Information Security Executive

iFAST Global Bank Limited

Greater London

Hybrid

GBP 50,000 - 70,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary
25 days annual leave plus bank holidays
Performance-based bonus
Pension scheme
Private medical insurance
Hybrid working flexibility
Professional development opportunities

Job summary

A leading financial services organization is seeking an Information Security Executive to oversee their information security activities. The ideal candidate will have strong analytical skills and experience in cybersecurity methodologies. Responsibilities include managing security incidents, implementing security controls, and ensuring compliance with regulatory standards. Competitive benefits include a salary based on experience, hybrid working flexibility, and opportunities for professional development.

Qualifications

  • Proven experience in security operations and monitoring.
  • Strong understanding of regulatory requirements is desirable.
  • Familiarity with cloud security practices is a plus.

Responsibilities

  • Manage day-to-day information and cyber security activities.
  • Monitor security events and coordinate incident responses.
  • Implement and maintain security controls across systems.

Skills

Analytical skills
Cybersecurity methodologies
Incident management
Threat intelligence
Communication skills

Education

Academic qualification or equivalent certifications in information or cyber security

Tools

Firewalls
SIEM
IAM
DLP
PAM
AV/AM

Job description

Role Overview

The Information Security Executive will be responsible for managing day-to-day information and cyber security activities, ensuring the bank's systems, data, and networks remain secure and compliant. This role requires a proactive, analytical professional with a strong understanding of security methodologies, infrastructure, and operations. Knowledge of AWS cloud environments is desirable.

Key Responsibilities
Security Monitoring & Incident Response
  • Monitor security events, anomalies, and alerts across the organization, reporting findings to relevant teams
  • Act as the primary point of contact and participate in information security incidents and breaches, coordinating responses following established incident management protocols
  • Support regulatory and stakeholder incident and breach notifications, including material incident assessments
  • Assist in identifying, assessing, and mitigating security vulnerabilities, threats, and weaknesses
  • Maintain security records, dashboards, and reports to provide insight into the organization's security posture
Security Controls & Administration
  • Implement, manage, and monitor technical and procedural security controls to protect the bank's data, systems, and networks:
  • Network and application security
  • Identity and access management
  • Cloud security controls (particularly AWS)
  • Data privacy and protection
  • Logging and monitoring
  • Assist in conducting vulnerability assessments, penetration testing, and risk evaluations:
  • Review of vulnerability scans and penetration testing results
  • Assessment of risk severity and business impact
  • Tracking and validation of remediation actions
  • Provide security inputs, engage in technical reviews and remediation actions in new products, change initiatives, and technology projects, including cloud and third-party solutions
  • Support compliance with relevant regulations, standards and frameworks (e.g., ISO27001, PCI-DSS, NIST, SWIFT CSP, FCA/PRA expectations)
  • Stay informed on emerging security threats, breaches, and industry best practices, providing recommendations for remediation and enhancements
  • Ensure proper controls are in place to maintain the confidentiality, integrity, and availability of information
Risk Management & Compliance
  • Assist in risk assessments to identify, evaluate, and prioritize controls to mitigate information security risks. Support the documentation and tracking of technical risk treatment plans and remediation actions
  • Propose and document technical and procedural controls to secure internal, external, and public network information flows
  • Support both internal and external audits, providing detailed security input for regulatory, scheme, and payment system reviews
  • Evaluate the adequacy and effectiveness of security policies, processes, and controls, advising on risk mitigation measures
  • Provide expert guidance on compliance with information security regulations, including event resolution and breach notifications
Collaboration & Communication
  • Liaise with internal teams, peers, and third parties to ensure security measures are aligned and effective
  • Contribute to internal committees on information security risks and emerging issues
Requirements
  • Academic qualification or equivalent certifications in information or cyber security
  • Strong analytical skills and understanding of cybersecurity methodologies
  • Practical experience with security operations, monitoring, and incident management
  • Understanding and knowledge of threat intelligence and related activities
  • Understanding and knowledge of security technologies such as Firewalls, SIEM, IAM, DLP, PAM, AV/AM, etc. is essential
  • Knowledge of ISO27001 or relevant security frameworks is desirable
  • Knowledge of AWS cloud security and cloud-native security practices is desirable
  • Knowledge in technical risk assessments, vulnerability management
  • Understanding of regulatory requirements is desirable
  • Excellent communication skills with the ability to collaborate across technical and non-technical teams
  • Ability to respond confidently and effectively to security incidents
Benefits
  • Competitive salary (depending on skills, knowledge and experience)
  • 25 days annual leave entitlement plus 8 bank holidays
  • Performance-based bonus aligned to individual and organisational objectives
  • Pension scheme with employer contribution
  • Private medical insurance to support your health and wellbeing
  • Hybrid working flexibility, supporting a balance between office collaboration and remote work
  • Supportive and collaborative working environment within a growing financial services organisation
  • Opportunities for professional development and career progression in information security and cyber resilience
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Information Security Engineer
Principal Information Security Engineer

Manchester Digital • Manchester

On-site
GBP 70,000 - 95,000
26 days holiday
Pension 7% matched
Discretionary bonus
+6
Information Security Manager
Information Security Manager

British Land • Greater London

Hybrid
GBP 90,000 - 130,000
Information Security Manager - Fintech - Hybrid
Information Security Manager - Fintech - Hybrid

Wealth Dynamix • Greater London

Hybrid
GBP 90,000 - 120,000
Information Security Officer
Information Security Officer

Recognise Bank • Greater London

Hybrid
GBP 90,000 - 120,000
Hybrid working
Private medical care
Enhanced pension
+2
Security Engineer - AVP
Security Engineer - AVP

Barclays • City of Edinburgh

On-site
GBP 65,000 - 85,000
Information Security Manager - Fintech - Hybrid
Information Security Manager - Fintech - Hybrid

Wealth Dynamix • Greater London

Hybrid
GBP 90,000 - 110,000
Security Engineer
Security Engineer

Jobtailor • Greater London

On-site
GBP 70,000 - 110,000
Information Security Manager
Information Security Manager

Proactive Appointments • City Of London

Hybrid
GBP 85,000 - 120,000
Cyber Security Analyst
Cyber Security Analyst

Novia Financial plc • Bath

On-site
GBP 55,000 - 75,000
Information Security Officer
Information Security Officer

SBS • Bristol

Hybrid
GBP 55,000 - 60,000
Private Medical Insurance
Health Cash Plan
Dental Insurance
+6