Be at the heart of actionFly remote-controlled drones into enemy territory to gather vital information.

Apply Now

Chief Information Security Officer

Sopra Steria
united kingdom
5 months ago
Applications closed

Related Jobs

View all jobs

CISO

Associate Director of IT & Systems

Chief Digital Officer

Chief Digital Officer

Penetration Tester

Penetration Tester

Are you a transformative leader with a passion for cybersecurity?

We are on the lookout for an experienced and dynamic Chief Information Security Officer (CISO) to join our thriving technology outsourcing company. As our CISO, you will play a pivotal role in safeguarding our operations across the UK, providing strategic direction, support, and governance for all aspects of cyber operations. This is an exciting opportunity for a proactive and proven leader to collaborate closely with business units and managing directors, identifying and addressing security deficiencies to help our organisation achieve its objectives and deliver services in a safe and secure manner. You will also lead a talented team of Business Information Security Officers (BISOs) and build strong relationships with counterparts across the Sopra Steria group.

If you're ready to make a significant impact and drive our cybersecurity initiatives forward, we want to hear from you!

This role is hybrid variable, with a base location in London.

What you will be doing:

  • Develop and implement a comprehensive information and cyber security strategy and policies for the UK organisation.
  • Provide direction, support, and governance for all aspects of cyber operations.
  • Work with business units and managing directors to identify and address security deficiencies.
  • Forge strong relationships with the Sopra Steria Group to ensure alignment on security initiatives.
  • Lead a team of Business Information Security Officers (BISOs) and ensure compliance with relevant security standards and regulations.
  • Prepare the organisation for cyber-attacks, lead response and recovery efforts, and conduct regular security risk assessments and audits.

What you’ll bring:

  • Proven experience in a similar senior information security role/s, preferably with experience of working in organisations providing technology outsourcing services to large public and private sector organisations.
  • Strong knowledge of information security and risk management frameworks or standards, such as ISO/IEC 27001, ISO/IEC 27005, NIST Cyber Security Framework, CIS, NCSC Cyber Assessment Framework, Ministry of Defence Joint Service Publications, Secure by Design and Privacy by Design and Default.
  • Experience in developing and implementing security strategies and policies in large organisations.
  • Ability to work effectively with business units and managing directors.
  • Experience in providing security guidance and support to clients.
  • Knowledge of relevant security standards and regulations.
  • Strong analytical and problem-solving skills.
  • Experience of public sector security, in particular Defence and MoD.

If you are interested in this role but not sure if your skills and experience are exactly what we’re looking for, please do apply; we’d love to hear from you!

Although this role is advertised as full-time, we believe that flexibility at work can promote work/life balance, increase your motivation, reduce stress, and improve performance and productivity. We support different ways of working and can offer a range of flexible working arrangements. So, if you’re interested and need to work flexibly, we encourage you to apply and talk to us about what might be possible.

#J-18808-Ljbffr

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Cyber Security Recruitment Trends 2025 (UK): What Job Seekers Must Know About Today’s Hiring Process

Summary: UK cyber security hiring has shifted from title‑led CV screens to capability‑driven assessments that emphasise incident readiness, cloud & identity security, detection engineering, governance/risk/compliance (GRC), measurable MTTR/coverage gains & secure‑by‑default engineering. This guide explains what’s changed, what to expect in interviews, & how to prepare—especially for SOC analysts, detection engineers, blue/purple teamers, penetration testers, cloud security engineers, DFIR, AppSec, GRC & security architecture. Who this is for: SOC & detection engineers, security operations leads, DFIR analysts, penetration testers/red teamers, purple teamers, AppSec/DevSecOps engineers, security architects, cloud security engineers, identity/IAM engineers, vulnerability managers, GRC/compliance specialists, product security & security programme managers targeting roles in the UK.

Why Cyber Security Careers in the UK Are Becoming More Multidisciplinary

Cyber security used to be viewed primarily as a technical discipline: firewalls, encryption, intrusion detection, penetration testing. In the UK today, it’s far broader. Organisations now face complex legal frameworks, ethical dilemmas, human-behaviour risks, communication challenges & usability hurdles. This shift means cyber security careers are becoming more multidisciplinary. From protecting NHS patient records to defending financial services, securing supply chains & safeguarding national infrastructure, cyber security now touches every sector. Employers increasingly want professionals who understand law, ethics, psychology, linguistics & design alongside traditional technical skills. In this article, we’ll explore why UK cyber security careers are expanding in this way, how these five disciplines shape the profession, and what job-seekers & employers need to know to thrive in this new landscape.

Cyber Security Team Structures Explained: Who Does What in a Modern Cyber Security Department

Cyber security has become a top priority for UK organisations of all sizes. From small businesses to financial institutions, healthcare providers, and government bodies, the risk of cyber attack is now a constant concern. Threats are more sophisticated, regulations more demanding, and customers more aware of data privacy than ever before. But defending against cyber threats isn’t simply about having the right tools — it’s about having the right team. A modern cyber security department relies on clearly defined roles and responsibilities to ensure that defences are proactive, incidents are managed swiftly, and compliance is maintained. This article explains the structure of a modern cyber security team, the roles you’ll typically find within it, how they collaborate, and what skills, qualifications, and salaries are expected in the UK job market.