At a Glance
- Tasks: Lead vendor security reviews and enhance security practices in a dynamic tech environment.
- Company: Join Just Eat Takeaway.com, a global leader in online food delivery.
- Benefits: Competitive salary, inclusive culture, and opportunities for personal growth.
- Other info: Be part of a diverse team that values your unique perspective.
- Why this job: Make a real impact on security in a fast-paced, innovative company.
- Qualifications: Experience in security assessments and clear communication skills are essential.
The predicted salary is between 60000 - 75000 £ per year.
Ready for a challenge? Then Just Eat Takeaway.com might be the place for you. We’re a leading global online delivery platform, and our vision is to empower everyday convenience. Whether it’s a Friday-night feast, a post-gym poke bowl, or grabbing some groceries, our tech platform connects tens of millions of customers with hundreds of thousands of restaurant, grocery and convenience partners across the globe.
About this role
The InfoSec team at JET is scaling its security partnership and vendor assurance capability across a complex, cloud-native environment spanning multiple markets. As Security Business Partner, you will own the day-to-day delivery of vendor security reviews and shift-left security practices within engineering and product teams. You will work closely with the Security Business Partner function to embed security thinking early and give JET confidence in its third-party supply chain. Based in the UK, this is a hands-on, high-impact individual role.
These are some of the key components to the position:
- Execute vendor security assessments by collecting, analysing, and documenting supplier control evidence, audit reports, and risk findings against defined frameworks including ISO 27001 and NIST CSF.
- Identify and document third-party security risks, recommending proportionate risk treatment options aligned to JET’s risk appetite.
- Support threat modelling, secure design reviews, risk remediation recommendations and early-stage risk assessments alongside engineering teams as part of the secure development lifecycle.
- Translate security findings into clear, business-aligned risk language for product and stakeholders, reducing reliance on technical jargon.
- Maintain accurate risk registers, vendor assessment records, and reporting inputs that feed into executive-level risk dashboards.
- Build working relationships with business and technology teams across multiple markets, acting as a visible and trusted point of contact for security guidance.
What will you bring to the team?
- Demonstrated ability to execute security risk assessments and vendor reviews end-to-end, including evidence collection, gap analysis, and documented findings.
- Working knowledge of security frameworks such as NIST CSF, ISO 27001, or CIS Controls applied in a product or engineering context.
- Ability to communicate security risk clearly to both technical and non-technical audiences, without defaulting to jargon or compliance-speak.
- Familiarity with GRC concepts including risk management, controls design, and third-party assurance, gained through hands-on practice rather than solely policy work.
- Comfort working across multiple teams and geographies in a fast-moving environment, managing competing priorities without losing accuracy or rigor.
- Relevant certifications (such as CISA, CRISC, or equivalent) are a plus, but not a barrier to applying if you can demonstrate the capability.
Inclusion, Diversity & Belonging
No matter who you are, what you look like, who you love, or where you are from, you can find your place at Just Eat Takeaway.com. We’re committed to creating an inclusive culture, encouraging diversity of people and thinking, in which all employees feel they truly belong and can bring their most colourful selves to work every day.
Senior Business Information Security Specialist in London employer: 慨正橡扯
Just Eat Takeaway.com is an exceptional employer that champions a culture of inclusivity and diversity, ensuring every employee feels valued and empowered. With a focus on professional growth, the company offers ample opportunities for skill development in a dynamic, cloud-native environment, making it an ideal place for those looking to make a meaningful impact in the field of information security. Located in the UK, employees benefit from a collaborative work atmosphere that encourages innovation and fosters strong relationships across global teams.
StudySmarter Expert Advice🤫
We think this is how you could land Senior Business Information Security Specialist in London
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including 慨正橡扯, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through 慨正橡扯
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at 慨正橡扯. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Senior Business Information Security Specialist in London
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at 慨正橡扯 insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to 慨正橡扯 that you’re committed to staying ahead in the game.
How to prepare for a job interview at 慨正橡扯
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at 慨正橡扯 to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at 慨正橡扯.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.