Enable job alerts via email!

Lead Cyber Security Specialist

JR United Kingdom

London

On-site

GBP 70,000 - 100,000

Full time

3 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in digital services is seeking a Lead Cyber Security Specialist to oversee compliance with European regulations and global standards. You will manage third-party risks and lead audits while ensuring robust IT security governance frameworks are maintained. This role demands strategic thinking, technical expertise, and experience in financial services.

Qualifications

  • 5+ years in GRC roles; financial services or banking.
  • Hands-on experience with ISO 27001 implementation and third-party risk tools.
  • Strong knowledge of NIST frameworks (CSF, 800-53) and CIS Controls.

Responsibilities

  • Ensure compliance with GDPR, DORA, and other regulations.
  • Design and implement third-party risk management programs.
  • Participate in internal/external audits and regulatory examinations.

Skills

Governance, Risk, and Compliance (GRC)
Third-Party Risk Management
Identity and Access Management (IAM)
Vulnerability Management
Cloud Compliance

Education

Certifications: CRISC, CISSP, CISM, or CISA preferred

Tools

ISO 27001 Implementation
Third-Party Risk Tools

Job description

Social network you want to login/join with:

Ant International powers the future of global commerce with digital innovation for everyone and every business to thrive. In close collaboration with partners, we support merchants of all sizes worldwide to realize their growth aspirations through a comprehensive range of tech-driven digital payment and financial services solutions.

Ant International strives to become the most trusted digital services connector to achieve sustainable growth of global commerce.

With a focus on Travel, Trade, Technology, and Talent, Ant International is committed to enhancing the digital mindset and capacities of businesses worldwide. Through fostering collaborative efforts with partners, we are driving responsible innovation and increase market accessibility for global SMEs.

We do so across our 4 key businesses: Alipay+, Antom, WorldFirst and ANEXT Bank.

Role Overview:

As a Lead Cyber Security Specialist, you will ensure alignment with European regulations (e.g., GDPR, DORA, PSD2 SCA, CSSF) and global standards (PCI DSS, SWIFT CSP). This role requires technical knowledge, strategic thinking, and expertise in managing third-party risk, outsourcing compliance, and identity governance to safeguard operational resilience.

What you will be doing:

Regulatory & Technical Compliance:

  • Support compliance with GDPR and complementary regulations like DORA (Digital Operational Resilience Act), ensuring alignment in areas such as incident reporting and data protection.
  • Translate requirements from PSD2 SCA, PCI DSS, and SWIFT CSP into technical security controls.
  • Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls).
  • Manage and maintain Security Policies and procerdures

Third-Party Risk & Outsourcing Management:

  • Design and implement third-party risk management programs to assess vendors, cloud providers, and outsourced services.
  • Ensure compliance with DORA’s outsourcing requirements, including due diligence, contract oversight, and continuity planning.

Audit & Assurance:

  • Participate in internal/external audits (ISO 27001, SOC 2) and regulatory examinations, focusing on third-party and outsourcing compliance.
  • Remediate gaps in processes or documentation.
  • Maintain the enterprise risk register, prioritizing risks tied to third-party dependencies, outsourcing, and ICT disruptions.
  • Quantify risks using methodologies.

Technical Compliance & Security:

  • Advise on vulnerability management, endpoint security (EDR/XDR), and cloud compliance.
  • Good understanding on IAM (Identity and Access Management) strategies, including role-based access control (RBAC) and privileged access management (PAM).
  • Conduct periodic user access reviews to ensure compliance with least privilege principles and regulatory requirements.
  • Security awareness management experience.

What we are looking for:

  • 5+ years in GRC roles; financial services or banking.
  • Understanding of GDPR, DORA, PCI DSS, and outsourcing/third-party risk requirements.
  • Hands-on experience with ISO 27001 implementation and third-party risk tools.
  • Proficiency in IAM (Identity and Access Management) solutions and conducting user access reviews.
  • Familiarity with cloud Technology and IT infrastructure.
  • Strong knowledge of NIST frameworks (CSF, 800-53) and CIS Controls.
  • Certifications: CRISC, CISSP, CISM, or CISA preferred (equivalent experience considered).

Please note that if you are NOT a passport holder of the country for the vacancy you might need a work permit. Check our Blog for more information.

Bank or payment details should not be provided when applying for a job. Eurojobs.com is not responsible for any external website content. All applications should be made via the 'Apply now' button.

Created on 24/06/2025 by JR United Kingdom

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Principal Cyber Security Consultant - Critical National Infrastructure (CNI)

Qodea Limited

London null

Remote

Remote

GBP 70,000 - 90,000

Full time

11 days ago

Director of Cybersecurity

NOTHREAT

London null

Remote

Remote

GBP 90,000 - 130,000

Full time

9 days ago

Business Development Manager (Cybersecurity)

Iceberg

London null

Hybrid

Hybrid

GBP 60,000 - 100,000

Full time

Today
Be an early applicant

Technical Product Marketing Manager - Cybersecurity

Canonical

London null

Remote

Remote

GBP 50,000 - 90,000

Full time

30+ days ago

Principal Cyber Security Consultant

BlueVoyant

null null

Remote

Remote

GBP 80,000 - 120,000

Full time

2 days ago
Be an early applicant

Associate Principal Consultant - ICS/OT Cybersecurity United Kingdom

Dragos, Inc

null null

Remote

Remote

GBP 70,000 - 100,000

Full time

7 days ago
Be an early applicant

Technical Support Engineering Director - Cybersecurity

Microsoft Corporation

Reading null

Remote

Remote

GBP 80,000 - 100,000

Full time

30+ days ago

Principal Cyber Security Consultant - Critical National Infrastructure (CNI)

Qodea

London null

On-site

On-site

GBP 70,000 - 110,000

Full time

12 days ago

Cybersecurity Director

JR United Kingdom

City Of London null

On-site

On-site

GBP 80,000 - 150,000

Full time

8 days ago