Current jobs related to Head of Information Security - Guildford - Civil Aviation Authority


  • Guildford, Surrey, United Kingdom Civil Aviation Authority Full time

    Head of Information SecurityDate: 24 Mar 2025Location: Gatwick, GBSalary: Up to £85,000 dependent upon experienceContract Type: Permanent – Full TimeSecurity Level: SCVisa Restrictions: This position does not offer visa sponsorship.We are the UK's aviation and aerospace regulator and recognised as a world leader in its field. Our activities are diverse,...


  • Guildford, United Kingdom Comtecs Ltd Full time

    Information Security Manager / Security Incident Response Manager - Security Event Detection, Incident Management, Incident Response, Security Team Management. Permanent, Bournemouth, Dorset / Hybrid Working (1 - 2 days per week in office). £75k - £85k +Car+Bonus +Bens Global Insurance Corporation seeks an Information Security Manager / Security Incident...


  • Guildford, United Kingdom Allianz UK Full time

    **Who we are** Allianz is a global insurance company serving across 70 different countries, but from the very first day you join our team you’ll know that your contributions are valued. We offer world class learning and career development opportunities, while we celebrate an inclusive culture. **Role Description** As an Information Security Consultant...


  • Guildford, United Kingdom Allianz Full time

    Salary: Circa - £45,000Role Description:As an Information Security Consultant, you will support the Cyber Consultancy Team in implementing security initiatives and safeguarding the organization's data and systems. This role offers an excellent opportunity for individuals looking to grow their expertise in information security within a supportive and dynamic...


  • Guildford, Surrey, United Kingdom Cyber Crime Full time

    The Information Security Director develops, shapes and maintains Sycurio's information security capability, driving the attainment and maintenance of the ISO27001; PCI-DSS and SOC2 compliance. They are the subject matter of all things regarding security and compliance, owning the information risk management processes. They are the thought leader on all...


  • Guildford, United Kingdom BAE Systems Full time

    Location(s): UK, Europe & Africa : UK : GuildfordJob Title: Information Security Classified Networks Technical Assurance LeadLocation: Guildford, with some option for hybrid working.We offer a range of hybrid and flexible working arrangements – please speak to your recruiter about the options for this particular role.What you’ll be doingTechnical Risk...


  • Guildford, Surrey, United Kingdom BAE Systems Full time

    Location(s): UK, Europe & Africa : UK : GuildfordJob Title: Information Security Classified Networks Technical Assurance LeadLocation: Guildford, with some option for hybrid working.We offer a range of hybrid and flexible working arrangements – please speak to your recruiter about the options for this particular role.What you'll be doingTechnical Risk...


  • Guildford, United Kingdom Allianz UK Full time

    **Who we are** Allianz is a global insurance company serving across 70 different countries, but from the very first day you join our team you’ll know that your contributions are valued. We offer world class learning and career development opportunities, while we celebrate an inclusive culture. **Role Description** We are looking for talented, ambitious,...


  • Guildford, United Kingdom BAE Systems (New) Full time

    Location(s): UK, Europe & Africa : UK : GuildfordJob Title: Information Security Classified Networks Technical Assurance LeadLocation: Guildford, with some option for hybrid working.We offer a range of hybrid and flexible working arrangements – please speak to your recruiter about the options for this particular role.What you’ll be doingTechnical Risk...


  • Guildford, United Kingdom Allianz UK Full time

    Are you experienced in Information Security risk and looking for a new role in a growing team - fantastic, we have something that might pique your interest! The role can be based either in Guildford or Bournemouth. At Allianz, we are at an exciting and pivotal moment following the acquisition of the LV= General Insurance Group and the General Insurance...


  • Guildford, United Kingdom Amberstone Security Full time

    ASEL, design, develop and deliver fully bespoke and integrated security solutions, seamlessly bringing together people, technology and processes to achieve results-driven outcomes. As the original thinkers behind security risk modelling, which has revolutionised the industry, our business is underpinned by our risk advisory practice, which utilises data and...


  • Guildford, Surrey, United Kingdom BAE Systems. Full time

    Location(s): UK, Europe & Africa : UK : GuildfordJob Title: Information Security Classified Networks Technical Assurance LeadLocation: Guildford, with some option for hybrid working.What you'll be doingTechnical Risk Management - Conduct in-depth technical risk assessments of IT systems, networks, and applications. Identify potential vulnerabilities and...


  • Guildford, United Kingdom MARLOWE FIRE & SECURITY LIMITED Full time

    Fire & Security Service Engineer - Guildford Marlowe Fire and Security Group are the UK's leading Fire & Security company. We have achieved this status due to an intense period of organic growth and acquisition, which is also reflected in our ambitious growth plans and projections. Those growth plansinclude our ambitions for the talent of the future, which...


