CrawlJobs Logo

Head of Cyber Security Culture and Architecture

allenlane.co.uk Logo

Allen Lane

Location Icon

Location:
United Kingdom , Hanslope Park (Milton Keynes) or East Kilbride

Category Icon

Job Type Icon

Contract Type:
Employment contract

Salary Icon

Salary:

69500.00 - 90600.00 GBP / Year

Job Description:

Grade 6 vacancy in the Information and Cyber Security Department. Responsible for defining, leading and delivering the FCDO’s secure architecture and internal cyber security culture. Member of the ICSD Senior Leadership team and IDD Extended Leadership Group.

Job Responsibility:

  • Define, lead and deliver, through their team, the FCDO’s secure architecture and its internal cyber security culture
  • Ensure secure design is embedded across systems and services while fostering a workforce that understands, values and upholds security principles
  • Lead a team of security architects who will influence technology delivery, organisational behaviours and leadership decision making
  • Ensure architecture, awareness and cultural resilience are delivered in a coordinated way
  • Work in partnership with business, digital and security stakeholders
  • Lead engagement and reporting for their workstreams
  • Represent the CISO at various HMG and external events where necessary

Requirements:

  • Enterprise Security Architecture: Leading the design and assurance of enterprise security architecture, applying recognised frameworks and principles
  • Technical Security Architecture: Applying security architectural principles to complex IT and operational technology (OT) systems
  • Policy and Standards: Providing subject matter expertise in developing and interpreting cyber and information security policies and standards
  • Information Security Culture: Baselining the future vision for the FCDO’s information and cyber security culture, defining and assuring delivery of change levers
  • Third Party Management: Leading the definition and assurance of cyber and information security requirements for third-party relationships
  • Management, Leadership and Influence: Embedding a security first culture and influencing behaviours at all levels
  • Must hold or be willing to obtain security clearance to DV level
  • Must have been resident in the UK for five out of the last ten years immediately prior to application
What we offer:
  • Civil Service pension scheme (employer contribution of 28.97%)
  • Annual leave starting at 25 days leave per annum
  • Location allowance of £1,750 (if based in Milton Keynes)
  • Specialist allowance of up to £10,800 per annum (subject to review)

Additional Information:

Job Posted:
December 05, 2025

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Head of Cyber Security Culture and Architecture

Head of cyber threat exposure and attack surface management

Lead the enterprise-wide Continuous Threat Exposure Management (CTEM) strategy, ...
Location
Location
United Kingdom , Knutsford
Salary
Salary:
Not provided
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in cybersecurity with direct exposure to vulnerability management, red teaming, or threat exposure reduction
  • Proven track record leading programs integrating CSPM, SSPM, ASM, BAS, or exposure correlation technologies
  • Strong understanding of attack paths, adversary emulation, and continuous validation concepts
Job Responsibility
Job Responsibility
  • Own and drive the global CTEM strategy, establishing a continuous, threat-driven exposure management lifecycle aligned with NIST, MITRE, and CISA Secure-by-Design principles
  • Lead and develop a high-performing CTEM team, fostering collaboration, technical excellence, and an outcome-driven culture
  • Integrate and oversee key exposure management technologies, including Cloud Security Posture Management (CSPM), SaaS Security Posture Management (SSPM), Attack Surface Management (ASM), Breach & Attack Simulation (BAS), and other exposure correlation platforms
  • Correlate assets, identity, vulnerability, and configuration to identify high-impact, exploitable attack paths and inform prioritized remediation strategies
  • Collaborate with Application Security, Vulnerability Management, Red Team, and Security Operations to synchronize discovery, validation, and remediation of exposures across the enterprise
  • Align CTEM outputs with real-world adversary behaviors, leveraging Red Team and Threat Intelligence input to validate attack paths and focus on exploitable conditions
  • Drive automation and AI-enabled analytics to continuously map, assess, and measure reductions in the organization’s attack surface
  • Translate technical findings into business risk language, enabling senior leadership and risk committees to make data-driven investment decisions
  • Define and lead CTEM governance and operating models, ensuring exposure assessments, validation, and remediation tracking are embedded in operational processes
  • Establish clear KRIs and maturity metrics that demonstrate continuous improvement in visibility, validation, and response effectiveness
What we offer
What we offer
  • Competitive holiday allowance
  • Life assurance
  • Private medical care
  • Pension contribution
  • Fulltime
Read More
Arrow Right

