Role overview
Head of Technology – Risk & Security at Currys plc. Full‑time, permanent, Grade 6. This role is hybrid based in Waterloo.
Responsibilities
- Shape and oversee Currys’ information security and technology risk governance strategy.
- Act as the security advisor for business units, translating technical risks into clear business impacts.
- Identify, assess, and manage information security and technology risks and implement controls.
- Ensure compliance with regulations such as GDPR and PCI‑DSS and maintain security policies.
- Prepare, test, and maintain incident response plans and business continuity strategies.
- Collaborate with IT, Legal, Data Protection, and third‑party vendors to ensure end‑to‑end security and risk alignment.
- Monitor and review the effectiveness of security programmes and stay ahead of emerging trends.
- Lead risk and security training and awareness programmes.
Qualifications
- Senior leadership experience in information security or risk.
- Strong communication skills with confidence to work with stakeholders up to Board and ExCo level.
- Experience in compliance, policy design, and information security frameworks (ISO 27001, NIST, COBIT, CIS Controls).
- Knowledge of governance, risk and compliance toolsets, internal audit processes, and security controls assessment.
- Degree in Technology, Information Security, Risk Management or equivalent experience.
- Professional certifications such as CISSP, CISM, CRISC or ISO 27001 Lead Implementer are desirable.
Benefits
- Company pension
- Company bonus
- Private medical
Why join us
Currys plc is committed to inclusion and diversity. We offer continuous training, career growth, and the opportunity to make a real impact on people and the planet.
Seniority level
Employment type
Job function
Industries