Now hiring

Head of Information Security @ Endeavour Recruitment

Wood Street 195, LondonOnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

Salary: £115,000 - 125,000 per year

Requirements: Significant professional experience in information or cyber security, including a strong foundation in hands-on technical roles.Proven experience securing enterprise network and infrastructure environments.Good knowledge of cloud security, particularly Microsoft Azure and Microsoft 365; Google Enterprise experience is advantageous.Strong understanding of identity and access management, authentication, privileged access and access-control principles.Experience in vulnerability management, security monitoring and incident response, including coordinating significant incidents.A track record of developing or improving security policies, technical standards and operational controls.Experience assessing technical security risks and translating findings into practical business decisions.Ability to communicate security risks and recommendations effectively to senior stakeholders and non-technical audiences.Working knowledge of recognised security frameworks, such as the NIST Cybersecurity Framework, CIS Controls and ISO/IEC 27001.Working knowledge across several areas including network security; infrastructure and endpoint security; cloud and SaaS security; identity and access management; security monitoring; vulnerability management; and security architecture.International or multi-site organisation experience is desirable.Experience in a business where intellectual property, data protection and information security are particularly important is desirable.A recognised information or cyber security certification is desirable but not essential.Technically credible, curious and comfortable investigating complex systems and security challenges.Pragmatic, commercially aware and able to balance security requirements with cost, usability and operational needs.Confident influencing stakeholders and technical teams without direct management authority, and able to challenge established practices constructively.Effective communicator with technical specialists and senior business leaders; calm, methodical and decisive when managing incidents.Self-sufficient and proactive while working collaboratively with the wider technology function.Applicants should confirm their legal right to work in the UK, including visa expiry details where applicable, and provide salary expectations, notice period and availability to start. Responsibilities: Develop and maintain our information and cyber security strategy, including a prioritised roadmap and investment plan.Establish and maintain security policies, standards and technical baselines aligned with recognised industry practices.Review the security of enterprise networks, infrastructure, cloud services, endpoints, applications and identity platforms.Work with technical teams to identify security gaps, agree remediation plans and monitor progress.Provide security architecture guidance for new systems, technology projects, cloud services and infrastructure changes.Drive improvements in identity and access management, including authentication, multi-factor authentication and privileged access.Lead vulnerability management activities, prioritising remediation according to risk and potential business impact.Establish effective security monitoring, threat detection and incident response arrangements.Coordinate responses to significant security incidents using a calm, structured and effective approach.Assess third-party and supplier security risks and ensure security requirements are considered during procurement.Provide senior management with clear reporting on security risks, priorities and recommended actions.Support audit, insurance, customer and regulatory requirements.Promote security awareness and encourage practical, effective security practices throughout our organisation. Technologies: AzureCloudSupportMicrosoft 365NetworkSecurityOffice 365Embedded More:

We are recruiting on behalf of an established international organisation with a complex technology environment and a strong focus on protecting its systems, data and intellectual property. This is a senior individual-contributor role reporting to our senior technology leadership team; it does not include responsibility for managing a dedicated security team. The successful candidate will work closely with infrastructure, technology and external service provider teams, providing technical expertise and influencing security priorities across the business. The role is based in Central London with a hybrid arrangement requiring two days onsite per week. Working hours are Monday to Friday, 9:00am–5:00pm, the salary is up to £125,000 per annum depending on experience, and the start date is as soon as possible. We review applications against the essential technical requirements and relevant experience.

last updated 41 week of 2026

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores