Назад
Company hidden
5 дней назад

Senior Security Analyst (Fintech)

57 000 - 70 000GBP
Формат работы
remote (только United_kingdom)/hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Analyst (Fintech): Assessing supplier security, security controls, audits, regulatory requirements, and product or technology changes with an accent on third-party assurance, security risk management, and practical governance. Focus on translating technical and regulatory findings into actionable controls, improving scalable assurance processes, and using data, automation, and AI to strengthen security operations.

Location: Cardiff, London, or remote within the UK; remote workers may need to attend ad hoc meetings in London.

Salary: £57,000–£70,000 per year plus performance-based incentive awards.

Company

hirify.global provides personal and business banking products, including accounts, cards, savings, investments, and pensions, with a mission to make money work for everyone.

What you will do

  • Assess new and existing suppliers by reviewing security questionnaires, certifications, penetration test reports, and other assurance evidence.
  • Identify security risks, translate technical findings into recommendations, and manage remediation throughout the supplier lifecycle.
  • Lead and contribute to control testing, PCI DSS assessments, regulatory reviews, and internal and external audits.
  • Improve security policies, procedures, controls, and the Security Front Door service for teams across the business.
  • Review new products, technology, and business changes to identify security risks and control gaps.
  • Use data, automation, and AI to simplify and scale security processes while supporting the development of less experienced analysts.

Requirements

  • Experience identifying and assessing security risks and recommending proportionate treatments.
  • Ability to evaluate supplier questionnaires, security policies, penetration test reports, and assurance evidence.
  • Strong security fundamentals, technical curiosity, and the ability to investigate technical detail.
  • Ability to manage competing priorities, work independently, and communicate security risks to technical and non-technical audiences.
  • Strong collaboration skills and motivation to continue developing cybersecurity knowledge.
  • Must be based in the UK for this role.

Nice to have

  • Experience in financial services, fintech, or another highly regulated environment.
  • Experience with PCI DSS, ISO 27001, SOC 2, NIST-aligned assurance, regulatory reviews, or internal and external audits.

Culture & Benefits

  • Flexible working hours with distributed working available within the UK.
  • Home-working setup support, including a MacBook for all employees and additional support for fully remote workers.
  • £1,000 annual learning budget for books, training courses, and conferences.
  • Performance-based incentive awards and additional employee benefits.
  • Security is treated as both a priority and an opportunity for innovation, with emphasis on reducing unnecessary friction for users.

Hiring process

  • Introductory call with a recruiter.
  • 30-minute call with the hiring manager.
  • Two hours of technical and behavioural interviews; the process is expected to take approximately four to five weeks.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →