Chief Information Security Officer – CISO

Posted 2 days ago

This is a fully remote position, open to applicants in United Kingdom.

📋 Description

• Develop and implement Testronic’s comprehensive global information security strategy in alignment with business goals, technology initiatives, and risk tolerance.

• Convert security objectives into quantifiable programs, capabilities, and yearly priorities.

• Monitor the security landscape to adjust strategies in response to emerging threats, technological advancements, and regulatory demands.

• Take ownership of the global information security governance framework, policies, and risk management processes.

• Ensure that significant security risks are assigned clear ownership, treatment plans, and proper escalation procedures.

• Oversee the Information Security Management System, fostering a culture of security accountability throughout the organization.

• Provide consistent updates to the Board and senior leadership regarding cyber risks, security posture, incidents, compliance, and resilience.

• Counsel executives on critical security risks and aid in making informed business decisions.

• Articulate complex security issues in straightforward business and financial language.

• Serve as the senior escalation point for major information security incidents.

• Lead or assist in executive-level responses to significant cyber incidents, collaborating with IT, Legal, Privacy, Communications, and business teams.

• Ensure the effective management of incident response exercises, lessons learned, and remediation efforts.

• Supervise security programs that encompass corporate technology, cloud services, applications, products, and third-party entities.

• Provide oversight for security architecture, vulnerabilities, penetration testing, control testing, and independent assurance activities.

• Assess the effectiveness of both internal and outsourced security services, ensuring that key security enhancements are realized.

• Oversee information security requirements that emerge from legislation, regulations, client contracts, and recognized standards.

• Support ISO 27001 and other pertinent certification and assurance initiatives.

• Represent Testronic in significant security discussions with clients, auditors, regulators, insurers, and other external stakeholders.

• Lead, nurture, and develop a proficient global Information Security team.

• Collaborate with IT, Legal, HR, Facilities, Commercial, QA, and other departments to integrate security into business and technology decisions.

• Manage the security budget, strategic suppliers, and major security investments.

• Ensure that security risks are taken into account during acquisitions, outsourcing, and major organizational or technological changes.


⛳️ Requirements

• Extensive senior-level experience in information and cyber security.

• Proven experience in developing and executing an enterprise security strategy.

• Experience advising Boards, executives, or senior governance committees.

• Strong background in enterprise security risk management and governance.

• Experience leading security initiatives across intricate technological environments.

• Proven capability in managing significant cyber security incidents or crisis scenarios.

• Experience in leading and developing multidisciplinary security teams.

• Comprehensive understanding of security governance, architecture, operations, assurance, and operational resilience.

• Knowledgeable in cloud security, infrastructure, identity, application, and product security.

• Familiarity with security frameworks, ISO 27001, and third-party risk management.

• Strong skills in stakeholder engagement, program management, budget oversight, and supplier management.

• Knowledge of relevant UK legal, regulatory, and contractual obligations.

• Possession of CISSP, CISM, CCISO, ISO/IEC 27001 Lead Implementer/Lead Auditor, CRISC, or equivalent qualifications is a plus.


🏝️ Benefits

• Competitive salary and performance-based bonuses.

• Comprehensive health and wellness benefits.

• Opportunities for professional development and continuing education.

• Flexible working arrangements and a supportive work environment.

• Access to cutting-edge technology and resources.

People also viewed

Cloudiax14 hours ago

Information Security, Compliance & IKS Manager – ISO 27001

DE flagGermany OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Cisco16 hours ago

Senior Manager, Security Channel – Market Growth, Splunk

US flagTexas OnlyFull-timeCybersecurity / Security Engineer$169.3k – $237.2k/year
ApplyView job
Cisco1 day ago

Senior Manager, Security Channel – Market Growth, Splunk

US flagArizona, +10 more statesFull-timeCybersecurity / Security Engineer$169.3k – $237.2k/year
ApplyView job
Skylight1 day ago

Senior Product Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$200k – $250k/year
ApplyView job
Sony Interactive Entertainment1 day ago

Senior Security AI Risk Analyst

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$167.5k – $251.3k/year
ApplyView job
Squads1 day ago

Security Engineer

North AmericaFull-timeCybersecurity / Security Engineer$175k – $220k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers