Overview
In this role you will act as the senior security leader for a major client account, shaping governance and strategic security across delivery. You will partner with client security, risk, compliance, and leadership to align security with business objectives and contractual requirements. You’ll provide executive security guidance, challenge practices, and drive resilience and continual improvement. This is a high-impact, governance-focused position that combines architecture oversight with risk-led decision making to protect the account and client interests.
Pay / Benefits
- flexible work options
- tailored benefits
- learning and development opportunities
Responsibilities
- Act as the senior security representative for the account and primary point of contact for strategic security matters
- Build trusted relationships with client security, technology, risk, compliance, audit and business stakeholders
- Provide strategic security advice to client executives and delivery teams
- Represent security interests in governance, service reviews and transformation forums
- Influence senior stakeholders to support risk-based decision making
- Promote a positive security culture across the account and delivery organization
- Own and continually improve the Account Security Management Plan and governance arrangements
- Ensure security risks are identified, assessed, communicated and managed
- Oversee security posture, control effectiveness and remediation activities
- Support internal and external audits and client assurance activities
- Drive remediation of security risks and audit findings to completion
- Provide meaningful security reporting and management information to stakeholders
- Provide independent security challenge to proposed solutions and architecture decisions
- Maintain security architecture oversight across the account and review significant architectural changes
- Ensure security-by-design is embedded throughout service lifecycle
- Collaborate with client and delivery teams to align security principles with roadmaps and future-state planning
- Maintain awareness of emerging threats and industry practices to keep security architecture effective
Key requirements
- 7+ years in senior information security leadership (CISO or vCISO)
- Experience leading governance, risk management and assurance programs in large, regulated environments
- Proven ability to influence senior stakeholders and drive security outcomes without direct authority
- Experience in enterprise security architecture and security-by-design principles
- Experience managing audit engagements and remediation activities
- Knowledge of regulatory, contractual and compliance requirements and third-party risk management
- Qualified in CISSP, CISM, CRISC, CCISO or equivalent (or UK Cyber Security Council accreditation)
- Experience in outsourced or multi-supplier delivery environments
- strong stakeholder management and negotiation
- excellent communication and influencing abilities
- ability to translate complex security issues into business outcomes
- security governance, risk management and assurance
- security architecture and design authority
- security-by-design across technology and change initiatives
…
