Information Security Officer

2 weeks ago


London, United Kingdom Form3 Full time

THE ROLEAsanInformation Security Officer at Form3youllplay a pivotal role in strengthening and evolving our information security governance risk and compliance practices. Working within the Information Security teamyoullhelp ensure that Form3 continues tooperatesecurely andmaintainthe trust of our customers and partners.Youllwork closely with teams across the organisationfrom Engineeringand Product toLegaland Riskteamsto embed security into business and technology decisions. This is a hands-on role that combines strategic oversight with practical execution ensuring our controls frameworks and awareness initiativesremainindustry leadingas we scale globally.WhatyoulldoApply expert knowledge of security frameworks and controls such as NIST ISO22301 ISO27001 ISO27017/18 ISAE3000/SOC2 and GDPR to support security governance.Support the development maintenance and continual improvement of the ISMS and BCMS.Assistin drafting andmaintainingInformation Security Policies and ensure alignment with business andcustomer requirements.Contribute to the planning and execution of external audits engaging directly with auditors and customers.Monitor and report on adherence to securitycontrolsacross all areas of the businessvia risk assessmentsand internal audits.Assess and support the remediation of information security risks non-conformities and issues across systems and services.Support vulnerability management processes from triage and tracking to remediation reporting in partnership withOffensive Security andEngineering teams.Conduct vendor and third-party security assessments ensuring suppliers meet Form3s security and compliance requirements.Partnerwith theDefensive Engineeringteamto ensure securityrequirements are built intoproductdevelopments.Deliver and enhance security awareness and training initiatives to promote a strong security culture across Form3.CollaboratewiththeSecurity Operations teamtomaintainsituational awareness of emerging threats and vulnerabilities ensuringtimelyescalation and risk-based response.WERE LOOKING FOR Form3s Information Security Governance Risk and Compliance (GRC) team plays a critical role in protecting the organisation sowerelooking for someone who is analytical collaborative and passionate about driving security on solving complex problems balancingdeeptechnicalknowledgewith strong governance principles and finding ways to make security scalable across a fast-moving cloud-native business.Essential5 years experience in Information Security ideally within a fast-paced technology or financial services industry.Strong working knowledge of frameworks such as ISO27001ISO22301SOC1 SOC2NIST and GDPR.Proven experience developing implementing and improving information security policies standards and controls aligned to recognised frameworks.Hands-on experience conducting audits risk assessments and business impact analyses.Hands-on experiencewith vulnerability managementwithin a complex and dynamic cloud environmentBroad understanding ofcloud securityExcellent communication and stakeholder engagement skills with the confidence to influence at all levels of the organisation.Analytical mindset with a focus on continual improvement and measurable outcomes.DesirableSecurity-related qualifications such as CISSP CISM CISA or ISO27001 Lead Implementer/Auditor.Experience leading certification and attestation programmes such as ISO27001 ISO22301orSOC 2Experienceoperatingin regulated or high-availability environments such as financial services payments or critical infrastructure.Familiarity with GRC tooling and automation to streamline compliance risk and control management activities.THE TEAM This role sits within Form3s Information Security Governance Risk and Compliance (GRC) team and reports directly to the Head of GRC. As part of a highly collaborative security functionyoullplay a key role in shaping how Form3 managesinformation securityrisk compliance and assurance across all areas of the business.The GRC team underpins Form3s securitystandardsdesigning andmaintainingthe frameworks policies and controls that keep our people systems and customers safe. Joining at this stage offers the opportunity to make a significant impact strengthening governance andcomplianceacross a cloud-native environment while helping define how security scales with the business.INTERVIEW PROCESSStage 1:ScreeningCall with Talent TeamStage 2:Interview with Principal Security OfficerStage 3:Interview with Head of GRCWe always aim to stick to the above process however there may be occasions when anadditionalinterview stage is needed for us to be surewerehiring the right personHIRING LOCATIONSWeare able toaccept applications from theUKonly.All new joiners start their first day in our office to collect the equipment needed to work remotely. Well also arrange for some of your team to come in to say hi ensuring youre supported and have a positive first few days with Form3ABOUT FORM3Revolutionising the world of payments with ourcutting-edgetechnology and innovative solutions. For more information aboutlife atForm3 check out the following pages:What we doLife at Form3Benefits PodcastsRequired Experience:Unclear Seniority Key Skills International Development,Information Systems,Community,Information Technology Sales,Corporate Recruitment Employment Type : Full Time Experience: years Vacancy: 1


