Information Security Lead

6 days ago


Cardiff, Cardiff, United Kingdom Starling Bank Full time
Information Security Lead (Cyber Threat Intelligence) Starling Bank Transform the way you manage your money with Starling Bank. Enjoy personal and business banking online and at your fingertips, always. Apply in minutes.

View company page

Starling is the UK's first and leading digital bank on a mission to fix banking Our vision is fast technology, fair service, and honest values. All at the tap of a phone, all the time.

We are about giving customers a new way to spend, save and manage their money while taking better care of the planet which has seen us become a multi-award winning bank that now employs over 2800 across five offices in London, Cardiff, Dublin, Southampton, and Manchester. Our journey started in 2014, and since then we have surpassed 4 million accounts (and four account types) with 350,000 business customers. We are a fully licensed UK bank but at the heart, we are a tech first company, enabling our platform to deliver brilliant products.

Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together

The way to thrive and shine within Starling is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, discovering, to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness.

About the role

Here at Starling we are growing, and we are keen to recruit an Information Security Lead as part of our continued investment in Information and Cyber Security capability. Reporting to the Information Security Director - Operations, the Security Lead will act as line manager to a team of Information Security Analysts, supporting the continuous development and delivery of our Information Security & Cyber Threat Intelligence..

The role will suit an ambitious information security or cyber specialist, with strong team building and leadership skills who has a desire to invest their knowledge and experience into a growing function and make an impact.

What you'll get to do

  • Lead a team of subject matter experts and analysts to ensure Information Security is managed and continuously improved in line with Bank policy and procedure.
  • Supporting the development and progression of the Information Security Analyst team from both a technical and professional perspective.
  • Support in the enhancement and continuous improvement of the Bank's Information and Cyber Security systems, processes and procedures, and optimise reporting of identified threats and vulnerabilities.
  • Act as an Information Security SME for Business Continuity and Crisis Management Planning; this includes supporting cyber business impact analysis and tabletop exercises.
  • Supporting the development of the Cyber Incident Response capability and ensuring coherence with the broader response capability.
  • Assist as necessary to investigate and qualify security incidents.
  • Support in the development and improvement of internal bank first line related processes.
  • Support and drive the continuous improvement of Intelligence collection and retention practices.
  • Working in parallel with Response, Triage, and wider security teams to increase defensive and detective controls.
  • Take responsibility and do the right thing for customers, colleagues and partners.

Requirements

You will:

  • have previous experience in a similar role leading, developing and motivating a team of subject matter experts and other managers in Information Security
  • have previous experience working in a complex IT organisation encompassing service delivery, application development and IT infrastructure.
  • Financial Services or Fintech experience would be valuable
  • an understanding of best practice within Information Security and risk management including standards such as ISO/IEC 27001, NIST, Cyber Essentials and COBIT.
  • an understanding of legislation and regulations that impact information Security. E.g. Data Protection Act and GDPR, Freedom of Information Act.
  • be a Self Starter with the ability to lead, inspire and drive change through an organisation.
  • have the ability to be pragmatic while balancing the needs of the Bank against security.
  • have an ability to think and plan strategically and systematically while recognizing the need to deliver to the business requirements.
  • Have experience evaluating, implementing and using Threat Intelligence (TI) products.
  • Practical experience using threat analysis models such as MITRE ATT&CK, the Diamond Model, and the Cyber Kill Chain to support use case development and threat reporting
  • an understanding of current and emerging threats and countermeasures and the organisational challenges to addressing these threats.
  • an understanding of Application Security threats and countermeasures.
  • a good practical knowledge of security technologies and wider business solutions including Identity and access management, SIEM , remote working and cloud technologies.
  • a good understanding of financial services and awareness of broader requirements.
  • It would be great if you have one or more of the following qualifications, but it's not essential;
  • GCTI
  • CRTIA

You may be put off applying for a role because you don't tick every box. Forget that While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway.

Interview Process

Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below video interviews, following a chat with one of our Talent Team:

  • First Interview: 45 minutes
  • Technical Interview: 90 minutes
  • Final Interview: 45 minutes

Starling technology works in a hybrid pattern both from home and one of our three offices. We're open to applications from across the UK including fully remote, if you're hybrid our preference is that you're located within a commutable distance to either our London, Southampton or Cardiff office, so that we're able to see each other and collaborate in person too.

