Information Security Officer

TyneStack Ltd

Newcastle upon Tyne

Hybrid

GBP 45,000 - 70,000

Full time

15 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Hybrid working
Exposure to ISO 27001/NIST in cloud
Regulated financial tech environment

Job summary

TyneStack Ltd, a leading fintech, is seeking an Information Security Officer to support governance, risk and compliance across the business.

This role covers ISO 27001, NIST, cloud security and supplier assurance, working with the Information Security Manager to strengthen controls across technology platforms and operations.

Qualifications

  • 2+ years of commercial information or cyber security experience.
  • Experience with information security governance, risk and compliance.
  • Strong knowledge of ISO 27001 and recognised security frameworks such as NIST or CIS.
  • Experience conducting security risk assessments and reviewing security controls.
  • Understanding of cloud security and implementing security within cloud environments.
  • Knowledge of security technologies including endpoint, data and mobile security.
  • Understanding of SIEM, SOC, vulnerability management and threat intelligence capabilities.
  • Strong communication skills with the ability to explain security risks to technical and non technical stakeholders.
  • CISSP, CISM, ISO 27001 or similar security certification.
  • Experience within Financial Services or another regulated environment.
  • Experience supporting or implementing an ISMS.
  • Third party and supplier security assurance experience.
  • Information Security, Information Systems or related degree

Responsibilities

  • Support the development and continual improvement of the Information Security Management System.
  • Identify, assess, treat and report information security, cyber, technology and third party risks.
  • Conduct security risk assessments, control reviews and assurance activities.
  • Support compliance with FCA requirements, UK GDPR and relevant security standards.
  • Implement and monitor controls aligned with ISO 27001, NIST and CIS frameworks.
  • Provide security guidance across technology projects, cloud implementations and business change.
  • Conduct supplier security due diligence and ongoing third party risk assessments.
  • Support internal and external audits, regulatory reviews and certification activities.
  • Develop and maintain security policies, standards and procedures.
  • Support security governance around cloud, AI, automation and other emerging technologies.

Skills

Information security governance
Risk assessment
ISO 27001 knowledge
NIST/CIS frameworks
Cloud security
Communication skills
ISMS implementation
Third-party assurance

Education

Information Security or related degree
CISSP/CISM/ISO 27001 certification

Tools

SIEM
Threat intelligence
Vulnerability management tools

Job description

Information Security Officer (GRC / ISO 27001 / Cyber Security)

Location: Newcastle upon Tyne | Hybrid (3 Days Office / 2 Days Home)

Type: Full-time, Permanent

Overview

A leading financial technology organisation is looking to appoint an Information Security Officer to support the management and continuous improvement of information and cyber security across the business.

This is a broad security role covering governance, risk, compliance, third party assurance and security controls across technology platforms, cloud services and business operations. You'll work closely with the Information Security Manager and stakeholders across the organisation to identify risks, strengthen controls and ensure security requirements are considered throughout technology and business change.

The position offers exposure to a mature and evolving security environment, including ISO 27001, NIST, cloud security, supplier assurance and emerging technologies such as AI and automation. It would particularly suit someone with a solid grounding in information security who wants broad responsibility rather than specialising solely in one area.

Key Responsibilities
  • Support the development and continual improvement of the Information Security Management System
  • Identify, assess, treat and report information security, cyber, technology and third party risks
  • Conduct security risk assessments, control reviews and assurance activities
  • Support compliance with FCA requirements, UK GDPR and relevant security standards
  • Implement and monitor controls aligned with ISO 27001, NIST and CIS frameworks
  • Provide security guidance across technology projects, cloud implementations and business change
  • Conduct supplier security due diligence and ongoing third party risk assessments
  • Support internal and external audits, regulatory reviews and certification activities
  • Develop and maintain security policies, standards and procedures
  • Support security governance around cloud, AI, automation and other emerging technologies
Requirements
  • 2+ years of commercial information or cyber security experience
  • Experience with information security governance, risk and compliance
  • Strong knowledge of ISO 27001 and recognised security frameworks such as NIST or CIS
  • Experience conducting security risk assessments and reviewing security controls
  • Understanding of cloud security and implementing security within cloud environments
  • Knowledge of security technologies including endpoint, data and mobile security
  • Understanding of SIEM, SOC, vulnerability management and threat intelligence capabilities
  • Strong communication skills with the ability to explain security risks to technical and non technical stakeholders
  • CISSP, CISM, ISO 27001 or similar security certification
  • Experience within Financial Services or another regulated environment
  • Experience supporting or implementing an ISMS
  • Third party and supplier security assurance experience
  • Information Security, Information Systems or related degree
What’s on Offer
  • Hybrid working with three days per week in Newcastle
  • Broad exposure across information and cyber security
  • Opportunity to work with ISO 27001, NIST, cloud security and emerging AI technologies
  • Exposure to a highly regulated financial technology environment
  • Opportunity to develop across security governance, risk, compliance and assurance
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security GRC Specialist
Information Security GRC Specialist

Morson Edge (Financial Services) • Greater London

Hybrid
GBP 90,000 - 120,000
Information Security GRC Manager
Information Security GRC Manager

AJ Bell • Manchester

Hybrid
GBP 65,000 - 85,000
27 days’ holiday
Pension with matched contributions up to 8%
Discretionary bonus and share awards
+3
Information Security Manager
Information Security Manager

Nuvion Tech • Bedford

Hybrid
GBP 80,000 - 110,000
ICT Cyber And Information Security Manager
ICT Cyber And Information Security Manager

ISR Recruitment Ltd • Tees Valley

Hybrid
GBP 70,000 - 85,000
Annual bonus
Excellent benefits package
Information Security Analyst
Information Security Analyst

REX Cyber Security • West of England

Hybrid
GBP 55,000 - 70,000
Information Security Governance, Risk and Compliance Specialist
Information Security Governance, Risk and Compliance Specialist

Global Web Index • Greater London

Hybrid
GBP 71,000 - 82,000
25 days annual leave
Health and wellbeing support
Pension matching 4%
+3
Lead Security Consultant GRC ISO 27001 PCI SOC2
Lead Security Consultant GRC ISO 27001 PCI SOC2

Confidential • Manchester

Hybrid
GBP 50,000 - 60,000
Hybrid work Manchester
Bonus up to 10%
InfoSec training
+5
Senior Cyber GRC Specialist – Technical Controls
Senior Cyber GRC Specialist – Technical Controls

air-recruitment • Greater London

Hybrid
GBP 108,000 - 132,000
GRC Senior Analyst
GRC Senior Analyst

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
Information Security Manager
Information Security Manager

context recruitment • Birmingham

Hybrid
GBP 111,000 - 120,000