Testronic
Chief Information Security Officer (CISO)

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Testronic is a global leader in Quality Assurance and technology services for the games and entertainment industries. We work with some of the world's leading game developers and publishers, providing Functional QA, Compliance QA, Localization QA, Compatibility QA, and other specialized services.
With diverse teams across Europe, Asia, and North America, we foster an inclusive, collaborative culture built on four core values: We Care Deeply, Passion for Quality, Trust in Unity, and Pride in Ownership. Whether you're starting your career or looking for your next challenge, Testronic offers opportunities to learn, grow, and make a meaningful impact.
About the Role
We are looking for a Chief Information Security Officer (CISO) to lead Testronic’s information and cyber security programme at a global level. The CISO will define and deliver the security strategy, oversee enterprise security risk and governance, lead the Information Security function, and provide senior leadership and Board-level advice on cyber security, resilience and compliance.
Responsibilities:
Information Security Strategy
- Develop and deliver Testronic’s global information security strategy, aligned with business objectives, technology plans and risk appetite.
- Translate security objectives into measurable programmes, capabilities and annual priorities.
- Monitor the security landscape and adapt the strategy to emerging threats, technology and regulatory requirements.
Governance & Risk Management
- Own the global information security governance framework, policies and risk management processes.
- Ensure material security risks have clear ownership, treatment plans and appropriate escalation.
- Oversee the Information Security Management System and promote security accountability across the organisation.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Board & Senior Leadership
- Provide clear, regular reporting to the Board and senior leadership on cyber risk, security posture, incidents, compliance and resilience.
- Advise executives on significant security risks and support informed business decisions.
- Communicate complex security topics in clear business and financial terms.
Security & Incident Management
- Act as the senior escalation point for significant information security incidents.
- Lead or support executive-level response to major cyber incidents, working with IT, Legal, Privacy, Communications and business teams.
- Ensure incident response exercises, lessons learned and remediation activities are effectively managed.
Security Programme & Assurance
- Oversee security programmes covering corporate technology, cloud, applications, products and third parties.
- Provide oversight of security architecture, vulnerabilities, penetration testing, control testing and independent assurance.
- Monitor the effectiveness of internal and outsourced security services and ensure key security improvements are delivered.
Compliance & External Stakeholders
- Oversee information security requirements arising from legislation, regulations, customer contracts and recognised standards.
- Support ISO 27001 and other relevant certification and assurance programmes.
- Represent Testronic in significant security matters involving clients, auditors, regulators, insurers and other external stakeholders.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Leadership & Business Partnership
- Lead, develop and build a capable global Information Security function.
- Work closely with IT, Legal, HR, Facilities, Commercial, QA and other departments to embed security into business and technology decisions.
- Manage the security budget, strategic suppliers and major security investments.
- Ensure security risks are considered in acquisitions, outsourcing and major organisational or technology changes.
Requirements:
- Significant senior-level experience in information and cyber security.
- Experience developing and implementing an enterprise security strategy.
- Experience advising Boards, executives or senior governance committees.
- Strong experience in enterprise security risk management and governance.
- Experience leading security programmes across complex technology environments.
- Experience managing significant cyber security incidents or crisis situations.
- Experience leading and developing multidisciplinary security teams.
- Strong understanding of security governance, architecture, operations, assurance and operational resilience.
- Knowledge of cloud, infrastructure, identity, application and product security.
- Experience with security frameworks, ISO 27001 and third-party risk.
- Strong stakeholder, programme, budget and supplier management skills.
- Knowledge of relevant UK legal, regulatory and contractual requirements.
GOOD TO HAVE:
- CISSP, CISM, CCISO, ISO/IEC 27001 Lead Implementer/Lead Auditor, CRISC or equivalent qualifications.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location