Information Security Officer
6 days ago
THE ROLE
As an Information Security Officer at Form3, you'll play a pivotal role in strengthening and evolving our information security governance, risk, and compliance practices. Working within the Information Security team, you'll help ensure that Form3 continues to operate securely and maintain the trust of our customers and partners.
You'll work closely with teams across the organisation, from Engineering and Product to Legal and Risk teams, to embed security into business and technology decisions. This is a hands-on role that combines strategic oversight with practical execution, ensuring our controls, frameworks, and awareness initiatives remain industry leading as we scale globally.
What you'll do
- Apply expert knowledge of security frameworks and controls such as NIST, ISO22301, ISO27001, ISO27017/18, ISAE3000/SOC2, and GDPR to support security governance.
- Support the development, maintenance, and continual improvement of the ISMS and BCMS.
- Assist in drafting and maintaining Information Security Policies and ensure alignment with business and customer requirements.
- Contribute to the planning and execution of external audits, engaging directly with auditors and customers.
- Monitor and report on adherence to security controls across all areas of the business via risk assessments and internal audits.
- Assess and support the remediation of information security risks, non-conformities, and issues across systems and services.
- Support vulnerability management processes, from triage and tracking to remediation reporting, in partnership with Offensive Security and Engineering teams.
- Conduct vendor and third-party security assessments, ensuring suppliers meet Form3's security and compliance requirements.
- Partner with the Defensive Engineering team to ensure security requirements are built into product developments.
- Deliver and enhance security awareness and training initiatives to promote a strong security culture across Form3.
- Collaborate with the Security Operations team to maintain situational awareness of emerging threats and vulnerabilities, ensuring timely escalation and risk-based response.
WE'RE LOOKING FOR
Form3's Information Security Governance, Risk and Compliance (GRC) team plays a critical role in protecting the organisation, so we're looking for someone who is analytical, collaborative, and passionate about driving security excellence. You'll thrive on solving complex problems, balancing deep technical knowledge with strong governance principles, and finding ways to make security scalable across a fast-moving, cloud-native business.
Essential
- 5+ years' experience in Information Security, ideally within a fast-paced technology or financial services industry.
- Strong working knowledge of frameworks such as ISO27001, ISO22301, SOC 1, SOC 2, NIST, and GDPR.
- Proven experience developing, implementing, and improving information security policies, standards, and controls aligned to recognised frameworks.
- Hands-on experience conducting audits, risk assessments, and business impact analyses.
- Hands-on experience with vulnerability management within a complex and dynamic cloud environment
- Broad understanding of cloud security
- Excellent communication and stakeholder engagement skills, with the confidence to influence at all levels of the organisation.
- Analytical mindset with a focus on continual improvement and measurable outcomes.
Desirable
- Security-related qualifications such as CISSP, CISM, CISA, or ISO27001 Lead Implementer/Auditor.
- Experience leading certification and attestation programmes such as ISO27001, ISO22301 or SOC 2
- Experience operating in regulated or high-availability environments such as financial services, payments, or critical infrastructure.
- Familiarity with GRC tooling and automation to streamline compliance, risk, and control management activities.
THE TEAM
This role sits within Form3's Information Security Governance, Risk and Compliance (GRC) team and reports directly to the Head of GRC. As part of a highly collaborative security function, you'll play a key role in shaping how Form3 manages information security risk, compliance, and assurance across all areas of the business.
The GRC team underpins Form3's security standards, designing and maintaining the frameworks, policies, and controls that keep our people, systems, and customers safe. Joining at this stage offers the opportunity to make a significant impact, strengthening governance and compliance across a cloud-native, environment while helping define how security scales with the business.
INTERVIEW PROCESS
Stage 1:
Screening Call with Talent Team
Stage 2:
Interview with Principal Security Officer
Stage 3:
Interview with Head of GRC
We always aim to stick to the above process, however there may be occasions when an additional interview stage is needed for us to be sure we're hiring the right person
HIRING LOCATIONS
We are able to accept applications from the UK only.
