Information Security Compliance Officer Required Qualifications & Certifications: Education Bachelor's degree in Cybersecurity, Information Technology, Computer Science , or a related field. A master's degree in information security , Risk Management, or Compliance is a plus. Certifications (Highly Valued) CISSP (Certified Information Systems Security Professional) CISM (Certified Information Security Manager) CISA (Certified Information Systems Auditor) ISO … Certified in Risk and Information Systems Control) GDPR Certification (e.g., IAPP CIPP/E, CIPM for data protection compliance) Experience Requirements: 3-5+ years of experience in Information Security, Compliance, or IT Risk Management. Experience with regulatory frameworks in UK & EU : GDPR (General Data Protection Regulation) ISO 27001 (Information Security Management Systems) Cyber Essentials Plus (UK government … backed security framework) DORA (Digital Operational Resilience Act) - EU financial sector PCI-DSS (if handling payment data) Experience in: Managing vendor risk assessments for third-party compliance. Handling incident response & reporting (e.g., Data Breach Notifications under GDPR). Key Skills & Technical Knowledge: Deep understanding of data protection laws (UK GDPR, EU GDPR, DPA 2018) . Familiarity with risk management More ❯
Social network you want to login/join with: MUST HAVE PREVIOUS BANKING EXPERIENCE TO BE CONSIDERED Job purpose The Information SecurityOfficer works within the Information Security Office of the Bank to ensure all information and cyber risks are identified, analysed, mitigated, and monitored, ensuring the smooth operation of the Bank. Where improvements are needed, the … ISO will contribute to the Information/Cyber Security Strategy and Roadmap, enabling both defence-in-depth and, where appropriate, defence-in-breadth to safeguard normal banking operations. The ISO will collaborate closely with Security Engineering, Security Operations, and Business Resilience Teams across the bank. The ISO addresses external attacks, mitigates zero-day vulnerabilities, and identifies security … targets are met and contributes to the continual improvement of the Bank's Cyber Assurance Framework, enhancing the control measures that defend the Bank. Key Responsibilities Collaborate with Information Security Engineering and Operations Teams to integrate security measures into business processes. Advise business units on security-related issues and initiatives. Oversee Second Line project activities to evaluate More ❯
London, England, United Kingdom Hybrid / WFH Options
WSP
celebrates new ideas and diverse perspectives. You can experience a world of opportunity and the chance to shape a career as unique as you. Position Summary WSP's Information Security Office (ISO) is responsible for the deployment and maintenance of the information security framework for both the IT organization and wider business community. This includes the Governance mechanisms … policies and processes, tools and technologies, and employee training required to protect WSP information and that of our clients. The role of Regional Information SecurityOfficer reports directly to the Business Information SecurityOfficer and is responsible for delivering the Information Security Framework into the applicable region of WSP. This is primarily an internally facing … role, although some interaction with clients and third parties may be required. This position requires a senior management professional with relevant experience and a strong working knowledge of IT security, risk management, regulatory compliance, information and public cloud service technology, IT operations management principles, and third-party security management. A little more about your role... Specific areas of More ❯
Business Information SecurityOfficer (BISO) for News UK - News Corp Business Information SecurityOfficer, Cybersecurity Location: London As a global media and information services company, News Corp understands the importance of cybersecurity and mitigating risk across the organization. We believe in protecting our businesses and customers and are looking to build innovative solutions that will allow … global leader in cybersecurity. If cybersecurity is your passion and you want to be part of a cutting edge team, we want to hear from you! The Business Information SecurityOfficer (BISO) is the primary point of contact for News UK and supports the implementation of the Global Cybersecurity program within the business unit. As a trusted advisor … and oversight to the business to ensure the business is compliant with required cybersecurity requirements and policies. Combining business acumen with technical knowledge, this role assists in improving the security posture with respect to delivering services and partnering with News UK leadership. This role will understand the key assets and processes, identify and evaluate risks and controls, and suggest More ❯
regard to race, color, religion, sex, national origin, protected veteran status, or disability status. EEO/AA/M/F/Disabled/Vets Job Description : Business Information SecurityOfficer, Cybersecurity Location: London As a global media and information services company, News Corp understands the importance of cybersecurity and mitigating risk across the organization. We believe in … global leader in cybersecurity. If cybersecurity is your passion and you want to be part of a cutting edge team, we want to hear from you! The Business Information SecurityOfficer (BISO) is the primary point of contact for News UK and supports the implementation of the Global Cybersecurity program within the business unit. As a trusted advisor … business to understand business requirements and implement cybersecurity strategies, providing advice and oversight to ensure compliance with cybersecurity policies. This role combines business acumen with technical knowledge to improve security posture, understand key assets, identify risks, and suggest mitigation strategies. The individual will also oversee business compliance with cybersecurity policies and standards, monitoring and reporting risks and exceptions. Job More ❯
The Chief Information SecurityOfficer (CISO) is responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected. The CISO leads the development and implementation of a company-wide information security program and works across departments to assess risk, implement best practices, and maintain compliance with regulations. Key … Responsibilities: Strategic Leadership Develop and implement a strategic, long-term information security strategy and roadmap. Lead information security planning processes to establish an inclusive and comprehensive security program. Risk Management & Compliance Identify, assess, and manage information security risks and exposures. Ensure compliance with relevant laws, regulations, and standards (e.g., GDPR, HIPAA, ISO 27001, NIST). Oversee … audits and risk assessments and lead remediation efforts. Policy Development Create and maintain policies, standards, and guidelines to ensure compliance and reduce risks. Promote awareness of security policies and practices across the organization. Security Operations Oversee day-to-day security operations, including threat monitoring, incident response, and vulnerability management. Coordinate and manage security incident response processes More ❯
SR2 | Socially Responsible Recruitment | Certified B Corporation™
your skills and experience — talk with your recruiter to learn more. Base pay range Direct message the job poster from SR2 | Socially Responsible Recruitment | Certified B Corporation Chief Information SecurityOfficer (CISO) Salary: Competitive + Bonus + Equity Options About the Role Chief Information SecurityOfficer (CISO) to join a fast-scaling, high-impact organisation in … GRC) function from the ground up. As the company continues to grow, the need for a comprehensive and mature cybersecurity posture has never been greater. You will own the security vision and strategy while rolling up your sleeves to implement, scale, and continually improve our approach to GRC, risk management, threat mitigation, and compliance frameworks. Key Responsibilities Design and … implement a scalable GRC framework tailored to the business, addressing risk management, compliance standards (ISO 27001, NIST, SOC 2, etc.), and internal governance controls. Security Strategy: Develop and execute a long-term cybersecurity strategy aligned with business goals, balancing innovation and risk. Security Operations: Oversee day-to-day cybersecurity operations, including threat detection, incident response, vulnerability management, and More ❯
City of London, London, United Kingdom Hybrid / WFH Options
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Chief Information SecurityOfficer (CISO) 📍 Location: London (Hybrid Working Model) 💼 Salary: Competitive + Bonus + Equity Options 🕒 Type: Full-time, Permanent About the Role Chief Information SecurityOfficer (CISO) to join a fast-scaling, high-impact organisation in the heart of London. This is a strategic, foundational hire —you will be responsible for designing and building … GRC) function from the ground up. As the company continues to grow, the need for a comprehensive and mature cybersecurity posture has never been greater. You will own the security vision and strategy while rolling up your sleeves to implement, scale, and continually improve our approach to GRC, risk management, threat mitigation, and compliance frameworks. Key Responsibilities GRC Leadership … Design and implement a scalable GRC framework tailored to the business, addressing risk management, compliance standards (ISO 27001, NIST, SOC 2, etc.), and internal governance controls. Security Strategy: Develop and execute a long-term cybersecurity strategy aligned with business goals, balancing innovation and risk. Security Operations: Oversee day-to-day cybersecurity operations, including threat detection, incident response, vulnerability More ❯
