Director - Healthcare - Cyber Security

Location: 

London

Category:  T&D Cyber
Business Unit: 

Director – Healthcare – Cyber Security

The role will be working in the UK Cyber Security practice within our Technology and Data service line in Advisory. Our clients across healthcare are facing increasing cyber threats, heightened regulatory expectations and growing pressure to demonstrate that cyber resilience protects services, data, operational continuity and patient safety. Our specialists provide independent, jargon-free advice and advanced technical capabilities to help clients proactively manage cyber and technology risks, strengthen resilience and unlock value from their information assets while protecting their organisations and the people they serve.

We provide cyber security services to clients across three coverage groups:

  • Financial Services
  • Sectors
  • Infrastructure, Government and Health

This is a Director role to lead our go-to-market approach for cyber security services with a focus on healthcare, including NHS organisations, Arm’s Length Bodies, provider organisations, commissioners, regulators and private healthcare organisations. A key emphasis of the role will be on originating and leading the delivery of cyber security engagements, strengthening KPMG’s relationships across the healthcare market and contributing to the leadership of our cyber security business in Infrastructure, Government and Health.

The Director role will be responsible for the following areas:

  • Work collaboratively with the leadership of the healthcare cyber security business, cyber security capability leads, Government and Health colleagues and our alliance partners to deliver the cyber security business plan for healthcare clients.
  • Grow our current footprint to meet market demand and client issues, exploiting adjacencies across current engagements in cyber, digital transformation, cloud, data, AI, operational resilience, technology risk and managed services.
  • Build relationships with other parts of the firm, including health advisory, technology transformation, cloud, data, AI, privacy, technology risk, operational improvement and major programme delivery, to bind offerings together around the needs of healthcare clients.
  • Actively contribute to relationships with our strategic alliance partners to drive collaboration, sales opportunities and differentiated healthcare propositions.
  • Lead and maintain our people capability by managing and developing the technical and sector skills of the team, growing our healthcare cyber capability and supporting recruitment of specialist resources.
  • Originate and lead on sales opportunities across the healthcare market, including opportunities with national bodies, NHS organisations and private healthcare providers.
  • Develop relationships internally and externally and build a high-quality pipeline of opportunities and/or sell engagements to healthcare clients.
  • Lead the delivery of cyber security engagements, ensuring quality, pace, commercial discipline and alignment to the operational realities of healthcare.
  • Define the people requirements, including skills, experience and market credibility, needed to strengthen our team of cyber security resources and lead the recruitment of these resources.

Reporting to the Lead Cyber Security Partner for Health, the Director role involves:

  • Taking accountability for the delivery of healthcare cyber security engagements and leading multiple engagements on a day-to-day basis with the assistance of Senior Managers and Managers in the team.
  • Being responsible for expanding our cyber security services in the healthcare sector, with a focus on propositions that respond to current market demand and the long-term direction of health and care digitisation.
  • Providing leadership and collaborating with people across the coverage groups on cyber security services to deliver a clear and unified strategy for healthcare clients.
  • Leading healthcare sales origination and business development initiatives and acting as an integral part of the broader Technology and Cyber Security leadership team.
  • Contributing to the overall healthcare cyber security strategy by identifying opportunities for growth and developing the strategy to capitalise on cyber security risk, resilience and transformation opportunities in this sector.
  • Building and managing excellent networks and client relationships, typically at CIO, CCIO, CNIO, COO, CISO, SIRO, Caldicott Guardian, Chief Digital Officer, Chief Information Officer, Chief Technology Officer, Director of Digital, Director of Strategy, Director of Operations and board level, across a range of healthcare organisations.
  • Actively identifying and progressing healthcare business development opportunities, as well as managing sales activities such as responding to RFPs, bid management, proposal writing and client presentations.
  • Developing internal networks and maintaining excellent relationships with colleagues across KPMG, particularly across cyber, digital health, transformation, cloud, data, AI, risk and public sector teams.
  • Coaching and developing team members as part of our overall performance management process or on specific engagements, with a focus on building commercially confident, technically credible and sector-aware talent.
  • Contributing to practice management, including training, knowledge management, thought leadership, propositions, market eminence and the development of reusable healthcare cyber assets.
  • Travelling in the UK to regional offices and client sites, including healthcare clients where required; and travelling in the UK or internationally to support client delivery where required.
  • Acting in line with KPMG’s values at all times.

The person

  • Bachelor’s degree qualification.
  • MBA, Master’s degree or relevant professional qualification desirable.
  • Experience of working in the healthcare sector, ideally including previous employment within healthcare, health technology, NHS, public sector health, private healthcare, or a closely related organisation.
  • Experience of working at senior level as a cyber security subject matter expert, with the credibility to advise senior healthcare stakeholders on cyber risk, resilience, security operations, identity, threat management and technology risk.
  • Experience and knowledge of the healthcare market, including the priorities, pressures and operating models of NHS organisations, national health bodies, provider organisations, commissioners, regulators and private healthcare providers.
  • Strong existing relationships and market knowledge across healthcare, with the ability to identify and engage key stakeholders, understand buying dynamics and navigate complex health and care ecosystems.
  • Commercially aware and with industry relationships that will enable achievement of significant annual revenue targets through origination, account development and high-quality delivery.
  • Wide industry exposure with a depth of technical security knowledge and experience in cyber security, including cyber strategy, cyber risk management, security governance, cyber resilience, incident response, security operations, IAM and cyber threat management.
  • Experience and knowledge of the regulatory, assurance and standards environment facing healthcare clients, including cyber security, privacy, information governance, clinical safety, data protection and operational resilience obligations relevant to health and care.
  • Proven experience of successfully leading, managing and delivering cyber security and technology advisory, transformation and managed services to large and complex clients.
  • Proven experience of delivering cyber security advice that connects technical risk to healthcare outcomes, operational continuity, patient safety, public trust and board-level accountability.
  • Excellent written and verbal communication skills, with the ability to explain complex technical issues to non-technical audiences, including executive teams, clinicians, operational leaders and boards.
  • Extensive relevant sales experience, negotiation skills and project management capability, with a track record of converting relationships and market insight into secured work.
  • Sound understanding of risk management in a professional services environment.
  • A collaborative leadership style, with the ability to build multidisciplinary teams and bring together cyber, digital, data, cloud, AI, privacy and operational transformation expertise around client problems.

Healthcare-specific differentiators

The successful candidate should bring more than generic cyber leadership. They should understand how healthcare works, who matters in the market, how decisions are made, and why cyber risk must be framed through resilience, safety, trust and service continuity.

They should be able to open senior healthcare conversations, spot where cyber risk intersects with digital transformation and operational performance, and build propositions that are credible to healthcare executives, clinicians, digital leaders and security teams.

 

#LI-EH1