Information Security Engineer

Selby Jennings

Greenwich

On-site

GBP 70,000 - 100,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Selby Jennings is seeking an experienced Information Security Engineer to strengthen and evolve its security function. The role combines hands-on technical security with governance, risk management, and assurance across engineering and GRC disciplines.

You will collaborate with technology teams, auditors, compliance, legal, and stakeholders to assess controls, drive remediation, and help shape security strategy in a regulated financial environment.

Qualifications

  • 5+ years of experience in information security or related field.
  • Strong understanding of IAM, vulnerability management, and data protection.
  • Experience supporting audits, regulatory assessments, security reviews, or assurance programmes.
  • Knowledge of ISO 27001, NIST CSF, NIST 800-53, or CIS Controls.
  • Ability to translate security requirements into business solutions.
  • Excellent stakeholder management and communication skills.
  • Experience in financial services or other regulated industries.
  • Familiarity with UK financial services regulatory and operational resilience requirements.
  • Professional certifications such as CISSP, CISM, CISA, CRISC, or ISO 27001 Lead Auditor/Implementer.

Responsibilities

  • Lead and support internal and external security audits, regulatory reviews, client due diligence exercises, and security assessments.
  • Evaluate the effectiveness of security controls across infrastructure, cloud, identity, endpoint security, vulnerability management, monitoring, and data protection.
  • Manage audit findings, risk treatment plans, control deficiencies, and remediation activities through to completion.
  • Conduct security and technology risk assessments, documenting risks, mitigations, and improvement initiatives.
  • Act as a trusted advisor to technical and business teams on security controls, regulatory requirements, and best practices.
  • Provide oversight of security processes including IAM, incident response, vulnerability management, cloud security, and security monitoring.
  • Develop and deliver reporting on security posture, audit activity, control effectiveness, and material risks.
  • Identify opportunities to improve security processes, tooling, automation, and reporting capabilities.
  • Serve as a key point of contact for auditors, assessors, and other assurance stakeholders.

Skills

IAM
Vulnerability Management
Data Protection
Security Audits
Regulatory Knowledge
Security Governance
Stakeholder Management
Cloud Security
GRC Tools
ISO 27001

Tools

SIEM
EDR
GRC Tools
Cloud Security Tools

Job description

A leading investment firm is looking to hire an experienced Information Security Engineer to play a key role in strengthening and evolving its security function. This position offers a blend of hands-on technical security, security assurance, risk management, and governance, making it ideal for someone who enjoys operating across both engineering and GRC disciplines. You'll work closely with technology teams, auditors, compliance, legal, and business stakeholders to assess security controls, drive remediation efforts, and help shape the firm's overall security strategy.

Key Responsibilities

  • Lead and support internal and external security audits, regulatory reviews, client due diligence exercises, and security assessments.
  • Evaluate the effectiveness of security controls across infrastructure, cloud, identity, endpoint security, vulnerability management, monitoring, and data protection.
  • Manage audit findings, risk treatment plans, control deficiencies, and remediation activities through to completion.
  • Conduct security and technology risk assessments, documenting risks, mitigations, and improvement initiatives.
  • Act as a trusted advisor to technical and business teams on security controls, regulatory requirements, and best practices.
  • Provide oversight of security processes including IAM, incident response, vulnerability management, cloud security, and security monitoring.
  • Develop and deliver reporting on security posture, audit activity, control effectiveness, and material risks.
  • Identify opportunities to improve security processes, tooling, automation, and reporting capabilities.
  • Serve as a key point of contact for auditors, assessors, and other assurance stakeholders.

What we are looking for

  • 5+ years of experience within Information Security, Security Engineering, Security Operations, Technology Risk, Security Assurance, or a related field.
  • Strong understanding of enterprise security domains including:
  • Identity & Access Management (IAM)
  • Vulnerability Management
  • Data Protection
  • Experience supporting audits, regulatory assessments, security reviews, or assurance programmes.
  • Working knowledge of security frameworks such as ISO 27001, NIST CSF, NIST 800-53, or CIS Controls.
  • Ability to assess technical controls and translate security requirements into practical, business-aligned solutions.
  • Strong stakeholder management and communication skills, with the confidence to challenge where required.
  • Financial services, asset management, hedge fund, banking, or other regulated industry experience.
  • Experience with security tooling including SIEM, EDR, cloud security, vulnerability management, identity platforms, and GRC tools.
  • Familiarity with UK financial services regulatory and operational resilience requirements.
  • Professional certifications such as CISSP, CISM, CISA, CRISC, or ISO 27001 Lead Auditor/Implementer
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Security Engineer
Senior Information Security Engineer

Selby Jennings • Greater London

On-site
GBP 80,000 - 120,000
Information Security Analyst
Information Security Analyst

Herbert Smith Freehills Kramer • City Of London

On-site
GBP 40,000 - 60,000
Information Security Analyst
Information Security Analyst

Herbert Smith Freehills Kramer • City Of London

On-site
GBP 60,000 - 80,000
Information Security Design Engineer
Information Security Design Engineer

Intuition IT Solutions Ltd • West Midlands

On-site
GBP 55,000 - 90,000
Senior Operational Security Engineer
Senior Operational Security Engineer

Crown Agents Bank Ltd. • Greater London

On-site
GBP 70,000 - 90,000
Information Security Manager
Information Security Manager

Frontpoint Partners Ltd • Greater London

On-site
GBP 85,000 - 110,000
Information Security Engineer - Boutique Hedge Fund - London
Information Security Engineer - Boutique Hedge Fund - London

Mondrian Alpha • Greater London

On-site
GBP 90,000 - 130,000
Information Security Assurance Manager
Information Security Assurance Manager

TalentHawk • England

On-site
GBP 60,000 - 80,000
Senior Security Engineer – Cloud-First Hedge Fund Scale-Up (London)
Senior Security Engineer – Cloud-First Hedge Fund Scale-Up (London)

Winston Fox • Greater London

On-site
GBP 90,000 - 140,000
Networking & Security Engineer
Networking & Security Engineer

Capula Investment Management LLP • Greater London

On-site
GBP 90,000 - 130,000