Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Head of Information Security role.
Rezi rewrites your resume against GoHenry's job description. Free.

Tailor your resume to this Head of Information Security role.
Rezi rewrites your resume against GoHenry's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Head of Information Security posting at GoHenry — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Head of Information Security posting at GoHenry — free, in seconds.
About the Role
GoHenry is seeking a Head of Information Security to own the company's security posture end-to-end. This senior leadership role involves building and scaling a high-performing team, embedding a culture where security is a first-class concern, and protecting the data and money of children and families.
Responsibilities
- Define and lead the information security strategy, roadmap, and governance framework aligned to a NIST-based security framework.
- Lead incident response, vulnerability management, penetration testing, cloud/application/IT security, and identity and access management.
- Maintain SOC 2 Type II, PCI-DSS Level 1, and FCA compliance audit readiness.
- Build and evolve a scalable security architecture across cloud infrastructure, application, and network layers.
- Translate the threat landscape into actionable initiatives and clear context for the board.
- Own the AI security governance framework and adapt to evolving regulatory environments.
- Manage and develop a multi-disciplinary security function spanning GRC and cybersecurity engineering.
- Build hiring plans, establish clear priorities, mentor team members, and act as a calm, decisive leader during high-pressure moments.
- Serve as the primary security interface with Engineering, Product, Legal, Compliance, Finance, and People teams.
- Support product teams on security implications for new features, AI tools, and third-party partnerships.
- Drive observable security through meaningful metrics, structured incident logging, and smart alerting.
- Contribute to executive risk reporting, risk register management, and security budget planning.
- Deliver strong performance across security incident rates, mean time to detection/recovery, clean SOC 2/PCI-DSS/FCA audits, SLA remediation times, team engagement, and company-wide security training completion.
Requirements
- Proven leadership experience scaling a security function across information security, GRC, and cybersecurity engineering.
- Strong technical grounding in cloud, application, and network security, with a track record of collaborating directly with engineering teams.
- Direct experience owning compliance, audit programmes, and AI security governance frameworks (including familiarity with the EU AI Act and UK AI frameworks).
- Background in a fast-moving, product-led technology business—ideally within regulated fintech or platforms serving children and families.
- Ability to translate complex security risks into clear, business-relevant language for non-technical leadership and board-level stakeholders.
- A thoughtful, supportive approach to people management, mentoring, and team development.
- Comfort with ambiguity, defining strategic problems from scratch, and bringing teams along.
Location
- UK-based
Work Type
- Work from Home, Office, or a mix of both
Benefits
- Workplace pension plan
- 33 days of holiday (including public holidays)
- Great company events local & abroad
- Your Birthday Day off
- 25 days annual leave, in addition to 8 UK bank holidays
- An excellent Induction & onboarding program with ongoing learning & development throughout your career
- A choice between Bupa Health Cash Plan or Bupa Private Medical
- Death in service – 4x your annual salary from month 1
- Physical and Mental Wellbeing support and platforms for you and your family
- Family-friendly leave policies
- Enhanced maternity leave – 20 weeks full basic pay after 2 years’ service and 26 weeks full basic pay after 3 years’ service
- Paternity leave – 4 weeks full pay after probation
- Salary Sacrifice options
About the Company
- GoHenry is a UK-based fintech company created by parents to pioneer financial education.
- GoHenry moved into Europe and the US by joining forces with French fintech company PixPay and US investing app, Acorns.
- Together, Acorns, PixPay, and GoHenry have over 6 million members across 5 countries.
- We are focused on empowering families with engaging money management tools, educational content, and a seamless product experience that creates financial well-being from birth to adulthood.
- We're on a mission to help every kid be smart with money.
- Our goal? Create generations of independent, confident young adults, armed with money skills that will set them up for life.
- We place the power in the hands of young people, giving them the tools they need to master the financial ropes for themselves.
- They can spend, save, earn, and give with GoHenry’s prepaid debit card and app – because learning through doing really works (and it’s more fun!).
- All while our unique built-in controls give parents total peace of mind.
- We ranked #38 in Newsweek's Top 100 Most Loved Workplaces in the UK in 2023.
- We’re one of Tech Track’s top 50 fastest-growing UK companies.
- We won Finders Kid’s Cards Customer Satisfaction Awards in 2022 and 2023.
- We won the Tech for Good award at the Better Society Awards 2023.
- Our kids and parents have donated over £500,000 of their own money to NSPCC via their GoHenry accounts.
Equal Opportunity
- GoHenry is an equal-opportunity employer, and we’re on a mission to foster a diverse & inclusive workplace.
- Individuals seeking employment at GoHenry are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law.