All new joiners start their first day in our office to collect the equipment needed to work remotely. We'll also arrange for some of your team to come in to say hi, ensuring you're supported and have a positive first few days with Form3
ABOUT FORM3
Revolutionising the world of payments with our cutting-edge technology and innovative solutions. For more information about life at Form3 check out the following pages:
What we do | Life at Form3 | Benefits | Podcasts
-
Information Security Officer
1 week ago
London Area, United Kingdom Sure Exec Search Full time £40,000 - £84,000 per yearInformation Security OfficerLocation:LondonWork Arrangement:Hybrid (1 day on-site)Rate:£400 - £420 per day (Inside IR35, via Umbrella company)Duration:6 months initiallyStart Date:ImmediateOur client, a leading London-based law firm, is seeking an experienced Information Security Officer to join their team on an initial 6-month contract. This role will be...
-
Information Risk Specialist
2 weeks ago
London, United Kingdom Information Security Solutions Full timeCompany: Financial Services Location: Hybrid - City of London Reports to Information Risk Manager **Salary**: £80,000 Benefits: Generous No. Required: 1 Start Date: ASAP **The Role** As the Information Security Risk Specialist, you shall support the Information Risk Manager which has responsibility for all Governance Risk and Compliance activities in the...
-
Business Information Security Officer
5 days ago
London Area, United Kingdom ea Change Full timeInformation Security Officer📍 London (Hybrid) | 💼 Permanent, Full-timeSalary - £60,000 - £70,000 p/a + BenefitsAbout the RoleA leading digital bank is seeking a talented and ambitious Information Security Officer to join its growing Cybersecurity Department.This is a key role acting as the bridge between the bank’s London operations and the...
-
Business Information Security Officer
5 days ago
London Area, United Kingdom ea Change Full time £60,000 - £70,000 per yearInformation Security OfficerLondon (Hybrid)| Permanent, Full-timeSalary - £60,000 - £70,000 p/a + BenefitsAbout the RoleA leading digital bank is seeking a talented and ambitious Information Security Officer to join its growing Cybersecurity Department.This is a key role acting as the bridge between the bank's London operations and the Group's Cyber and...
-
Senior Information Security Officer
2 weeks ago
Greater London, United Kingdom Cyber Security training courses Full timeYour new role - Permanent - ON SITE 5 Days per week. You will be required to undergo vigorous onboarding checks - UK Only. Sponsorship NOT available. The main purpose of this job mainly focusses on information security, cybersecurity, and data security from a Greenfield perspective. We are on a journey to secure Cyber Essentials plus and ISO27001...
-
Security Officer
2 weeks ago
London Area, United Kingdom Assist Security Group Full time £32,000 per yearFine Dining Security OfficerLocation: Mayfair - LondonPay Rate: £16.00 per hourHours: Full-time (Tuesdays - Saturdays, 18:00 - 02:00)About the Role:We are seeking experienced Front of House / Host Security Officer to join our team at a prestigious, fine dining restaurant in London Mayfair. This is a fantastic opportunity to work in a refined...
-
Security Officer
7 days ago
London Area, United Kingdom Security Risk Specialists Ltd Full timeCompany DescriptionSecurity Risk Specialistsis based in Central London and founded in 2013, SRS is a leading security company accredited to the ISO9001 quality management standard. We are dedicated to making London a better city by ensuring safe and welcoming buildings. Our mission drives us to protect and secure residential and commercial properties...
-
Information Security
1 week ago
London Area, United Kingdom Lutine Bell Full time £60,000 - £90,000 per yearOur client in theBanking sectoris seeking anInformation Security & IT Risks Managerto join their growing team.This appointment sits solely in the2nd LoDand some of the key responsibilities include but are not limited too:Lead the development and oversight of our information security and technology risk frameworks.Acts as the firms designated Information...
-
Security Manager
1 week ago
London, Greater London, United Kingdom Information Security Solutions Full time £120,000 - £160,000 per yearWe are searching for candidates that match the role below:Title………………………Security ManagerCompany………………Financial ServicesLocation………………..LondonWorking pattern……Hybrid – 2 days per week in the officeSalary……………………£120,000 - £160,000The RoleWe are seeking a Security Manager to lead security...
-
Business Information Security Officer
2 weeks ago
London Area, United Kingdom Elsevier Full time £60,000 - £100,000 per yearDo you want to create strategies and chart a course for our Cyber progress?Are you interested in evangelizing our core information security tools and risk management solutions?About our TeamThis team delivers outcomes, longer-term improvements and benefits that are measurable and impact the achievement of organization goals. This includes managing complex...