The Head of Data and Information Security

Park Royal
2 days ago
Create job alert

The London School of Science & Technology (LSST) is one of UK’s leading, largest and fastest growing independent higher education provider with over 8000 students, 6 campuses and 3 university partnerships.

The team behind LSST is passionately committed to transforming lives by providing excellent education. We believe no matter what your background, your age or personal circumstances everyone is entitled to access a good education. We have one of the highest National Student Survey scores of 96.7%, placing us in the top 15 in the UK.

Job Purpose:

The Head of Data and Information Security provides strategic leadership and institutional oversight for cyber security and information governance at The London School of Science and Technology. The role is accountable for ensuring the confidentiality, integrity, and availability of LSST’s information assets and for reducing cyber and information risk across the institution.

The post holder will define, implement, and maintain LSST’s cyber security and information governance framework, working closely with Infrastructure Services, including IT Operations teams, who are responsible for the day-to-day operation of technical security controls.

Duties of the Role:

  • Develop and deliver a comprehensive cyber security and information governance strategy aligned with institutional objectives and the requirements of a complex higher education environment.

  • Establish, maintain, and oversee information security and data governance policies, standards, and procedures.

  • Undertake cyber security and information risk assessments and maintain oversight of cyber and information governance risks.

  • Ensure institutional compliance with relevant legislation, regulatory requirements, and sector guidance.

  • Work closely with senior leaders, service owners, and technical teams to ensure effective security monitoring, incident detection, response, and recovery.

  • Provide oversight and assurance for third-party and supplier security risk management.

  • Build strong working relationships across the institution and embed a culture of shared responsibility for data protection and cyber security.

  • Lead LSST’s cyber incident management and business continuity arrangements, ensuring institutional preparedness.

  • Provide expert guidance on incident response processes and support local response arrangements.

  • Coordinate and lead the institutional response to significant cyber or information security incidents, ensuring timely resolution and effective internal and external communications.

  • Design and deliver a comprehensive information security and data protection awareness and training programme.

  • Provide authoritative advice and assurance to the Executive and senior leadership on cyber security and information governance risks and controls.

  • Translate complex technical and security risks into clear, actionable guidance to support informed decision-making.

  • Engage actively in external and professional networks to maintain awareness of emerging threats, regulatory developments, and sector best practice.

  • Ensure LSST’s approach to data and information security remains current, proportionate, and effective.

    Work-Life Balance:

    We aim to support and provide a healthy work-life balance for employees who may have personal commitments through the following:

  • Flexible working hours

  • Working from home opportunities

  • Generous annual leave (28 days including bank holiday) increasing to 33 days after three years of continuous service)

  • Additional leave between Christmas and New Year, in addition to all public holidays

  • Special leave and compassionate leave for important occasions

    Financial Benefits: The financial well-being of our staff is vitally important to us. We aim to provide:

  • A progressive pay structure with competitive salaries

  • Tax-efficient pension scheme by Aviva

  • Relocation allowance

  • Gift Vouchers

  • Hardship assistance in exceptional circumstances

    Personal and Professional Development: We are committed to the ongoing professional development of our staff. We provide various internal and external training programmes which include:

  • A range of job-specific training programmes to support your career path

  • Graduate and Trainee schemes for entry-level academics

  • Subsidised Advance HE membership

  • Team building and celebratory events

    LSST IS COMMITTED TO EQUAL OPPORTUNITIES AND REPRESENTING THE DIVERSITY OF THE COMMUNITIES WE SERVE

Related Jobs

View all jobs

Cyber Security Manager

Senior IT Information Security Officer

IT Portfolio Manager

Information & Cyber Security Manager - SC Cleared - Inside IR35

Customer Account Manager (Copy)

Debt Resolution Manager

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

How to Write a Cyber Security Job Ad That Attracts the Right People

Cyber security is now a board-level priority for organisations across the UK. From financial services and healthcare to critical infrastructure, SaaS platforms and the public sector, demand for skilled cyber security professionals continues to grow. Yet despite this demand, many employers struggle to attract the right candidates. Cyber security job adverts often generate large volumes of applications, but few are a genuine match. Meanwhile, experienced security engineers, analysts and architects quietly ignore adverts that feel vague, unrealistic or disconnected from real security work. In most cases, the problem is not a lack of talent — it is the quality of the job advert. Cyber security professionals are trained to assess risk, spot weaknesses and question assumptions. A poorly written job ad signals organisational immaturity and weak security culture. A well-written one signals seriousness, competence and trust. This guide explains how to write a cyber security job ad that attracts the right people, improves applicant quality and positions your organisation as a credible security employer.

Maths for Cyber Security Jobs: The Only Topics You Actually Need (& How to Learn Them)

If you are applying for cyber security jobs in the UK it can feel like “real security people” must be brilliant at maths. The reality is simpler: most roles do not need degree-level pure maths. What they do need is confidence with a small set of practical topics that show up repeatedly in day-to-day work across SOC, incident response, cloud security, AppSec, threat detection, IAM & security engineering. This guide strips the maths down to what actually helps you get hired. It includes a 6-week learning plan plus portfolio projects you can publish to prove the skills. You will focus on: Number systems & bitwise thinking (binary, hex, bytes, XOR) Modular arithmetic basics (enough to understand how modern crypto “works”) Probability & statistics for detection, triage & risk Discrete maths for logic, sets, graphs & complexity Security maths habits: estimation, false positive control & evidence-led reporting You will not waste time on heavy theory that rarely appears in junior or mid-level cyber security roles.

Neurodiversity in Cyber Security Careers: Turning Different Thinking into a Superpower

Cyber security is all about thinking like an attacker, spotting unusual patterns, protecting systems & responding calmly when everything looks like it’s on fire. It’s a discipline built on curiosity, persistence & noticing things other people miss. That’s exactly why it can be such a good fit for many neurodivergent people. If you live with ADHD, autism or dyslexia, you may have been told your brain is “too distracted”, “too literal” or “too disorganised” for a security role. In reality, the traits that can make traditional office work tough often line up beautifully with cyber security work – from hyperfocus in incident response to meticulous analysis in threat hunting. This guide is written for cyber security job seekers in the UK. We’ll look at: What neurodiversity means in a cyber context How ADHD, autism & dyslexia strengths map to different security roles Practical workplace adjustments you can ask for under UK law How to talk about neurodivergence during applications & interviews By the end, you’ll have a clearer sense of where you might thrive in cyber security – & how to turn “different thinking” into a genuine superpower.