At a Glance
- Tasks: Lead global information security strategies and manage incident responses.
- Company: Join a top entertainment company with a strong presence across Europe.
- Benefits: Enjoy a competitive salary, car allowance, and exceptional bonus potential.
- Why this job: Be part of a dynamic team shaping security in a fast-paced industry.
- Qualifications: Senior-level experience in information security, preferably in customer-facing sectors.
- Other info: Work 4 days in the office and enjoy a modern workspace.
The predicted salary is between 88000 - 96000 £ per year.
Group Head of Information Security – £110-120K + exceptional package & bonus One of the UK and Europe’s leading entertainment companies are hiring a Group Head of Information Security. This company are a household name in the UK and across the continent with 208 facilities across 8 European countries, including an market leading footprint and global HQ in London. The Group Head of Information Security will design and implement robust, global information security solutions to protect our people, customers, systems and data. You will have overall responsibility for creating, refining, and embedding information security policies and processes and providing support, education and security training to the wider business. Key Accountabilities Strategic Security Management Develop and maintain the company’s overarching security strategy, encompassing cyber security, data protection, and privacy standards Drive the implementation or ongoing improvement of key security initiatives, with an in-depth technical knowledge of digital, infrastructure and cloud-based security frameworks Develop and embed best practices for identity and access management, particularly in adapting security strategies to cloud architectures Create and manage security baselines and enforce secure network designs and firewall management across all territories Collaborate with all territories’ technology teams to ensure secure system and network architectures and establish risk management protocols, including TS risk maps and registers for each territory Incident Management & Response Oversee and refine incident response capabilities to manage security breaches and crisis’ effectively, limiting operational impacts and guiding the return to a normalised service Act as the escalation point for cyber incidents, perform root cause analysis, and implement corrective actions to mitigate recurrence Policy Compliance & Risk Management Develop and maintain information and cyber security policies and procedures, ensuring compliance with industry standards and regulations such as NIST CSF Support our data privacy policies and wider requirements inclusive of data loss prevention (DLP) measures, cryptographic controls, and the secure handling of sensitive information Lead and manage external and internal security audits and technical assessments, including top-down control framework assessments and bottom-up technical testing Engage and inform senior leaders and stakeholders on security posture and data protection strategies, providing informed recommendations that safeguard company data, systems and services Collaborate with the legal, data protection and internal audit teams to ensure an aligned and comprehensive approach to data privacy and cyber security Manage relationships with outsourced SIEM, SOC, and SECOPS providers to optimise security operations and ensure robust vulnerability management Technical Knowledge & Experience Senior-level experience in information and cyber security, with proven accountability in a fast paced, multi-territory and multi-site environment Experience in a customer-facing industry such as retail, leisure or hospitality is preferred Proficient in technical controls, SOC workflows, and SIEM systems, with experience managing outsourced security operations and technology partners Strong foundation in security engineering and protocols, network security and compliance frameworks such as ISO27001, GDPR, PCI-DSS, and NIST standards Technical expertise with identity products, data security controls, detect & response capabilities, vulnerability scanners and next-gen EDR tools Experience creating security awareness programs and influencing a security-by-design approach across departments Experience building or expanding a cyber security function within a complex, international organisation is desired Background in managing security within cloud-based environments, including Azure and GCP is This wonderful opportunity is based in West London and offer a basic salary up to £120K + package, car allowance and exceptional bonus potential. The role requires 4 days a week in the London office with Fridays from home. The offices are exceptional and what you would expect from a leading entertainment group.
Director of Information Security employer: Ventula Consulting LTd
Contact Detail:
Ventula Consulting LTd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Director of Information Security
✨Tip Number 1
Familiarize yourself with the latest trends and technologies in information security, especially those relevant to the entertainment industry. This will not only help you understand the challenges faced by the company but also demonstrate your proactive approach during discussions.
✨Tip Number 2
Network with professionals in the information security field, particularly those who have experience in multi-territory environments. Engaging with industry peers can provide valuable insights and potentially lead to referrals.
✨Tip Number 3
Prepare to discuss specific examples of how you've successfully implemented security strategies in previous roles. Highlight your experience with cloud security, as this is a key focus for the position.
✨Tip Number 4
Showcase your ability to communicate complex security concepts to non-technical stakeholders. This skill is crucial for the role, as you'll need to engage with senior leaders and ensure alignment across departments.
We think you need these skills to ace Director of Information Security
Some tips for your application 🫡
Understand the Role: Take the time to thoroughly understand the responsibilities and requirements of the Group Head of Information Security position. Tailor your application to highlight your relevant experience in strategic security management, incident response, and policy compliance.
Highlight Technical Expertise: Emphasize your senior-level experience in information and cyber security, particularly in customer-facing industries. Be specific about your proficiency with security frameworks like ISO27001, GDPR, and NIST standards, as well as your experience with cloud-based environments.
Showcase Leadership Skills: Demonstrate your ability to lead and manage security initiatives across multiple territories. Include examples of how you've influenced a security-by-design approach and engaged with senior leaders on security posture and data protection strategies.
Craft a Compelling Cover Letter: Write a cover letter that not only summarizes your qualifications but also conveys your passion for information security and your vision for the role. Make sure to connect your past experiences with the key accountabilities outlined in the job description.
How to prepare for a job interview at Ventula Consulting LTd
✨Showcase Your Strategic Vision
As a Group Head of Information Security, it's crucial to demonstrate your ability to develop and maintain a comprehensive security strategy. Be prepared to discuss your past experiences in creating security frameworks and how you would adapt them to the company's needs.
✨Highlight Technical Expertise
Make sure to emphasize your technical knowledge in areas like cloud security, identity management, and compliance frameworks. Discuss specific tools and methodologies you've used in previous roles, especially those relevant to the entertainment industry.
✨Demonstrate Incident Management Skills
Prepare to share examples of how you've handled security incidents in the past. Discuss your approach to root cause analysis and the steps you took to mitigate future risks, showcasing your ability to lead during crises.
✨Engage with Stakeholders
Since this role involves collaboration with various teams, be ready to talk about how you've effectively communicated security policies and engaged senior leaders in previous positions. Highlight your experience in fostering a culture of security awareness across departments.