Назад
Company hidden
3 дня назад

Head of Information Security (Deputy CISO)

Формат работы
onsite
Тип работы
fulltime
Грейд
head
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Head of Information Security (Deputy CISO) (Financial Services): Leading and strengthening NewDay’s enterprise-wide information security capability with an accent on security operations, governance, risk, architecture, resilience, assurance, and regulatory alignment. Focus on translating security strategy into measurable execution, managing technology and information risk, strengthening cyber resilience, and enabling responsible AI adoption.

Location: London, United Kingdom

Company

hirify.global is a financial services organisation focused on consumer credit, payments and technology-enabled customer services.

What you will do

  • Lead and develop the enterprise-wide Information Security function as the CISO’s principal deputy and delegate.
  • Translate security strategy into priorities, measurable outcomes, policies, standards and control improvements.
  • Lead security monitoring, threat and vulnerability management, incident response, cyber preparedness and operational resilience.
  • Own the technology and information risk framework, including risk appetite, risk treatment, control effectiveness and reporting.
  • Embed secure-by-design practices across technology change, cloud adoption, platform engineering, digital delivery and supplier-led transformation.
  • Oversee third-party security, assurance, audits, regulatory engagement and AI security and governance.

Requirements

  • Significant experience leading a broad Information Security function within a regulated organisation, ideally in financial services, consumer credit, cards, payments or FinTech.
  • Experience serving as a senior deputy to a CISO or holding an equivalent enterprise security leadership position.
  • Broad experience across security operations, governance, risk and compliance, architecture, engineering, third-party risk, assurance and operational resilience.
  • Practical knowledge of ISO/IEC 27001, PCI DSS, UK GDPR, the Data Protection Act 2018, NIST and related control frameworks.
  • Experience leading security incidents, audits, assurance programmes, regulatory engagement and senior-level reporting.
  • Excellent judgement, communication and influencing skills, with confidence engaging executive and Board-level stakeholders.

Nice to have

  • Professional certification such as CISSP, CISM, CRISC, CISA or ISO 27001 Lead Implementer or Auditor.
  • Experience with Microsoft Azure security, AI governance, cyber insurance, supplier assurance or major technology transformation.

Culture & Benefits

  • Newly created, enterprise-wide leadership role with significant organisational visibility.
  • Close collaboration with leaders across technology, product, operations, risk, compliance, data protection, legal and procurement.
  • Opportunity to build a pragmatic, risk-led security culture that supports customer protection and commercial growth.
  • Inclusive equal-opportunity workplace with reasonable adjustments available for candidates and colleagues with disabilities or caring responsibilities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →