BISO, Internal Platforms

Bupa UK

Staines-upon-Thames

Hybrid

GBP 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

25 days holiday
Enhanced pension
Private medical insurance
Wellbeing services
Discounts on products and services

Job summary

Bupa seeks a Business Information Security Officer (BISO) to lead security, risk and resilience for Internal Technology Platforms. You will partner with technology and business leaders to embed secure-by-design practices and guide strategic programmes, including AI adoption and cloud security.

In this role, you will shape risk governance, manage risk registers and support continuity planning while engaging senior stakeholders across one of the UK’s leading healthcare organisations.

Qualifications

  • Significant experience in cyber security, technology risk and resilience in a large organisation.
  • Experience in regulated environments such as healthcare or financial services.
  • Strong knowledge of frameworks like ISO 27001, NIST, CIS, OWASP, ITIL or COBIT.
  • Experience with cloud technologies (Azure, Google Cloud) and modern identity solutions.
  • Understanding of cyber threats, data protection, encryption, business continuity and resilience.

Responsibilities

  • Lead information security, technology risk and resilience activities across Internal Technology Platforms.
  • Build trusted relationships with technology and business leaders to embed security standards.
  • Provide risk-based guidance to strategic programmes and product teams.
  • Ensure safe adoption of AI, cloud platforms and modern workplace tools.
  • Oversee risk governance, risk registers and remediation plans.
  • Support business continuity, disaster recovery and operational resilience planning.
  • Collaborate with security incident teams to strengthen future controls.
  • Oversee third-party security assessments and manage supplier risks.
  • Monitor emerging threats and shape future security strategy.
  • Translate complex risks into clear business language for senior stakeholders.

Skills

Cyber security
Technology risk
Regulated industry
Cloud (Azure/GCP)
Stakeholder management
AI security
ISO27001
NIST
CIS
OWASP
COBIT

Education

CISSP/CISM/CRISC
Relevant degree

Tools

Azure
Google Cloud
IAM

Job description

We make health happen

At Bupa, our purpose is simple: helping people live longer, healthier, happier lives and making a better world.

Job Description
BISO - Internal Platforms

London, Stains or Manchester

Permanent - Full Time - Hybrid

At Bupa, our purpose is simple: helping people live longer, healthier, happier lives and making a better world.

As a Business Information Security Officer (BISO), you'll play an important role in helping us deliver on that purpose. Our customers trust us with their health and wellbeing, and that trust starts with secure, resilient and reliable technology.

You'll act as the senior security partner for Internal Technology Platforms, working across critical business systems and strategic change initiatives. From supporting the safe adoption of AI and cloud technologies to strengthening cyber resilience across key platforms, you'll help make sure security is built into everything we do.

This is an opportunity to influence senior stakeholders, shape technology risk decisions and help create secure-by-design, resilient-by-design ways of working across one of the UK's leading healthcare organisations.

Key Responsibilities
  • Lead information security, technology risk and resilience activities across Internal Technology Platforms.
  • Build trusted relationships with technology and business leaders to embed security standards and best practice.
  • Provide clear, practical, risk-based guidance to strategic programmes, product teams and operational activities.
  • Help ensure new technologies, including AI, cloud platforms and modern workplace tools, are adopted safely and responsibly.
  • Oversee technology risk governance activities, including risk forums, steering groups and leadership committees.
  • Maintain and manage risk registers, remediation plans and key risk indicators.
  • Support business continuity, disaster recovery and operational resilience planning.
  • Work closely with technology operations and incident response teams to learn from security events and strengthen future controls.
  • Oversee security assessments of third-party suppliers and make sure risks are managed effectively.
  • Monitor emerging cyber threats and industry developments to help shape future security strategy.
  • Translate complex security and technology risks into clear, business-friendly language for senior stakeholders.
What We're Looking For
  • Significant experience in cyber security, technology risk management and resilience within a large organisation.
  • Experience working in a regulated environment, such as healthcare, financial services or another complex industry.
  • Strong knowledge of security and risk frameworks such as ISO 27001, NIST, CIS, OWASP, ITIL or COBIT.
  • Experience working with cloud technologies, particularly Azure, Google Cloud and modern identity and access management solutions.
  • A good understanding of cyber threats, security operations, AI security, data protection, encryption, business continuity and operational resilience.
  • Excellent stakeholder management skills with the ability to influence and build credibility at senior levels.
  • Strong analytical and problem-solving skills, with the ability to balance risk and business outcomes.
  • Experience driving continuous improvement and introducing more efficient, effective ways of working.
  • A recognised industry qualification such as CISSP, CISM, CRISC, or an equivalent degree or postgraduate qualification in Information Security or Technology.
Benefits

