Cyber Security Program Leader

LenovoFarnborough, EnglandOn-siteFull-timeListed 2 hours ago

Apply now

About this role

We are Lenovo. We do what we say. We own what we do. We WOW our customers.
Lenovo is a US$83 billion revenue global technology powerhouse, ranked #153 in the Fortune Global 500, and serving millions of customers every day in 180 markets. Focused on a bold vision to deliver Smarter Technology for All, Lenovo has built on its success as the world’s largest PC company with a full-stack portfolio of AI-enabled, AI-ready, and AI-optimized devices (PCs, workstations, smartphones, tablets), infrastructure (server, storage, edge, high performance computing and software defined infrastructure), software, solutions, and services. Lenovo’s continued investment in world-changing innovation is building a more equitable, trustworthy, and smarter future for everyone, everywhere. Lenovo is listed on the Hong Kong stock exchange under Lenovo Group Limited (HKSE: 992) (ADR: LNVGY).
This transformation together with Lenovo’s world-changing innovation is building a more inclusive, trustworthy, and smarter future for everyone, everywhere. To find out more visit www.lenovo.com (https://www.lenovo.com), and read about the latest news via our StoryHub (https://news.lenovo.com/).

Join the next generation of Managed Services and Solutions at Lenovo as a Cyber Security Program Leader within the Solutions & Services Group, known as SSG. This is a senior global leadership position serving as a trusted deputy to the SSG security leader and helping coordinate cybersecurity strategy and operations across Lenovo solutions worldwide. The role is intended for an accomplished cybersecurity professional with broad domain knowledge, strong operational and incident-management experience, and the credibility to influence technical teams and senior executives.

The preferred hiring location is the United Kingdom. The role operates internationally across multiple time zones and may require up to approximately 20% travel, depending on business needs. Contract type and hybrid-working arrangements will be confirmed according to the employing location.

Key Responsibilities

- Lead and coordinate strategic and operational cybersecurity programs across SSG, acting as a principal point of contact for security leadership and business stakeholders.
- Provide direction and oversight across security operations, incident management, application security, secure development, risk and compliance, cryptography, and security architecture.
- Direct the response to cybersecurity incidents and emerging threats, coordinating specialist teams and driving timely risk mitigation and remediation.
- Partner with executives, product managers, architects, engineers, DevOps teams, and developers to embed security into the design, delivery, and operation of global solutions.
- Harmonize security practices across geographies, industries, technologies, and regulatory environments while accommodating relevant local and sector-specific requirements.
- Define and monitor cybersecurity programs, governance mechanisms, metrics, KPIs, risks, dependencies, and executive-level reporting.
- Advise senior leaders on cybersecurity priorities, investment needs, project assurance, operational risk, and the security status of services and solutions.
- Promote a strong security culture through clear communication, education, mentoring, and collaboration with SSG, Corporate Security, and other business groups.

Position Requirements

- Bachelor’s degree or equivalent practical experience in cybersecurity, information technology, computer science, engineering, risk management, or a related discipline.
- Substantial experience leading operational cybersecurity programs in a complex technology, managed-services, enterprise-services, or similarly fast-moving environment.
- Practical leadership experience in security operations and incident management, supported by broad knowledge of areas such as application security, architecture, infrastructure security, risk, compliance, and secure development.
- Working knowledge of recognized security standards and control frameworks, such as ISO 27001, NIST Cybersecurity Framework, CIS Controls, or comparable industry frameworks.
- Experience leading or coordinating geographically distributed teams and working across different industries, regulatory environments, technologies, and time zones.
- Professional fluency in English, with excellent written and verbal communication skills and the ability to explain cybersecurity matters to technical and nontechnical audiences.
- Strong executive stakeholder-management skills, including the judgment and credibility to influence senior leaders, challenge constructively, and translate security risks into business priorities.
- A pragmatic, adaptable, and collaborative leadership style, with strong analytical, organizational, decision-making, mentoring, and financial-planning capabilities.
- Relevant experience will be assessed according to its scope, breadth, and impact. Candidates with approximately 8 to 10 years of highly relevant experience may have the required maturity and capability, so years of experience should not be used as a strict stand-alone screening criterion. Profiles focused mainly on governance, risk, and compliance should also demonstrate meaningful operational security or incident-management leadership.

What We can offer You:
- Holiday purchase
- Private medical
- Income protection
- Attractive pension scheme
- Positive work life balance
- Learning and development
- Life insurance
- Lenovo and Motorola products discounts
- Lifestyle discounts
- Cycle to work
- ...and many more!

We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, religion, sexual orientation, gender identity, national origin, status as a veteran, and basis of disability or any federal, state, or local protected class.

AI PROCESSING NOTICE
We use AI-based tools to support some of our processes (e.g. online interviews recordings and transcripts) in order to achieve better efficiency, accuracy and for our documentation purposes. AI can make mistakes, but we always make sure that the outputs are manually reviewed by a human. You can always opt-out or contact us in case of any question.