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Chief Information SecurityOfficer (CISO) 📍 Location: London (Hybrid Working Model) 💼 Salary: Competitive + Bonus + Equity Options 🕒 Type: Full-time, Permanent About the Role Chief Information SecurityOfficer (CISO) to join a fast-scaling, high-impact organisation in the heart of London. This is a strategic, foundational hire —you will be responsible for designing and building … GRC) function from the ground up. As the company continues to grow, the need for a comprehensive and mature cybersecurity posture has never been greater. You will own the security vision and strategy while rolling up your sleeves to implement, scale, and continually improve our approach to GRC, risk management, threat mitigation, and compliance frameworks. Key Responsibilities GRC Leadership … Design and implement a scalable GRC framework tailored to the business, addressing risk management, compliance standards (ISO 27001, NIST, SOC 2, etc.), and internal governance controls. Security Strategy: Develop and execute a long-term cybersecurity strategy aligned with business goals, balancing innovation and risk. Security Operations: Oversee day-to-day cybersecurity operations, including threat detection, incident response, vulnerability More ❯
South East London, England, United Kingdom Hybrid / WFH Options
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Chief Information SecurityOfficer (CISO) Location: London (Hybrid Working Model) Salary: Competitive + Bonus + Equity Options Type: Full-time, Permanent About the Role Chief Information SecurityOfficer (CISO) to join a fast-scaling, high-impact organisation in the heart of London. This is a strategic, foundational hire —you will be responsible for designing and building … GRC) function from the ground up. As the company continues to grow, the need for a comprehensive and mature cybersecurity posture has never been greater. You will own the security vision and strategy while rolling up your sleeves to implement, scale, and continually improve our approach to GRC, risk management, threat mitigation, and compliance frameworks. Key Responsibilities GRC Leadership … Design and implement a scalable GRC framework tailored to the business, addressing risk management, compliance standards (ISO 27001, NIST, SOC 2, etc.), and internal governance controls. Security Strategy: Develop and execute a long-term cybersecurity strategy aligned with business goals, balancing innovation and risk. Security Operations: Oversee day-to-day cybersecurity operations, including threat detection, incident response, vulnerability More ❯
Current LS&Co Employees, apply via your Workday account. JOB DESCRIPTION ABOUT THE JOB We're looking for a Business Information SecurityOfficer (BISO), Europe, to join our team in London, reporting to the Senior Manager, Business Information Security Office and Strategy. As the BISO for Europe, you'll play a key role as the bridge between … regional business teams. You'll work closely with regional leadership to understand business goals, embed cybersecurity, including AI-related risks into operational strategies, and drive alignment between business and security objectives. You'll also lead efforts to identify and assess risks, advise on mitigation approaches, and foster a strong culture of security awareness across the region. KEY RESPONSIBILITIES … wholesale business teams. Advise regional management on cybersecurity risk levels, posture, and the potential impact of threats. Support regional leadership by contributing to the cost-benefit analysis of information security programs. Partner with Privacy team and legal counsel on several due diligence and data related functions. Risk Management & Governance: Support the implementation and management of regional third-party risk More ❯
and technology. We specialise in architecture, design, and software development for transformative projects. Join a team that values innovation, expertise, and commitment to excellence. Job Description The Chief Information SecurityOfficer (CISO) is responsible for overseeing the organisation’s Information and Communications Technology (ICT) infrastructure and cybersecurity framework, ensuring alignment with the Digital Operational Resilience Act (DORA) and … The CISO safeguards the Crypto-Asset Service Provider’s (CASP) systems, including the PIL crypto platform and front-end, by conducting risk assessments, maintaining comprehensive inventories, and implementing specific security policies. This role demands rapid compliance verification and leads the security team to protect critical operations in a regulated fintech environment. Here's what you'll do: Oversee … the ICT infrastructure and cybersecurity programme, ensuring compliance with DORA and ISO 27001 standards. Develop and implement information security strategies, policies, and procedures in line with NIST CSF, NIST 800-53, CIS, and COBIT frameworks. Conduct risk assessments and audits to ensure compliance with regulatory standards and best practices, including ISAE3402 and SOC2. Author, review, and maintain IT securityMore ❯
