Business Information Security Officer, Europe
Business Information Security Officer, Europe

Business Information Security Officer, Europe

London Full-Time 43200 - 72000 £ / year (est.) No home office possible
Go Premium
L

At a Glance

  • Tasks: Act as a key link between cybersecurity and regional business teams, advising on risks and strategies.
  • Company: Join LS&Co., a diverse and inclusive company committed to collective success.
  • Benefits: Enjoy a hybrid work model and a culture that values diversity and innovation.
  • Why this job: Make an impact by embedding cybersecurity in business strategies while fostering a security-conscious culture.
  • Qualifications: Bachelor's degree in a related field and 6+ years of cybersecurity experience required.
  • Other info: Relevant certifications like CISSP or CISM are a plus; experience with AI security is beneficial.

The predicted salary is between 43200 - 72000 £ per year.

We are looking for a Business Information Security Officer (BISO), Europe, to join our team in London, reporting to the Senior Manager, Business Information Security Office and Strategy.

As the BISO for Europe, you will play a key role as the bridge between our central cybersecurity function and the regional business teams. You will work closely with regional leadership to understand business goals, embed cybersecurity, including AI-related risks into operational strategies, and drive alignment between business and security objectives. You will also lead efforts to identify and assess risks, advise on mitigation approaches, and foster a strong culture of security awareness across the region.

KEY RESPONSIBILITIES

  • Business Partnership & Advisory: Collaborate with regional business leaders and managers to serve as a trusted advisor on cybersecurity matters, including new areas like AI security. Develop an understanding of regional team goals and processes to communicate cyber risks in e-commerce, retail and wholesale business teams. Advise regional management on cybersecurity risk levels, posture, and the potential impact of threats. Support regional leadership by contributing to the cost-benefit analysis of information security programs. Partner with Privacy team and legal counsel on several due diligence and data related functions.
  • Risk Management & Governance: Support the implementation and management of regional third-party risk management activities, which includes performing third-party risk assessments. Experience with PCI compliance. Manage, lead, and conduct PCI assessment for the different countries in scope partnering with app owners and payment gateway solutions. Help build the regional data loss prevention (DLP) program components and understand business impact. Advise on the implementation of corporate AI governance and security posture management for AI systems within the region. Ensure regional adherence to risk remediation protocols, tracking mitigation efforts and exceptions according to established frameworks and standards (NIST CSF, CIS, etc.). Help establish a clear path to communicate risk within supported businesses.
  • Communication & Culture: Constructively engage partners regarding cybersecurity issues and requirements. Maintain relationships with respective point of contacts. Understand different cultures in the European regions and stay on top of changing and new regulatory requirements. Educate regional partners on cybersecurity-related matters, including data and operational risks and best practices, to increase awareness and foster a security-conscious culture. Participate in relevant cybersecurity and business-related councils or working groups. Facilitate communication between regional departments and central cybersecurity teams (e.g., security architects, engineers).

ABOUT YOU

  • Bachelor's degree in Information Security, Computer Science, Engineering, or a related field.
  • Experience engaging with and influencing multiple management levels regarding business specific Information Security Risk briefing and reporting.
  • Experience operating within the European regulatory landscape (e.g., GDPR).
  • 6+ years of experience in cybersecurity, Network/Application security, IT risk management, or a similar role, with demonstrated experience in business partnering or liaison functions.
  • Experience with cybersecurity principles, risk management frameworks (e.g., NIST CSF, CIS v8, PCI, etc.), and security technologies.
  • Familiarity with AI concepts, AI-specific security risks, and AI governance frameworks (e.g., NIST AI RMF, EU AI Act principles).
  • Experience with AI security posture management.
  • Relevant certifications (e.g., CISSP, CISM, CRISC).

LS&Co. is an affirmative action and equal employment opportunity employer. We welcome and value people from diverse cultures, backgrounds, and experiences to make LS&Co. a collective success.

Business Information Security Officer, Europe employer: LEVI'S

At LS&Co., we pride ourselves on being an exceptional employer, offering a dynamic work environment in the heart of London. Our commitment to employee growth is evident through our collaborative culture, where you will have the opportunity to engage with regional leaders and influence cybersecurity strategies across Europe. With a focus on diversity and inclusion, we foster a strong sense of community while providing comprehensive benefits and resources to support your professional development and well-being.
L

Contact Detail:

LEVI'S Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Business Information Security Officer, Europe

✨Tip Number 1

Familiarise yourself with the specific cybersecurity frameworks mentioned in the job description, such as NIST CSF and PCI compliance. Being able to discuss these frameworks confidently during your interview will demonstrate your expertise and understanding of the role.

✨Tip Number 2

Research LS&Co.'s current initiatives and challenges in cybersecurity, especially regarding AI security. This knowledge will allow you to engage in meaningful conversations with interviewers about how you can contribute to their goals.

✨Tip Number 3

Network with professionals in the cybersecurity field, particularly those who have experience in business partnering roles. They can provide insights into the expectations for a BISO and may even refer you to opportunities within LS&Co.

✨Tip Number 4

Prepare examples from your past experiences that showcase your ability to influence management and communicate complex cybersecurity risks effectively. Tailoring your stories to align with the responsibilities outlined in the job description will make a strong impression.

We think you need these skills to ace Business Information Security Officer, Europe

Cybersecurity Principles
Risk Management Frameworks (NIST CSF, CIS v8, PCI)
AI Security Concepts
Data Loss Prevention (DLP) Strategies
Third-Party Risk Management
Regulatory Compliance (GDPR, PCI)
Business Partnership and Advisory Skills
Communication Skills
Influencing and Negotiation Skills
Security Awareness Training
Technical Knowledge in Network/Application Security
Experience with AI Governance Frameworks
Analytical Skills
Problem-Solving Skills
Relevant Certifications (CISSP, CISM, CRISC)

Some tips for your application 🫡

Understand the Role: Before applying, make sure to thoroughly read the job description for the Business Information Security Officer position. Understand the key responsibilities and required qualifications to tailor your application accordingly.

Highlight Relevant Experience: In your CV and cover letter, emphasise your experience in cybersecurity, risk management, and any relevant certifications. Be specific about your past roles and how they relate to the responsibilities outlined in the job description.

Showcase Your Skills: Demonstrate your understanding of cybersecurity principles and frameworks like NIST CSF and PCI compliance. Include examples of how you've successfully partnered with business leaders to address security risks and foster a culture of security awareness.

Tailor Your Application: Customise your CV and cover letter to reflect the specific requirements of the role. Use keywords from the job description to ensure your application stands out and aligns with what the company is looking for.

How to prepare for a job interview at LEVI'S

✨Understand the Role and Responsibilities

Make sure you thoroughly understand the key responsibilities of a Business Information Security Officer. Familiarise yourself with how this role acts as a bridge between cybersecurity and business teams, especially in relation to AI security risks.

✨Showcase Your Experience

Prepare to discuss your relevant experience in cybersecurity, particularly in risk management frameworks like NIST CSF and PCI compliance. Be ready to provide examples of how you've influenced management decisions regarding information security.

✨Demonstrate Cultural Awareness

Since the role involves working across different European regions, highlight your understanding of various cultures and regulatory requirements. This will show that you can effectively communicate and engage with diverse teams.

✨Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about how you would advise regional management on cybersecurity risks or implement a data loss prevention programme.

Business Information Security Officer, Europe
LEVI'S
Location: London
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

L
  • Business Information Security Officer, Europe

    London
    Full-Time
    43200 - 72000 £ / year (est.)
  • L

    LEVI'S

    1001-5000
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>