Enable job alerts via email!

Cyber Security Lead

JR United Kingdom

Bolton

On-site

GBP 65,000 - 90,000

Full time

7 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in digital payment solutions seeks a Cyber Security Lead based in Bolton. The role encompasses compliance with European regulations, managing third-party risks, and ensuring data protection standards. The ideal candidate will have significant experience in GRC roles, especially in financial services, and be equipped with various security certifications.

Qualifications

  • 5+ years experience in GRC roles; financial services experience is a strong plus.
  • Knowledge of GDPR, DORA, PCI DSS and third-party risk management.
  • Hands-on experience with ISO 27001 implementation.

Responsibilities

  • Support compliance with GDPR and regulations including incident reporting.
  • Design third-party risk management programs for vendors.
  • Participate in internal/external audits and maintain risk registers.

Skills

Compliance
Risk Management
Technical Security Controls
Vulnerability Management
Identity Governance

Education

CRISC
CISSP
CISM
CISA

Job description

Social network you want to login/join with:

Cyber Security Lead, Bolton, Greater Manchester

Client: Ant International

Location: Bolton, Greater Manchester, United Kingdom

Job Category: Other

EU work permit required: Yes

Job Views: 3

Posted: 04.06.2025

Expiry Date: 19.07.2025

Job Description:

About Us:

Ant International powers the future of global commerce with digital innovation for everyone and every business to thrive. We support merchants worldwide in realizing their growth aspirations through a comprehensive range of tech-driven digital payment and financial services solutions. Our goal is to become the most trusted digital services connector, fostering sustainable growth of global commerce.

Our focus areas include Travel, Trade, Technology, and Talent, aiming to enhance the digital capacities of businesses worldwide through collaborative efforts with partners, driving responsible innovation and increasing market accessibility for global SMEs. Our key businesses include Alipay+, Antom, WorldFirst, and ANEXT Bank.

Role Overview:

As a GRC Lead, you will ensure compliance with European regulations (e.g., GDPR, DORA, PSD2 SCA, CSSF) and global standards (PCI DSS, SWIFT CSP). This role requires technical expertise, strategic thinking, and experience in managing third-party risk, outsourcing compliance, and identity governance to safeguard operational resilience.

What you will be doing:
Regulatory & Technical Compliance:
  • Support compliance with GDPR and regulations like DORA, including incident reporting and data protection.
  • Translate PSD2 SCA, PCI DSS, and SWIFT CSP requirements into technical security controls.
  • Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls).
  • Manage and update Security Policies and procedures.
Third-Party Risk & Outsourcing Management:
  • Design and implement third-party risk management programs for vendors, cloud providers, and outsourced services.
  • Ensure compliance with DORA outsourcing requirements, including due diligence, contracts, and continuity planning.
Audit & Assurance:
  • Participate in internal/external audits (ISO 27001, SOC 2) and regulatory exams, focusing on third-party and outsourcing compliance.
  • Address gaps in processes or documentation.
  • Maintain the enterprise risk register, prioritizing risks related to third-party dependencies and ICT disruptions.
  • Use methodologies to quantify risks.
Technical Compliance & Security:
  • Advise on vulnerability management, endpoint security (EDR/XDR), and cloud compliance.
  • Understand IAM strategies, including RBAC and PAM.
  • Conduct periodic user access reviews to ensure least privilege and regulatory compliance.
  • Manage security awareness programs.
What we are looking for:
  • 5+ years experience in GRC roles; financial services or banking experience is a strong plus.
  • Knowledge of GDPR, DORA, PCI DSS, and third-party risk management.
  • Hands-on experience with ISO 27001 implementation and risk tools.
  • Proficiency in IAM solutions and user access reviews.
  • Familiarity with cloud technologies and IT infrastructure.
  • Strong understanding of NIST frameworks and CIS Controls.
  • Certifications such as CRISC, CISSP, CISM, or CISA are preferred (or equivalent experience).
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Cyber Security Incident Response Consultant

JR United Kingdom

Bolton

Remote

GBP 50,000 - 80,000

11 days ago

Cyber Security Incident Response Consultant

JR United Kingdom

Stoke-on-Trent

Remote

GBP 50,000 - 80,000

4 days ago
Be an early applicant

Cyber Security Incident Response Consultant

JR United Kingdom

Bradford

Remote

GBP 50,000 - 80,000

5 days ago
Be an early applicant

Cyber Security Incident Response Consultant

JR United Kingdom

Preston

Remote

GBP 50,000 - 75,000

5 days ago
Be an early applicant

Cyber Security Lead

JR United Kingdom

Warrington

On-site

GBP 60,000 - 90,000

7 days ago
Be an early applicant

Cyber Security Lead

JR United Kingdom

Leeds

On-site

GBP 50,000 - 80,000

7 days ago
Be an early applicant

Cyber Security Lead

JR United Kingdom

Sheffield

On-site

GBP 60,000 - 80,000

7 days ago
Be an early applicant

Cyber Security Lead

JR United Kingdom

Preston

On-site

GBP 50,000 - 80,000

7 days ago
Be an early applicant

Cyber Security Lead

JR United Kingdom

Bradford

On-site

GBP 60,000 - 90,000

7 days ago
Be an early applicant