As a BITSO at Vattenfall, you'll lead vital IT security measures in a dynamic environment that spans onshore and offshore wind operations. You'll collaborate with cross-functional teams to implement security controls, handle incidents, and uphold compliance-shaping the safe, resilient backbone of our mission toward fossil freedom. If you thrive on driving meaningful change in … critical infrastructure, join us and make your mark in the future of sustainable energy. In Business Area (BA) Wind, the Security & Resilience (SnR) Department plays a pivotal role in safeguarding our journey toward a fossil-free future. SnR oversees functional areas such as Information & Cybersecurity, Physical Security, Personnel Security, and Resilience. Through a robust security management … system (SMS) and structured risk assessment processes, the department ensures that Vattenfall's wind operations remain secure and compliant with both internal and external requirements. By setting policies, coordinating security initiatives, and collaborating with stakeholders at all levels, the SnR team helps uphold our commitment to "always act secure & resilient." Be in your element with BA Wind Our business More ❯
Business Information SecurityOfficer, Europe Join to apply for the Business Information SecurityOfficer, Europe role at Levi Strauss & Co. About the Job We’re looking for a Business Information SecurityOfficer (BISO), Europe , to join our team in London, reporting to the Senior Manager, Business Information Security Office and Strategy. As the … bridge between our central cybersecurity team and regional business units. You’ll work with regional leadership to understand business goals, embed cybersecurity strategies—including AI-related risks—and align security objectives with business operations. Your role will also involve risk identification and assessment, advising on mitigation, and promoting a security-aware culture across the region. Key Responsibilities Business … advise on cybersecurity matters, including AI security. Understand regional team goals to communicate cyber risks effectively. Advise on cybersecurity risk levels and potential impacts. Support cost-benefit analysis of security programs. Collaborate with Privacy and legal teams on due diligence and data functions. Risk Management & Governance Support third-party risk management activities, including assessments. Manage PCI compliance, leading assessments More ❯
ad_1] Job Description Description –> The European Bank for Reconstruction and Development (EBRD) is seeking a Personal Data Management and Information SecurityOfficer to support the Head of Information Security in managing the Bank’s information security and personal data protection landscape. You will play a dual role—leading on the Bank’s Personal Data Protection … efforts and supporting the InfoSec agenda. Your work will ensure that the Bank maintains high standards of security, privacy, and compliance, contributing to our mission of promoting sustainable development across our regions of operation. About the Department Operational Risk Management (ORM) is part of the Bank’s Risk Management group and forms the second line of defence. ORM is … responsible for independently identifying, assessing, and supporting the mitigation of key operational risks, including those related to information security and personal data protection. ORM works in close collaboration with the IT Department and business units across the Bank You will act as the Bank’s: Primary Personal Data Protection Officer (PDPO) and contact point. Key advisor on privacy More ❯
London, England, United Kingdom Hybrid / WFH Options
Ripjar
Chief Information SecurityOfficer (CISO) Chief Information SecurityOfficer (CISO) Get AI-powered advice on this job and more exclusive features. Ripjar specialises in the development of software and data products that help governments and organisations combat serious financial crime. Our technology is used to identify criminal activity such as money laundering and terrorist financing, enabling … organisations to enforce sanctions at scale to help combat rogue entities and state actors. Lead Ripjar's Global Security Strategy As we scale globally, this role is central to our mission of delivering secure, resilient technology to governments and enterprises around the world. As Chief Information SecurityOfficer (CISO), you will be responsible for developing and executing … our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like Cyber Essentials, and leading executive team engagement on security governance, regulatory readiness, and organisational resilience. You will be responsible for monitoring and improving the information security of Ripjar's technology infrastructure, productsand services as we continue to scale. This is More ❯
London, England, United Kingdom Hybrid / WFH Options
Ripjar
