Job Description:
DescriptionThis is a senior technical security role for someone who enjoys working across cloud, infrastructure, applications and business change programmes.
You will act as a trusted security advisor to technology, engineering and business teams, influencing the design of secure solutions and helping shape the future direction of information security across the organisation.
This is not a purely governance or compliance-focused position. We're looking for someone who can combine strong technical expertise with commercial awareness and stakeholder engagement.
What you'll do
- Provide expert security consultancy across technology, engineering, architecture and business teams.
- Support projects and programmes by identifying security risks and recommending practical solutions.
- Review solution designs, technical architectures, cloud services and system integrations.
- Drive the implementation and continual improvement of security controls across applications, infrastructure and cloud environments.
- Assess vulnerabilities, review penetration testing results and support remediation activities.
- Monitor emerging threats and security trends, helping the business respond proactively.
- Contribute to the development and enhancement of security standards, policies and governance frameworks.
- Support the ongoing maturity of our Information Security Management System (ISMS).
- Lead security initiatives and improvement programmes.
- Mentor colleagues and promote security best practice across the organisation.
The knowledge, experience and qualifications you need
- Significant experience in Information Security, Cyber Security Consulting, Security Architecture or a similar senior security role.
- Strong knowledge of cloud security, particularly Azure and/or AWS environments.
- Experience securing enterprise infrastructure, platforms and applications.
- Strong understanding of recognised security frameworks including ISO 27001, NIST and CIS Controls.
- Experience delivering security improvements, security transformation initiatives or complex security programmes.
- Ability to balance security requirements with business objectives.
- Strong communication and stakeholder management skills.
- Experience influencing technical and non-technical audiences at all levels.
- Experience within financial services or another regulated industry.
- Security certifications such as CISSP, CISM, CRISC or equivalent.
- Experience supporting cloud transformation, infrastructure modernisation or large-scale technology change programmes.
Why join us
- Work on complex security challenges across a growing financial services business.
- Influence major technology and business transformation initiatives.
- Collaborate with experienced technology, security and leadership teams.
- Competitive salary and comprehensive benefits package.
- Hybrid working and flexible approach to office attendance.
- Opportunities for professional development and industry certification support.