UK Hydrographic Office
Head of Cyber Security

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Head of Cyber Security - Civil Service Jobs - GOV.UK to apply
About the job
The UK Hydrographic Office (UKHO) is seeking an experienced cyber security leader to join its Technology Directorate as Head of Cyber Security (CISO). Reporting to the Chief Digital & Technology Officer, you will lead the organisation's cyber security strategy, governance, risk management and security operations.
As UKHO's cyber security lead, you will work with executive leaders to ensure cyber risks are identified, understood and managed effectively, protecting critical services, sensitive information and national security interests. You will provide leadership across cyber operations, incident response, security assurance, secure-by-design delivery and resilience, while strengthening security awareness and accountability across the organisation.
Working closely with the Ministry of Defence, government security partners, suppliers and internal stakeholders, you will support strategic decision-making and drive continual improvement in cyber maturity and resilience.
We are looking for a proven cyber security professional with experience of developing strategy, leading teams, managing risk in complex environments and advising senior leaders. Strong leadership, stakeholder management and governance skills are essential, alongside recognised qualifications such as CISSP, CISM, CCSP or equivalent.
This is an opportunity to lead cyber security for a nationally important organisation, ensuring the resilience, security and integrity of the UK's hydrographic and geospatial services.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Hybrid working
This job role can be worked on a hybrid basis, which is an informal, non-contractual and voluntary arrangement, working between the office in Taunton and remotely within the UK.
Office attendance is expected 60% of the time. There will be a requirement to attend meetings at higher classifications which will mean office attendance is required.
Job description
- Provide strategic leadership for cyber security across the organisation, ensuring security priorities support business objectives, operational resilience and national security requirements.
- Act as the organisation’s senior cyber security adviser, giving expert guidance to executives and senior leaders on cyber risk, threats, incidents and investment decisions.
- Own the cyber risk and assurance framework, ensuring risks are identified, assessed, reported and managed appropriately, with clear recommendations for leadership action.
- Lead the organisation’s cyber security operations, overseeing threat monitoring, vulnerability management, incident response and recovery activities to maintain a strong security posture.
- Ensure security is embedded into technology programmes, projects, procurement activities and enterprise architecture, promoting a secure-by-design approach to change delivery.
- Develop and maintain effective cyber security policies, standards and governance processes, ensuring compliance with MOD, government and regulatory requirements.
- Build and lead a high-performing cyber security capability, developing skills, setting priorities, managing suppliers and driving continuous improvement across people, process and technology.
- Strengthen organisational cyber resilience and security culture through stakeholder engagement, awareness initiatives, assurance activities and collaboration with MOD, government and industry partners.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Person specification
- Proven experience leading cyber security strategy, risk management and resilience within a complex, regulated or mission-critical organisation.
- Demonstrable ability to advise and influence executive leaders, translating complex cyber and technology risks into clear business decisions.
- Strong track record of leading cyber security operations, incident response, assurance activities and continuous security improvement programmes.
- Deep understanding of cyber security governance, secure-by-design principles, regulatory compliance and risk-based decision making.
- Experience building, leading and developing high-performing cyber security teams, including the management of suppliers and outsourced services.
- Relevant professional cyber security qualifications (e.g. CISSP, CISM, CCSP or equivalent) supported by ongoing professional development and a commitment to maintaining technical credibility.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location