Head of Information Technology
Bruumi · Birmingham, England, United Kingdom
قدّم وتابع مع أبلاي إيدجJob DescriptionJob Title - Head of ITReporting To - CEOLocation - Hybrid - Birmingham OfficeLast Updated - 02/09/20261. Purpose of the RoleThe Head of IT will be responsible for leading and overseeing Bruumi’s technology function. The role is accountable for the strategy, architecture, integration, operation, security and governance of the company’s technology estate, including its key business systems and third-party technology providers. In a small and growing organisation, the Head of IT will combine strategic leadership with hands-on delivery, ensuring that technology is secure, resilient, scalable, well controlled and capable of supporting Bruumi’s business and regulatory objectives.2. Key Responsibilities· Define, implement and maintain Bruumi’s IT strategy, technology roadmap and target architecture, aligned with the business plan, regulatory obligations and growth ambitions.· Own the effectiveness and lifecycle of Bruumi’s key business systems, ensuring appropriate availability, performance, configuration, support, security and change control.· Lead application and integration architecture, including APIs, interfaces, data flows and system dependencies across internal and third-party platforms.· Oversee day-to-day IT operations and service management, including incidents, problems, changes, releases, capacity, end-user technology, assets and software licensing.· Establish and maintain proportionate cybersecurity and information security controls, including identity and access management, privileged access, vulnerability management, endpoint and cloud security, monitoring and incident response.· Own IT operational resilience, disaster recovery and backup arrangements, including recovery objectives, scenario testing, remediation and continuous improvement.· Lead data governance from an IT perspective, working with business owners to maintain clear data ownership, quality, lineage, classification, retention, access controls and master data standards.· Manage third-party technology suppliers end-to-end, including selection, due diligence, implementation, contracts, SLAs, service reviews, security and resilience oversight, audit rights and exit planning.· Lead the delivery of new systems, upgrades and technology change, ensuring clear requirements, appropriate testing, controlled deployment, documentation and effective handover into support.· Maintain an effective IT governance and control framework, including policies, standards, risk and issue management, access reviews, segregation of duties, audit trails and management information.· Manage and develop a small internal IT team and specialist contractors, while remaining personally hands-on where issues require direct intervention, analysis or resolution.· Work closely with Operations, Risk, Compliance, Finance, Commercial and other functions to translate business and regulatory requirements into practical, secure and scalable technology solutions.3. Qualifications and Experience· Minimum of 15 years’ experience in IT management and leadership, with direct responsibility across key systems, architecture, integrations, IT operations, cybersecurity, data governance and third-party system suppliers.· Demonstrable experience working in a small or growing organisation with a small IT team, combining senior-level leadership with hands-on delivery, problem solving and day-to-day oversight.· Strong track record of managing cloud and SaaS platforms, integration-led environments, complex supplier ecosystems and business-critical technology change.· Experience within regulated financial services, consumer credit or motor finance is strongly desirable, together with a good understanding of regulatory expectations for systems and controls, operational resilience and outsourcing.· Bachelor’s degree in information technology, computer science, engineering or a related discipline, or equivalent practical experience; relevant professional qualifications such as ITIL, TOGAF, CISM or CISSP are desirable.4. Knowledge and Skills· Broad technical knowledge spanning application architecture, APIs and integrations, cloud and SaaS services, networks and end-user computing, identity and access management, cybersecurity controls and data management.· Strong understanding of IT governance, information security, operational resilience, disaster recovery, data protection, service management and third-party technology risk.· Ability to assess architecture, technology and supplier proposals independently, identify weaknesses and dependencies, and make sound risk-based and commercial decisions.· Strong technology change and delivery skills, with the ability to translate business requirements into clear technical designs, implementation plans, testing and controlled releases.· Excellent analytical and troubleshooting skills, with the confidence to work through incidents and technical issues directly rather than relying solely on external suppliers.· Strong communication and influencing skills, with the ability to engage effectively with the Board, senior management, business teams, technical specialists, suppliers, auditors and regulators.5. Behavioural Competencies· Leadership: Sets a clear technology direction and creates confidence in the quality, resilience and control of Bruumi’s IT environment.· Ownership: Takes end-to-end accountability for technology outcomes and follows issues through to effective resolution.· Pragmatism: Designs proportionate solutions that are secure and well controlled without creating unnecessary complexity for a small business.· Challenge: Applies independent judgement, asks difficult questions and constructively challenges suppliers, assumptions and proposed solutions.· Collaboration: Works effectively across functions and with external partners to deliver shared business outcomes.· Resilience: Maintains sound judgement and a calm, structured approach during incidents, competing priorities and periods of rapid change.6. ConductThe Head of IT will be expected to uphold the highest standards of personal and professional conduct. This includes acting in accordance with Bruumi’s Code of Conduct, the FCA’s Conduct Rules where applicable, and company policies. The individual will model ethical behaviour, promote transparency and accountability, and ensure that technology decisions support the company’s regulatory, customer and reputational responsibilities. These include but are not limited to:· Acting with integrity· Acting with due skill, care and diligence· Being open and co-operative with regulators· Paying due regard to the interests of customers and colleagues and treating them fairly· Observing proper standards of market conduct· Acting to deliver good outcomes for retail customers7. Regulatory ClassificationThe final SMCR classification of this role will be determined by Bruumi based on its responsibilities and regulatory framework. If designated as a Certified Function, annual fitness, propriety and certification requirements will apply. In all cases, the Head of IT must support Bruumi’s regulatory obligations and maintain effective systems and controls, including:· Comply with the FCA’s Individual Conduct Rules and Bruumi’s Code of Conduct where applicable· Maintain appropriate competence, capability and up-to-date knowledge relevant to the role· Evidence robust technology governance, cybersecurity, operational resilience, data governance and third-party oversight· Escalate material IT incidents, control weaknesses, security events and supplier failures promptly· Co-operate with Risk, Compliance, Internal Audit, the Board and regulators, providing complete and accurate information when required· Support regulatory reviews, audits, testing and remediation relating to technology and systems and controls