Chief Information SecurityOfficer (CISO) 1 day ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. Ripjar specialises in the development of software and data products that help governments and organisations combat serious financial crime. Our technology is used to identify criminal activity such as money laundering and terrorist … financing, enabling organisations to enforce sanctions at scale to help combat rogue entities and state actors. Lead Ripjar's Global Security Strategy As we scale globally, this role is central to our mission of delivering secure, resilient technology to governments and enterprises around the world. As Chief Information SecurityOfficer (CISO), you will be responsible for developing … and executing our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like Cyber Essentials, and leading executive team engagement on security governance, regulatory readiness, and organisational resilience. You will be responsible for monitoring and improving the information security of Ripjar's technology infrastructure, productsand services as we continue to scale. More ❯
people. Hybrid Working This role is based in our East Finchley office working 3 days in the office and 2 days remotely. Job Description: The Opportunity As a Cyber SecurityOfficer you will be responsible for implementing and upholding a framework that spans people, process and technology to ensure that McDonald's information systems and data remains secure. … The role holder will work extensively across a variety of computer systems, network devices and cyber security toolsets, as well as enforcing and improving key processes such as cyber security education, awareness and training. What will my accountabilities be? Responsibility for operating and maintaining existing cyber security processes and toolsets will be a fundamental part of this … role, as well as research, design and implementation of future cyber security processes and toolsets that are most suited to McDonald's environment. This could vary from being responsible for the maintenance and development of the organisation's cyber security awareness programme, to the implementation and operation of exciting new solutions such as XDR or SOAR. Executing incident More ❯
What You’ll Be Working On: ️ Leading and developing the organization’s information security strategy, policies, and programs ️ Overseeing the implementation of risk management practices and ensuring compliance with industry regulations (e.g., GDPR, ISO 27001) ️ Managing and mentoring the cybersecurity team to strengthen the organization’s security posture ️ Collaborating with cross-functional teams to align security initiatives … on the state of cybersecurity and potential risks What We’re Looking For: ️ Proven experience as a CISO or in a senior cybersecurity leadership role ️ Extensive knowledge of information security frameworks, governance, and compliance standards ️ Strong experience in risk management, incident response, and disaster recovery planning ️ Ability to communicate complex security concepts to non-technical stakeholders ️ Relevant certifications More ❯
London, England, United Kingdom Hybrid / WFH Options
CACI | Healthcare Insights Group
Senior Information Security & Quality Officer Join to apply for the Senior Information Security & Quality Officer role at CACI | Healthcare Insights Group Senior Information Security & Quality Officer 2 days ago Be among the first 25 applicants Join to apply for the Senior Information Security & Quality Officer role at CACI | Healthcare Insights Group London … wisely to deliver well thought-out digital solutions and software. THE ROLE CACI are seeking an experienced individual to join our ISQG team in the role of Senior Information Security & Quality Officer. The successful candidate will be responsible for supporting our ISO9001, ISO20000 and ISO27001 certifications, and provide advice and guidance on other quality and security matters. CACI … you to occasionally visit client sites to support ongoing CACI projects both in the UK and Ireland. Key Responsibilities Support the ISQG Team with day-to-day adherence to security and quality standards. Conduct quality and service management internal audits, workshops, and various related meetings. Maintenance of the organisation's quality and service management documentation, including regular reviews and More ❯
London, England, United Kingdom Hybrid / WFH Options
Rolls Royce SMR Ltd
Role Title: Chief Information SecurityOfficer We anticipate paying a salary from £130,000+ DOE Location: Derby, Warrington OR Manchester offices - Hybrid working flexibility We are Rolls-Royce SMR and we’re doing something that’s never been done before. We’re revolutionising an industry. That’s a once-in-a-career opportunity for those excited by such … Power station. The technology function is in its infancy and large investment is being readied to ensure that technology can support the growth of the business. The Chief Information SecurityOfficer (CISO) will lead the organisation’s information and cyber security strategy, ensuring resilience, compliance, and protection of digital assets within the business. Reporting directly to the … Chief Digital & Information Officer (CDIO), the CISO will be accountable for establishing and maintaining a corporate-wide security program to protect information assets and technologies. Key responsibilities Develop and implement an enterprise-wide information and cyber security strategy aligned with the business objectives Lead and manage the cyber security and information management functions, including staff, budget More ❯
