Business Information Security Officer

Bloomberg L.P.

Whitehall

On-site

GBP 90,000 - 130,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Bloomberg L.P. is seeking an experienced information security leader to design, oversee, and drive secure business operations across multiple lines of business in the UK.

You will work with stakeholders to manage cyber risk, advise on security controls, and coordinate incident response planning and management. The role requires strong technical knowledge in cloud and network security, SSDLC, vulnerability management, and experience with TLPTs such as CBEST.

Qualifications

  • 7+ years in information security, cyber security risk management, data security and regulation.
  • Demonstrated ability to influence stakeholders in a complex global setting.
  • Proven delivery of complex projects with cross-functional teams.
  • Proactively identify and manage cyber security risks.
  • Strong knowledge in cloud security, network security, architecture, SSDLC and vulnerability management.
  • Experience delivering Threat Led Penetration Tests (TLPT such as CBEST).
  • Knowledge of OS, SDLC, security tooling, O365, BI tools.
  • Experience with NIST CSF and ISO 27001.

Responsibilities

  • Develop and oversee information security programs for business lines.
  • Consult on security controls, risk mitigation, and incident response planning.
  • Foster cross-functional relationships to improve security programs.
  • Define reporting indicators: risk, maturity, and KPIs.
  • Establish and review information security policies for lines of business.
  • Report to senior management and governance forums on security status.
  • Lead scenario testing like tabletop exercises and TLPTs.
  • Lead remediation and transformational initiatives across the org.

Skills

Information security
Cyber security risk management
Stakeholder management
Threat Led Penetration Testing
Cloud security
NIST CSF / ISO 27001
Regulatory compliance
Communication skills

Tools

O365 Suite
Security Tooling
Build pipelines
BI Tools
Operating Systems

Job description

evangelizing security and compliance efforts, and influencing the direction of Bloomberg L.P.'s business efforts all in a day's work.We'll trust you to:

Responsibilities
  • Develop a deep understanding of your business domains, keeping abreast of new technologies, regulatory changes, and industry best practices as you design, lead, and oversee the information security programs for your lines of business.
  • Work with stakeholders to effectively manage cyber risk including consulting on security controls, mitigation strategies, and incident response planning and management.
  • Foster cross-functional relationships between teams to improve all aspects of our security program.
  • Define and develop management information, including key risk indicators, program maturity indicators, and key performance indicators for use in reporting.
  • Establish and review information security policies and procedures in your line of business.
  • Become a trusted voice to senior management, report on the status of information security programs to
    boards and various governance forums.
  • Lead in the development and delivery of scenario testing such as Tabletop Exercises and Threat Led Penetration Testing.
  • Lead remediation efforts and support transformational change initiatives across the broader organization.
Requirements
  • 7+ years of experience in information security, cyber security risk management, data security and cyber security regulation.
  • Demonstrated ability to influence internal and external stakeholders to achieve success in a complex global setting.
  • Proven delivery of complex projects involving cross-functional teams.
  • Ability to proactively identify and manage cyber security risks to deliver services and meet business objectives in a secure and compliant way.
  • Strong technical knowledge in key cyber security domains such as cloud security, network security and architecture, application security, secure software development lifecycle (SSDLC) and vulnerability management.
  • Proven experience in delivering Threat Led Penetration Tests such as CBEST or equivalent TLPT regimes.
  • Good knowledge of key technologies such as Operating Systems, Software Development Build Pipelines and Processes, Security Tooling, O365 Suite, and Business Intelligence Tools.
  • Experience with industry standards such as NIST CSF and ISO 27001.
  • Knowledge and experience with Regulation pertaining to Information Security such as DORA, Operational Resilience, UK CTP Regime, GDPR.
  • Excellent written and oral communication skills.
  • Demonstrated ability to perform under pressure and consistently meet program deadlines.
  • An industry recognized certifications such as CISSP, GIAC, CISM, ISO 27001 Lead Implementor/Auditor.

If indicated, please note that years of experience are a guide; we will consider applications from all candidates who can demonstrate the skills necessary for the role. Discover what makes Bloomberg unique - watch our podcast series for an inside look at our culture, values, and the people behind our success.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Business Information Security Officer
Business Information Security Officer

Bloomberg • Greater London

On-site
GBP 120,000 - 170,000
Senior Information Security & Risk Leader
Senior Information Security & Risk Leader

Bloomberg • Greater London

On-site
GBP 120,000 - 170,000
Business Information Security Officer\ BISO
Business Information Security Officer\ BISO

Harrington Starr • Greater London

On-site
GBP 70,000 - 90,000
Business Information Security Officer
Business Information Security Officer

La Fosse • Greater London

On-site
GBP 75,000 - 95,000
Senior Incident Response & Digital Forensics Analyst
Senior Incident Response & Digital Forensics Analyst

Bloomberg • Greater London

On-site
GBP 90,000 - 130,000
Technical Information Security Officer
Technical Information Security Officer

Standard Bank of South Africa Limited • Douglas

On-site
GBP 50,000 - 61,000
Senior Incident Response & Digital Forensics Analyst
Senior Incident Response & Digital Forensics Analyst

Bloomberg • City Of London

On-site
GBP 80,000 - 120,000
Senior Information Security Engineer
Senior Information Security Engineer

Selby Jennings • Greater London

On-site
GBP 80,000 - 120,000
IT Security Manager
IT Security Manager

Onyx-Conseil • Greater London

Hybrid
GBP 75,000 - 85,000
Security Assurance Lead
Security Assurance Lead

Motability Operations Ltd • Greater London

On-site
GBP 70,000 - 100,000