Our benefits are designed to make health happen for our people. Viva is our global wellbeing programme and includes all aspects of our health – from mental and physical, to financial, social and environmental wellbeing. We support flexible working and have a range of family friendly benefits.

Joining Bupa in this role you will receive the following benefits and more:

  • 25 days holiday, increasing through length of service, with option to buy or sell
  • Enhanced pension and life insurance
  • Private medical insurance
  • Access to our health and wellbeing services
  • Discounts on Bupa products and services
Why Bupa

We're a health insurer and provider. With no shareholders, our customers are our focus. Our people are all driven by the same purpose - helping people live longer, healthier, happier lives and making a better world. We make health happen by being brave, caring and responsible in everything we do.

We encourage all of our people to "Be you at Bupa", we champion diversity, and we understand the importance of our people representing the communities and customers we serve. That's why we especially encourage applications from people with diverse backgrounds and experiences.

Bupa is a Level 2 Disability Confident Employer. This means we aim to offer an interview/assessment to every disabled applicant who meets the minimum criteria for the role. We'll make sure you are treated fairly and offer reasonable adjustments as part of our recruitment process to anyone that needs them.

Time Type

Full time

Job Area

IT

Locations: Bupa Place, Kirkstall Forge, Staines - Willow House

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Business Information Security Officer, Dental & Care Services
Business Information Security Officer, Dental & Care Services

Bupa UK • Staines-upon-Thames

Hybrid
GBP 60,000 - 80,000
25 days holiday
Enhanced pension and life insurance
Private medical insurance
+1
Information Security and Compliance Risk Manager
Information Security and Compliance Risk Manager

BUPA • City Of London

Hybrid
GBP 58,000 - 70,000
Annual performance bonus
Private medical insurance
Generous pension contribution
+3
Information Security and Compliance Risk Manager
Information Security and Compliance Risk Manager

Bupa • Salford

On-site
GBP 54,000 - 74,000
Annual performance bonus
Private medical insurance
Generous pension contribution
+5
Cyber Security Engineer
Cyber Security Engineer

Bupa UK • Staines-upon-Thames, Manchester

Hybrid
GBP 50,000 - 70,000
25 days holiday
Bupa health insurance
Enhanced pension plan
+1
Group Head of AI Security Architecture
Group Head of AI Security Architecture

BUPA • City Of London

Hybrid
GBP 150,000 - 190,000
25 days holiday
Car allowance
Management bonus
+5
Information Security and Compliance Risk Manager
Information Security and Compliance Risk Manager

Bupa • Greater London

On-site
GBP 58,000 - 70,000
Annual performance bonus
Private medical insurance
Pension contribution
+5
Group Head of AI Security Architecture
Group Head of AI Security Architecture

Bupa • Greater London

On-site
GBP 120,000 - 150,000
25 days holiday
Car allowance
Management bonus
+5
Senior BISO: Internal Platforms & Cloud Security
Senior BISO: Internal Platforms & Cloud Security

Bupa UK • Staines-upon-Thames

Hybrid
GBP 90,000 - 130,000
25 days holiday
Enhanced pension
Private medical insurance
+2
Head of Cyber Culture and Awareness
Head of Cyber Culture and Awareness

Cyber UK • Greater London

Hybrid
GBP 80,000 - 100,000
25 days’ holiday
Enhanced pension and life insurance
Private medical insurance
+2
Health Services Intermediate Data Analyst
Health Services Intermediate Data Analyst

BUPA • Greater London

Hybrid
GBP 41,000 - 46,000
25 days annual leave
Bupa health insurance
Enhanced pension
+3