Wpp
Wpp24d ago

Director, Security Governance & Posture

United KingdomUnited Kingdom·London,Londonexecutive
EngineeringSecurity
2 views0 saves0 applied

Quick Summary

Overview

WPP is the trusted growth partner for the world’s leading brands. We unite cutting-edge media intelligence and data solutions, world-class creativity, next-generation production, transformative enterprise solutions and expert strategic counsel in a single company – powered by exceptional…

Requirements Summary

Essential Qualifications & Experience: Exceptional communication skills in English, both written and verbal, for diverse audiences. Bachelor's degree in Information Security, Computer Science, or a related technical field.

Technical Tools
awsazuregcpagilecybersecurity

Why we're hiring:

This is a senior leadership role with real scope and visibility. As Director of Security Governance & Posture, you will build and lead WPP's Technical Security Governance function — a team of domain specialists responsible for defining the security guardrails, posture expectations, and governance standards that protect one of the world's most complex and distributed technology estates.

You will not be managing firewalls or running a SOC. This role is about defining what good looks like, measuring whether we are getting there, and holding a large, fast-moving global organisation accountable for its security performance. You will own the governance framework across seven technical domains — Cloud, Vulnerability Management, Identity, Endpoint & Compute, AI & Agentic, Software Development, and Data Security — and lead the team that brings it to life.

If you thrive in complex, decentralised environments, know how to govern through influence rather than authority, and can turn messy security data into a clear story for a CISO or a board — this role is built for you.

What you'll be doing:

  • Lead and develop a team of Technical Security Governance Leads, each owning a critical security domain, ensuring clear accountability, measurable outcomes, and continuous improvement.
  • Own the governance framework — defining the standards, baselines, guardrails, and exception criteria that set the security performance bar across WPP's global technology estate.
  • Drive posture measurement and performance reporting — owning the KPI/KRI framework that gives WPP's CISO and leadership team an honest, actionable picture of security risk and trajectory.
  • Provide independent challenge and escalation — ensuring that material risks are identified, escalated, and treated, and that weak remediation plans or risk acceptances do not go unchallenged.
  • Engage at the most senior levels — acting as the primary interface between Technical Security Governance and ET, DT&S, and business technology leadership, as well as Legal, Audit, and the CISO office.
  • Build governance that works in practice — embedding security expectations into delivery workflows across a creative, fast-moving, globally distributed organisation without creating unnecessary friction.

What you'll need:

Requirements

~1 min read
  • Exceptional communication skills in English, both written and verbal, for diverse audiences.
  • Bachelor's degree in Information Security, Computer Science, or a related technical field.
  • Demonstrable experience in technical security governance, security assurance, or risk-based security oversight within a global enterprise.
  • Profound understanding of leading cybersecurity policies, standards, and frameworks (e.g., ISO 27001, NIST CSF).
  • Extensive technical security knowledge spanning multiple domains, enabling effective leadership of specialist teams, credible challenge, and keen discernment of incomplete information.
  • Proven executive communication abilities to translate complex risk and security posture data into clear, concise, and honest narratives for both senior leadership and non-technical stakeholders.
  • Practical experience governing security across diverse regions and regulatory landscapes, with a solid grasp of GDPR and other major data protection frameworks.
  • Comprehensive understanding of client data obligations, recognizing their critical reputational and commercial implications.

Nice to Have

~1 min read
  • Relevant industry certifications such as CISSP, or cloud platform certifications (Azure, AWS, GCP).
  • Familiarity with security posture and detection tooling, including CNAPP/CSPM, EDR, vulnerability scanning, identity telemetry, and effective evidence management approaches.
  • Working knowledge of agile methodologies.
  • Experience operating within multinational, multicultural, and matrixed organisational structures.

  • Proactive Problem-Solver: Anticipates governance and compliance challenges, developing and implementing effective solutions.
  • Collaborative Team Player: Builds and nurtures strong relationships across diverse teams (e.g., Legal, Enterprise Technology) to foster alignment and optimise efficiency.
  • Detail-Oriented: Ensures meticulous accuracy and thoroughness in policy development, risk assessments, and reporting.
  • Adaptable & Resilient: Thrives in dynamic, fast-paced environments, quickly adjusting to evolving priorities and regulatory requirements.
  • Unwavering Ethical Integrity: Upholds the highest ethical standards, ensuring strict compliance with policies and safeguarding the organisation's reputation.
  • Strong Analytical Thinker: Proficiently interprets complex data to identify critical insights and formulate actionable recommendations.
  • Effective Communicator: Clearly articulates technical concepts, findings, and recommendations to both technical and non-technical stakeholders.

 

Who you are:

What We Offer

~1 min read

Location & Eligibility

Where is the job
London, United Kingdom
On-site at the office
Who can apply
Open to applicants worldwide

Listing Details

Posted
May 1, 2026
First seen
May 1, 2026
Last seen
May 24, 2026

Posting Health

Days active
23
Repost count
0
Trust Level
31%
Scored at
May 24, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Wpp
Wpp
greenhouse
Employees
10,000+
Founded
1985
Domain
wpp.com
View company profile
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

WppDirector, Security Governance & Posture