  • Security Manager

    2 weeks ago


    London, Greater London, United Kingdom Information Security Solutions Full time £120,000 - £160,000 per year

    We are searching for candidates that match the role below:Title………………………Security ManagerCompany………………Financial ServicesLocation………………..LondonWorking pattern……Hybrid – 2 days per week in the officeSalary……………………£120,000 - £160,000The RoleWe are seeking a Security Manager to lead security...


  • London, United Kingdom Bulletproof (Cyber Security) Full time

    WorkNest Cyber LTD (formally known as Bulletproof Cyber), is looking for an ISO27001 subject matter expert with experience of delivering consultancy around all the topic, including gap analysis, audits, implementations projects and ad hoc Information Security queries, to a wide variety of customers.You should have an excellent understanding of ISO27001 with...


  • London, United Kingdom McGregor Boyall Full time

    **Permanent role** **£60k to £80k per annum (+ benefits + bonus)** **SPONSORSHIP -NOT AVAILABLE** **Hybrid - Home/Office model** **The company** A leading financial services company based in the City of London. **The role** The company are looking for a **Information Security Officer** to focus on supporting the management of Information Security...


  • London, United Kingdom UBA UK Full time

    _**Responsibilities**_:_ **1. Establish Governance & Build Knowledge** - Propose and implement UBA -UK Information security governance structure as part of a global matrix and formulate risk management program approach. - Provides regular reporting on the current status of the information security program to enterprise risk teams and senior business...


  • London, United Kingdom The London Clinic Full time

    **As a key member of the Strategy & Architecture Team, the Information Security Officer will be responsible for supporting the Head of Strategy & Architecture in developing and implementing an Information Security Management System. The role will supportand manage the day-to-day information security, information governance and general data protection...


  • london, United Kingdom Ryder Reid Legal Full time

    Information Security Officer – International Law Firm (London-Based) Permanent | Hybrid Working | Competitive Salary I am working with a leading international law firm to support their search for an experienced and proactive Information Security Officer (ISO) to lead their global information and data security programme. This senior-level role offers the...


  • London, Greater London, United Kingdom Experis UK Full time

    Information Security Officer (work from home)You will be working with theInformation Security Managerto implement theInformation Security Strategyenhancing the company's global data and security program and ensuring compliance withIS027001 and GDPR. Responsible forinformation governanceandriskissues across the company inUKwith responsibility for a small...


  • London, United Kingdom Oscar Technology Full time

    **Reports to**: Chief Information Security Officer **Salary**:£60,000** **Location**: London We are looking for an individual with InfoSec Officer, GRC Analyst or equivalent experience for a global UK media company. You will be working in the Technology Department reporting to the CISO. This role has a hybrid working pattern based in...


  • London, United Kingdom Pioneer-Search Full time

    **Job Details**: Information Security Officer - London - Hybrid - Permenant - £100,000 - £115,000 An Information Security Officer is required for a Global Banking brand, this individual will be contributing to the success of Technology division in the UK and European markets as they are looking to expand and grow. This individual will need to ensure that...


  • London, United Kingdom Data Careers Full time

    Information Security Officer 12 Month Fixed Term Contract Salary: £48,500 Location: Hybrid/Gloucesterhire (2-3 days per week on site in Gloucestershire)A leading Public Sector organisation is seeking an experiencedInformation Security Officerto help strengthen its information security posture and support the protection of its information assets. You will...