CISO Jobs

The strategic leader responsible for an organisation's information security. CISOs oversee the protection of digital assets, manage risk, and ensure compliance with regulations.

Open roles
4
Hiring companies
3

A Chief Information Security Officer (CISO) is a senior executive responsible for establishing and maintaining the organisation's information security programme. They lead the development and implementation of security policies, procedures, and technologies to protect sensitive data and systems. CISOs work closely with other C-suite executives and board members to ensure that security strategies align with business objectives. They also manage teams of security professionals, including security analysts, incident responders, and compliance officers.

What the role does

Inside the role of a CISO

A typical week for a CISO is a mix of strategic planning, team management, and crisis response. They spend time in meetings, reviewing security reports, and engaging with stakeholders.

  1. 01
    Conduct strategic planning sessions with the executive team.
  2. 02
    Review security incident reports and threat intelligence.
  3. 03
    Engage with stakeholders to ensure security policies are understood and followed.
  4. 04
    Manage and mentor the security team.
  5. 05
    Attend board meetings to report on security status and initiatives.
  6. 06
    Respond to and manage security incidents as they arise.
Skills & tools

What hiring managers ask for

% of 4 listings posted in the last 12 months that mention each skill, extracted from job descriptions.

Cybersecurity
50%
AI
50%
Email Security
25%
Insider Risk Management
25%
Human Risk Management
25%
Compliance
25%
Regulatory Examinations
25%
SaaS
25%
Enterprise Risk Frameworks
25%
Customer Advisory
25%
Application Security
25%
Shift-Left Security
25%
Career ladder

From Junior to Principal

A typical UK progression for cisos. Years are guidance — strong people move faster, and many senior folks sidestep into research, product or management.

  1. Level 1

    Junior CISO

    0–2 yrs

    Assists in the development and implementation of security policies and procedures. Supports the CISO in day-to-day operations and reporting.

  2. Level 2

    CISO

    3–5 yrs

    Leads the information security programme, manages a team of security professionals, and ensures compliance with regulations.

  3. Level 3

    Senior CISO

    6–8 yrs

    Oversees multiple security teams and initiatives. Provides strategic direction and advises the executive board on security matters.

  4. Level 4

    Principal CISO

    9+ yrs

    Holds a senior executive position, driving the organisation's overall security strategy and leading large-scale security initiatives.

Pathway

How to become a CISO

There's no single route, but most people follow some version of these steps.

  1. 1

    Entry-Level Security Role

    Start in a junior security analyst or IT support role to gain foundational knowledge and experience.

  2. 2

    Specialise in Security

    Move into a specialised security role such as a security analyst, penetration tester, or incident responder.

  3. 3

    Management Position

    Transition into a management role, such as a security team lead or manager, to develop leadership skills.

  4. 4

    Director of Security

    Advance to a director-level position, overseeing multiple security teams and initiatives.

  5. 5

    Chief Information Security Officer

    Achieve the CISO role, leading the organisation's information security programme and advising the executive board.

  6. 6

    Principal CISO

    Progress to a principal CISO role, driving the organisation's overall security strategy and leading large-scale initiatives.

Live jobs

4 live roles

Field CISO EMEA

The Field CISO EMEA role involves serving as a trusted security advisor to CISOs and board-level stakeholders across EMEA, guiding them on human risk management, insider risk strategy, and compliance. You will also represent Mimecast at industry events and support customers through security challenges and audits.

Mimecast London, United Kingdom
Hybrid Permanent

Head of Product Security – CISO function - BPL

This role leads the Product Security pillar within the CISO function, embedding security into agile product development across Barclays' payments business. The focus is on shift-left security, developer collaboration, and secure-by-design practices—driving threat modelling, vulnerability management, and security tooling integration. It’s a technical leadership role that operates as a partner to engineering, not a gatekeeper.

Barclays London, E14 5RB, United Kingdom
Hybrid Permanent Clearance Required

Senior Product Manager - CISO Advantage

This role involves leveraging real cybersecurity experience to assist Managed Service Provider (MSP) partners in integrating CISO Advantage into their offerings. You will act as a key expert, providing deep insights into advancing cyber maturity and transformation, and helping partners deliver effective security services using cutting-edge technology and AI.

Sophos United Kingdom
Remote Permanent

Head of Security Architecture and Engineering - CISO function - BPL

This role involves developing and implementing the bank's cloud and security infrastructure, including security administration processes, cloud security monitoring, and incident investigations. The Head of Security Architecture and Engineering will lead a team, manage strategic projects, and provide expert advice to senior management on cloud security and regulatory compliance.

Barclays London, E14 5RB, United Kingdom
On-site Permanent Clearance Required
Hiring locations

Where this role is hiring

The locations with the most live listings for this role today.

FAQs

Common questions

  • A combination of relevant degrees, certifications (such as CISSP), and extensive experience in information security is typically required.

  • Gain experience in various security roles, develop leadership skills, and stay updated with the latest security trends and regulations.

  • CISOs are responsible for developing and implementing security policies, managing security teams, ensuring compliance, and advising on security strategies.

  • The path often starts with entry-level security roles, progresses through specialisation and management, and culminates in a CISO position.

  • Salaries for CISOs can vary widely based on experience, location, and industry. For specific salary information, refer to the salary section on this page.

Hiring cisos?

Post your role in 90 seconds and reach the specialist audience that already reads this page.