Information Security Programme Lead
7 days ago
Leeds
Information Security Programme Lead (Security Transformation) Robert Half are supporting a global consulting firm to source an experienced Information Security Programme Lead to join a critical Security Transformation programme within a complex, evolving environment.This is a senior, CISO-facing role focused on driving delivery, bringing structure, and realising value from existing security capabilities across people, process, and technology - not just deploying new tools. Assignment Details • Initial contract length: 6 months (likely extension), • Location: Leeds (2-3 days onsite per week), • Start date: ASAP (2-3 week onboarding), • Lead delivery of a multi-stream Information Security Transformation programme across multiple workstreams, • Own and drive the Security Transformation Roadmap, ensuring clear prioritisation and delivery outcomes, • Bring structure and pace to a complex environment, removing blockers and driving accountability across teams, • Establish and run programme governance, reporting, and RAID management at senior stakeholder level, • Coordinate delivery across key domains including IAM (SailPoint), PAM, DLP, and technology risk/control functions, • Ensure security tools and controls are effectively implemented, optimised, and delivering measurable value, • Embed NIST-aligned practices across Identify, Protect, Detect, Respond, Recover domains, • Drive process and governance maturity, ensuring security services are operationalised and sustainable, • Develop and track KPIs to measure security maturity, adoption, and risk reduction, • Collaborate across Security Operations, GRC, Architecture, and IT to ensure alignment and integration, • Manage dependencies, risks, and resource constraints across multiple delivery streams, • Support and lead delivery teams, enabling effective execution across squads and stakeholdersExperience Required, • Proven experience leading Information Security or Security Transformation programmes in complex environments, • Strong exposure across IAM (SailPoint), PAM, and broader security control domains, • Experience working within or delivering against NIST or similar frameworks, • Track record of driving delivery in less structured or evolving environments, • Strong understanding of how to operationalise security capabilities across people, process, and technology, • Experience managing multiple workstreams or delivery squads, • Ability to operate confidently at CISO and senior stakeholder level, • Strong stakeholder management with the ability to challenge, influence, and drive outcomesQualifications (Desirable), • CISSP, CISM, CRISC or similar, • Agile / Delivery certifications (SAFe, Scrum, Prince2, PMP)