  • 25 days holiday (plus take your public holiday allowance whenever works best for you)
  • An extra day's holiday for your birthday
  • Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off
  • 16 hours paid volunteering time a year
  • Salary sacrifice, company enhanced pension scheme
  • Life insurance at 4x your salary & group income protection
  • Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton
  • Generous family-friendly policies
  • Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks
  • Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing

About Us

You may be put off applying for a role because you don't tick every box. Forget that While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking – and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems.

Starling Bank is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Starling Bank are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law.

When you provide us with this information, you are doing so at your own consent, with full knowledge that we will process this personal data in accordance with our Privacy Notice. By submitting your application, you agree that Starling Bank will collect your personal data for recruiting and related purposes. Our Privacy Notice explains what personal information we will process, where we will process your personal information, its purposes for processing your personal information, and the rights you can exercise over our use of your personal information.

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr

  • Cardiff, Cardiff, United Kingdom Cordius Full time

    This is a fantastic opportunity to join an exciting business that is going through a period of technical growth. The role is ideal for someone who is keen to further their interest and knowledge in IT security or specialise in this area.As the Information Security Officer, you'll work alongside a high-performance team with responsibility for monitoring,...


  • Cardiff, Cardiff, United Kingdom Sword Security Full time

    We are looking for an enthusiastic, team orientated individual to join Sword Security as a _part-time_ Security Site Supervisor Sword are a leading global supplier of event staffing and crowd management services across multiple locations including, Cardiff, London, Dublin and Toronto. We are a passionate bunch and look forward to finding the right person to...


  • Cardiff, Cardiff, United Kingdom Thorium Security Full time

    Holding a valid SIA CCTV License and either a Security Guarding License or Door Supervision License is essential.We are seeking highly experienced customer-focused individuals to work in a well known retail store in Cardiff, Splott.40 hours per weekShift pattern:FlexibleResponsibilities Ensure the safety and security of staff and customers within the working...


  • Cardiff, Cardiff, United Kingdom British Transport Police Full time

    British Transport Police (BTP) are recruiting for an Information Security Officer for a permanent, full-time opportunity. The role is paying £39,878.80 per annum and will be based in Cardiff. BTP is the national police Force for the rail network throughout Great Britain, including London Underground, across which we ensure the safety and security of nearly...


  • Cardiff, Cardiff, United Kingdom British Transport Police Full time

    British Transport Police (BTP) are recruiting for an Information Security Officer for a permanent, full-time opportunity. The role is paying £39,878.80 per annum and will be based in Cardiff. BTP is the national police Force for the rail network throughout Great Britain, including London Underground, across which we ensure the safety and security of nearly...

  • Security Officer

    7 days ago


    Cardiff, Cardiff, United Kingdom Shield Security Service Full time

    Mobile Response Officer (Night Shift)We are currently recruiting for a dynamic Mobile Response Officer to join our Cardiff team based in Taffs Well, working an average of 42 hours per week on a 4 on 4 off shift pattern. As a key member of our night security team you will play an integral part of our continuing growth, from carrying out scheduled services &...

  • Security Officer

    6 days ago


    Cardiff, Cardiff, United Kingdom Shield Security Service Full time

    Mobile Response OfficerWe are currently recruiting for a dynamic Mobile Response Officer to join our Cardiff team based in Taffs Well, working an average of 42 hours per week on a 4 on 4 off shift pattern. As a key member of our day security team you will play an integral part of our continuing growth, from carrying out void property inspections, scheduled...

  • Security Officer

    6 days ago


    Cardiff, Cardiff, United Kingdom Dynamic Security Solutions Ltd Full time

    Dynamic Security are seeking an experienced Security Officer based in Cardiff.Dynamic Security provides a wide range of market-leading security services and solutions to clients across the whole of UK. We have embedded the family's leadership and values into the business so we can ensure we bring the best security services to our clients. Our priority is the...

  • Security Officer

    6 days ago


    Cardiff, Cardiff, United Kingdom RGM Security Limited Full time

    The role:We currently have an opening for a security officer Part Time (weekend) to work in a high end Jewellers, we need you to be our ambassador in the centre of Cardiff a fantastic career progression ,shifts and specific role to be discussed at interview.Part time with the opportunity to lead on to full time.Primary- Reporting ultimately to Operations...


