
Chief Information Security Officer – CISO
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in United Kingdom.
• Develop and implement Testronic’s comprehensive global information security strategy in alignment with business goals, technology initiatives, and risk tolerance.
• Convert security objectives into quantifiable programs, capabilities, and yearly priorities.
• Monitor the security landscape to adjust strategies in response to emerging threats, technological advancements, and regulatory demands.
• Take ownership of the global information security governance framework, policies, and risk management processes.
• Ensure that significant security risks are assigned clear ownership, treatment plans, and proper escalation procedures.
• Oversee the Information Security Management System, fostering a culture of security accountability throughout the organization.
• Provide consistent updates to the Board and senior leadership regarding cyber risks, security posture, incidents, compliance, and resilience.
• Counsel executives on critical security risks and aid in making informed business decisions.
• Articulate complex security issues in straightforward business and financial language.
• Serve as the senior escalation point for major information security incidents.
• Lead or assist in executive-level responses to significant cyber incidents, collaborating with IT, Legal, Privacy, Communications, and business teams.
• Ensure the effective management of incident response exercises, lessons learned, and remediation efforts.
• Supervise security programs that encompass corporate technology, cloud services, applications, products, and third-party entities.
• Provide oversight for security architecture, vulnerabilities, penetration testing, control testing, and independent assurance activities.
• Assess the effectiveness of both internal and outsourced security services, ensuring that key security enhancements are realized.
• Oversee information security requirements that emerge from legislation, regulations, client contracts, and recognized standards.
• Support ISO 27001 and other pertinent certification and assurance initiatives.
• Represent Testronic in significant security discussions with clients, auditors, regulators, insurers, and other external stakeholders.
• Lead, nurture, and develop a proficient global Information Security team.
• Collaborate with IT, Legal, HR, Facilities, Commercial, QA, and other departments to integrate security into business and technology decisions.
• Manage the security budget, strategic suppliers, and major security investments.
• Ensure that security risks are taken into account during acquisitions, outsourcing, and major organizational or technological changes.
• Extensive senior-level experience in information and cyber security.
• Proven experience in developing and executing an enterprise security strategy.
• Experience advising Boards, executives, or senior governance committees.
• Strong background in enterprise security risk management and governance.
• Experience leading security initiatives across intricate technological environments.
• Proven capability in managing significant cyber security incidents or crisis scenarios.
• Experience in leading and developing multidisciplinary security teams.
• Comprehensive understanding of security governance, architecture, operations, assurance, and operational resilience.
• Knowledgeable in cloud security, infrastructure, identity, application, and product security.
• Familiarity with security frameworks, ISO 27001, and third-party risk management.
• Strong skills in stakeholder engagement, program management, budget oversight, and supplier management.
• Knowledge of relevant UK legal, regulatory, and contractual obligations.
• Possession of CISSP, CISM, CCISO, ISO/IEC 27001 Lead Implementer/Lead Auditor, CRISC, or equivalent qualifications is a plus.
• Competitive salary and performance-based bonuses.
• Comprehensive health and wellness benefits.
• Opportunities for professional development and continuing education.
• Flexible working arrangements and a supportive work environment.
• Access to cutting-edge technology and resources.
Cloudiax
Cisco
Cisco
Skylight
Get handpicked remote jobs straight to your inbox weekly.