Cyber Security and Data Protection Lead

5 days ago


London, Greater London, United Kingdom The Restaurant Group Full time

We are seeking an experienced Cyber Security and Data Protection Lead to join our team at The Restaurant Group. This role is responsible for leading the company's information security strategy, ensuring the protection of digital assets, systems, and sensitive data across the organisation.

Key Responsibilities:
  • Develop a comprehensive information security strategy tailored to the needs of The Restaurant Group
  • Lead the design and implementation of effective cyber security controls to safeguard digital systems, including customer data, financial information, and point-of-sale (POS) systems across the group
  • Monitor, assess, and mitigate vulnerabilities and threats, using tools like firewalls, intrusion detection systems, encryption, and other cybersecurity technologies
  • Regularly conduct risk assessments and security audits of all IT systems, applications, and infrastructure
  • Develop a cyber resilience plan, ensuring business continuity and disaster recovery mechanisms are in place
Data Privacy & GDPR Compliance:
  • Serve as the company's Data Protection Officer (DPO) in compliance with the UK GDPR and Data Protection Act 2018
  • Advise the organisation on its legal obligations under data protection laws, ensuring the proper handling of personal data across all business processes, especially in customer data collection and marketing activities
  • Lead data protection impact assessments (DPIAs) to identify and mitigate privacy risks in new projects and services
  • Act as the point of contact with the Information Commissioner's Office (ICO) and manage data breaches in accordance with the law
  • Develop training and awareness programs for employees around data privacy and security best practices
  • Maintain records of processing activities on OneTrust
  • Manage personal data incidents, including investigation, response, notification assessment and remediation
  • Assist with the CCTV improvement plan, conducting DPIAs, drafting processes and completing annual registrations
Information Governance & Compliance:
  • Manage TRG's data privacy programme and compliance framework
  • Ensure compliance with industry-specific regulations and standards such as the Payment Card Industry Data Security Standard (PCI DSS) for secure transactions
  • Oversee third-party risk management, ensuring vendors and service providers adhere to security standards
  • Prepare regular reports for senior management, detailing information security risks, incidents, and mitigation strategies
What We're Looking For:
  • In-depth understanding of UK data protection laws (UK GDPR, Data Protection Act 2018) and experience in a Data Protection Officer role
  • Strong knowledge of cybersecurity frameworks (e.g., ISO 27001, NIST), technologies, and best practices
  • Familiarity with compliance requirements in the hospitality industry, including PCI DSS
  • Experience in risk management, vulnerability assessments, and penetration testing
  • Experience with OneTrust (desirable)
Education and Qualifications:
  • Bachelor's degree or equivalent from an accredited university, preferably in a legal or technical topic
  • Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), or similar credentials
  • Certified Data Protection Officer (CDPO), Certified Information Privacy Professional (CIPP), or equivalent certification

We offer a competitive salary range of £80,000 - £100,000 per annum, depending on experience, plus a bonus scheme and excellent benefits package. If you are passionate about protecting data and want to work with a dynamic team, please submit your application.



  • London, Greater London, United Kingdom Iceberg Cyber Security Full time £60,000

    Job Title: Senior External Attack Surface Management AnalystLocation: Flexible working options availableAbout the Role: Iceberg Cyber Security is seeking a Senior External Attack Surface Management Analyst to help protect critical assets by identifying and mitigating perimeter risks.Key Responsibilities: Maintain and monitor the global attack surface to...


  • London, Greater London, United Kingdom The Restaurant Group Ltd Full time

    We are The Restaurant Group Ltd, a leading hospitality business in the UK. Our diverse portfolio of brands provides something for everyone, and we are proud to be a significant player in the UK casual dining market.Cyber Security Strategy & ManagementDevelop and implement a comprehensive information security strategy tailored to the needs of The Restaurant...


  • London, Greater London, United Kingdom The Restaurant Group Full time

    Head of Cyber Security and Data ProtectionWe're The Restaurant Group, a leading hospitality business in the UK. As our Head of Cyber Security and Data Protection, you'll be responsible for developing and implementing a comprehensive information security strategy to safeguard our digital systems, customer data, and financial information.Cyber Security...


  • London, Greater London, United Kingdom Financial Conduct Authority Full time

    About the RoleThe Financial Conduct Authority is seeking a highly skilled Cyber Security and Data Protection professional to join its Cyber & Information Resilience Department.This role will play a critical part in ensuring the organisation's cyber security and data protection measures are in place to meet the requirements of relevant legislation.Key...


  • London, Greater London, United Kingdom The Restaurant Group Ltd Full time

    Cyber Security and Data Protection RoleThe Restaurant Group Ltd is seeking a highly skilled Cyber Security and Data Protection professional to lead our information security strategy and ensure the protection of digital assets, systems, and sensitive data across the organisation.This role encompasses all Data Protection Officer responsibilities, leading the...