Head of Security

As our Head of Security, you’ll play a critical role in protecting the trust our...
Location
Location
Australia , Sydney
Salary
Salary:
Not provided
prezzee.com.au Logo
Prezzee
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A degree in Computer Science, Software Engineering, or a related discipline
  • 5+ years’ experience in a senior cyber security role, ideally within a systems development or technology-led environment
  • Strong understanding of AWS technologies and modern cloud architecture models
  • Proven experience delivering strategic security programs, including policy development, risk management, BCP/DR testing, third-party risk, and end-user device security
  • Hands-on experience triaging, investigating, and resolving security and operational incidents within SLAs
  • Deep knowledge of modern cyber security principles, threat landscapes, threat intelligence, and remediation techniques
  • Experience coordinating outcomes across internal teams, external vendors, auditors, and security partners
  • A collaborative, business-minded approach with the confidence to influence at leadership level
Job Responsibility
Job Responsibility
  • Lead Our Security Strategy: Own and deliver a clear, ongoing security roadmap aligned to Prezzee’s risk appetite, business priorities, and growth plans
  • Continuously uplift our administrative, technical, and procedural security posture across the business
  • Stay ahead of emerging threats and evolving standards, ensuring Prezzee remains proactive rather than reactive
  • Build a Security-First Culture: Act as the Security Champion across all teams and locations, embedding security awareness into how we work every day
  • Partner closely with engineering, product, IT, and the wider business to ensure security is at the forefront of design
  • Manage and mentor a small, high-performing security team, driving engagement and alignment with Prezzee’s purpose
  • Governance, Risk & Compliance: Maintain and expand compliance with frameworks and certifications including PCI, ISO:27001, Cyber Essentials+, ISO:42001 and others as required
  • Chair and manage the ISMS Committee, ensuring stakeholders have clear visibility of risks, controls, and progress
  • Lead third-party and vendor security due diligence across tools, partners, and workplace technology
  • Operational Security & Incident Management: Oversee vulnerability management, penetration testing outcomes, and remediation within agreed SLAs
What we offer
What we offer
  • Prezzeeversary Leave – Extra day of annual leave for each year you’re with us
  • BirthYay Leave – Celebrate you with a paid day off during your birthday month
  • Novated Car Leasing – A tax-smart way to bundle and pay for your car and running costs
  • ClassPass Membership – Fully covered monthly credits for fitness, wellness, and beauty
  • Office Allowance – One-time payment to upgrade your office setup
  • Flexible Work Perks – Flex your hours, take Culture Swap Days, and work from anywhere for 30 days a year
  • Prezzee Staff Discounts – Exclusive deals on Prezzee gift cards – just for being part of the team
  • Wellbeing Support – Access to mental, social, financial, and physical wellbeing support via Telus
  • Learning & Development – Grow your career with LinkedIn Learning, job shadowing, industry programs, and our Lunch & Learn sessions
  • Employee Resource Groups – Be an advocate or ally and foster belonging through groups like EmpowHer and Pride
  • Fulltime
Read More
Arrow Right

