Head of Information and Cyber Security

Company: Enfield Council
Apply for the Head of Information and Cyber Security
Location: Greater London
Job Description:

We are seeking a Head of Information and Cyber Security to lead our organisation‑wide approach to protecting the Council and the people we serve. This is a senior, high impact leadership role for a professional who can combine technical authority with strategic influence, partnership working, and confident decision‑making at the highest levels.

Applications must clearly evidence your own experience, judgement and decision making. Applications that rely on generic or unverifiable content are unlikely to progress. This role requires a regular on‑site presence to provide visible leadership, engage with senior stakeholders, and lead during incidents.

About the role

This is a strategic leadership role. While you will bring strong technical credibility, hands‑on configuration or operational delivery are not the focus of this post.

Responsibilities

  • Lead the development, implementation and continuous improvement of the Council’s cyber security framework, aligned to our Digital, Data and AI Strategy.
  • Provide clear, evidence‑based advice and guidance to senior leaders, Members, and corporate boards, representing Digital Services at Audit Committee, Assurance Board, Overview & Scrutiny and Cabinet.
  • Shape and drive innovative approaches to information and cyber security, ensuring our systems, services and solutions are secure by design.
  • Manage and inspire a multidisciplinary in‑house team and ensure effective oversight of key suppliers and partners.
  • Oversee the Council’s readiness for cyber incidents and personally lead the response to major technical security events, working closely with bodies such as the NCSC, LOTI and regional cyber‑resilience networks.
  • Ensure cyber security is embedded into business continuity, risk management, procurement, and major change programmes.
  • Drive measurable organisational awareness and culture change, promoting secure behaviours across a diverse workforce.
  • Maintain compliance with major frameworks and standards including PSN, PCIDSS, DPA, GDPR and ISO27001.
  • Manage budgets, contribute to business cases and ensure value for money in all activity.

About you

  • Experience of working in an environment with high public accountability, political scrutiny, legacy and modern technology estates, constrained budgets, and live service risk, delivering at pace while ensuring security and resilience.
  • Personally led complex cyber incidents through decision‑making, stakeholder communication, regulatory engagement, and recovery.

Qualifications

  • At least one of the following (or an equivalent qualification we can independently verify):
    • CISSP
    • CISM
    • CRISC

Leadership & behavioural qualities

  • Takes responsibility with a positive, problem‑solving mindset.
  • Acts with openness, honesty and respect.
  • Listens actively, reflects and adapts.
  • Works collaboratively across boundaries to find solutions.

Other requirements

  • This role requires a minimum of two days per week on‑site in Enfield, with additional attendance during major incidents, key meetings, or periods of heightened risk.

We welcome applications from candidates of all backgrounds and encourage applications from under‑represented groups. We are a Disability Confident employer.

#J-18808-Ljbffr…

Posted: April 18th, 2026