Enable job alerts via email!

Information Security Director

Sycurio

Guildford

On-site

GBP 70,000 - 110,000

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking an Information Security Director to lead their security strategy and compliance efforts. This pivotal role involves developing and maintaining the information security management system while ensuring compliance with ISO27001, PCI-DSS, and SOC2 standards. The ideal candidate will have over a decade of experience in information security, particularly within the financial sector, and a deep understanding of security frameworks and regulations. You'll be the face of security for the company, engaging with stakeholders and leading incident responses. Join a forward-thinking firm where your expertise will help shape a secure future in an ever-evolving landscape.

Qualifications

  • 10+ years of information security experience, preferably in Financial/Fintech services.
  • Industry certifications such as CISSP, CISM, or CISA are essential.

Responsibilities

  • Develop and maintain the information security strategy aligned with business goals.
  • Lead on information security incidents and manage security toolsets.

Skills

Cloud security principles

Payment processing systems security

Communication skills

Project management

Dev(Sec)Ops knowledge

Education

Bachelor's degree in Computer Science

Master's degree in Cybersecurity

Tools

Security assessment tools

Vulnerability management tools

Job description

The Information Security Director develops, shapes and maintains Sycurio’s information security capability, driving the attainment and maintenance of the ISO27001; PCI-DSS and SOC2 compliance. They are the subject matter of all things regarding security and compliance, owning the information risk management processes. They are the thought leader on all matters within the security and compliance domain such that the company remains secure against the ever-changing security threat and compliance landscape.

Information security strategy
  • Create and maintain the Company’s strategy, ensuring alignment to the Company’s strategy and business goals
  • Work across internal and external stakeholders, communicating the information security strategy to relevant parties, providing assurance of policies, procedures, and systems
  • Develop, maintain, and expand the information security management system (‘ISMS’) in line with an optimise compliance for ISO27001, PCI-DSSS and SOC2 compliance.
  • Identify gaps in the information security capability, both technical and operational, and propose remediation and mitigation plans and solutions.
  • Responsible for the Company’s information security capability, ensuring it remains secure against an ever-changing threat landscape
Operational input
  • Contribute to design and architectural decisions and improve approach to the Company’s threat modelling
  • Lead on information security incidents and work directly with internal teams and external parties on containment and mitigation activities
  • Execute threat simulations
  • Assess emerging and potential security threats and acting proactively to mitigate relevant threats
  • End to end vulnerability management. Manage security toolset.
  • Act as the security “face” of Sycurio to its customers, suppliers and auditors, supporting both in-life and sales engagements
  • Manage and participate in the response to security questionnaires from customers and prospects.
Key qualifications, skills, experience:
Qualifications :
  • Bachelor's degree in Computer Science, Cybersecurity, or related field (Master's preferred)
  • Industry certifications such as CISSP, CISM, CISA, or equivalent
Experience :
  • 10+ years of information security experience. Financial/Fintech services/payments desirable
  • Deep knowledge of security frameworks (PCI, ISO 27001, NIST) and regulations (GDPR, CCPA)
  • Experience with PCI DSS compliance and implementation
  • Proven success in managing external auditors to achieve positive outcomes
  • Expert in information security with strong communication and stakeholder management skills
  • Experience in managing security incidents and leading incident response
  • Experience with security assessment tools and vulnerability management
  • Strong vendor management and third-party risk assessment experience
Skills :
  • Strong understanding of cloud security principles and best practices, particularly in AWS
  • Solid understanding of payment processing systems and associated security controls
  • Good communication and interpersonal skills, with the ability to effectively communicate security-related questions to technical and non-technical stakeholders (employees, customers, or partners)
  • Project management skills, with the ability to manage projects such as processes implementation and improvement, security systems implementation
  • Ability to collaborate cross-functionally and influence stakeholders at all levels of the organisation
  • Good knowledge of Dev(Sec)Ops and how to implement secure software development practices
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Information Security Director

Only for registered members

Birmingham

Remote

GBP 80,000 - 100,000

30+ days ago

Associate Security Director - EMEA region

Only for registered members

Basingstoke

Remote

GBP 60,000 - 100,000

20 days ago

Head of Safety, Assurance & Wellbeing - BBC

Only for registered members

London

Remote

GBP 71,000 - 82,000

Today
Be an early applicant

Director of Health & Safety

Only for registered members

Greater London

Remote

GBP 60,000 - 100,000

3 days ago
Be an early applicant

Global Security and Business Continuity Manager

Only for registered members

Greater London

Remote

GBP 50,000 - 90,000

4 days ago
Be an early applicant

DevOps & Security Engineer

Only for registered members

London

Remote

GBP 50,000 - 90,000

12 days ago

Penetration Tester

Only for registered members

Greater London

Remote

GBP 40,000 - 80,000

12 days ago

Penetration Tester

Only for registered members

Greater London

Remote

GBP 100,000 - 125,000

15 days ago

Global Cloud Security Director

Only for registered members

London

Hybrid

GBP 80,000 - 120,000

Today
Be an early applicant