Full-Time

Business Information Security Officer for Risk and Brokering and Corporate Platforms

WTW

WTW

10,001+ employees

Global risk management, insurance brokerage, consulting

No salary listed

London, UK

Hybrid

Hybrid working options available.

Category
IT & Security (2)
,
Required Skills
penetration testing
Requirements
  • Working in the BISO team, focused on the delivery of Sarbanes Oxley (SOX) audit for Technology
  • A comprehensive understanding of information security services (security operations and offensive security testing)
  • A strong understanding of SOX and other regulatory requirements, i.e. New York Department of Financial Services (NYDFS), Digital Operational Resilience Act (DORA)
  • Experience of strategic planning and oversight of cyber incident response and crisis management
  • Strong understanding of cybersecurity standards and frameworks (e.g. ISO 27001, NIST, CIS) and their application in strategic planning and policy development
  • Ability to collaborate with business leadership to operationalise strategic decisions, ensuring alignment with organizational resilience goals
  • Understanding of regulatory requirements and their impact on security
Responsibilities
  • Lead the technology Sarbanes Oxley (SOX) audit activities, liaising with the relevant technology teams, ensuring they are prepared to support the audit, including gathering of evidence requests, reporting and presenting at the SOX steering committee
  • Ensure cybersecurity practices and security by design are integrated into business unit initiatives, motivating business units to adopt efficient security controls throughout their lifecycle
  • Oversight of R&B’s and Corporate platforms response to incident, integrating cyber incident response policies with business operations to improve agility and effectiveness in cyber incident management
  • Work with R&B and Corporate platforms leaders to advise on disaster recovery and business continuity planning for business and cyber security resiliency
  • Act as a key stakeholder representing information security to support the business and technology teams delivery of the security change programme
  • Provide support to the business and technology teams to understand and address vulnerabilities within SLA, identified through penetration testing, vulnerability scanning and red team exercises
  • Foster relationships with internal business units to enhance cyber security communication, including knowledge of threats, vulnerabilities, and mitigation strategies
  • Provide strategic insights to senior management on cyber incident response readiness and effectiveness
  • Collaborate with security leadership to enforce cyber security policies and practices, addressing operations and incident response
  • Provide expertise and knowledge to the business with responses to client questions
  • Enforce the strong security culture set by the Chief Information Security Officer, ensuring uniformity across R&B and Corporate platforms leadership, business units and employees
  • Support in the Identification of technology and cyber security risks
  • Ensure the technology teams are updated with changes to information security policy & standards and support them in adherence to changes
  • Lead the information security updates at business and technology governance forums
Desired Qualifications
  • Degree in a relevant Information Technology or Information Security area
  • Information security qualifications such as Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP)
  • Leadership specific training or qualifications such as Strategic Leadership and Management
  • Expert understanding of technical information security
  • Non-technical skills in managing and engaging stakeholders at technical and non-technical levels to foster strong relationships
  • Highly developed influencing abilities and communication skills, capable of articulating complex security concepts to diverse audiences
  • Proven ability to lead and motivate teams, with the ability to inspire and drive strategic initiatives forward
  • Able to manage multiple conflicting priorities and tasks in a dynamic and high-pressure environment
  • Effective in leading change, with the agility to adjust strategies and approaches in response to evolving cybersecurity landscapes
  • Politically aware with outstanding influencing ability and the ability to work with senior management
  • Demonstrated ability to work collaboratively within and across teams, promoting an inclusive and innovative work environment
  • Outstanding problem-solving skills, committed to ensuring issues are resolved and enhancing the security framework continuously
  • Excellent strategic and operational business awareness, with insights into the key drivers, challenges, constraints, and opportunities

Willis Towers Watson helps organizations manage risk and people programs by offering advisory, brokerage, and technology-based solutions. It operates in two segments: Risk & Broking, which identifies, quantifies, and places insurance coverage for clients from small businesses to large corporations; and Health, Wealth & Career, which provides consulting, technology, and administration services for health benefits, retirement plans, and talent management. The company differentiates itself by combining advisory services, technology platforms, and brokerage capabilities under one umbrella to deliver integrated risk management and people solutions globally. Its goal is to turn risk into a path for growth by aligning risk management with health, retirement, and talent strategies to support organizational success.

Company Size

10,001+

Company Stage

IPO

Headquarters

London, United Kingdom

Founded

1828

Your Connections

People at WTW who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • North America outsourcing hires strengthen cross-selling to large employer clients.
  • New growth leaders should improve pipeline discipline and RFP conversion.
  • Climate-risk analytics creates a near-term monetization path as insurers reprice volatility.

What critics are saying

  • Competitive pricing pressure and missed new business targets hit Risk & Broking growth.
  • Consulting remains subdued, limiting recovery in Health, Wealth & Career fees.
  • Litigation investigations create legal costs, distraction, and valuation overhang.

What makes WTW unique

  • WTW combines insurance broking with human capital consulting across two global segments.
  • Its Climate Diagnostic embeds physical-risk analytics directly into broking workflows.
  • Cushon expands WTW's UK master-trust scale and workplace pension distribution.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Remote Work Options

Company News

Yahoo Finance
Apr 12th, 2026
Willis Towers Watson launches Digital Infrastructure Protector with $3B capacity for data centers

Willis Towers Watson has launched Digital Infrastructure Protector, an end-to-end solution for data centre owners, operators, contractors and hyperscalers. The product combines integrated insurance coverage for construction and operational phases with tailored risk management. The solution offers over $3 billion in capacity through collaboration with Zurich, allowing clients to consolidate building, operational property, marine and cargo exposures under a single policy. It employs an eight-point digital infrastructure risk framework to assess systemic and emerging risks as projects develop. Clients gain access to the Global Digital Infrastructure Group, led by Alastair Swift, which integrates experts from construction, energy, climate, cyber and supply chain sectors. The offering uses evidence-based broking and analytics to identify coverage gaps and prevent overinsurance.

Real News Hub
Mar 30th, 2026
Willis launches $50 million London umbrella facility for US buyers.

Willis launches $50 million London umbrella facility for US buyers. James Sallada (pictured above), head of casualty for North America at Willis, said securing meaningful umbrella insurance coverage has become "increasingly difficult" for US buyers. The facility, he added, brings together "global capacity to provide organizations with access to higher limits, streamlined placement, and tailored solutions." Willis (a WTW business) has launched a new $50 million umbrella insurance facility called WELL (Willis Excess Liability Lineslip) to address the tightening capacity in the U.S. casualty market. The facility, announced on March 30, 2026, is designed to provide organizations with access to higher liability limits at a time when domestic insurers are pulling back capacity due to rising claim frequency and severity. Here is a breakdown of the key details of the new WELL facility: | Feature | Details | | Facility Name | Willis Excess Liability Lineslip (WELL) | | Total Capacity | Up to $50 million | | Structure | $25M lead umbrella + $25M first excess coverage | | Target Clients | Organizations seeking larger limits, including those with complex or challenging risk profiles | | Underwriting | Lloyd's syndicate consortium; single policy with one lead insurer | | Key Features | Single policy form, one lead claims coordinator, built-in enhancements (disaster response, evacuation, joint venture protection) | | Policy Types | Claims-made, occurrence, or occurrence-reported basis | Why this launch matters. The launch of the WELL facility is a direct response to current market conditions. The U.S. casualty market is experiencing a hardening phase where traditional domestic insurers are limiting the amount of umbrella coverage they are willing to provide. By leveraging the capacity of the London market and a consortium of Lloyd's syndicates, Willis aims to offer a streamlined solution for clients who need to secure protection against catastrophic liability claims that exceed their primary insurance limits. Who it's for and how to access it. The WELL facility is available exclusively to Willis clients and is intended for a broad range of industries that are placing complex casualty risks. It is specifically tailored for organizations that require larger lead umbrella limits than are typically available in the traditional retail market, including businesses that may have been finding it difficult to secure appetite from domestic insurers. The facility simplifies the process for clients by offering a single policy form covering the full $50 million limit, with one lead underwriter coordinating claims across all participating markets. This structure is designed to provide a more efficient and streamlined placement process compared to traditional methods of stacking multiple excess policies. I hope this summary is helpful. Are you interested in a more detailed comparison of how this facility differs from traditional umbrella insurance structures?

Portfolio Adviser
Mar 26th, 2026
WTW expands wealth team with new hire.

WTW expands wealth team with new hire. Sophia Sednaoui joins from CG Asset Management 26 March 2026 Willis Tower Watson (WTW) has appointed Sophia Sednaoui as a senior director in its GB wealth and retail investment team. In her new role, Sednaoui will be responsible for expanding the firm's presence in the UK wealth market and developing new relationships across the sector. Prior to joining the WTW team, Sednaoui served as head of investor relations at CG Asset Management for more than a year. Before that, she spent six years in senior roles at Carmignac and almost two years on the JO Hambro sales team. Sednaoui said: "WTW's deep institutional expertise presents a unique opportunity to deliver high-quality investment solutions and products to a broader range of end investors." Ben Leach, head of GB wealth and retail investments, said: "Her impressive track record and deep knowledge of the UK wealth sector will be instrumental as we continue to invest in and expand our wealth offering." MORE ARTICLES ON

Corporate Adviser
Mar 25th, 2026
Aon appoints commercial director to global benefits team.

Aon appoints commercial director to global benefits team. Aon has appointed Carl Nordling as the commercial director for the UK and Nordics within its global benefits team. Nordling joins Aon from WTW where he worked as director of health and benefits, overseeing business development across healthcare, wellbeing, risk and benefits technology in the UK market. He has almost 20 years expense working in across employee benefits, risk and technology. In this new role Nordling will work closely with Aon's enterprise client group, human capital and risk capital leadership teams to support multinational clients in managing their insurance employee benefits risks and navigating the complexities of global benefits programmes. He will report to Matt Duffy, chief commercial officer, global benefits for Aon, and will be based in the UK. Duffy says that Nordling will be helping drive further growth in the business. He adds: "Corporate Adviser is seeing significant momentum across its global benefits offering. "By leveraging Aon's market-leading, AI-enabled data and analytics capabilities, [Nordling] will support clients in making more informed decisions and help them to make the most of their global benefits programmes."

Yahoo Finance
Mar 23rd, 2026
Willis and Circle Asia launch digital art insurance for collectors

Willis, part of WTW, has partnered with Circle Asia to launch an insurance facility for art collectors and galleries across Asia. The initiative combines Willis' fine art insurance expertise with Circle's digital platform to provide simplified coverage for artworks, jewellery and valuable collections. The facility offers a lower entry premium and allows clients to insure multiple assets—including art, jewellery, home contents and buildings—under one policy. Terms and premiums are tailored to individual requirements, with policy management handled by Willis' Fine Art team through Circle's platform. The digital approach aims to improve communication and speed up processes compared to standard practices. The facility also accommodates short-term needs such as single exhibitions or transit events, providing quick responses and comprehensive protection for Asia's rapidly growing fine arts market.