Non-Executive Director - Cyber Security and Information Risk
- london, england, United Kingdom
- Permanent·On-site
- Full time
- £40 - £70 Per Hour
Job Description
The opportunity
A UK organisation is seeking a Non-Executive Director with senior cyber-security and information-risk expertise to strengthen its board’s oversight of one of the most significant risks it faces. Cyber security is now unmistakably a board-level and business-wide concern rather than a technical one — a serious incident can threaten operations, finances, reputation and regulatory standing at once — and boards increasingly value a director who can bring genuine, informed judgement to it.
This is a governance appointment, not an operational one. The role is to provide oversight and constructive challenge — helping the board understand, question and govern the organisation’s cyber-security posture and information risk — not to run the security function or lead incident response, which remain the responsibility of management and its specialists. The successful candidate will translate deep security credibility into effective board-level contribution as a full member of the board.
What we’re looking for
- A senior career in cyber security or information risk (for example Chief Information Security Officer, CISO, or equivalent senior security leadership)
- A credible, current understanding of cyber-security governance, information risk, and the regulatory and reporting expectations around them
- The ability to operate at board level — oversight and challenge, not execution — and to communicate technical risk in terms the whole board can engage with
- Independence, integrity, and the judgement to think beyond a single specialism as a full board member
- Existing board experience is welcome; we will also consider first‑time non-executives of the right calibre with a genuine appetite for governance


