FIM & DLP Specialist - AVP
FIM & DLP Specialist - AVP
London, Docklands (Hybrid)
£90,000 - £100,000 per annum + annual discretionary bonus
If you're an experienced security professional with expertise in File Integrity Monitoring (FIM), Data Loss Prevention (DLP) and User Behaviour Analytics (UBA), this is a high-impact opportunity to take regional ownership of critical security controls within a leading Financial Services organisation.
You'll play a key role in protecting sensitive data, strengthening security posture, and driving continuous improvement across a complex, regulated environment.
The organisation is pleased to offer the role on a hybrid basis where you will be expected in their London offices 2 days per week, therefore you must be within reasonable commute to London.
Responsibilities:
- Leading UK wide security initiatives and acting as a regional subject-matter expert.
- Owning and operating FIM, DLP, and UBA controls, including triage, investigation, and policy refinement.
- Conducting risk assessments and shaping robust security policies aligned to ISO 27001, NIST and PCI-DSS.
- Monitoring security systems and responding to incidents across DLP, FIM, Email Security and Web Security.
- Identifying vulnerabilities and enhancing the organisation's overall security posture.
- Collaborating with cross-functional teams to ensure regulatory and internal compliance.
- Managing vendor relationships to ensure effective tooling performance and roadmap alignment.
Experience/Skills required:
- Strong background in IT Security within Financial Services, Banking or similar regulated environments.
- Hands-on experience with FIM, DLP, and User Behaviour Analytics as core responsibilities.
- Solid understanding of risk management and security frameworks (ISO 27001, NIST, PCI-DSS).
- Experience with enterprise security tooling - Qualys, Splunk, Forcepoint preferred (others considered).
- Strong analytical and problem-solving skills with the ability to handle complex security issues.
- Excellent communication skills, able to translate technical detail for non-technical audiences.
- Incident response experience and confidence operating in fast-paced environments.
- Security certifications such as CISSP, CISM, or CEH are highly desirable.
- Proven ability to manage vendors and influence third-party delivery.