  • London, Greater London, United Kingdom FCA Full time

    Job SummaryWe are seeking a highly skilled Cyber Security and Data Protection Specialist to join our team at the FCA. As a key member of our Security Expertise and Advisory (SE&A) team, you will play a critical role in advising the business on cyber security and data protection matters.Key ResponsibilitiesAs a Cyber Security and Data Protection Specialist,...


  • London, Greater London, United Kingdom Financial Conduct Authority Full time

    Cyber Security and Data Protection ExpertThe Financial Conduct Authority is the UK's conduct regulator for around 50,000 financial services firms and financial markets.Salary: London ranging from £56,400 - £80,000 and National ranging from £52,200 - £70,000.This role will support the organisation to ensure it has appropriate cyber security and data...


  • London, Greater London, United Kingdom The Restaurant Group Ltd Full time

    We are seeking a highly skilled and experienced Head of Cyber Security and Data Protection to join our team at The Restaurant Group Ltd. As a key member of our organization, you will be responsible for leading our information security strategy and ensuring the protection of our digital assets, systems, and sensitive data.Cyber Security Strategy &...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time £110,000 - £120,000

    Cloud Security Engineer LeadIceberg Cyber Security is partnering with a leading technology company to find a Cloud Security Engineer Lead. This critical role will collaborate closely with the Director of Cyber Security and the CTO to drive the company's cloud security strategy forward. As a Cloud Security Engineer Lead, you will play a pivotal role in...


  • London, Greater London, United Kingdom DWF Full time

    About DWFDWF is a global legal business providing high-quality legal services across legal advice and managed services. We empower people to be themselves within an inclusive and supportive environment, enabling everyone to achieve their full potential in line with their abilities and career aspirations.About the RoleOur Cyber Security and Data Protection...


  • London, Greater London, United Kingdom Cyber Crime Full time

    We are seeking a highly skilled Data Protection Expert to join our Cyber Risk Management team. As a key member of our team, you will be responsible for assessing and mitigating cyber risks, ensuring compliance with relevant laws and regulations, and driving business growth through data-driven decision making.This exciting opportunity offers a competitive...


  • London, Greater London, United Kingdom Ventula Consulting Limited Full time

    At Ventula Consulting Limited, we are seeking a Senior Data Protection and Information Security Lead to drive our data protection processes, including privacy programmes, and ensure compliance with UK GDPR and wider data protection regulations.This role will also involve developing the information security strategy, implementing effective cyber security...


  • London, Greater London, United Kingdom The Restaurant Group Ltd Full time

    We're The Restaurant Group, one of the UK's biggest hospitality businesses. Our diverse portfolio of brands provides something for everyone, and we're proud to be TRG.Cyber Security Strategy & ManagementDevelop and implement a comprehensive information security strategy tailored to the needs of The Restaurant Group.Lead the design and implementation of...


  • London, Greater London, United Kingdom Campion Pickworth Full time

    About the RoleCampion Pickworth is seeking a highly skilled Cyber Security and Data Protection Specialist to join their team in London. This is an exciting opportunity for someone who wants to build a career in information security.Job DescriptionThe successful candidate will be responsible for enhancing the bank's security capability and strengthening its...

  • Cyber Security Lead

    5 days ago


    London, Greater London, United Kingdom PDS Cyber Services Full time

    Job Description:PDS Cyber Services seeks an experienced and skilled professional to fill the role of Cyber Security Lead, reporting directly to our leadership team.As a key member of our team, you will be responsible for leading the development and implementation of our threat detection and response strategy. Your primary goal will be to identify and...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Iceberg Cyber Security is seeking a highly skilled Information Security Assurance Specialist to join its team. This role will involve securing the security of services to achieve information security accreditation such as NIST, ISO-27001, and JSP 440. The ideal candidate will have a strong analytical background and experience with large and complex data...


  • London, Greater London, United Kingdom DWF Full time

    About DWFDWF is a global legal business providing high-quality legal services across legal advice and managed services. We empower people to be themselves within an inclusive and supportive environment, enabling everyone to achieve their full potential in line with their abilities and career aspirations.Job RoleWe are seeking UK-qualified lawyers (Solicitor...


  • London, Greater London, United Kingdom La Fosse Associates Full time

    Are you looking for a challenging role that will allow you to make a real difference in the world of cyber security? We are seeking a highly motivated and experienced Cyber Security Manager to lead our team of passionate individuals who are dedicated to protecting our data, employees, volunteers, and those we help. The organization we work for is a renowned...


  • London, Greater London, United Kingdom Data Careers Ltd Full time

    About the RoleWe are seeking a seasoned Cyber Security Infrastructure Manager to lead and grow our high-performing team of Security Analysts, responsible for delivering a critical Security / Cyber Engineering function.This is a hands-on management role where you will be responsible for designing, implementing, and continuously improving cybersecurity...


  • London, Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time

    LT Harper - Cyber Security Recruitment is seeking a highly skilled Cyber Security Architect Lead to join their UK-based team.The ideal candidate will have extensive experience in leading comprehensive security assessments of cloud-native, microservices-based architectures. A strong focus on web and mobile applications, cloud security testing, adversary...