Product Cyber Security Manager

Mpower Talent LTD
London, United Kingdom
Last month
£100,000 – £115,000 pa

Salary

£100,000 – £115,000 pa

Job Type
Permanent
Work Pattern
Full-time
Work Location
On-site
Seniority
Senior
Education
Degree
Posted
29 Apr 2026 (Last month)

We’re partnering with a major European technology organisation undergoing a significant security transformation to appoint a Product Cyber Security Manager—a pivotal role with enterprise-wide impact.

This is a rare opportunity to shape and lead a pan-European secure development capability, embedding “shift-left” principles across a complex portfolio of products and services used by millions. You’ll operate at the intersection of engineering, security, and business leadership—driving cultural change, reducing cyber risk, and influencing how software is built at scale.

The Opportunity

Cyber risk is now a board-level priority. This role exists to build a best-in-class Secure Development Practice that protects the organisation’s products, customers, and reputation.

You’ll define the strategy, build capability, and lead both a high-performing core team and a virtual network of 20–50 specialists across Europe—bringing together existing expertise into a unified, high-impact function.

Longer term, you’ll take ownership of product security across all European markets, shaping policy, tooling, and governance that directly influence delivery, quality, and resilience.

What You’ll Be Doing
  • Build and lead a specialist secure development team, setting the vision and operating model
  • Establish a Centre of Excellence for secure engineering, driving consistency and best practice
  • Develop and embed SDLC frameworks, policies, and guardrails aligned to leading standards (NIST SSDF, OWASP, ISO)
  • Create and scale a pan-European virtual capability, influencing without direct authority
  • Partner with senior stakeholders across engineering, product, legal, and commercial teams to embed security into lifecycle governance
  • Define and implement a modern DevSecOps tooling strategy (CI/CD, SAST/DAST, SCM, automation)
  • Drive secure coding, threat modelling, and supply chain security practices (SBOM, provenance, signing)
  • Develop KPIs, metrics, and maturity models to track and continuously improve SDLC performance
  • Build compelling business cases for investment, linking security improvements to risk reduction and commercial outcomes
  • Act as a trusted advisor to senior leadership, challenging the status quo and influencing at board level
What We’re Looking For

This is a senior, strategic hire—ideal for someone who has already operated at a senior level within a large, complex environment.

You’ll bring:

  • Proven experience leading secure development or DevSecOps transformation at scale
  • Deep knowledge of SDLC security frameworks (e.g. NIST SSDF, OWASP SAMM/ASVS, ISO 27034)
  • Strong understanding of modern engineering practices (Agile, CI/CD, cloud, automation)
  • Expertise in application security, threat modelling, and secure coding standards
  • Experience implementing tooling ecosystems (e.g. SAST, DAST, SCA, pipeline automation)
  • A track record of influencing senior stakeholders and driving cultural change
  • Ability to build and lead both direct and virtual teams across geographies
  • Commercial awareness—understanding how security decisions impact time-to-market and business outcomes
Why This Role?
  • Enterprise-wide impact: Shape how software is built across a major European organisation
  • Strategic influence: Engage directly with executive leadership and board-level stakeholders
  • Build from the ground up: Create and define a capability that doesn’t yet fully exist
  • Scale and complexity: Work across diverse products, markets, and engineering teams
  • Career-defining opportunity: A chance to lead one of the most critical areas in modern technology delivery

Related Jobs

View all jobs

Vendor Sales Manager (Cyber Security)

Northamber Basingstoke, United Kingdom

Frontend Software Engineer (JavaScript / TypeScript & React)

Darktrace Cambridge, CB2 3BJ, United Kingdom
Hybrid

Senior Director, Engineering- X-Ops Platform

Sophos United Kingdom
Remote

Field Technology Strategist , GBR)

CrowdStrike United Kingdom
Remote

Lead Product Manager - Artificial Intelligence - UK

Immersive United Kingdom
Remote

Senior Product Manager - CISO Advantage

Sophos United Kingdom
Remote

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Where to advertise cyber security jobs UK in 2026: the specialist boards, communities and channels that reach offensive, defensive and GRC security talent. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Cyber Security Jobs UK 2026: What to Expect Over the Next 3 Years

Cyber Security Jobs UK 2026: roles, salaries and the threat intelligence, cloud security and zero-trust hiring trends shaping UK cyber careers. Cyber security is one of the few sectors where demand for talent has never once dipped. Every major technological shift of the past decade — cloud migration, remote working, AI adoption, the proliferation of connected devices — has expanded the attack surface that security professionals are expected to defend. And every expansion of that attack surface has generated more jobs. But the cyber security jobs market of 2026 is not simply a larger version of what it was three years ago. It is a structurally different market. The threats have evolved, the technologies used to combat them have changed, the regulatory environment has tightened considerably, and the roles being created reflect all of that. A job seeker who understands only the cyber security landscape of 2023 is already working with an outdated map. The candidates who will thrive over the next three years are those who understand where the sector is heading — which specialisms are attracting the most investment, which technologies are reshaping defensive and offensive security practice, and how the definition of a cyber security professional is broadening well beyond the traditional image of a network defender in a SOC. This article breaks down what the UK cyber security jobs market is likely to look like through to 2028 — covering the titles emerging right now, the technologies driving employer demand, the skills that will matter most, and how to position your career ahead of the curve.