Fun, Personal Reward, and Inclusive Diversity-are why our people love working at A&M. The Team With the growth of the business globally, we are expanding our Global Security Office (GSO) and are looking to recruit a Business Information SecurityOfficer (BISO) to join the team in London. Reporting to the Chief SecurityOfficer, the BISO will play a critical role in providing leadership, executive support, and strategic and tactical guidance for the information security program supporting enterprise security initiatives. This role requires a strong technical background, excellent communication skills, and the ability to work closely with key stakeholders such as senior management, third parties, and business subject matter experts (SMEs … . How you will contribute Act as a trusted liaison to ensure cybersecurity practices are integrated into business unit initiatives throughout their lifecycle. Work closely with security leadership to instil information security policies and practices across business units, addressing security awareness, incident response, application security, and infrastructure. Partner with business units to track, assess and report More ❯
CHIEF INFORMATION SECURITYOFFICER - AEROSPACE AND DEFENSE: Bullisher is a data-centric fintech solution provider in the aerospace and defense industry for institutional-level investors, looking to disrupt and revolutionize a $3 trillion dollar industry. We spearhead an industry-leading Blackbox to facilitate and administer trade agreements, driven by our new generation benchmark delivering solutions through innovation with … uncompromising agility. JOB DESCRIPTION: The oversight requires a sophisticated operating model that allows for a stronger security posture centralized in a Security Operations Center (SOC). This role will oversee global operations with a unified management of API calls, space exploration & navigation, and integrate various tools into our systems of record to view interactions from a holistic risk … Introducing new risk management techniques will undergo formal approval by the Change Approval Board (C.A.B). The role will also involve micromanaging cybersecurity engineers, penetration testing engineers, and other security personnel, ensuring compliance with NIST cybersecurity framework and DoD requirements. PHYSICAL DEMANDS: This position requires the ability to communicate and exchange information, utilizing necessary equipment to perform the job. More ❯
London, England, United Kingdom Hybrid / WFH Options
Ripjar
identify criminal activity such as money laundering and terrorist financing, enabling organisations to enforce sanctions at scale to help combat rogue entities and state actors. Lead Ripjar's Global Security Strategy As we scale globally, this role is central to our mission of delivering secure, resilient technology to governments and enterprises around the world. As Chief Information SecurityOfficer (CISO), you will be responsible for developing and executing our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like Cyber Essentials, and leading executive team engagement on security governance, regulatory readiness, and organisational resilience. You will be responsible for monitoring and improving the information security of Ripjar … will be responsible not only for setting strategy, but also for directly executing core activities such as policy development, supporting audits and accreditations, incident response, and day-to-day security operations. What you'll be doing: Strategic Security Leadership Set the organisation-wide security vision and roadmap; act as security evangelist at the executive level. Maintain More ❯
Senior Information Security & Quality Officer 11 September 2024 Headquartered in London, CACI Ltd is a wholly owned subsidiary of CACI International Inc., a publicly listed company on the NYSE with annual revenue in excess of US $6.2bn and employing approx. 22,000 people worldwide. CACI Ltd is an international data and technology consultancy with £154m turnover and … wisely to deliver well thought-out digital solutions and software. THE ROLE CACI are seeking an experienced individual to join our ISQG team in the role of Senior Information Security & Quality Officer. The successful candidate will be responsible for supporting our ISO9001, ISO20000 and ISO27001 certifications, and provide advice and guidance on other quality and security matters. CACI … you to occasionally visit client sites to support ongoing CACI projects both in the UK and Ireland. KEY RESPONSIBILITIES Support the ISQG Team with day-to-day adherence to security and quality standards. Conduct quality and service management internal audits, workshops, and various related meetings. Maintenance of the organisation's quality and service management documentation, including regular reviews and More ❯