Information Security Awareness Lead in London

Information Security Awareness Lead in London

London Full-Time 53543 - 65441 £ / year (est.) Home office (partial)
U

At a Glance

  • Tasks: Lead and manage Uniphar's security awareness programme to reduce cyber risks.
  • Company: Join a forward-thinking company dedicated to cybersecurity and employee engagement.
  • Benefits: Competitive salary, flexible working options, and opportunities for professional growth.
  • Other info: Collaborative culture with a focus on continuous improvement and innovation.
  • Why this job: Make a real difference in cybersecurity while developing your skills in a dynamic environment.
  • Qualifications: 5+ years in IT or Information Security with strong communication skills.

The predicted salary is between 53543 - 65441 £ per year.

Locations: Citywest, Dublin, Ireland or Stockley Park, Uxbridge, UK

The Information Security Awareness Lead will own and drive Uniphar’s security awareness programme, helping reduce human-related cyber risk through engaging training, phishing simulations, communications campaigns, and behavioural testing. The role will work with Information Security, IT, HR, Communications, and business teams to deliver effective awareness initiatives, track programme performance, and continuously improve security behaviours across all regions and divisions.

Key Responsibilities:

  • Security Awareness Programme Management
    • Manage all aspects of the organisation’s security awareness training programme, including mandatory quarterly training for all employees.
    • Own the security awareness roadmap and annual campaign calendar, ensuring coverage of key risks and regulatory expectations.
    • Ensure awareness programme coverage across divisional and regional locations, including coordination of local delivery and site visits.
    • Manage and administer the Proofpoint Security Awareness Platform, including training modules, phishing simulations, reporting and metrics.
    • Work with HRIS teams to deliver quarterly and ad-hoc security training through Workday.
    • Respond to and manage reported phishing emails via PhishAlarm, ensuring appropriate handling and feedback to users.
    • Deliver monthly security awareness induction training for all new starters.
    • Run regular awareness webinars, lunch-and-learn sessions, and other in-person and virtual briefings.
    • Select, deploy, and deliver role-specific training for specialist job functions such as IT, Finance, HR, and other high-risk roles.
    • Run role-specific awareness sessions, highlighting risks and attack scenarios relevant to specific job functions.
    • Propose, design, and implement novel awareness initiatives (e.g. competitions, quizzes, games) to improve engagement and effectiveness.
  • Phishing & Human Risk Testing
    • Own and manage the phishing testing programme, including regular phishing simulations, analysis of results and trends, and targeted follow-up training for repeat failures.
    • Escalate risky user behaviour and repeat failures to line management in line with agreed processes.
    • Work with SecOps and Incident Response teams to incorporate real-world attack patterns into testing and training.
    • Set up and manage restrictions on access to Uniphar resources for persistent failures.
  • Physical & Behavioural Security Audits
    • Conduct physical USB testing (e.g. trojan USB drops) to assess user behaviour.
    • Perform clean desk audits across office locations.
    • Conduct unattended workstation locking audits and report findings.
    • Use audit outcomes to inform targeted awareness campaigns and improvements.
  • Awareness Communications & Campaigns
    • Manage the Cybersecurity Intranet site, publishing regular security awareness updates and guidance.
    • Design, procure, and distribute physical and digital awareness media, including posters, stickers, and digital signage.
    • Deliver regular themed security awareness campaigns across all channels (physical media, desktop messaging, training modules).
    • Lead the organisation’s October Security Awareness Month, including campaign planning, training, quizzes, games, and surveys.
    • Engagement reporting.
  • Metrics, KPIs & Continuous Improvement
    • Produce regular metrics and reporting on training completion rates, programme reach, phishing simulation results, engagement, and effectiveness.
    • Meet and report against defined KPIs for programme effectiveness.
    • Conduct user surveys to gather feedback and measure awareness maturity.
    • Incorporate survey results, metrics, and incident data into continuous programme improvements.
  • Collaboration & Stakeholder Engagement
    • Work closely with IT and SecOps to maximise delivery of security awareness messaging to end users, including system notifications, pop-ups and warnings, desktop backgrounds, and banners.
    • Coordinate with divisional IT and communications teams to localise awareness delivery.
    • Carry out divisional and regional site visits to distribute materials and deliver local workshops.

Skills & Experience

  • Minimum of 5 years’ experience in IT, Information Security, learning development or related role.
  • Proven experience delivering security awareness, training, or behavioural risk programmes.
  • Strong understanding of phishing, social engineering, and human-centric cyber risks.
  • Experience managing awareness platforms and learning delivery tools.
  • Strong communication and presentation skills.
  • Ability to engage effectively with both technical and non-technical audiences.

Please note that Uniphar is an equal-opportunity employer; we do not discriminate and welcome all responses.

Information Security Awareness Lead in London employer: Unipharmedtech

Uniphar Medtech is an exceptional employer, offering a dynamic work culture that fosters innovation and collaboration in the heart of Macclesfield. With a strong focus on employee growth, we provide ample opportunities for professional development and career advancement, ensuring our team members thrive in their roles. Our commitment to meaningful work and impactful partnerships makes us a rewarding place to build your career in the MedTech industry.

U

Contact Details:

Unipharmedtech Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Information Security Awareness Lead in London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Unipharmedtech, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Unipharmedtech

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Unipharmedtech. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Information Security Awareness Lead in London

Security Awareness Programme Management
Phishing Simulations
Behavioural Testing
Training Delivery
Communication Skills
Stakeholder Engagement
Metrics and Reporting

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Unipharmedtech insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Unipharmedtech that you’re committed to staying ahead in the game.

How to prepare for a job interview at Unipharmedtech

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Unipharmedtech to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Unipharmedtech.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.