- Company Name
- Checkatrade
- Job Title
- Head of Information Security
- Job Description
-
Job title: Head of Information Security
Role Summary: Senior executive responsible for developing, implementing, and maintaining the organization's cybersecurity strategy, governance, risk management, and compliance framework. Leads a high‑performing security team, collaborates with business stakeholders, and ensures robust defenses against evolving threats.
Exapctations:
- Establish and execute a comprehensive cybersecurity strategy aligned with business objectives.
- Lead, mentor, and expand an effective cybersecurity team.
- Maintain industry‑standard security frameworks (ISO 27001, NIST, SOC 2).
- Manage security risk, audits, and certifications.
- Balance security requirements with operational efficiency.
Key Responsibilities:
- Define and drive the organization’s cybersecurity vision and roadmap.
- Oversee incident response, threat intelligence, and vulnerability management.
- Build, implement, and maintain security policies, procedures, and controls.
- Coordinate internal and external security audits and achieve certifications.
- Collaborate with IT, product, legal, and executive leadership to integrate security into product and service development.
- Provide regular security status reports and risk assessments to senior management.
- Foster a culture of security awareness and continuous improvement across all teams.
Required Skills:
- Proven senior cybersecurity leadership experience, ideally in a high‑growth or fast‑paced environment.
- In‑depth technical knowledge of network, cloud, endpoint protection, IAM, and incident response.
- Strong understanding of security tools and platforms.
- Leadership and people‑management capabilities with a track record of building high‑performing teams.
- Excellent communication, stakeholder engagement, and cross‑functional collaboration.
- Strategic thinking and business‑oriented risk decision‑making.
- Expertise in cybersecurity frameworks including ISO 27001, NIST, SOC 2 and audit management.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field (Master’s preferred).
- Professional certifications (CISSP, CISM, CISA, ISO 27001 Lead Auditor, etc.) highly desirable.