, being able to challenge and discuss these topics will show your depth of understanding and strategic mindset.
β¨Communicate Clearly and Confidently
Youβll be presenting to execs and trustees, so practice articulating complex cybersecurity concepts in a clear and engaging way. Think about how you can make your points relatable and relevant to non-technical audiences.