Be at the heart of actionFly remote-controlled drones into enemy territory to gather vital information.

Apply Now

Head of Cyber Security

Kings Hill
4 days ago
Create job alert

Location: Hybrid working, Kings Hill base with to other sites as required
Salary/package: £70,000–£85,000 per annum
Contract type: Permanent
Hours: Full time, 37 hours per week

We are looking for an experienced and forward-thinking cyber security leader to join our Corporate Services division as Head of Cyber Security. This is a senior strategic role with organisation-wide visibility and impact. If you have the vision, expertise and influence to embed robust cyber security across a complex and fast-growing business, we want to hear from you.

Who we are

Commercial Services Group is one of the UK’s largest local authority-owned trading organisations, comprising 33 diverse businesses that operate across education, local government, the NHS and beyond. We provide services in recruitment, energy, procurement, legal, IT, HR, education supplies, facilities management and more. With more than 1,800 employees and a global footprint, we combine commercial excellence with social impact, reinvesting a significant proportion of our profits into public services.

Corporate Services underpins the success of all Commercial Services Group trading divisions by providing the infrastructure, expertise and governance needed to enable growth, innovation and resilience. The Cyber Security function sits within Corporate IT and plays a central role in protecting the Group’s digital assets, data and reputation.

Why this role matters

As Head of Cyber Security, you will be responsible for shaping and delivering CSG’s cyber security vision and strategy. You will lead the development and continual improvement of a Group-wide security programme, ensuring that our digital infrastructure, applications and data are secure, compliant and resilient. This is a strategic leadership role that also holds operational oversight and will act as the organisation’s Chief Information Security Officer (CISO).

What you’ll be doing

Provide strategic leadership for the Group’s cyber security vision, strategy and programme

Collaborate closely with the Cyber Operations team and wider IT colleagues to align strategy, governance and operational security activities

Monitor and improve the organisation’s information security posture, ensuring initiatives are aligned to business goals

Oversee the Information Security Management System (ISMS) and maintain compliance with relevant standards including ISO 27001, NIST-CSF and Cyber Essentials Plus

Lead on policies, controls and risk mitigation in collaboration with technical and operational teams

Provide assurance over incident response capabilities and governance, ensuring effective escalation procedures

Ensure compliance with all relevant regulatory requirements such as GDPR, NIS and the UK Data Act

Act as the accountable officer for information security across CSG

Report regularly to the Executive Board and Audit & Risk Committee on strategic security matters

Promote a strong culture of cyber security awareness through training and internal engagement

Act as a key liaison for auditors, regulators and law enforcement

Maintain alignment with Kent County Council’s CISO on governance and assurance

What we’re looking for

Significant experience leading cyber security strategy and governance in a complex, multi-entity organisation

Professional certification such as CISM, CISSP or CISA

Hands-on experience managing ISMS and compliance with frameworks such as ISO 27001, NIST, CIS-20CSC and Cyber Essentials

Strong understanding of security legislation and regulatory requirements, including GDPR and PCIDSS

Confident presenting to Executive Boards, Audit Committees and external stakeholders

A collaborative and credible leader, able to influence technical and non-technical audiences

Experience working at a senior level within IT infrastructure and cyber architecture

Comfortable operating across operational and strategic levels with matrix leadership responsibilities

What you’ll get in return

Salary of £70,000–£85,000 per annum

25 days annual leave, rising to 28 after two years, plus your birthday off

Life assurance cover (4x salary)

Single cover health cash plan

Pension scheme with 6 percent employer contribution

Additional benefits including retail and gym discounts, wellbeing programme and cycle to work scheme

Volunteer days and access to a wide range of learning and development opportunities

A collaborative and ambitious working environment with real purpose

Why CSG?

Commercial Services Group is the UK’s largest local authority-owned trading company (LATCO), generating over £800 million in revenue and supporting 16,000 education and public sector customers worldwide. With more than 1,800 employees across the UK, Dubai and Bangkok, we are working towards becoming the global leader in education and public sector solutions.

We are expanding rapidly, with annual growth of around 25 percent, supported by a blend of organic development, acquisitions and strategic partnerships. Our 33 trading businesses deliver a wide range of services including education management, IT, HR, legal, energy, procurement and supplies.

CSG is wholly owned by local authorities, and a significant proportion of our profits is reinvested into frontline public services. Over £77 million has already been returned, reflecting our commitment to combining commercial performance with meaningful social impact.

Inclusion & Accessibility

We are committed to fostering a diverse and inclusive workplace where everyone feels valued and respected. We encourage applications from suitably qualified people of all backgrounds.

We are committed to providing reasonable adjustments throughout our application and interview process; please let us know if you require any

Related Jobs

View all jobs

Head of IT Security and Platform Engineering (Hybrid) Newcastle - To £115k+ Bens

Cyber Security Analyst

Head of IT Services

Information Security Manager

Technical Operations Analyst

Head of IT Security Incident and Threat Management - Solihull

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

The Best Free Tools & Platforms to Practise Cyber Security Skills 2025/26

Cyber security is one of the most in-demand career fields in the UK. From preventing data breaches to monitoring networks and defending against ransomware, the role of cyber professionals is critical across every industry. With organisations of all sizes facing increasing threats, demand for skilled professionals continues to rise. But employers don’t just want theory—they want proof that you can analyse systems, detect vulnerabilities, and respond to incidents. The good news is that you don’t need to pay thousands of pounds for training to build practical experience. A wide range of free tools and platforms allow you to practise cyber security skills safely, ethically, and at no cost. This article explores the best free resources available in 2025 to help you gain hands-on skills in ethical hacking, penetration testing, digital forensics, network monitoring, and incident response.

Top 10 Skills in Cyber sScurity According to LinkedIn & Indeed Job Postings

In today’s digital age, cyber security is no longer optional—it’s mission-critical. From financial institutions to healthcare providers, government departments to tech startups, every sector in the UK is under rising cyber threats. As a result, employers are constantly on the hunt for skilled professionals who can defend, detect, and respond effectively. But with cyber threats evolving at pace, what exactly are employers seeking? By analysing job postings on LinkedIn and Indeed, this article reveals the Top 10 cyber security skills UK organisations are demanding in 2025. Read on to discover how to present these skills effectively on your CV, in interviews, and through practical proof of experience.

The Future of Cybersecurity Jobs: Careers That Don’t Exist Yet

Cyber security has become one of the most critical issues of our age. Once regarded as a technical problem confined to IT departments, it is now a board-level priority, a government mandate, and a daily necessity for individuals. The shift towards cloud services, remote working, connected devices, and artificial intelligence has dramatically increased the risks of digital attacks. In the UK, cyber security is central to national resilience. The government has identified cyber as a “tier one” threat to national security, alongside terrorism and pandemics. The private sector, from banks to retailers, now sees data breaches and ransomware as existential risks. Global spending on cyber security is projected to exceed $250 billion by 2030, with the UK already home to a thriving cyber industry employing tens of thousands. Yet, as powerful as the industry already is, we are only at the beginning. The technologies shaping the next two decades—AI, quantum computing, edge computing, extended reality, and biotechnology—will radically reshape cyber security. Many of the most vital cyber security jobs of the future don’t exist yet. This article explores why new roles will emerge, the careers likely to appear, how today’s jobs will evolve, why the UK is well-positioned, and how professionals can prepare now.