Cyber & Information Security Leader (Strategy & Risk)
Cyber & Information Security Leader (Strategy & Risk)

Cyber & Information Security Leader (Strategy & Risk)

Full-Time 60000 - 80000 £ / year (est.) No home office possible
Yeo Valley

At a Glance

  • Tasks: Lead Yeo Valley's Cyber and Information Security strategy to protect our systems and data.
  • Company: Join a proud British company dedicated to making high-quality food sustainably.
  • Benefits: Enjoy competitive holidays, healthcare cashback, and learning opportunities.
  • Why this job: Make a real impact on security while nurturing people and the planet.
  • Qualifications: Experience in cyber security operations and strong knowledge of security standards required.
  • Other info: Be part of a dynamic team with excellent career growth potential.

The predicted salary is between 60000 - 80000 £ per year.

At Yeo Valley, we are about more than just making great food - we are here to Nurture & Nourish People & Planet by Making Great Food the Right Way. Forever. As a co-owned business, we invest in our people, encourage growth, and believe in doing things properly.

To lead Yeo Valley's Cyber and Information Security function - ensuring our systems, data, and people remain secure while enabling the business to operate efficiently and confidently. You'll own and deliver the organisation's cyber and information security strategy, manage the protection and monitoring of our technology estate, and embed a strong culture of security awareness across all teams. Working closely with IT, data, and operational leaders, you'll ensure our defences are robust, risks are managed proactively, and Yeo Valley remains compliant with all relevant standards and regulations.

Your responsibilities:

  • Design, own and lead the Cyber and Information Security strategy, aligning it to Yeo Valley's wider business and IT objectives.
  • Design, implement, and manage security controls, processes, and technologies that protect the confidentiality, integrity, and availability of information assets.
  • Own the Information Security Management System (ISMS), ensuring compliance with relevant frameworks as deemed appropriate.
  • Oversee incident response and threat management, leading investigations and coordinating with IT and external partners to contain, resolve, and learn from security incidents.
  • Maintain proactive awareness of the external threat landscape, staying informed on emerging risks, vulnerabilities, and trends. Translate this intelligence into actionable improvements to strengthen Yeo Valley's defences.
  • Monitor and report on security posture, using metrics and dashboards to inform the business and executive team of risk levels, improvements, and vulnerabilities.
  • Define and own the vulnerability management process, ensuring regular assessments, patching, and remediation of security weaknesses across the estate.
  • Lead supplier assurance and third-party risk management, ensuring external partners meet Yeo Valley's security requirements.
  • Work closely with IT infrastructure and delivery teams to ensure new systems, applications, and solutions are secure by design.
  • Create and embed a culture of security awareness, running training, communications, and engagement programmes to upskill colleagues.
  • Support business continuity and disaster recovery planning, ensuring security requirements are embedded in wider IT resilience activities.
  • Coach and enable the Cyber Security Engineer to contribute to develop the business continuity plan for cyber incidents.

Sounds interesting, what do I need?

Essential:

  • Proven experience in leading or managing information and cyber security operations.
  • Strong knowledge of information security standards, frameworks, and regulations (e.g. ISO27001, NIST, Cyber Essentials Plus, GDPR).
  • Experience developing and implementing security strategies, policies, and controls across hybrid IT environments.
  • Demonstrated ability to manage incidents, risks, and vulnerabilities effectively.
  • Excellent communication and influencing skills, capable of engaging both technical and non-technical stakeholders.
  • Experience managing security suppliers, SOC providers, or MSSPs.

Desirable:

  • Experience in manufacturing, FMCG, or supply chain environments.
  • Hands-on knowledge of modern cloud and on-premises security tooling (Microsoft 365 Defender, Sentinel, Azure, Fortinet, etc.).
  • Security certifications (e.g. CISSP, CISM, CompTIA Security+, ISO27001 Lead Implementer).
  • Understanding of disaster recovery, business continuity, and risk management.

Why should I join the family?

