Information Security Awareness Lead
Job in
Uxbridge, Greater London, UB8, England, UK
Listed on 2026-08-30
Listing for:
Unipharmedtech
Full Time
position Listed on 2026-08-30
Job specializations:
-
IT/Tech
IT Consultant, Information Security & Data Protection
Job Description & How to Apply Below
Locations
Citywest, Dublin, Ireland or Stockley Park, Uxbridge, UK
The RoleThe Information Security Awareness Lead will own and drive Uniphar’s security awareness programme, helping reduce human-related cyber risk through engaging training, phishing simulations, communications campaigns, and behavioural testing. The role will work with Information Security, IT, HR, Communications, and business teams to deliver effective awareness initiatives, track programme performance, and continuously improve security behaviours across all regions and divisions.
Key Responsibilities- Security Awareness Programme Management
- Manage all aspects of the organisation’s security awareness training programme, including mandatory quarterly training for all employees.
- Own the security awareness roadmap and annual campaign calendar, ensuring coverage of key risks and regulatory expectations.
- Ensure awareness programme coverage across divisional and regional locations, including coordination of local delivery and site visits.
- Manage and administer the Proofpoint Security Awareness Platform, including:
- Training modules
- Phishing simulations
- Reporting and metrics
- Work with HRIS teams to deliver quarterly and ad‑hoc security training through Workday.
- Respond to and manage reported phishing emails via Phish Alarm, ensuring appropriate handling and feedback to users.
- Deliver monthly security awareness induction training for all new starters.
- Run regular awareness webinars, lunch‑and‑learn sessions, and other in‑person and virtual briefings.
- Select, deploy, and deliver role‑specific training for specialist job functions such as IT, Finance, HR, and other high‑risk roles.
- Run role‑specific awareness sessions, highlighting risks and attack scenarios relevant to specific job functions.
- Propose, design, and implement novel awareness initiatives (e.g. competitions, quizzes, games) to improve engagement and effectiveness.
- Phishing & Human Risk Testing
- Own and manage the phishing testing programme, including:
- Regular phishing simulations
- Analysis of results and trends
- Targeted follow‑up training for repeat failures
- Escalate risky user behaviour and repeat failures to line management in line with agreed processes.
- Work with Sec Ops and Incident Response teams to incorporate real‑world attack patterns into testing and training.
- Set up and manage restrictions on access to Uniphar resources for persistent failures
- Own and manage the phishing testing programme, including:
- Physical & Behavioural Security Audits
- Conduct physical USB testing (e.g. trojan USB drops) to assess user behaviour.
- Perform clean desk audits across office locations.
- Conduct unattended workstation locking audits and report findings.
- Use audit outcomes to inform targeted awareness campaigns and improvements.
- Awareness Communications & Campaigns
- Manage the Cybersecurity Intranet site, publishing regular security awareness updates and guidance.
- Design, procure, and distribute physical and digital awareness media, including:
- Posters
- Stickers
- Digital signage
- Deliver regular themed security awareness campaigns across all channels (physical media, desktop messaging, training modules).
- Lead the organisation’s October Security Awareness Month, including:
- Campaign planning
- Training Quizzes, games, and surveys
- Engagement reporting
- Metrics, KPIs & Continuous Improvement
- Produce regular metrics and reporting on:
- Training completion rates
- Programme reach
- Phishing simulation results
- Engagement and effectiveness
- Meet and report against defined KPIs for programme effectiveness.
- Conduct user surveys to gather feedback and measure awareness maturity.
- Incorporate survey results, metrics, and incident data into continuous programme improvements.
- Produce regular metrics and reporting on:
- Collaboration & Stakeholder Engagement
- Work closely with IT and Sec Ops to maximise delivery of security awareness messaging to end users, including:
- System notifications
- Pop‑ups and warnings
- Desktop backgrounds and banners
- Coordinate with divisional IT and communications teams to localise awareness delivery.
- Carry out divisional and regional site visits to distribute materials and deliver local workshops.
- Work closely with IT and Sec Ops to maximise delivery of security awareness messaging to end users, including:
- Essential Minimum of 5 years’ experience in IT, Information Security, learning development or related role
- Proven experience…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×