Head of Security

Prezzee is a global leader in digital gifting and payments. As our Head of Secur...
Location
Location
Australia , Melbourne
Salary
Salary:
Not provided
prezzee.com.au Logo
Prezzee
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A degree in Computer Science, Software Engineering, or a related discipline
  • 5+ years’ experience in a senior cyber security role, ideally within a systems development or technology-led environment
  • Strong understanding of AWS technologies and modern cloud architecture models
  • Proven experience delivering strategic security programs, including policy development, risk management, BCP/DR testing, third-party risk, and end-user device security
  • Hands-on experience triaging, investigating, and resolving security and operational incidents within SLAs
  • Deep knowledge of modern cyber security principles, threat landscapes, threat intelligence, and remediation techniques
  • Experience coordinating outcomes across internal teams, external vendors, auditors, and security partners
  • A collaborative, business-minded approach with the confidence to influence at leadership level
Job Responsibility
Job Responsibility
  • Lead Our Security Strategy: Own and deliver a clear, ongoing security roadmap aligned to Prezzee’s risk appetite, business priorities, and growth plans
  • Continuously uplift our administrative, technical, and procedural security posture across the business
  • Stay ahead of emerging threats and evolving standards, ensuring Prezzee remains proactive rather than reactive
  • Build a Security-First Culture: Act as the Security Champion across all teams and locations, embedding security awareness into how we work every day
  • Partner closely with engineering, product, IT, and the wider business to ensure security is at the forefront of design
  • Manage and mentor a small, high-performing security team, driving engagement and alignment with Prezzee’s purpose
  • Governance, Risk & Compliance: Maintain and expand compliance with frameworks and certifications including PCI, ISO:27001, Cyber Essentials+, ISO:42001 and others as required
  • Chair and manage the ISMS Committee, ensuring stakeholders have clear visibility of risks, controls, and progress
  • Lead third-party and vendor security due diligence across tools, partners, and workplace technology
  • Operational Security & Incident Management: Oversee vulnerability management, penetration testing outcomes, and remediation within agreed SLAs
What we offer
What we offer
  • Prezzeeversary Leave – Extra day of annual leave for each year you’re with us
  • BirthYay Leave – Celebrate you with a paid day off during your birthday month
  • Novated Car Leasing – A tax-smart way to bundle and pay for your car and running costs
  • ClassPass Membership – Fully covered monthly credits for fitness, wellness, and beauty
  • Office Allowance – One-time payment to upgrade your office setup
  • Flexible Work Perks – Flex your hours, take Culture Swap Days, and work from anywhere for 30 days a year
  • Prezzee Staff Discounts – Exclusive deals on Prezzee gift cards – just for being part of the team
  • Wellbeing Support – Access to mental, social, financial, and physical wellbeing support via Telus
  • Learning & Development – Grow your career with LinkedIn Learning, job shadowing, industry programs, and our Lunch & Learn sessions
  • Employee Resource Groups – Be an advocate or ally and foster belonging through groups like EmpowHer and Pride
  • Fulltime
Read More
Arrow Right

Technology - Cybersecurity, Summer Analyst

At Citi, we do not just adapt to change – we drive it. Our Summer Technology Ana...
Location
Location
Poland , Warsaw
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Be graduating between December 2026 and May 2027
  • Pursuing bachelor's degree in Cyber Security, Computer Science, Computer Engineering, Information Technology, Management Information Systems, or other tech related degree
  • You have an interest working in a high-tech global technology environment and have a fundamental understanding of technologies, including by not limited to programming languages (C++, Java, etc.), application development, or basic concepts of relational databases
  • Be a problem solver who thrives on innovation and enjoys tackling challenges head-on
  • Possess a global outlook and a willingness to collaborate across cultures and time zones
  • Have excellent communication skills, project management, leadership, attention to detail, and the ability to work well within diverse teams
  • Ability to pass technical interviews consisting of basic algorithmic programming exercises
  • Must be collaborative and adaptable, with excellent communication skills
  • Prior experience working on agile teams is desirable.
Job Responsibility
Job Responsibility
  • Keep the bank safe and provide the technical tools our workers need to be successful
  • Design our digital architecture and ensure our platforms provide a first-class customer experience
  • Manage risk, resources, and program management
  • Focus on enterprise resiliency and business continuity
  • Develop, coordinate, and execute strategic operational plans.
What we offer
What we offer
  • Structured learning
  • Networking
  • Mentoring and development programs
  • Competitive salary
  • Global exposure with cross-functional teams.
  • Fulltime
Read More
Arrow Right