  • Guildford, Surrey, United Kingdom Company of Cooks Full time

    Deputy Head of Operations - Guildford Deputy Head of Operations 45,000- 50,000 per annum Surrey Craft, Creativity and Community – we are Company of Cooks These are our values, and they go far beyond corporate waffle. In fact, they set the tone for everything we...


  • Guildford, Surrey, United Kingdom Company of Cooks Full time

    Deputy Head of Operations - Guildford Deputy Head of Operations 45,000- 50,000 per annum Surrey Craft, Creativity and Community – we are Company of Cooks These are our values, and they go far beyond corporate waffle. In fact, they set the tone for everything we...

  • IT Security Analyst

    7 days ago


    Guildford, United Kingdom Comtecs Ltd Full time

    IT Security Officer / IT Security Analyst / IT Risk Analyst / InfoSec Analyst - Security Audits, Risk Assessments, Risk Management Framework Implementation, Security Strategy, InfoSec Reporting. Governance, Risk, Compliance, Archer, CISM, CISSP, CySA+, CASP+etc; Security Standards. Guildford, Surrey/Remote Hybrid (2 days per week onsite). Permanent....


  • Guildford, United Kingdom BAE Systems Full time

    **Guildford** **Digital Intelligence** **Security** **Experienced professionals** BAE Systems Digital Intelligence is home to 4,800 digital, cyber and intelligence experts. We work collaboratively across 16 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock...

  • Security Manager

    5 days ago


    Guildford, Surrey, United Kingdom Langham Recruitment Full time

    Security Manager | GuildfordSecurity Manager required to be responsible for maintenance of physical & classified material security. Reporting to the Head of IT, Security & Facilities the role maintains physical security of commercial and government assets and supports the wider IT, Personnel and Project Security functions.Core activities include:Completion...


  • Guildford, United Kingdom BAE Systems Full time

    BAE Systems Digital Intelligence is home to 4,800 digital, cyber and intelligence experts. We work collaboratively across 16 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments. **BAE Systems Digital...

  • Security Manager

    2 weeks ago


    Guildford, Surrey, United Kingdom Langham Recruitment Full time

    Security Manager | GuildfordSecurity Manager required to be responsible for maintenance of physical & classified material security. Reporting to the Head of IT, Security & Facilities the role maintains physical security of commercial and government assets and supports the wider IT, Personnel and Project Security functions.Core activities include:Completion...

Head of Information Security

2 weeks ago


Guildford, United Kingdom Civil Aviation Authority Full time
Head of Information Security

Date: 24 Mar 2025

Location: Gatwick, GB

Salary: Up to £85,000 dependent upon experience

Contract Type: Permanent – Full Time

Security Level: SC

Visa Restrictions: This position does not offer visa sponsorship.

We are the UK's aviation and aerospace regulator and recognised as a world leader in its field. Our activities are diverse, enabling the aviation industry to meet the highest safety standards, and we pride ourselves on our ability to adapt to the constantly evolving aviation environment.

The Role

This is a critical, versatile role within the CAA that undertakes a wide range of activities across, and on behalf of, the organisation in order to ensure the protection of the information held internally and by related third parties.

The role holder will need to be able to take a pragmatic and flexible risk-based approach to information security, maximising the level of security that can be achieved with available resources, and enabling the organisation to innovate and improve safely. The role holder will be able to assess and prioritise risks to ensure that they are sequenced and managed based on the significance of the threat to the organisation, adopting a pragmatic approach in situations when an “ideal” solution cannot be achieved within timescale/budget.

The role holder will be responsible for the leadership and effective management of the Information Security Team any outsourced information security services and resources and be the point of escalation and approval for information security related matters. They will also chair and lead the Information Security Steering Group which includes members of the CAA Executive Committee, presenting information and facilitating discussion to ensure effective decision making with regards to Information Security for the CAA.

The role holder must have a broad and deep understanding of risks to Information Security and appropriate mitigations and controls to manage those risks. They will also need to prioritise, manage and lead remedial actions and sponsor projects where appropriate to implement required changes, in line with CAA governance processes and structures.

The role holder will be expected to provide advice and guidance, requiring the holder to be comfortable operating at all levels of the business up to Director level, so good engagement and communication skills are essential.

