Policy Expert – Chief Information Security Officer
🚀Are you ready to transform the insurance industry?
Policy Expert is a forward-thinking business that loves to get things done. Leveraging proprietary technology and smart data, we offer reliable products and a wow customer experience.
Having achieved rapid growth since being founded in 2011, we’ve won over 1.5 million customers in Home, Motor and Pet insurance and have been ranked the UK’s No.1-rated home insurer by Review Centre since 2013. 🏆
Hear from our team about what it's like working at Policy Expert ✨
We’re looking for a hands-on, commercially sharp CISO to scale and embed cyber security in a fast-growing, PE-backed insurer. This is an execution role, not strategy creation. The strategy exists. We need someone to deliver it at pace, with impact and ROI.
What You’ll Do
- Deliver ascalable, business-embedded cyber programme
- DriveNIST maturity uplift
- Ownthird-party risk at scale(vendors, APIs)
- Strengthendata, application, and cloud security
- Accountability forcontinued incident readiness and operational resilienceimprovements
- Translate cyber risk intoclear commercial decisions
- Supportinvestor scrutiny, diligence and exit readiness
- Maintain alean, high-performing security function
Profile
- Hands-on operator. You’ve delivered in growing maturity environments
- Commercial and ROI-driven, Not process for process’ sake
- Exec credible. Able to challenge and push back
- Fast, decisive, outcome-focused
- Done this before and can repeat under pressure
- Experienced operating in a PE-backed, high-expectation environment
Critical Experience
- Strategy → Execution: Aligned security strategy to business goals and delivered outcomes
- Live Incidents: Led and coordinated major security incidents end-to-end
- IT + Cloud: Strong across both traditional IT and modern cloud/product environments
- Delivery Approach: UsesMVP, rapid iteration and pragmatic risk management to drive progress
Experience
- Insurtech, fintech, or PE-backed SaaS / digital platform
- Strong in cloud, product, and application security
- Experience scaling security in lean, high-growth businesses
- Deep understanding of third-party ecosystems and APIs
- Comfortable across engineering + traditional IT security
- Exposure to diligence / transaction environments
What Success Looks Like
- Clear progress toward NIST 3.0
- Third-party risk embedded at scale
- Stronger cloud, data, and app security posture
- Commercially aligned cyber spend (ROI-led decisions)
- High exec and board confidence
The Type of CISO We Want
Not a “best in class at any cost” CISO.
We want someone who:
- Spends money like it’s their own
- Delivers outcomes, not frameworks
- Operates at pace, in the grey, under pressure
Benefits:
📍 This role will be based in our London office in a 50/50 Hybrid mode.
💸 We match your pension contributions up to 7%
🏥 Private medical & Dental cover
📚 Learning budget of £1,000 a year + Study leave (with encouragement to use it)
😁 Enhanced maternity & paternity
🚉 Travel season ticket loan
🎟️ Access to a wide selection of London O2 events and use of a Private Lounge
🌈 Employee Wellbeing Programme
🚪 Prayer room in Office
What We Stand for and Next Steps “We pride ourselves on being an equal opportunity employer. We treat all applications equally and recruit based solely on an individual’s skills, knowledge, and experience. The quality and growing diversity of our team is a testament to this commitment”
At Policy Expert, we are committed to fostering an inclusive and supportive environment for all candidates. If you require any reasonable adjustments during the interview process to accommodate your needs, please do not hesitate to let us know. We are dedicated to ensuring every candidate has an equal opportunity to succeed and will work with you to provide the necessary support.
We aim to be in touch within 14 working days of your application – you will be notified if successful or unsuccessful. Please be encouraged to apply even if you do not meet all the requirements.
Useful links:
Glassdoor | Trust Pilot