Head of Security Governance, Risk & Compliance

We’re looking for a dynamic, experienced Head of GRC to lead our global governan...
Location
Location
Luxembourg , Luxembourg
Salary
Salary:
Not provided
ppro.com Logo
PPRO GmbH
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A proven track record transforming traditional GRC frameworks (ISO27001, PCI DSS, SOC2) into modern, automated, developer-friendly control assurance programmes
  • Solid grounding in financial services regulation, payments, operational resilience, outsourcing/cloud guidelines etc.
  • Strong experience interacting with regulators and auditors (CSSF, FCA, etc.) and implementing regulatory requirements
  • Proven ability to run risk management processes, control frameworks and audit cycles
  • Experience evaluating technology, cyber and operational risks in a cloud-native environment
  • Engineering-first mindset, with an understanding of cloud-native architectures (AWS preferred) and how GRC requirements fit into engineering workflows
  • Experience with GRC tooling, workflow automation or process optimisation
  • Ability to translate regulatory requirements into practical, technical control expectations
  • Excellent communicator, capable of influencing executives, engineers, auditors and regulators
  • Pragmatic, commercially-minded, empathetic and customer-focused
Job Responsibility
Job Responsibility
  • Lead PPRO’s global Security GRC strategy and team, to support our international regulatory and compliance footprint
  • Oversee and enhance our ISO27001:2022 and PCI DSS v4.0 programmes, building a culture of continuous compliance through automation and control transformation
  • Partner with relevant functions to ensure ongoing DORA compliance, including security risk management, incident reporting, operational resilience testing and governance
  • Define and deliver a strategy for a pragmatic, high-value 2nd line automated control assurance programme, underpinned by relevant business metrics
  • Own and manage regulatory expectations on security topics by the CSSF in Luxembourg, FCA in the UK and other international bodies as relevant
  • Maintain and enhance PPRO’s security risk register, defining and delivering cross-organisation improvement and remediation roadmaps
  • Lead security control testing, issue management, KRI monitoring, SLA reporting and Board-level reporting
  • Act as Information Security Officer for PPRO’s local Luxembourg entity
  • Own third party security risk management and oversight for PPRO across the full procurement lifecycle
  • Partner closely with Engineering to build shared understanding and transform controls via thoughtful automation, streamlining evidence collection and control monitoring
What we offer
What we offer
  • Hybrid working with a 3 days / week on site expectation
  • Work from abroad policy, enabling employees to work remotely for up to another 30 days per year
  • €1,000 annual budget for professional growth
  • Leadership cafés, on-the-job training
  • Lunch Vouchers - 12,80euros x 18 / month
  • Enhanced family leave
  • Travel Insurance
  • Gym membership contribution
  • Mental Health Platform
  • Pet-friendly office
  • Fulltime
Read More
Arrow Right

Head of Cloud Device Protection

The Head of Cloud Device Protection is responsible for developing and leading po...
Location
Location
Poland
Salary
Salary:
23300.00 - 34500.00 PLN / Month
https://www.hsbc.com Logo
HSBC
Expiration Date
February 16, 2026
Flip Icon
Requirements
Requirements
  • A background in information systems, technology, architecture, design, and service delivery of defense-in-depth capabilities
  • Strong stakeholder management skills, with experience of understanding and meeting the needs of multiple stakeholders
  • An ability to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily understood, authoritative and actionable manner
  • Likely from a technology or engineering background with developed understanding of Technology Delivery Lifecycle, engineering practices, underlying infrastructure, tooling and architecture & design principles
  • Deep SME knowledge of containers
  • Experience working in a highly regulated, large multi-national environment
  • Ability to understand the potential business impact of security decisions and align initiatives with business needs
  • Strong inter-personal skills to work effectively with other areas inside and outside of cyber
Job Responsibility
Job Responsibility
  • Developing and leading policy and strategies to protect device and processes hosted in “Cloud” ecosystems (Cattle, Containers and Serverless etc) and that they are working in line with HSBC Cloud strategies
  • Ensuring that the right processes and escalations are in place and consistent across the different Cloud environments to ensure effective operation of capabilities
  • Implementation and oversight of the Group’s Risk Management Framework
  • Ongoing and targeted controls assessments
  • Implementing and maintaining robust risk governance
  • Championing a proactive risk culture
  • Maintaining positive relationships with our regulators and external partners
  • Managing relationships with key stakeholders with in the relevant Cloud Service Provider Teams within HSBC
  • Reviewing Coverage and Compliance across the Cloud Environments and Escalating as required
  • Collaborating with other Cloud related Security teams like Security Operations, Incident Management and Cloud Security to ensure joined up decisions are made
What we offer
What we offer
  • Additional car allowance in the amount of 4,620 PLN (monthly, gross)
  • Variable pay
  • Comprehensive and competitive package of benefits covering healthcare, family friendly leaves, pension and life assurance
  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Fulltime
Read More
Arrow Right
New

