Head of Cyber Security architecting cyber resilience for Marshalls' digital transformation with a strategic focus on governance, risk, and compliance.
Responsibilities
You will be the architect of our defence, accountable for driving Group-wide cyber resilience across the entire PLC.
This mandate requires a crucial dual focus, maintaining technical excellence while leading our strategic Governance, Risk, and Compliance programme.
You will set the security agenda by formulating and executing our multi-year cyber security roadmap, ensuring every action aligns with Marshalls' business goals.
Your technical remit involves overseeing the security architecture across corporate IT, cloud platforms, and Operational Technology (OT), promoting a 'Secure by Design' approach throughout.
You will ensure operational excellence by directing threat management, running vulnerability programmes, and developing robust, tested Security Incident Response Plans.
You will mentor and inspire our security professionals, fostering a high-performance culture, identifying talent, and driving clear professional development and succession planning.
You will manage risk by implementing and upholding frameworks NIST CSF.
Your role is to connect the technical reality to the business strategy: you will translate complex technical risk profiles into clear, prioritised advice for the Executive and Board, using this communication to drive cultural change across the Group.
This will involve taking the lead in designing and delivering engaging training and embedding a proactive, risk-aware mindset through strong, collaborative partnerships with stakeholders.
Requirements
Proven experience at a senior level managing an entire corporate cyber security function
Demonstrable expertise in both technical security operations (architecture, threat management, incident response) and Governance, Risk, and Compliance
Expert working knowledge and implementation experience with major security frameworks (ISO 27001, NIST CSF, or similar)
Exceptional communication, influence, and presentation skills, with a track record of effective executive-level engagement up to the Board
Proven success in leading, mentoring, and developing security teams, focusing on skill uplift and talent retention
Experience within a manufacturing, industrial, or multi-site environment, including exposure to Operational Technology (OT) security principles, would be a distinct advantage
Holding relevant professional security certifications such as CISSP, CISM, CISA, or CRISC is highly valued
Benefits
Company Bonus and Share Scheme
Private Medical Insurance
26 days holiday + bank holidays (equivalent in hours)
Guaranteed Christmas holidays
Health care cash plan – support with Dental, Optical, Prescription costs and many more!
Enhanced Maternity, Paternity, and Adoption pay and leave
AI Security Engineer at Prologis focused on securing AI integrations and developing AI security controls. Collaborating with engineering and business teams to promote secure AI practices.
Project Coordinator managing security projects at The Missing Link, ensuring client satisfaction and project deliverables. Coordinating teams and maintaining timelines for project success in the IT field.
Information Security Specialist ensuring optimal protection of data and systems at University of Toronto. Implementing security platforms and best practices for data integrity and threat mitigation.
Loss Prevention Agent responsible for security and loss prevention in logistics facilities. Ensuring safety and protection of property, clients, employees, and guests within the workspace.
Analyst Relations Manager shaping market understanding of Upwind's innovative cloud and AI security platform. Leading relationships with industry analysts to enhance visibility, credibility, and category leadership.
Sr Network Security Engineer designing security architectures and leading security initiatives for RBC. Collaborating across teams to deliver multi - layered security solutions and mentoring team members in engineering best practices.
Senior Threat Modeller enhancing cybersecurity threat modeling for RBC. Collaborating with diverse teams to improve and implement secure by design principles across the enterprise.
Senior Security Engineer supporting security engineering and SIEM administration at Ardent. Focused on improving threat detection and response within vSOC environments in Washington, D.C.
Mainframe Support Engineer ensuring stability and performance of enterprise mainframe systems. Troubleshooting complex issues and collaborating with development, operations, and security teams for optimal system management.
IAM / IGA Security Engineer designing and implementing identity governance solutions. Collaborating with Security, IT, HR, and business stakeholders to ensure secure access governance.