At a Glance
- Tasks: Join us in safeguarding information through risk assessments and security monitoring.
- Company: We're a leading financial services company dedicated to protecting what matters most.
- Benefits: Enjoy a competitive salary, remote work flexibility, and a £5k car allowance.
- Why this job: Be part of a dynamic team that values innovation and offers impactful work in cyber security.
- Qualifications: Bring your knowledge of cyber security principles and experience in risk management.
- Other info: This role includes occasional travel to our office in Essex.
The predicted salary is between 48000 - 72000 £ per year.
Location: Remote with occasional travel
Employment Type: Full-Time
Reports To: Information Security Manager
Join our client's teams in Protecting What Matters. Our client is a financial service company. They are looking for a passionate and detail-oriented Information & Cyber Security Executive to join the teams.
The role encompasses all aspects of information security including organisational security and governance, people security, physical (site) security and technical security controls. The role will assess evolving technologies and threats and communicate the risks.
They offer a salary up to £80k base + £5k car allowance and other benefits. Working remotely with occasional office presence in Essex.
What You’ll Do
- Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS).
- Conduct supplier risk assessments and third-party due diligence.
- Support vulnerability assessments, incident investigations, and operational resilience activities.
- Monitor the effectiveness of security controls to ensure confidentiality, integrity, and availability (CIA).
- Assist with security certifications and regulatory frameworks including GDPR.
- Translate technical risks into clear, business-friendly advice.
- Stay on-call during scheduled weeks for incident support and response.
Requirements
Essential:
- Solid understanding of cyber security, governance, and risk management principles.
- Experience with risk/vulnerability assessments and incident management.
- Experience in first and second line support.
- Strong analytical thinking and attention to detail.
- Familiarity with compliance frameworks like ISO 27001 / 27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCI DSS v4.0.
- Exceptional communication and stakeholder engagement skills.
- Financial services/FCA experience.
Desirable:
- Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview).
- Understanding of ITIL, data protection laws (UK GDPR), and payment card security.
- Security certifications such as CISSP, CISM, CISMP or equivalent.
Information & Cyber Security Executive employer: McCabe & Barton
Contact Detail:
McCabe & Barton Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information & Cyber Security Executive
✨Tip Number 1
Familiarise yourself with the specific compliance frameworks mentioned in the job description, such as ISO 27001 and PCI-DSS. Being able to discuss these frameworks confidently during an interview will demonstrate your expertise and understanding of the role.
✨Tip Number 2
Network with professionals in the financial services sector, especially those who work in information security. Engaging with industry peers can provide valuable insights and potentially lead to referrals that could enhance your application.
✨Tip Number 3
Stay updated on the latest trends and threats in cyber security. Being knowledgeable about current events and emerging technologies will allow you to speak intelligently about how they impact the financial services industry during interviews.
✨Tip Number 4
Prepare to showcase your analytical thinking and problem-solving skills through real-world examples. Be ready to discuss past experiences where you've successfully managed risks or incidents, as this will highlight your suitability for the role.
We think you need these skills to ace Information & Cyber Security Executive
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience in cyber security, governance, and risk management. Use specific examples that demonstrate your understanding of compliance frameworks like ISO 27001 and PCI DSS.
Craft a Compelling Cover Letter: In your cover letter, express your passion for information security and detail how your skills align with the job requirements. Mention any relevant certifications and your experience in the financial services sector.
Showcase Your Analytical Skills: Provide examples in your application that showcase your analytical thinking and attention to detail. Discuss any past experiences where you conducted risk assessments or incident investigations.
Highlight Communication Skills: Since exceptional communication is key for this role, include instances where you've successfully engaged with stakeholders or translated technical risks into business-friendly advice.
How to prepare for a job interview at McCabe & Barton
✨Know Your Cyber Security Frameworks
Familiarise yourself with key compliance frameworks like ISO 27001, NIST Cybersecurity Framework, and PCI DSS. Be prepared to discuss how these frameworks apply to the role and share examples of your experience in implementing or assessing them.
✨Demonstrate Analytical Skills
Showcase your analytical thinking by discussing past experiences where you conducted risk assessments or incident investigations. Highlight your attention to detail and how it has helped you identify vulnerabilities or improve security measures.
✨Communicate Clearly
Since the role involves translating technical risks into business-friendly advice, practice explaining complex concepts in simple terms. Prepare to give examples of how you've successfully communicated security issues to non-technical stakeholders.
✨Stay Updated on Evolving Threats
Research current trends and emerging threats in cyber security. Be ready to discuss how you would assess these threats and their potential impact on the organisation, demonstrating your proactive approach to information security.