Information Security Officer

4 days ago


London, UK, United Kingdom Marlin Selection Full time

Key responsibilities

  • Collaborate with IT and operational teams on the security measures to be integrated into business processes. Serve as an advisor to business units on security-related issues and initiatives.
  • Perform Second Line project oversight activities in the evaluation of information security risk for new product, system and other material change projects. Supervision of information security projects initiated by the business and/ or Group ISO.
  • Assist in the development, review, and maintenance of information security policies, standards, and procedures. Ensure that policies are communicated effectively across the organization.
  • Develop and implement security awareness programs to educate staff on information security best practices. Conduct regular training sessions and workshops to enhance the organization's security culture.

Key responsibilities continued

  • Maintain comprehensive documentation of security activities, assessments, and incidents. Provide regular updates and reports to the Information security management meeting. (ISMS).
  • Manage the internal and external information security requirements.
  • Coordinate with stakeholders to meet the internal and external regulatory cyber security requirements.
  • Directs an ongoing, proactive Information security program for all new and existing systems aligning to business requirements.
  • Support performance of annual budgeting & planning for information security requirements.
  • Determine security requirements by evaluating business strategies and requirements for cloud-based solutions.
  • Support vulnerability management and security testing program to meet compliance and security requirements as per schedule. Liaise with IT & establish remediation plan for identified vulnerabilities/ issues identified through various security assessments (VA, PT, Third Party Assessments etc.).
  • Align with Group ISO in implementing group security strategy for the entity. Liaise with Group Information Security Office (GISO) to align IS requirements compliance/ adoption.
  • Responsible for the Information security incident management and response, prepare security reports by collecting, analyzing, and summarizing data and trends with support of Group ISO.
  • Coordinate with vendors for evaluation of new technologies & conduct Proof of concept. Perform security assessment of application, vendor, cloud and third-party assessment. Responsible for third party security program to manage potential supply chain security risks.
  • Work with Cloud Security in AWS, Azure, Google or other for defining and designing the security controls for business solutions in cloud environment.
  • Contribute to the evaluation, recommendation, and implementation of cloud security controls in line with emerging cloud technologies and practices across group entities.

Work Experience

  • Working knowledge of banking and securities products and services.
  • Excellent experience and understanding of Information Security, Technology and Cyber Risk management and the required application of these risk domains within the financial services industry.
  • Experience working in a cross functional environment.
  • Good understanding of the interdependencies between other non-financial risk domains and wider Operational Risk practices.
  • Proven and demonstrable ability to identify, analyse, understand and concisely communicate Technology and Cyber risk, and provide the ‘so what?’ to articulate impact.
  • Understanding and experience of the Audit and Assurance lifecycles within a regulated financial institution
  • Strong technical and functional knowledge of external Laws, Regulations, Policies and developments applicable to the Technology, Information Security and Cyber function.
  • Solid technical and functional knowledge of financial services internal rules and policies.
  • Experience with development and implementation of a comprehensive and broad set of security controls for cloud infrastructure and DevOps.
  • Demonstrable experience of leveraging best practice and industry standards to uplift framework, process and procedure.
  • Good understanding of the overall operational processes and technology challenges within the financial services industry.
  • Understanding of the Accountabilities, Roles and Responsibilities across Technology and Cyber Security functions.
  • Ability to facilitate clear and effective communication between organisational functions and business units both locally and internationally.

Skills and Experience

  • Bachelor’s degree or equivalent in Information Technology
  • 5+ years information security experience
  • CISA, CISM, CISSP, ISO27001 or equivalent
  • Technology and Cyber Governance Risk and Control Frameworks
  • Hands-on experience in cloud security and responsibility models for different cloud architectures
  • Knowledge of cloud security frameworks
  • Understanding of technology reference architectures of leading cloud service provider like Azure, AWS, Google etc
  • Risk, Issue and Event Management
  • Control Testing and Risk and Control Self-Assessment
  • Technology, Cyber and Information Security Best Practices
  • Threat and Vulnerability Detection and Management
  • Cyber and Ransomware Incident Detection, Response and Remediation
  • Information and Data Governance Principles
  • Information security Risk Governance and Escalation
  • Audit and Assurance
  • ISO 27001 / NIST / COBIT

Personal Requirements

  • Strong team player with the ability to communicate and collaborate with business stakeholders.
  • Clear and concise written and oral communication.
  • Excellent accuracy and very strong attention to detail.
  • Good time management and ability to prioritise.
  • Strong analytical and problem-solving skills.
  • Excellent Microsoft Office skills

  • Marketing Executive

    2 weeks ago


    London, UK, UK, United Kingdom Information Security Forum Full time

    About the Information Security ForumThe Information Security Forum (ISF) is an independent, not-for-profit organisation supported by a Membership comprising of many of the world's leading organisations featured on the Fortune 500 and Forbes 2000 lists. We provide expert guidance to overcome the wide ranging cyber, information security and risk management...


  • London,, UK, United Kingdom Bestman Solutions Full time

    Bestman Solutions are recruiting for a global consultancy renowned for delivering cutting-edge solutions across professional services and a wide array of industries. This organisation partners with some of the world’s most prominent businesses, helping them navigate complex challenges through innovative strategies. With a strong emphasis on cybersecurity,...


  • London,, UK, United Kingdom La Fosse Full time

    La Fosse has partnered with a leading InsurTech firm looking for a Information Security Manager to drive and embed robust security measures, safeguarding their systems and critical data assets.This role will be pivotal in establishing and enforcing security protocols, overseeing security technologies, and fostering collaboration across departments to embed...


  • London,, UK, United Kingdom Intec Select Full time

    Information Security Engineer – Azure – Remote - £60K – Remote First OrganisationOverview:An exciting opportunity has emerged with a dynamic SaaS company in the life sciences sector for an experienced Security Engineer. This role is responsible for safeguarding the organization’s technology, ensuring it remains secure, resilient, and trustworthy by...


  • London, UK, United Kingdom State Street Corporation Full time

    State Street seeks to recruit a Chief Information Security Officer - Managing Director to improve the overall protection of State Street's EMEA customers and partners from the evolving landscape of threat actors. The EMEA CISO candidate must have experience driving security through leadership down through the organization on a large scale. This...

  • Account Executive

    3 months ago


    London,, UK, United Kingdom Saepio Information Security Full time

    The world of cybersecurity is fast-paced and thrilling, just like the Saepio Sales team!At Saepio, we provide top-tier security solutions to protect UK businesses from online threats. We are expanding our sales team at our London office to attract new customers while maintaining excellent customer service standards.If you want to be part of an ambitious,...


  • London,, UK, United Kingdom DGH Recruitment Full time

    Information Security Awareness & Privacy ManagerHybrid working policy: 3 days per week required in the office.DGH Recruitment are currently recruiting on behalf of a leading global professional services firm who are looking for an Information Security Awareness & Privacy Manager to join the team on a permanent basis in their London office.Core Objectives:-...

  • Account Executive

    2 weeks ago


    London,, UK, United Kingdom Saepio Information Security Full time

    The world of cybersecurity is fast-paced and thrilling, just like the Saepio Sales team!At Saepio, we provide top-tier security solutions to protect UK businesses from online threats. We are expanding our sales team at our London office to attract new customers while maintaining excellent customer service standards.If you want to be part of an ambitious,...

  • Security Engineer

    4 months ago


    London,, UK, United Kingdom acre security Full time

    Are you passionate about shaping the future of security solutions? Do you thrive in an environment that values innovation and teamwork? If so, acre security is the place for you! Join us in making the world a safer place, one innovation at a time.Position: Security EngineerLocation: London, UK.A Bit About Us:At acre, we're not just creating security...


  • London,, UK, United Kingdom Cititec Talent Full time

    About the CompanyOur client is a global leader in the energy trading sector, embarking on a significant transformation to enhance their operational and technical capabilities. They are seeking a dynamic Head of InfoSec to establish and lead a dedicated information security function within their high-performing trading team.This role offers an exciting...


  • London,, UK, United Kingdom Barclay Simpson Full time

    I’m working with a forward-thinking organisation that is looking to hire a Head of Information Security Risk to lead and shape their approach to managing information security risks. This is an exceptional opportunity to join a dynamic business and drive strategic initiatives to protect critical assets and align risk management with overall business...


  • London,, UK, United Kingdom Artisan People Group Full time

    We are looking for Security Officers with a SIA Door Supervisor Licence to work in a highly renowned London museum. If you are SIA certified and want to get into this exciting industry this could be a great opportunity for you.The main purpose of this role is to ensure the safety and security of the Museum, its visitors, staff and collection by providing a...


  • London,, UK, United Kingdom Momentum Security Recruitment Full time

    Security Officer / Loss Prevention OfficerRate of pay: Up to £13.30 per hourBenefits: Free breakfast, free parking, 23 days holiday (plus bank holidays), uniform provided, company discounts.Hours: Days only (5 days from 7 on a rota basis, hours between 6:30am - 6pm, including some weekends). 40 hours per week. Guaranteed hours contract.Location: Vacancies...

  • Security Officer

    2 weeks ago


    London,, UK, United Kingdom Owen Gardner Talent Full time

    Position: Estate Security OfficerSalary: £31,195 + bonus + great benefits packageLocation: London, United KingdomCompany Overview: Owen Gardner Talent is a leading recruitment agency that specialises in the real estate and property industry. We work with top companies to find the best talent to help them achieve their business goals. Our client is a premier...


  • London,, UK, United Kingdom Iceberg Cyber Security Full time

    Working for a global trading firm isn’t easy, it’s fast-paced and demanding, however, what comes with this is the opportunity to contribute to highly technical projects and be at the forefront of technology innovation. This is an opportunity where curiosity is one of the main traits my client is looking for, you must be curious about technology and...


  • London,, UK, United Kingdom TFPL Recruitment Full time

    Knowledge and Information Officer – Financing – Law Firm - London A leading global law firm has a great job opportunity for a Knowledge and Information Officer to join their Knowledge and Information department providing Knowledge Management, Information and Research services. This a practice embedded role providing comprehensive Know-how and...


  • London,, UK, United Kingdom Ventula Consulting Full time

    Are you an experienced IT & Network Security Engineer looking for a new & exciting challenge? Are you fluent in Mandarin? If the answer to these is yes, then this could be the challenge you are looking for! My client is a leading, global telecommunications organisation who have a strong and continually growing presence worldwide. As part of their strategic...


  • London, UK, United Kingdom HOUSE OF COMMONS-3 Full time

    UK Parliament Working at the UK Parliament offers a unique and rewarding career at the heart of the UK's democratic system. With a wide range of roles available, our impartial colleagues enable the day to day running of the House of Commons, House of Lords and Joint Departments. Together, we make Parliament happen. Staff Benefits In addition to your...


  • London,, UK, United Kingdom Cornwallis Elt Full time

    Principal Security Architect – Insurance - £110-130kThere is no sponsorship on offer for this role, candidates would be expected to be in the office 3 days per week.The Information Security Lead Architect is a strategic technical leader responsible for designing and implementing comprehensive security architecture solutions across the organization. This...

  • Security Officer

    4 days ago


    London , London, UK, United Kingdom Jumeirah Carlton Tower Full time

    Security Officer - Knightsbridge, London About Jumeirah & the Hotel: For more than two decades, Jumeirah Group, a member of Dubai Holding, has been making a distinct mark on the global hospitality market with its unwavering Stay Different™ brand promise. Its award-winning destinations, including the iconic Burj Al Arab Jumeirah, position service beyond...