Head of Information Security
The Fortune Group is proud to be recruiting on behalf of our innovative fintech client for a Head of Information Security based in London.
About the Role
This is a senior leadership position responsible for shaping and executing the company’s cybersecurity strategy. You’ll manage risk across the corporate and cloud environments, working closely with engineering, infrastructure, and client-facing teams to ensure robust security practices that support business growth.
Key Responsibilities
- Own and enhance the firm’s Information Security function and overall security posture.
- Lead responses to client security questionnaires and audit follow-ups.
- Oversee ISO27001 and SOC 2 Type II audits.
- Select and implement tools to proactively detect and respond to threats.
- Drive continuous improvement of security practices across all teams.
- Coordinate external penetration tests and manage remediation efforts.
- Assess third-party service providers for security risks.
- Provide guidance and approval on security solutions and approaches.
- Promote secure engineering best practices throughout the organization.
- Maintain InfoSec frameworks, policies, and awareness programs.
- Monitor SIEM systems and maintain actionable alerts and reports.
Requirements
- Extensive experience in technical security roles (Security Engineering or Application Security).
- Strong ability to engage with clients and build relationships with InfoSec counterparts.
- Deep technical understanding and ability to partner with engineering teams.
- Risk-based approach to security improvements and fixes.
- Experience with design reviews and technical assessments of software and infrastructure.
- Excellent knowledge of InfoSec, risk management, governance, and data protection.
- Programming/scripting skills for automation.
- Ability to thrive in a fast-paced environment and manage multiple priorities.
- Clear and concise communication skills, both written and verbal.
Why Apply?
This is a fantastic opportunity to lead security strategy for a forward-thinking fintech firm, ensuring resilience and compliance in a rapidly evolving industry.