We’re looking for a Head of Information Security and IT Governance to lead our approach to information security, technology risk, governance and operational resilience, ensuring our organisation remains secure, well controlled and prepared for an evolving digital landscape. This high-impact senior leadership role will be instrumental in protecting our critical business services, customer information and organisational assets. You’ll shape our security and governance strategy, support responsible innovation and ensure our technology environment continues to meet business, Group and regulatory expectations. What you’ll be doing: Provide strategic leadership across information security, technology risk, IT governance and operational resilience, ensuring priorities support the wider goals of the organisation. Develop and maintain effective policies, controls and governance frameworks that protect the business and support compliance with relevant regulatory requirements. Lead our approach to emerging technology risks, including the responsible use of artificial intelligence, automation and other digital capabilities. Oversee technology risks relating to suppliers, partners and externally provided services, ensuring appropriate checks, controls and assurance arrangements are in place. Provide clear advice and challenge to senior leaders, committees and key stakeholders, helping them understand complex risks and make informed business decisions. Lead the organisational response to significant cyber security incidents, technology risks and operational resilience events, ensuring clear communication and effective recovery priorities. Lead, develop and inspire high-performing teams, creating an inclusive and risk-aware culture built on collaboration, accountability and continuous improvement.
What you’ll bring: You’ll be an experienced information security and technology governance leader, with the confidence to advise and influence at senior leadership and board level. You’ll have a strategic and balanced approach, with a passion for protecting the organisation while enabling innovation, transformation and sustainable growth. You’ll be comfortable making decisions in complex situations, providing constructive challenge and translating technical risks into clear business impacts.
Significant senior-level experience within information security, technology governance, risk management or operational resilience, ideally gained within financial services, banking or another regulated environment. Proven experience of developing and embedding security and governance frameworks, policies, standards and controls across complex technology and business environments. Strong knowledge of regulatory requirements relating to information security, operational resilience, data protection and technology risk. Demonstrable experience of leading responses to cyber security incidents, technology risk events or operational resilience challenges. Experience of managing internal and external audits, regulatory reviews and assurance programmes, including the successful oversight of agreed improvements. Strong experience of third-party technology risk management, supplier assurance and the governance of outsourced technology services. Exceptional leadership, communication and influencing skills, with experience of presenting complex security, technology and risk matters to senior leaders, Boards and governance forums.
Why join VWFS UK? You’ll have the opportunity to make a difference by helping us to achieve our mission. Our mission is straight forward; we want to be ‘The Key to Mobility’. That means we make getting from A-to-B as easy and simple for as many people as possible. To truly meet the mobility needs of people in a changing world, our offering goes beyond traditional vehicle financing. We do this by providing a range of finance and aftersales products on Volkswagen Group vehicles, as well as developing innovative mobility products designed to solve real problems and support our customers.
No candidate will meet every single desired qualification. If your experience looks a little different from what we’ve identified and you think you can bring value to the role, we’d love to learn more about you! VWFS is proud to be an inclusive employer and encourages applications from a diverse range of candidates. Diversity, Equity & Inclusion isn’t just a statement for us, we encourage and aspire for all our colleagues to be their 100% self. If you need any reasonable adjustments to assist you with the application and or recruitment processes, please contact our Resourcing Team.
The Head of Information Security & IT Governance is a ‘Certified’ /Senior Manager role under the Senior Manager and Certification Regime (SMCR) and the role holder is required to comply with the FCA’s Conduct Rules. A mandatory requirement of the SMCR is for VWFS to certify that the role holder is fit and proper to perform the duties on an ongoing basis.
Bonus: Discretionary on-target bonus of up to 25% (based on personal and Group company performance) Pension: Employer pension contribution of 9% (based on employee contribution of 3%). VWFS will pay 6% if employee chooses a 2% employee contribution. Car schemes
- Choice of Employee Car Ownership (ECO) scheme
#J-18808-Ljbffr…