Site Finance Controller

Join our dynamic manufacturing site in Saalfeld as a Site Finance Controller (f/...
Location
Location
Germany , Saalfeld
Salary
Salary:
Not provided
https://www.baxter.com/ Logo
Baxter
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Finance, Accounting, or a related field
  • 3–6 years of experience in a manufacturing finance or controlling role
  • Strong standard costing experience
  • Experience in budgeting, variance analysis, and inventory management
  • Strong interpersonal skills to collaborate with plant teams and cross-functional stakeholders
Job Responsibility
Job Responsibility
  • Take ownership of the site’s Profit & Loss (P&L) and support financial transparency and performance
  • Lead budgeting, forecasting, and month-end closing activities
  • Perform standard cost calculations, variance analysis, and support operational teams with actionable insights
  • Partner with plant teams to evaluate CapEx projects, investments, and new business opportunities
  • Ensure compliance with GAAP, SOX, and company financial policies
  • Support the annual budget-building process, performance feedback, and corrective actions
  • Collaborate on standard cost updates and recommend improvements in financial reporting and inventory management
What we offer
What we offer
  • Support for Parents
  • Continuing Education/ Professional Development
  • Employee Heath & Well-Being Benefits
  • Paid Time Off
  • 2 Days a Year to Volunteer
  • Fulltime
Read More
Arrow Right
New

Mobile Associate - Retail Sales

Mobile Associates (MA) work as a member of a Retail Team of Experts to bring the...
Location
Location
United States , Covington
Salary
Salary:
17.50 USD / Hour
https://www.t-mobile.com Logo
T-Mobile
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • High School Diploma/GED
  • 6 months of customer service and/or sales experience, Retail environment preferred
  • Passionate customer advocate
  • Competitive drive and proven ability to succeed in a fast-paced sales environment
  • Willingness to work alongside peers and store leaders, learning and sharing ideas
  • Effective at balancing customer needs and performance goals
  • At least 18 years of age
  • Legally authorized to work in the United States
Job Responsibility
Job Responsibility
  • Builds proficiency related to serving and selling to our customers
  • Provides a world-class customer experience and builds loyalty
  • Helps customers pick up right where they left off in their shopping journey
  • Explores individual needs and provides hands-on demonstrations of technology
  • Side-by-side selling to find personalized solutions beyond device and service plan
  • Approaches service and sales needs with composure, integrity and compassion
  • Becomes skilled with and consistently uses digital tools in interactions and onboarding
  • Demonstrates coverage and network speed
  • Explains T-Mobile plans and services
  • Completes training on T-Mobile in-store experience, new skills and processes
What we offer
What we offer
  • Competitive base salary and compensation package
  • Annual stock grant
  • Employee stock purchase plan
  • 401(k)
  • Access to free, year-round money coaches
  • Eligible for an annualized incentive target of $18,000/year
  • Guaranteed to earn $20/hour inclusive of base pay and incentives
  • Annual Stock Grant
  • Medical, dental and vision insurance
  • Flexible spending account
  • Parttime
Read More
Arrow Right