Principal Accountabilities

  • Provide leadership and strategic direction for the CAAs Information Security, ranging from planning to motivational and promotional activities expounding the value of Information Security across the CAA.
  • Provide leadership and line management for the Information Management Team.
  • Work with the Senior Management to develop and manage the CAA strategy for information security based on an assessment of current and likely future threats to ensure the CAA is able to respond in a timely, risk assured manner.
  • Ensure that an effective information security risk framework is maintained across the CAA and integrated with other aspects of security and risk management.
  • Ensure all projects and initiatives delivering change have clear security requirements and principles to inform security design, which will result in solutions which protect the CAA from information security breaches. This may include collaboration with security architects and consultants to ensure architecture and design is in line with agreed security principles and requirements.
  • Provide security and risk consultancy on a range of IT and business projects, ensuring they are delivered with effective information security in mind. This will include liaison with external bodies, agencies and departments.
  • Lead and support the delivery of information security improvement projects and initiatives.
  • Ensure the information security team provides effective communications with all areas of the CAA to elevate the perception, practice and capability of Information Security for all CAA colleagues.
  • Ensure the information security team undertakes information security risk assessments and audits of products, services and applications as required in a timely manner and ensure that any remedial actions are identified and implemented.
  • Ownership, regular review and update of Information Security related policies.
  • Lead management of significant information security incidents as and when they arise, to ensure effective and prompt response and resolution.

About You

To be considered for the role you will need to have:

Essential

  • Proven experience in information management, security and risk strategies
  • Thorough understanding of standards compliance processes (specifically ISO27001/2)
  • Good understanding of the Data Protection Act 1998 and the General Data Protection Regulation (GDPR)
  • Good understanding of Payment Card Industry Data Security Standards (PCI DSS)
  • Good understanding of UK government information technology frameworks and systems
  • Experience of managing a team of security specialists to ensure their work is delivered to the desired quality in a timely manner
  • Ability to influence others to promote good working practices or to change opinions in situations where opposing views are held and present outcomes articulately
  • Significant experience of security risks and applications for Cloud and Hosted services
  • Detailed experience of the management of information security issues and incident management
  • Excellent numeracy, analytical and problem-solving skills
  • Ability to obtain and maintain a security clearance to SC level
  • Ability to work under pressure
  • Professional Information Security membership and certification (CISSP, CISM, CISA)
  • Degree in Information Security, Engineering, Computer Science, or related technical field with demonstrated related experience
  • Knowledge of Disaster Recovery (DR) and experience of DR planning
  • Experience with frameworks such as ITIL and ISO
  • Experience of Microsoft platforms and solutions, specifically Microsoft cloud offerings Azure and Office 365 components
  • An awareness of NIST, OWASP, CESG and other security guidance, as well as regulatory requirements
  • An understanding of software development environments and the specific needs of on-premise developers and 3rd party developers delivering solutions to the CAA

Additional Information

For many appointments within the CAA, these roles require access to operationally sensitive infrastructure and/or Nationally Protected information. For these roles the post holders must undergo National Security Vetting and achieve the appropriate level of clearance.

To be vetted we will usually expect a reasonable period of residency in the UK so that meaningful checks can be undertaken. For this role this will need to be 5 years.

If you do not meet these requirements, we may not be able to accept your application.

The CAA values high ethical standards and personal integrity among employees. If invited for interview you will be asked to complete a declaration of interest.

Relocation & Property

The CAA will be relocating from Aviation House (Our Gatwick Office) to new premises in a few years’ time. Our move is driven by strategic, operational and environmental considerations.

We will be moving to a new local home, up to a 15-mile radius of Aviation House, to minimise disruption for our valued colleagues and customers.

We are now working with colleagues and visitors to understand what we need in our new office, before we start our property search. We will sell Aviation House and land, vacate the site and move to new premises, but we do not expect to move before 2028.

Inclusive Recruitment

We are passionate about diversity and ensuring all are included at the CAA. We are an equal opportunity employer and actively encourage applications from candidates of all backgrounds.


As a member of the Disability Confident scheme, applicants who meet the minimum criteria for a role with us will be guaranteed an interview. We use fair and inclusive selection approaches to hire the best person for the job based on merit alone. If you require an adjustment for any reason, please let us know.


Working With Us

We are on a journey towards being increasingly adaptable, where our colleagues collaborate as part of cross-functional teams. This approach ensures we never stop learning together. It also means that you may become involved in activities that take you out of your day-to-day role, providing you with opportunities to develop and grow your career with us.

We have embraced hybrid working and offer flexible working patterns, being open to having a conversation about what works for you. We know where and when we work is important in achieving a work-life balance.

We offer a range of excellent benefits such as flexible working arrangements, free onsite gym at Gatwick, discounted gym membership for London, 28 days annual leave, additional 5 days leave purchase scheme, a generous pension scheme and much more


Our Values

Do The Right Thing, Never Stop Learning, Build Collaborative Relationships, Respect Everyone – For more information please Click Here

Closing Date: Friday 11th April 2025

Interview Date: Interviews will take place between the 14th and the 25th April 2025

We reserve the right to close this vacancy early if we receive sufficient applications for the role. Therefore, if you are interested, please submit your application as early as possible.

No recruitment agencies please.


Job Segment: Information Security, Security Clearance, Cloud, Technology, Aviation, Government, Security

#J-18808-Ljbffr