Interim Chief Information Security Officer (CISO)
Duration: 6 Months (Interim)
Overview
Our client, a leading UK consumer and digital business, is seeking an experienced Interim Chief Information Security Officer (CISO). Reporting directly to the CIO, you will take ownership of the organisation’s cyber security function, maintaining momentum across an established security programme while providing assurance to the Executive Committee and Board.
This is a highly visible leadership role requiring an individual who can combine strategic thinking, technical credibility and exceptional stakeholder management.
Key Responsibilities
- Lead the enterprise cyber security function, ensuring continuity across all security operations and programmes.
- Act as the senior security adviser to the CIO, Executive Committee and Board.
- Present regular updates to Board and Audit Committees, communicating cyber risk, security posture and programme progress in clear business terms.
- Continue delivery of the organisation’s cyber security improvement roadmap and maturity programme.
- Oversee Security Operations, incident response, vulnerability management and SOC activities, including the transition to a new Security Operations Centre provider.
- Ensure compliance with regulatory frameworks including PCI DSS, GDPR and emerging regulations such as NIS2 and AI governance requirements.
- Lead audit readiness and remediation across multiple concurrent IT and security audits.
- Work closely with Legal, Procurement, Data, Technology and Supply Chain teams to embed security across the business.
- Provide leadership and direction to an established security team, supporting performance improvement and continuous development.
- Drive security awareness and help foster a positive security culture across the organisation.
Experience Required
- Previous experience as a Chief Information Security Officer (CISO), Deputy CISO or Head of Information Security within a PLC.
- Proven track record delivering enterprise cyber security transformation and security maturity improvements.
- Strong Board, Executive Committee and Audit Committee engagement experience.
- Deep understanding of cyber security operations, incident response and enterprise risk management.
- Experience leading security governance, regulatory compliance and audit programmes.
- Ability to influence senior stakeholders across technology and business functions.
- Experience leading and developing high-performing security teams.
- Exposure to Operational Technology (OT) security and third-party cyber risk is advantageous.
- Background within large digital, retail, hospitality or consumer-facing organisations is highly desirable.
Key Skills
- Cyber Security Strategy
- Security Operations
- Security Governance, Risk & Compliance (GRC)
- PCI DSS / GDPR/ NIS2
- Audit & Regulatory Compliance
- Security Transformation
- Board Reporting
- Security Culture & Awareness
- Third-Party Risk Management
- Leadership & Team Development
What’s Important
The successful candidate will be an accomplished security leader who is able to quickly establish credibility, reassure senior stakeholders and continue driving the organisation’s security strategy. Strong communication skills, a collaborative leadership style and a proven ability to deliver tangible outcomes in complex enterprise environments are essential. This role is as much about influencing people and communicating risk as it is about technical cyber security expertise.
#J-18808-Ljbffr…