  • Cardiff, Cardiff, United Kingdom Identify Solutions Full time

    Information Security Manager (Data Assurance & Protection)Largely remote (ideally 1 day a month in office) - CardiffUp to £75,000 annual salary + a competitive benefits packageAre you an Information security professional who is interested in the next step up? Are you looking to have a positive impact and are interested in working for a flexible company...


  • Cardiff, Cardiff, United Kingdom MARLOWE FIRE & SECURITY LIMITED Full time

    Fire & Security Minor Work Engineer - South WalesMarlowe Fire and Security Group are the fastest growing Fire & Security business in the UK.Within the group, we are complimented by 8 specialist business groups, allowing us to deliver multi-disciplined Fire & Security projects, installations, minor works, and services to both commercial, private and domestic...

  • Security Engineer

    6 days ago


    Cardiff, Cardiff, United Kingdom Additional Resources Ltd. Full time £15 - £17

    Security Engineer (Alarm & Security Systems) Security Engineer (Alarm & Security Systems)Location: Cardiff, South Glamorgan Salary: Basic £14.5 - £16.5 per hour, OTE £19.4 - £22 per hour Working Hours: 40+ per week The Client: Our client is a well-established engineering firm, providing a range of solutions such as fire detection and alarms, gates and...


  • Cardiff, Cardiff, United Kingdom Veezu Full time

    Job DescriptionSUMMARYThe Head of Information Governance and Data Protection Officer (DPO) role is the professional lead for Information Governance at Veezu Group. The role will provide expert Information Governance advice and guidance to the Veezu management team and key partners; to ensure that all parties are processing information in accordance with...


  • Cardiff, Cardiff, United Kingdom Sword Security Full time

    We are looking for an enthusiastic, team orientated individual to join Sword Security as a full-time Office Administrator Sword are a leading global supplier of event staffing and crowd management services across multiple locations including Cardiff, London, Dublin and Toronto. We are looking for a full-time Administrator to join our expanding team in our...


  • Cardiff, Cardiff, United Kingdom Veezu Full time

    SUMMARYThe Head of Information Governance and Data Protection Officer (DPO) role is the professional lead for Information Governance at Veezu Group. The role will provide expert Information Governance advice and guidance to the Veezu management team and key partners; to ensure that all parties are processing information in accordance with legislation,...

  • Cybersecurity Lead

    2 months ago


    Cardiff, Cardiff, United Kingdom Verum Recruitment Ltd Full time

    Are you passionate about securing digital landscapes and driving the Cybersecurity function of an organisation with a global footprint? If so, read on. My client is an organisation with a global footprint with a mission to make a difference. They are seeking a Cyber Security Lead to join their Bristol based team. As the Cybersecurity Lead, you will be...


  • Cardiff, Cardiff, United Kingdom Sanderson Full time

    Head of Cyber Security Cardiff ( hybrid 2/ 3 days per week on site ) Up to £90,000 + benefits My client, a leading financial services provider based in Cardiff are actively looking for a Head of Cyber Security to join their small team. You will be leading a team of two with a wider incident response team to support you. This would be an exciting role for...


  • Cardiff, Cardiff, United Kingdom Sanderson Full time

    Head of Cyber Security Cardiff ( hybrid 2/ 3 days per week on site ) Up to £90,000 + benefits My client, a leading financial services provider based in Cardiff are actively looking for a Head of Cyber Security to join their small team. You will be leading a team of two with a wider incident response team to support you. This would be an exciting role for...

  • Security Engineer

    6 days ago


    Cardiff, Cardiff, United Kingdom Additional Resources Full time £15 - £17

    Security Engineer (Alarm & Security Systems)Location: Cardiff, South GlamorganSalary: Basic £14.5 - £16.5 per hour, OTE £19.4 - £22 per hourWorking Hours: 40+ per weekThe Client:Our client is a well-established engineering firm, offering solutions in fire detection, alarms, gates, barriers, and electronic security systems.The Role:As a Security Engineer,...


  • Cardiff, Cardiff, United Kingdom Hays Technology Full time

    Your new company Seeking a strong and influential specialist in Workplace and Collaboration Technologies, with expertise in M365, End User Device Services, and Platforms including VDI. The ideal candidate will possess robust domain security knowledge and the capability to lead and influence technology decisions.Your new role Provide expert knowledge in M365,...