FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in developing and implementing enterprise security strategies, managing cyber security incidents, and leading multidisciplinary security teams. Proficient in security governance, risk management, and compliance with relevant legal and regulatory requirements.
Highest-signal resume keywords
Enterprise Security Strategy DevelopmentCyber Security Incident ManagementSecurity Governance and Risk ManagementStakeholder and Supplier ManagementISO 27001 Compliance
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Information Security ManagementSecurity ArchitectureRisk ManagementPenetration TestingVulnerability AssessmentSecurity FrameworksOperational ResilienceCloud SecurityApplication SecurityIdentity Security
Soft Skills
Stakeholder ManagementCommunication SkillsLeadershipTeam DevelopmentCrisis Management
Certifications & Qualifications
CISSPCISMCCISOISO/IEC 27001 Lead ImplementerISO/IEC 27001 Lead AuditorCRISC
Industry Keywords
Cyber SecurityInformation SecurityGovernance FrameworkRegulatory ComplianceThird-Party RiskSecurity PostureIncident ResponseSecurity AccountabilitySecurity ProgrammesSecurity Landscape
Tech Stack
Tools & technologiesCloudCyber Security
About the role
Key responsibilities & impact- Develop and deliver Testronic’s global information security strategy aligned with business objectives, technology plans and risk appetite
- Translate security objectives into measurable programmes, capabilities and annual priorities
- Monitor the security landscape and adapt strategy to emerging threats, technology and regulatory requirements
- Own the global information security governance framework, policies and risk management processes
- Ensure material security risks have clear ownership, treatment plans and appropriate escalation
- Oversee the Information Security Management System and promote security accountability across the organisation
- Provide regular reporting to the Board and senior leadership on cyber risk, security posture, incidents, compliance and resilience
- Advise executives on significant security risks and support informed business decisions
- Communicate complex security topics in clear business and financial terms
- Act as senior escalation point for significant information security incidents
- Lead or support executive-level response to major cyber incidents with IT, Legal, Privacy, Communications and business teams
- Ensure incident response exercises, lessons learned and remediation activities are effectively managed
- Oversee security programmes covering corporate technology, cloud, applications, products and third parties
- Provide oversight of security architecture, vulnerabilities, penetration testing, control testing and independent assurance
- Monitor the effectiveness of internal and outsourced security services and ensure key security improvements are delivered
- Oversee information security requirements arising from legislation, regulations, customer contracts and recognised standards
- Support ISO 27001 and other relevant certification and assurance programmes
- Represent Testronic in significant security matters involving clients, auditors, regulators, insurers and other external stakeholders
- Lead, develop and build a capable global Information Security function
- Work with IT, Legal, HR, Facilities, Commercial, QA and other departments to embed security into business and technology decisions
- Manage the security budget, strategic suppliers and major security investments
- Ensure security risks are considered in acquisitions, outsourcing and major organisational or technology changes
Requirements
What you’ll need- Significant senior-level experience in information and cyber security
- Experience developing and implementing an enterprise security strategy
- Experience advising Boards, executives or senior governance committees
- Strong experience in enterprise security risk management and governance
- Experience leading security programmes across complex technology environments
- Experience managing significant cyber security incidents or crisis situations
- Experience leading and developing multidisciplinary security teams
- Strong understanding of security governance, architecture, operations, assurance and operational resilience
- Knowledge of cloud, infrastructure, identity, application and product security
- Experience with security frameworks, ISO 27001 and third-party risk
- Strong stakeholder, programme, budget and supplier management skills
- Knowledge of relevant UK legal, regulatory and contractual requirements
- CISSP, CISM, CCISO, ISO/IEC 27001 Lead Implementer/Lead Auditor, CRISC or equivalent qualifications are good to have
