At a Glance
- Tasks: Lead cybersecurity initiatives and ensure compliance with industry standards.
- Company: Aqovia is a tech innovator in telecommunications, media, and technology since 2008.
- Benefits: Enjoy healthcare, gym memberships, pension schemes, and more perks.
- Why this job: Join a collaborative team making a positive impact in fintech and sustainability.
- Qualifications: Experience in IT security leadership and knowledge of risk frameworks required.
- Other info: We value diversity and foster an inclusive culture for all employees.
The predicted salary is between 43200 - 72000 £ per year.
Why Aqovia? Since 2008, Aqovia has been at the forefront of technology innovation, serving clients in telecommunications, media, and technology. We specialise in architecture, design, and software development for transformative projects. Join a team that values innovation, expertise, and commitment to excellence. Job Description The Chief Information Security Officer (CISO) is responsible for overseeing the organisation’s Information and Communications Technology (ICT) infrastructure and cybersecurity framework, ensuring alignment with the Digital Operational Resilience Act (DORA) and ISO 27001 standards. The CISO safeguards the Crypto-Asset Service Provider’s (CASP) systems, including the PIL crypto platform and front-end, by conducting risk assessments, maintaining comprehensive inventories, and implementing specific security policies. This role demands rapid compliance verification and leads the security team to protect critical operations in a regulated fintech environment. Here\’s what you\’ll do: Oversee the ICT infrastructure and cybersecurity programme, ensuring compliance with DORA and ISO 27001 standards. Develop and implement information security strategies, policies, and procedures in line with NIST CSF, NIST 800-53, CIS, and COBIT frameworks. Conduct risk assessments and audits to ensure compliance with regulatory standards and best practices, including ISAE3402 and SOC2. Author, review, and maintain IT security policies and procedures to support compliance and security goals. Manage corrective action plans for identified security risks, ensuring timely execution and effective resolution. Perform due diligence and assurance for supply chain security, assessing third-party risks and compliance. Collaborate with internal stakeholders to promote and enhance information security awareness and maturity across the organisation. Stay abreast of the latest cybersecurity threats, trends, and compliance requirements to continuously improve the security framework. We\’re looking for someone who: Professional communication skills are essential. Candidates must possess excellent English communication skills, both written and verbal, to effectively manage business interactions and maintain a professional tone in all commercial correspondence. Extensive experience in IT security leadership, preferably within fintech, financial services, or crypto-asset sectors. Proven expertise in implementing information security and risk frameworks (NIST CSF, ISO 27001, NIST 800-53, CIS, COBIT). In-depth knowledge of DORA requirements, and risk management for ICT assets, including crypto platforms. Strong understanding of auditing frameworks such as ISAE3402 and SOC2. Demonstrated experience in authoring and maintaining policies and procedures related to information security. Experience managing corrective action plans and overseeing security risk management initiatives. Familiarity with supply chain security due diligence and assessment processes. Ability to effectively engage and manage internal stakeholders to enhance information security maturity. Professional certifications such as CISSP, CISM, CISA, or CRISC are strongly preferred. Broad technical knowledge including SaaS, Cloud technologies, Software Development Life Cycle (SDLC), Vulnerability Management, Networking, and Identity and Access Management (IDAM). Other skills: Exceptional communication and interpersonal skills. Strong analytical and problem-solving abilities. Ability to work collaboratively across departments and drive initiatives in a fast-paced environment. High level of integrity and professionalism in managing sensitive information. Joining Aqovia means: Making a real difference: You will be part of a team developing solutions that empower businesses while contributing to sustainable practices. Growth opportunities: We invest in our employees\’ development and offer a path for career advancement. Collaborative culture: We value teamwork, open communication, and a supportive environment. Competitive benefits package: Including healthcare, paid for gym membership, pension scheme, perkbox and more. If you are a technically adept analytical person who thrives in a fast-paced environment and shares our commitment to positive impact, we encourage you to apply! Equal Opportunity Employer At Aqovia, we believe in the strength of diversity. We strive to reflect the varied markets we serve and foster an inclusive culture where everyone feels welcome, valued, and empowered to be their authentic selves. As an equal opportunity employer, we are committed to embracing all forms of diversity across our organisation. #J-18808-Ljbffr
Information Security Officer / Data Protection employer: Aqovia
Contact Detail:
Aqovia Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Officer / Data Protection
✨Tip Number 1
Familiarise yourself with the Digital Operational Resilience Act (DORA) and ISO 27001 standards. Understanding these frameworks will not only help you in interviews but also demonstrate your commitment to compliance and security best practices.
✨Tip Number 2
Network with professionals in the fintech and cybersecurity sectors. Attend industry events or webinars to connect with others who may provide insights or even referrals for the Information Security Officer role at Aqovia.
✨Tip Number 3
Stay updated on the latest cybersecurity threats and trends. Being knowledgeable about current issues will allow you to engage in meaningful discussions during interviews and show that you are proactive in your field.
✨Tip Number 4
Prepare to discuss your experience with risk assessments and policy development. Be ready to share specific examples of how you've implemented security measures in previous roles, as this will highlight your practical expertise.
We think you need these skills to ace Information Security Officer / Data Protection
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in IT security leadership, particularly within fintech or related sectors. Emphasise your familiarity with frameworks like NIST CSF and ISO 27001, as well as any professional certifications you hold.
Craft a Strong Cover Letter: In your cover letter, express your passion for cybersecurity and how your skills align with the responsibilities of the CISO role. Mention specific experiences where you've successfully implemented security policies or conducted risk assessments.
Showcase Communication Skills: Since professional communication is essential for this role, ensure that your application materials are well-written and free of errors. Use clear and concise language to demonstrate your ability to manage business interactions effectively.
Highlight Continuous Learning: Mention any recent training or courses you've completed related to cybersecurity trends or compliance requirements. This shows your commitment to staying updated in a rapidly evolving field, which is crucial for the role at Aqovia.
How to prepare for a job interview at Aqovia
✨Understand the Regulatory Frameworks
Familiarise yourself with DORA, ISO 27001, and other relevant frameworks mentioned in the job description. Be prepared to discuss how your experience aligns with these standards and how you can ensure compliance within the organisation.
✨Showcase Your Technical Expertise
Highlight your knowledge of cybersecurity practices, risk management frameworks, and auditing standards like ISAE3402 and SOC2. Be ready to provide examples of how you've implemented these in previous roles, especially in fintech or related sectors.
✨Demonstrate Strong Communication Skills
Since professional communication is essential for this role, practice articulating your thoughts clearly and concisely. Prepare to discuss how you've effectively engaged with stakeholders in the past to enhance information security awareness.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving abilities and analytical skills. Think of specific scenarios where you've managed security risks or developed corrective action plans, and be ready to explain your thought process and outcomes.