Cyber Security Culture Manager

Information Security Solutions
London, United Kingdom
Last month
Applications closed

Related Jobs

View all jobs

Cyber Security Manager

Reed Technology Manchester, United Kingdom

Junior Project Manager (Cyber Security)

Bridewell London, United Kingdom, United Kingdom
Hybrid

Manager, Red Team Services , GBR)

CrowdStrike London, SE10 0TW, United Kingdom
£40,000 – £60,000 pa Remote Clearance Required

Manager, Red Team Services , GBR)

CrowdStrike Dunscore, Alba / Scotland, DG2 0SR, United Kingdom
Remote

Manager, Red Team Services , GBR)

CrowdStrike Bigton, Alba / Scotland, ZE2 9GA, United Kingdom
£40,000 – £60,000 pa Remote Clearance Required

Manager, Red Team Services , GBR)

CrowdStrike Windsor, SL4 4BQ, United Kingdom
Remote
Posted
23 Mar 2026 (Last month)

The Role

Role Summary

The Group are transforming the way in which the cyber security risk is managed across the group. A new cyber strategy has been agreed; there is a short-term focus on security hygiene and resilience while a multi-year transformation programme is initiated to introduce new and make improvements to existing cyber capabilities and services.

The Cyber Security Culture Manager will be the driving force behind a mission to create a security-first mindset across a global, diverse organisation. This role sets the vision for cyber security culture, embedding security as a core value and shaping behaviours that protect people, processes, and assets. By defining clear goals and delivery roadmap for cultural maturity, it ensures alignment with business objectives, regulatory requirements, and industry best practice.

Reporting to the CISO, this role builds strong relationships with senior leaders and advocates across Group’s divisions, influencing change and creating a unified security posture. Acting as a cultural leader, the role champions continuous improvement, leveraging data-driven insights to strengthen security behaviours and reduce human risk. It fosters collaboration across security teams and business units, enhancing engagement and building a high-performing, values-driven environment. Through compelling communications and thought leadership, the role amplifies the voice of the CISO and ensures security messaging resonates at every level of the organisation.

Success in this role means delivering measurable improvements in security culture—where secure choices are intuitive, risk is reduced at scale, and every colleague feels empowered to navigate cyber threats confidently. This is a unique opportunity to shape the future of security culture and leave a lasting impact on the resilience of a global enterprise.

Role Responsibilities/Accountabilities

Key Responsibilities:

Set the Strategic Vision for Security Culture

• Define and own the long-term strategy for cyber security culture, ensuring alignment with business objectives, regulatory requirements, and industry best practice.

• Establish a clear roadmap for cultural maturity and embed security as a core value.

Drive Continuous Improvement of Security Culture

• Monitor and assess cultural maturity through surveys, KPIs, and behavioural metrics.

• Identify gaps and implement initiatives that strengthen security behaviours and reduce human risk.

• Champion best practices and foster collaboration between security teams and business units.

Enhance the Culture of Security Teams

• Promote a high-performing, collaborative, and values-driven environment within and across the security teams.

• Develop initiatives that improve team engagement, communication, and alignment with the security vision.

• Act as a role model for cultural leadership within the security function

• Plan, coordinate and facilitate Group Cyber Security (GCS) team meetings.

Create and Curate Strategic Content on Behalf of the CISO

• Develop high-quality, impactful content for internal audiences, including executive communications, presentations, and thought leadership pieces.

• Ensure messaging reflects the Groups security vision, priorities, and cultural objectives.

• Collaborate with corporate communications to maintain consistency and clarity in all security-related messaging.

Collaborate with the Global Cyber Security

• Partner with Global Cyber Security peers to ensure cultural initiatives complement technical controls, risk frameworks, and strategic priorities.

• Work closely with the Cyber Transformation Programme and BTS to deploy phishing simulation campaigns and implement tools that uplift cyber culture.

• Align cultural objectives with broader security programmes to deliver a unified and effective security posture.

Stakeholder Engagement and Advocacy

• Build strong relationships with senior leaders, divisional business units, and functional teams to influence and embed security culture.

• Represent the Group in relevant forums, working groups, and industry networks to share insights and adopt best practices.

Measurement and Reporting

• Define KPIs and success metrics for cultural initiatives and report progress to the CISO and senior leadership.

Use data-driven insights to refine strategies and demonstrate measurable improvements in security culture.

Experience, Knowledge, Skills & Attributes

Essential

• Proven experience in cyber security awareness, culture, or behavioural change programs within a large, complex organisation.

• Proven track record of working with senior partners to deliver metrics and reporting and progress updates.

• Strong understanding of human risk factors and security best practices.

• Excellent written, presentation and verbal skills with fluent English (written and verbal).

• Articulate and effective communicator across a range of formats, able to convey complex topics with ease to a variety of audiences and persuade others of the importance of security.

• Build excellent relationships, credibility and influence easily with people at different levels, working to persuade them of the need to work with security in-mind.

Desirable

• Experience of working in a federated environment.

• Experience of operating security standards / frameworks such as ISO27001, NIST 800-53, NIS2.

• Experience and involvement with major Cyber Security transformation projects or programmes

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Advertising cyber security jobs in the UK requires a different approach to most technical hiring. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Penetration Tester Jobs in the UK: What Employers Actually Want in 2026

The demand for skilled professionals in cyber security has never been higher, and penetration testers sit at the very heart of this rapidly evolving industry. As organisations across the UK continue to digitise their operations, protect sensitive data, and defend against increasingly sophisticated threats, the need for ethical hackers has grown dramatically. If you are considering a career in this field—or looking to advance within it—it is essential to understand what employers are really looking for in 2026. This guide breaks down the current expectations, required skills, certifications, and practical experience that can help you stand out in a competitive job market.

SOC Analyst Jobs UK 2026: Salaries, Skills & How to Get Hired

Cyber security is one of the UK's fastest-growing career paths — and SOC analyst is where most people begin. It's in high demand, genuinely accessible, and you don't need a degree or years of experience to get started. But knowing what UK employers actually want in 2026 — what they pay, which certs matter, and how to stand out — is a different matter. This guide covers all of it.