We are independent, British and proud to be making the highest quality yogurts, desserts and ice cream under the Yeo Valley brand and for many of the UK's major retailers. Operating from four dairies and two logistics centres in Somerset and Devon, we employ over 1900 staff and produce more than 25% of the UK's packaged yogurt.

We offer a whole host of benefits including:

  • Competitive holiday allowance
  • Non-contributory pension scheme
  • Life cover
  • Healthcare cash back plan
  • Cycle to work scheme
  • Subsidised Yeo Valley products and services
  • Preferential rates with our partners
  • Learning and development opportunities; we are committed to ensuring all of our employees have the chance to grow

Our closing dates are a guide for when the application window should close, although we may close the advert sooner if we can. So, we recommend you get your application in straight away - and don’t miss the opportunity to join us!

Unfortunately, we are not able to provide employment sponsorship to candidates at this moment in time. Please note that Yeo Valley do not accept speculative agency applications; we will only accept applications from preferred suppliers that have been submitted to us via our recruitment portal at the point of instruction.

Cyber & Information Security Leader (Strategy & Risk) employer: Yeo Valley

At Yeo Valley, we pride ourselves on being an independent, British company that not only produces high-quality dairy products but also nurtures a supportive and growth-oriented work environment. With a strong commitment to employee development, competitive benefits, and a culture that values security and sustainability, we empower our team members to thrive while making a positive impact on people and the planet. Join us in Somerset or Devon, where you can enjoy a fulfilling career in a dynamic industry alongside passionate colleagues.
Yeo Valley

Contact Detail:

Yeo Valley Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber & Information Security Leader (Strategy & Risk)

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching Yeo Valley's values and culture. Show them you’re not just about the skills but also about fitting into their mission of nurturing and nourishing people and the planet.

✨Tip Number 3

Practice your pitch! Be ready to explain how your experience aligns with their needs, especially around cyber security strategies and risk management. Confidence is key, so rehearse until it feels natural.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re serious about joining the Yeo Valley family.

We think you need these skills to ace Cyber & Information Security Leader (Strategy & Risk)

Cyber Security Strategy Development
Information Security Management System (ISMS)
Incident Response Management
Threat Management
Vulnerability Management
Security Awareness Training
Risk Management
Compliance with Information Security Standards (e.g. ISO27001, NIST, GDPR)
Communication Skills
Stakeholder Engagement
Supplier Assurance
Cloud Security Tooling Knowledge (e.g. Microsoft 365 Defender, Azure)
Business Continuity Planning
Disaster Recovery Planning
Security Certifications (e.g. CISSP, CISM)

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in cyber and information security. Use keywords from the job description to show that you understand what Yeo Valley is looking for.

Showcase Your Achievements: Don’t just list your responsibilities; share specific examples of how you've successfully led security initiatives or managed incidents. Numbers and outcomes can really make your application stand out!

Be Clear and Concise: Keep your writing straightforward and to the point. Avoid jargon unless it’s relevant, and ensure your application is easy to read. We want to see your skills without having to sift through fluff!

Apply Through Our Website: Remember to submit your application via our recruitment portal. It’s the best way to ensure it gets seen by the right people. Don’t miss out on this opportunity to join the Yeo Valley family!

How to prepare for a job interview at Yeo Valley

✨Know Your Cyber Security Standards

Familiarise yourself with key information security standards like ISO27001 and GDPR. Be ready to discuss how you've applied these frameworks in your previous roles, as this will show your understanding of compliance and risk management.

✨Showcase Your Strategic Thinking

Prepare to talk about how you would design and implement a cyber security strategy that aligns with Yeo Valley's business objectives. Think about specific examples from your past experiences where you successfully led similar initiatives.

✨Communicate Effectively

Practice explaining complex technical concepts in simple terms. You'll need to engage both technical and non-technical stakeholders, so demonstrating your communication skills during the interview is crucial.

✨Stay Updated on Threats

Research current trends in the cyber threat landscape. Be prepared to discuss recent incidents or vulnerabilities and how they could impact a business like Yeo Valley. This shows your proactive approach to security awareness.

Cyber & Information Security Leader (Strategy & Risk)
Yeo Valley

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>