Head of Information Security Services
Listed on 2026-02-16
-
IT/Tech
Cybersecurity, Information Security
Lloyd’s is the world’s leading insurance and reinsurance marketplace. We share the collective intelligence and risk sharing expertise of the market’s brightest minds , working together for a braver world.
Our role is to inspire courage, so tomorrow’s progress isn’t limited by today’s risks.
Our shared values: we are brave; we are stronger together; we do the right thing; guide what we do and how we act. If you share our values and our passion to build a future that’s more sustainable, resilient and inclusive, you’ll find a home at Lloyd’s – build a braver future with us.
Lloyd’s are seeking to recruit a Head of Information Security Services. You will Safeguard our digital assets, managing security teams and partners, and ensuring compliance with regulatory requirements. As a candidate you should be a highly skilled and experienced Head of Information Security Services and will support the CISO in leading our cybersecurity strategy and operations. This position requires a strategic thinker, operational excellence, and with leadership, technical, and communication skills.
PrincipalAccountabilities Strategic Support and Delivery
- Assists the CISO in developing and implementing the organisation’s cybersecurity strategy
- Prioritise and align security initiatives with business goals and regulatory requirements
- Oversees day-to-day security operations, including incident response, threat detection, and vulnerability management. Delivery of continuous improvement across all security domains key performance indicators
- Manage the relationship with and performance of our security partners (Accenture, Relia Quest, Mandiant)
- Act as the lead for strategic transformational security projects (e.g. Identity and access mgt transformation)
- Coordinates with IT, legal, compliance, and risk teams to ensure security policies are enforced
- Regulatory Compliance for IT and Cyber Security:
Meeting regulatory requirements, responding to audits, and ensuring audit actions are completed - Third-Party Security:
Develop and maintain a third-party security assurance framework including completing security checks and risk assessments for third parties - Information Security Management System (ISMS):
Manage and improve the Corporation’s ISMS, maintain ISO
27001 certification and prioritise security measures for development and fixing issues
- Manages security teams and specific functions:
Security Operations Centre (SOC), Governance, Risk, and Compliance (GRC), Identity and Access Management (IAM) and Data Protection - Influences Lloyd’s leadership team to adopt security measures, while also enabling business outcomes
- Represents Lloyd’s in Industry and market collaboration groups, leading improvement initiatives
- Mentors and develops cybersecurity staff, ensuring a talent pipeline for long term succession
- Identifies, assesses, and mitigates cybersecurity risks, working closely with the Risk function
- Supports audits, compliance checks, and risk assessments and ensures appropriate closure of actions
- Acts as a liaison between technical teams and executive leadership
- Prepares reports and presentations on security metrics, incidents, and risk posture – the reports are crisp, concise and compelling resulting in action to improve Lloyd’s security posture
- Proven track record in information security leadership at a senior level, for a large organisation
- Developing and implementing risk/threat based strategic plans
- Operating security services and improving them over time
- Engaging with regulators and responding to regulatory audits
- Third party security assurance activity
- Performing risk and compliance reviews on systems/processes
- Deep practical knowledge of the people, process, and technology components of Information Security.
- Broad understanding of information technology with depth in at least one domain.
- How different cyber risks can materialise across the layers of defence.
- Passionate about staying abreast of the threat landscape, exploits, attacker tools, techniques and procedures, and latest security technologies.
- Industry frameworks such as NIST…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: