Information Security Compliance Officer Required Qualifications & Certifications: Education Bachelor's degree in Cybersecurity, Information Technology, Computer Science , or a related field. A master's degree in information security , Risk Management, or Compliance is a plus. Certifications (Highly Valued) CISSP (Certified Information Systems Security Professional) CISM (Certified Information Security Manager) CISA (Certified Information Systems Auditor) ISO … Certified in Risk and Information Systems Control) GDPR Certification (e.g., IAPP CIPP/E, CIPM for data protection compliance) Experience Requirements: 3-5+ years of experience in Information Security, Compliance, or IT Risk Management. Experience with regulatory frameworks in UK & EU : GDPR (General Data Protection Regulation) ISO 27001 (Information Security Management Systems) Cyber Essentials Plus (UK government … backed security framework) DORA (Digital Operational Resilience Act) - EU financial sector PCI-DSS (if handling payment data) Experience in: Managing vendor risk assessments for third-party compliance. Handling incident response & reporting (e.g., Data Breach Notifications under GDPR). Key Skills & Technical Knowledge: Deep understanding of data protection laws (UK GDPR, EU GDPR, DPA 2018) . Familiarity with risk management More ❯
Social network you want to login/join with: MUST HAVE PREVIOUS BANKING EXPERIENCE TO BE CONSIDERED Job purpose The Information SecurityOfficer works within the Information Security Office of the Bank to ensure all information and cyber risks are identified, analysed, mitigated, and monitored, ensuring the smooth operation of the Bank. Where improvements are needed, the … ISO will contribute to the Information/Cyber Security Strategy and Roadmap, enabling both defence-in-depth and, where appropriate, defence-in-breadth to safeguard normal banking operations. The ISO will collaborate closely with Security Engineering, Security Operations, and Business Resilience Teams across the bank. The ISO addresses external attacks, mitigates zero-day vulnerabilities, and identifies security … targets are met and contributes to the continual improvement of the Bank's Cyber Assurance Framework, enhancing the control measures that defend the Bank. Key Responsibilities Collaborate with Information Security Engineering and Operations Teams to integrate security measures into business processes. Advise business units on security-related issues and initiatives. Oversee Second Line project activities to evaluate More ❯
London, England, United Kingdom Hybrid / WFH Options
WSP
celebrates new ideas and diverse perspectives. You can experience a world of opportunity and the chance to shape a career as unique as you. Position Summary WSP's Information Security Office (ISO) is responsible for the deployment and maintenance of the information security framework for both the IT organization and wider business community. This includes the Governance mechanisms … policies and processes, tools and technologies, and employee training required to protect WSP information and that of our clients. The role of Regional Information SecurityOfficer reports directly to the Business Information SecurityOfficer and is responsible for delivering the Information Security Framework into the applicable region of WSP. This is primarily an internally facing … role, although some interaction with clients and third parties may be required. This position requires a senior management professional with relevant experience and a strong working knowledge of IT security, risk management, regulatory compliance, information and public cloud service technology, IT operations management principles, and third-party security management. A little more about your role... Specific areas of More ❯
Business Information SecurityOfficer (BISO) for News UK - News Corp Business Information SecurityOfficer, Cybersecurity Location: London As a global media and information services company, News Corp understands the importance of cybersecurity and mitigating risk across the organization. We believe in protecting our businesses and customers and are looking to build innovative solutions that will allow … global leader in cybersecurity. If cybersecurity is your passion and you want to be part of a cutting edge team, we want to hear from you! The Business Information SecurityOfficer (BISO) is the primary point of contact for News UK and supports the implementation of the Global Cybersecurity program within the business unit. As a trusted advisor … and oversight to the business to ensure the business is compliant with required cybersecurity requirements and policies. Combining business acumen with technical knowledge, this role assists in improving the security posture with respect to delivering services and partnering with News UK leadership. This role will understand the key assets and processes, identify and evaluate risks and controls, and suggest More ❯
Information Security & Compliance Officer Hybrid HSS ProService is revolutionising the building services industry, offering a cutting-edge online marketplace platforms for tools, equipment and materials. Building on HSS Hire's legacy, we're blending innovation and customer-driven solutions to focus on sustainability. We're looking for an experienced Information Security & Compliance Officer to lead and … evolve our security and compliance framework—protecting our customers, our data, and our business as we scale. The impact you’ll have: You’ll be the heart of our Governance, Risk & Compliance team, designing and delivering a security and compliance function that’s future-ready. From technical controls to cultural awareness, you’ll help us stay ahead of … emerging risks and regulations—ensuring our platform is resilient, secure, and trusted by every customer and supplier. A typical day: Develop and own our Information Security Management System (ISMS) aligned with ISO 27001 Maintain security policies, control frameworks and ensure compliance with UK GDPR, Cyber Essentials Plus, PCI-DSS and DPA Conduct risk assessments, manage our risk register More ❯
Social network you want to login/join with: MUST HAVE PREVIOUS BANKING EXPERIENCE TO BE CONSIDERED Job purpose The Information SecurityOfficer works within the Information Security Office of the Bank to ensure all information and cyber risks are identified, analysed, mitigated, and monitored, ensuring the smooth operation of the Bank. The ISO contributes to the … Information/Cyber Security Strategy and Roadmap, enabling defence-in-depth and defence-in-breadth to safeguard banking operations. The ISO collaborates closely with Security Engineering, Security Operations, and Business Resilience Teams across the bank. The ISO addresses external attacks, mitigates zero-day vulnerabilities, and identifies security flaws. It ensures that Executive Management's risk targets … are met and contributes to the continual improvement of the Bank's Cyber Assurance Framework. Key Responsibilities Collaborate with Security Engineering and Operations Teams to integrate security measures into business processes. Advise business units on security issues and initiatives. Oversee project activities to evaluate information security risks for new projects, products, and systems. Supervise resolution of More ❯
regard to race, color, religion, sex, national origin, protected veteran status, or disability status. EEO/AA/M/F/Disabled/Vets Job Description : Business Information SecurityOfficer, Cybersecurity Location: London As a global media and information services company, News Corp understands the importance of cybersecurity and mitigating risk across the organization. We believe in … global leader in cybersecurity. If cybersecurity is your passion and you want to be part of a cutting edge team, we want to hear from you! The Business Information SecurityOfficer (BISO) is the primary point of contact for News UK and supports the implementation of the Global Cybersecurity program within the business unit. As a trusted advisor … business to understand business requirements and implement cybersecurity strategies, providing advice and oversight to ensure compliance with cybersecurity policies. This role combines business acumen with technical knowledge to improve security posture, understand key assets, identify risks, and suggest mitigation strategies. The individual will also oversee business compliance with cybersecurity policies and standards, monitoring and reporting risks and exceptions. Job More ❯
Warwick, Warwickshire, United Kingdom Hybrid / WFH Options
ICEO
Information SecurityOfficer About the role: We're seeking a seasoned Information SecurityOfficer to drive our security strategy from the ground up. As the first dedicated security leader, you'll be at the forefront of protecting our systems, data, and users, ensuring we can scale securely and remain fully compliant. You'll steer … policy creation, oversee risk management, drive security testing, and collaborate company-wide to embed security in everything we do. About us: BeOne is a next-generation neobank that redefines how individuals and businesses manage money by blending traditional and digital finance. Our platform offers multi-currency accounts, ultra-low fees, real-time global payments, and robust financial tools … intuitive, refined interface. Our bold vision is to become the largest regulated funds and data transfer network for both retail and business customers. We empower users with financial freedom, security, and efficiency, whether for personal finances, business operations, or global investments. What you will do: Drive the company's information security strategy, ensuring alignment with GDPR, ISO More ❯
Crawley, Sussex, United Kingdom Hybrid / WFH Options
Better Days Recruitment Ltd
Due to company grown within the IT area, I am recruiting for an experienced Information SecurityOfficer and Cyber Security Lead to join an award-winning company located in the Southeast. You can be based in either the Crawley or Brighton Office and will possess demonstrable experience within Information and Cyber Security. You will play a pivotal … role in shaping and creating the companies Cyber strategy. The role involves providing guidance to stakeholders on information security matters, managing technical cybersecurity tools and operations and overseeing regulatory standards. You will lead the development and execution of the companies cyber and information security strategy ensuing it is aligned with ISO 27001, GDPR and Cyber essentials. Combining strong … information security experience with hands-on technical knowledge of SIEM, EDR, vulnerability management and incident response. You will have the ability to translate technical risk into clear business advice. This is a great permanent opportunity to demonstrate your strong experience and to lead this specialist area. This role offers hybrid working of two/three days in the office More ❯
Crawley, West Sussex, United Kingdom Hybrid / WFH Options
Better Days Recruitment Ltd
Due to company grown within the IT area, I am recruiting for an experienced Information SecurityOfficer and Cyber Security Lead to join an award-winning company located in the Southeast. You can be based in either the Crawley or Brighton Office and will possess demonstrable experience within Information and Cyber Security. You will play a pivotal … role in shaping and creating the companies Cyber strategy. The role involves providing guidance to stakeholders on information security matters, managing technical cybersecurity tools and operations and overseeing regulatory standards. You will lead the development and execution of the companies cyber and information security strategy ensuing it is aligned with ISO 27001, GDPR and Cyber essentials. Combining strong … information security experience with hands-on technical knowledge of SIEM, EDR, vulnerability management and incident response. You will have the ability to translate technical risk into clear business advice. This is a great permanent opportunity to demonstrate your strong experience and to lead this specialist area. This role offers hybrid working of two/three days in the office More ❯
Employment Type: Permanent
Salary: £65000 - £70000/annum Great company benefits
The Chief Information SecurityOfficer (CISO) is responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected. The CISO leads the development and implementation of a company-wide information security program and works across departments to assess risk, implement best practices, and maintain compliance with regulations. Key … Responsibilities: Strategic Leadership Develop and implement a strategic, long-term information security strategy and roadmap. Lead information security planning processes to establish an inclusive and comprehensive security program. Risk Management & Compliance Identify, assess, and manage information security risks and exposures. Ensure compliance with relevant laws, regulations, and standards (e.g., GDPR, HIPAA, ISO 27001, NIST). Oversee … audits and risk assessments and lead remediation efforts. Policy Development Create and maintain policies, standards, and guidelines to ensure compliance and reduce risks. Promote awareness of security policies and practices across the organization. Security Operations Oversee day-to-day security operations, including threat monitoring, incident response, and vulnerability management. Coordinate and manage security incident response processes More ❯
Information Security & Compliance Officer sought to join the IT department of an award-winning, national recruitment agency group as they continue to expand their digital presence across multiple brands. This is a permanent, full-time role based fully onsite at the company's Meriden office, with occasional travel to other company sites. The Role: As Information Security & Compliance Officer, you will become a key player in safeguarding the organisation's data and ensuring compliance with industry standards and regulations. As a crucial member of the Security and Compliance team, you will play an instrumental role in maintaining and enhancing our security controls across Microsoft Azure, Office 365, and during the migration of our … legacy systems to the Microsoft cloud. Your responsibilities will include: Evaluate and enhance existing IT systems, management procedures, and security protocols to ensure robust protection. Oversee ISO 27001 and other key accreditations by collaborating with internal teams and external auditors. Manage information security requests and compliance reports, ensuring adherence to GDPR and other relevant standards. Lead and coordinate More ❯
SR2 | Socially Responsible Recruitment | Certified B Corporation™
your skills and experience — talk with your recruiter to learn more. Base pay range Direct message the job poster from SR2 | Socially Responsible Recruitment | Certified B Corporation Chief Information SecurityOfficer (CISO) Salary: Competitive + Bonus + Equity Options About the Role Chief Information SecurityOfficer (CISO) to join a fast-scaling, high-impact organisation in … GRC) function from the ground up. As the company continues to grow, the need for a comprehensive and mature cybersecurity posture has never been greater. You will own the security vision and strategy while rolling up your sleeves to implement, scale, and continually improve our approach to GRC, risk management, threat mitigation, and compliance frameworks. Key Responsibilities Design and … implement a scalable GRC framework tailored to the business, addressing risk management, compliance standards (ISO 27001, NIST, SOC 2, etc.), and internal governance controls. Security Strategy: Develop and execute a long-term cybersecurity strategy aligned with business goals, balancing innovation and risk. Security Operations: Oversee day-to-day cybersecurity operations, including threat detection, incident response, vulnerability management, and More ❯
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Chief Information SecurityOfficer (CISO) 📍 Location: London (Hybrid Working Model) 💼 Salary: Competitive + Bonus + Equity Options 🕒 Type: Full-time, Permanent About the Role Chief Information SecurityOfficer (CISO) to join a fast-scaling, high-impact organisation in the heart of London. This is a strategic, foundational hire —you will be responsible for designing and building … GRC) function from the ground up. As the company continues to grow, the need for a comprehensive and mature cybersecurity posture has never been greater. You will own the security vision and strategy while rolling up your sleeves to implement, scale, and continually improve our approach to GRC, risk management, threat mitigation, and compliance frameworks. Key Responsibilities GRC Leadership … Design and implement a scalable GRC framework tailored to the business, addressing risk management, compliance standards (ISO 27001, NIST, SOC 2, etc.), and internal governance controls. Security Strategy: Develop and execute a long-term cybersecurity strategy aligned with business goals, balancing innovation and risk. Security Operations: Oversee day-to-day cybersecurity operations, including threat detection, incident response, vulnerability More ❯
City of London, London, United Kingdom Hybrid / WFH Options
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Chief Information SecurityOfficer (CISO) 📍 Location: London (Hybrid Working Model) 💼 Salary: Competitive + Bonus + Equity Options 🕒 Type: Full-time, Permanent About the Role Chief Information SecurityOfficer (CISO) to join a fast-scaling, high-impact organisation in the heart of London. This is a strategic, foundational hire —you will be responsible for designing and building … GRC) function from the ground up. As the company continues to grow, the need for a comprehensive and mature cybersecurity posture has never been greater. You will own the security vision and strategy while rolling up your sleeves to implement, scale, and continually improve our approach to GRC, risk management, threat mitigation, and compliance frameworks. Key Responsibilities GRC Leadership … Design and implement a scalable GRC framework tailored to the business, addressing risk management, compliance standards (ISO 27001, NIST, SOC 2, etc.), and internal governance controls. Security Strategy: Develop and execute a long-term cybersecurity strategy aligned with business goals, balancing innovation and risk. Security Operations: Oversee day-to-day cybersecurity operations, including threat detection, incident response, vulnerability More ❯
South East London, England, United Kingdom Hybrid / WFH Options
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Chief Information SecurityOfficer (CISO) Location: London (Hybrid Working Model) Salary: Competitive + Bonus + Equity Options Type: Full-time, Permanent About the Role Chief Information SecurityOfficer (CISO) to join a fast-scaling, high-impact organisation in the heart of London. This is a strategic, foundational hire —you will be responsible for designing and building … GRC) function from the ground up. As the company continues to grow, the need for a comprehensive and mature cybersecurity posture has never been greater. You will own the security vision and strategy while rolling up your sleeves to implement, scale, and continually improve our approach to GRC, risk management, threat mitigation, and compliance frameworks. Key Responsibilities GRC Leadership … Design and implement a scalable GRC framework tailored to the business, addressing risk management, compliance standards (ISO 27001, NIST, SOC 2, etc.), and internal governance controls. Security Strategy: Develop and execute a long-term cybersecurity strategy aligned with business goals, balancing innovation and risk. Security Operations: Oversee day-to-day cybersecurity operations, including threat detection, incident response, vulnerability More ❯
Current LS&Co Employees, apply via your Workday account. JOB DESCRIPTION ABOUT THE JOB We're looking for a Business Information SecurityOfficer (BISO), Europe, to join our team in London, reporting to the Senior Manager, Business Information Security Office and Strategy. As the BISO for Europe, you'll play a key role as the bridge between … regional business teams. You'll work closely with regional leadership to understand business goals, embed cybersecurity, including AI-related risks into operational strategies, and drive alignment between business and security objectives. You'll also lead efforts to identify and assess risks, advise on mitigation approaches, and foster a strong culture of security awareness across the region. KEY RESPONSIBILITIES … wholesale business teams. Advise regional management on cybersecurity risk levels, posture, and the potential impact of threats. Support regional leadership by contributing to the cost-benefit analysis of information security programs. Partner with Privacy team and legal counsel on several due diligence and data related functions. Risk Management & Governance: Support the implementation and management of regional third-party risk More ❯
has more than 2,500 colleagues, generates £315m in revenue, and supports more than 60,000 clients across a diverse range of sectors and markets. Role Purpose: An Information SecurityOfficer (ISO) is required to support LRQA's global operations, to develop, improve and maintain the organisation's Information Security capability. Working closely with the Global CISO … the role will support the creation, development and implementation of the Information Security strategy and operations. The Information SecurityOfficer will play a crucial role in servicing client requirements relating to information security (including Military, Defence and Critical National Infrastructure) whilst working with stakeholders across the globe to identify, manage and assess information security risks. … The ISO will work proactively with Clients, IT Operations, Security Operations, Legal, Procurement, Learning and Delivery Teams to reduce and manage risk, increase awareness and champion adherence to our Information Security processes, policies, and procedures. Key Responsibilities: Developing and maturing our supply chain verification. Working with suppliers and clients to ensure our security requirements and those of More ❯
Information SecurityOfficer (Talent Pool) (Selby) Reference Number: ISOAKP Description: SBV seeks an Information SecurityOfficer who will be accountable for delivering upon the strategic direction set in protecting SBV tech and data. This includes being a key partner in the design of success factors, solutions, and compliance. Implement the Technology Strategy & Innovation for your area … budget of internal resourcing and partnerships to manage and optimize the Cyber Risk landscape. Drive a proactive, predictive, and continuous improvement Cyber Risks managed environment. Drive the Information Technology Security Programme across the SBV landscape to protect its applications and supporting infrastructure from both internal and external threats targeting zero downtime, zero audit findings, and a single view of … Technology Risk. Implement and continuously enhance an information security management framework. Develop and implement Technology Security policies and standards that support and enable business strategy at the strategic planning, tactical, and operational business unit levels. Form and cascade a communication plan to the Technology team relating to the compliance of IT Security Policies, Standards, and Guidelines, escalating More ❯
and technology. We specialise in architecture, design, and software development for transformative projects. Join a team that values innovation, expertise, and commitment to excellence. Job Description The Chief Information SecurityOfficer (CISO) is responsible for overseeing the organisation’s Information and Communications Technology (ICT) infrastructure and cybersecurity framework, ensuring alignment with the Digital Operational Resilience Act (DORA) and … The CISO safeguards the Crypto-Asset Service Provider’s (CASP) systems, including the PIL crypto platform and front-end, by conducting risk assessments, maintaining comprehensive inventories, and implementing specific security policies. This role demands rapid compliance verification and leads the security team to protect critical operations in a regulated fintech environment. Here's what you'll do: Oversee … the ICT infrastructure and cybersecurity programme, ensuring compliance with DORA and ISO 27001 standards. Develop and implement information security strategies, policies, and procedures in line with NIST CSF, NIST 800-53, CIS, and COBIT frameworks. Conduct risk assessments and audits to ensure compliance with regulatory standards and best practices, including ISAE3402 and SOC2. Author, review, and maintain IT securityMore ❯
As a BITSO at Vattenfall, you'll lead vital IT security measures in a dynamic environment that spans onshore and offshore wind operations. You'll collaborate with cross-functional teams to implement security controls, handle incidents, and uphold compliance-shaping the safe, resilient backbone of our mission toward fossil freedom. If you thrive on driving meaningful change in … critical infrastructure, join us and make your mark in the future of sustainable energy. In Business Area (BA) Wind, the Security & Resilience (SnR) Department plays a pivotal role in safeguarding our journey toward a fossil-free future. SnR oversees functional areas such as Information & Cybersecurity, Physical Security, Personnel Security, and Resilience. Through a robust security management … system (SMS) and structured risk assessment processes, the department ensures that Vattenfall's wind operations remain secure and compliant with both internal and external requirements. By setting policies, coordinating security initiatives, and collaborating with stakeholders at all levels, the SnR team helps uphold our commitment to "always act secure & resilient." Be in your element with BA Wind Our business More ❯
Business Information SecurityOfficer, Europe Join to apply for the Business Information SecurityOfficer, Europe role at Levi Strauss & Co. About the Job We’re looking for a Business Information SecurityOfficer (BISO), Europe , to join our team in London, reporting to the Senior Manager, Business Information Security Office and Strategy. As the … bridge between our central cybersecurity team and regional business units. You’ll work with regional leadership to understand business goals, embed cybersecurity strategies—including AI-related risks—and align security objectives with business operations. Your role will also involve risk identification and assessment, advising on mitigation, and promoting a security-aware culture across the region. Key Responsibilities Business … advise on cybersecurity matters, including AI security. Understand regional team goals to communicate cyber risks effectively. Advise on cybersecurity risk levels and potential impacts. Support cost-benefit analysis of security programs. Collaborate with Privacy and legal teams on due diligence and data functions. Risk Management & Governance Support third-party risk management activities, including assessments. Manage PCI compliance, leading assessments More ❯
ad_1] Job Description Description –> The European Bank for Reconstruction and Development (EBRD) is seeking a Personal Data Management and Information SecurityOfficer to support the Head of Information Security in managing the Bank’s information security and personal data protection landscape. You will play a dual role—leading on the Bank’s Personal Data Protection … efforts and supporting the InfoSec agenda. Your work will ensure that the Bank maintains high standards of security, privacy, and compliance, contributing to our mission of promoting sustainable development across our regions of operation. About the Department Operational Risk Management (ORM) is part of the Bank’s Risk Management group and forms the second line of defence. ORM is … responsible for independently identifying, assessing, and supporting the mitigation of key operational risks, including those related to information security and personal data protection. ORM works in close collaboration with the IT Department and business units across the Bank You will act as the Bank’s: Primary Personal Data Protection Officer (PDPO) and contact point. Key advisor on privacy More ❯
London, England, United Kingdom Hybrid / WFH Options
Ripjar
Chief Information SecurityOfficer (CISO) Chief Information SecurityOfficer (CISO) Get AI-powered advice on this job and more exclusive features. Ripjar specialises in the development of software and data products that help governments and organisations combat serious financial crime. Our technology is used to identify criminal activity such as money laundering and terrorist financing, enabling … organisations to enforce sanctions at scale to help combat rogue entities and state actors. Lead Ripjar's Global Security Strategy As we scale globally, this role is central to our mission of delivering secure, resilient technology to governments and enterprises around the world. As Chief Information SecurityOfficer (CISO), you will be responsible for developing and executing … our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like Cyber Essentials, and leading executive team engagement on security governance, regulatory readiness, and organisational resilience. You will be responsible for monitoring and improving the information security of Ripjar's technology infrastructure, productsand services as we continue to scale. This is More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Ripjar
Chief Information SecurityOfficer (CISO) 1 day ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. Ripjar specialises in the development of software and data products that help governments and organisations combat serious financial crime. Our technology is used to identify criminal activity such as money laundering and terrorist … financing, enabling organisations to enforce sanctions at scale to help combat rogue entities and state actors. Lead Ripjar's Global Security Strategy As we scale globally, this role is central to our mission of delivering secure, resilient technology to governments and enterprises around the world. As Chief Information SecurityOfficer (CISO), you will be responsible for developing … and executing our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like Cyber Essentials, and leading executive team engagement on security governance, regulatory readiness, and organisational resilience. You will be responsible for monitoring and improving the information security of Ripjar's technology infrastructure, productsand services as we continue to scale. More ❯