logologo
Hunt UK Visa Sponsors
Jobs
logologoHunt UK Visa Sponsors

Find jobs from UK licensed visa sponsors — Companies House verified, updated daily.

About

How does it workContact Us

Find Work

JobsJobs by RoleLicensed SponsorsVisa TypesSponsor Statistics

Resources

BlogGlossaryOccupation EligibilityIncome Tax Calculator

Content on this site is for general information only and does not constitute legal advice. Always consult a regulated UK immigration solicitor for advice specific to your situation.

Copyright © 2026. All rights reserved.

Verne

Head of Information Security

CompanyVerne
LocationGreater London, England, United Kingdom
Posted At2/26/2026

UK Visa Sponsorship Analytics

Occupation Type
Information technology directors
Occupation Code Skill LevelHigher Skilled
Sponsorship Salary Threshold
£86,000 (£44.10 per hour)
Occupation rate applies

Above analytics are generated algorithmically based on job titles and may not always be the same as the company's job classification. You can also check detailed occupation eligibility, and salary criteria on our UK Visa Eligible Occupations & Salary Thresholds page.

Disclaimer: Hunt UK Visa Sponsors aggregates job listings from publicly available sources, such as search engines, to assist with your job hunting. We do not claim affiliation with Verne. For the most up-to-date job details, please visit the official website by clicking "Apply Now."

Description
Department: Compliance & Security

Reports To: Head of Compliance and Security

Location: Hybrid, UK (London)

Role Purpose

As Head of Information Security, you will define the enterprise information security vision and protect the confidentiality, integrity, availability and authenticity of data across all data center campuses, corporate environments and critical OT/IT systems. You will build and lead the global IT security and Cybersecurity programs spanning security operations, system and infrastructure architecture, governance, applications, vendor risk, physical-to-cyber integration and regulatory compliance.

Key Responsibilities

Strategy & Governance:

  • Define and annually refresh the information security strategy, roadmap and operating model; integrate with compliance, enterprise risk and resilience frameworks.
  • Own and maintain the Information Security Management System (ISMS), ensuring alignment with ISO 27001/2, regulatory requirements and relevant DC industry standards.
  • Set enterprise security KPIs and metrics for executive and board-level reporting.
  • Establish policy frameworks in areas covering for example data protection, identity and access management, acceptable use, OT/ICS security, vendor security, secure development, and incident reporting.

Security Architecture & Engineering

  • Oversee security architecture for IT, cloud, network, data-center infrastructure and OT systems.
  • Define technical baselines including hardening standards, segmentation and encryption requirements.
  • Partner with Development, Design and Operations to define secure designs for cooling systems, generators, SCADA/ICS/BMS/EPMS etc.
  • Lead vulnerability management, penetration testing and red-team programs.

Identity, Access & Privileged Management

  • Own enterprise IAM and PAM strategy including MFA, RBAC and privileged controls.
  • Design and implement an organisational approach for zero trust.
  • Implement strong controls for contractor and supplier remote access and device hardening.

Security Operations, Detection & Response

  • Lead the SOC strategy and threat-monitoring capability.
  • Maintain incident response plans, playbooks and conduct exercises.
  • Build threat intelligence capabilities aligned to critical-infrastructure threats.

Cyber–Physical Integration

  • Coordinate with Physical Security on integrated access controls and incident response.
  • Take a combined approach to enterprise risk management activities.

Vendor, Supply Chain & Customer Security

  • Own supplier security assurance for high-risk categories.
  • Support hyperscale, neocloud and enterprise customer audits, RFPs and security reviews.

Regulatory, Compliance & Assurance

  • Maintain compliance with for example, NIS2, DORA and critical-infrastructure regulation.
  • Coordinate internal/external audits of the ISMS and remediation cycles.

Data & Technology

  • Own security tooling including SIEM, EDR/XDR, IAM/PAM, OT monitoring.
  • Maintain enterprise security architecture, artefacts and standards.

Culture And Resilience

  • Own development and delivery training including onboarding, refresh and annual activities.
  • Support travel security efforts.
  • Build and run resilience planning including IT DRP, critical asset Identification and backup policies.

Leadership & Budget

  • Build and lead a high-performing InfoSec team.
  • Secure budget for toolsets, SOC operations and improvements.
  • Drive security culture through training and role-based learning.

Required Qualifications & Experience

  • Bachelor’s degree in a relevant subject or similar experience and professional certification required. Master’s degree or level 7 equivalent preferred.
  • 10+ years of progressive experience in information security, cyber risk, or technology governance.
  • 5+ years in information security leadership, roles in critical-infrastructure or DC environments Is considered a plus.
  • Strong knowledge and delivery of ISO 27001, NIST CSF, SOC2 and CIS Controls and other example frameworks and Zero Trust architectural principles.
  • Experience securing OT/ICS systems and maturing SOC/IR programs.
  • Relevant Industry certifications such as those from ISACA and ISC2.

Skills & Competencies

  • Strategic security leadership, risk-based decision-making.
  • Strong documentation, audit readiness and compliance discipline.
  • Communication and influence across senior and operational teams.

Working Model

  • Hybrid with 3 days a week in the office, 25% travel to sites and suppliers.