At a Glance
- Tasks: Lead security strategy and compliance in a hands-on role with cutting-edge technology.
- Company: Dynamic tech company in Milton Keynes with a people-first culture.
- Benefits: Competitive salary, 25 days holiday, wellbeing days, and flexible benefits.
- Why this job: Make a real impact on security while growing your career in a supportive environment.
- Qualifications: Experience in information security, especially in SaaS/cloud environments.
- Other info: Join a diverse team with excellent career growth and networking opportunities.
The predicted salary is between 43000 - 51000 £ per year.
We are looking for an experienced Information Security Officer to lead security strategy, operations, and compliance. This is a hands-on role combining strategic security architecture with operational security management and regulatory compliance oversight. The successful candidate will define security standards across the business product portfolio, manage security environments, and serve as central point for ISO27001, PCI/DSS, and GDPR compliance while supporting commercial teams with tender responses and client security assurance.
Key responsibilities:
- Define technical security architecture and standards across multi-cloud SaaS platforms
- Embed security into product development lifecycle and roadmap planning
- Conduct threat modelling and risk assessments for new features and system changes
- Manage security environments across Azure and AWS infrastructure
- Oversee security monitoring, alerting, and detection capabilities
- Manage vulnerability assessment and penetration testing programs
- Maintain ISO27001 certification and manage audit cycles
- Ensure PCI/DSS compliance for payment processing systems
- Act as primary security contact for customers and prospects
Essential Requirements:
- Substantial information security experience in SaaS/cloud software environment (ISV or B2B software preferred)
- Proven track record managing ISO27001 certification and compliance
- Practical GDPR implementation experience in software products
- PCI/DSS compliance experience with payment processing systems
- Strong understanding of cloud security (Azure and/or AWS)
- Excellent communication skills - able to translate technical security for commercial and executive audiences
- Experience supporting tender responses and client security assurance
Preferred/Nice-to-Have:
- Professional certifications: CISSP, CISM, CISA, or equivalent
- Multi-tenant SaaS architecture security experience
- DevSecOps and CI/CD security integration knowledge
- Security frameworks: NIST, CIS Controls, OWASP
- Multi-jurisdictional data protection knowledge
Key Attributes:
- Strategic thinker who can balance security with business needs
- Detail-oriented with strong organizational skills
- Proactive in identifying risks and improvement opportunities
- Comfortable in fast-paced, dynamic environment
Excellent benefits:
- 25 days holiday (plus bank holidays) - with extra days the longer you’re with us
- Two paid wellbeing days each year, with a budget to enjoy some time out with someone important to you
- Enhanced pension contributions to support your future
- Two paid days a year to give back through volunteering, charity work, or sustainability projects with our Green Team
- Salary sacrifice schemes for electric vehicles and cycle-to-work
- 24/7 access to our Employee Assistance Programme for confidential advice and support
- A full annual health check to keep you at your best
- A flexible benefits platform - from life assurance and learning opportunities to retail discounts and cinema tickets
- A genuine people-first culture where your growth and wellbeing come first
- Performance-related bonus scheme to reward your contribution
- Regular socials - from team get-togethers to all-company celebrations, with each department owning a budget for their events
- The opportunity to attend group conferences, away days and learning forums both in the UK and abroad - network with other talent
- There is a welcoming office environment, with well-stocked kitchens offering free breakfast, fresh fruit, hot and cold drinks, and a range of tuck shop goodies to keep you fuelled throughout the day.
Our client is an equal opportunity employer, fostering diversity and committed to creating an inclusive environment for all employees.
Information Security Officer employer: Aspire Personnel Ltd
Contact Detail:
Aspire Personnel Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Officer
✨Tip Number 1
Network like a pro! Reach out to your connections in the information security field and let them know you're on the lookout for opportunities. You never know who might have the inside scoop on a role that’s perfect for you.
✨Tip Number 2
Prepare for interviews by brushing up on your knowledge of ISO27001, PCI/DSS, and GDPR compliance. Be ready to discuss how you've tackled these in past roles, as this will show you're the right fit for the job.
✨Tip Number 3
Don’t just apply anywhere; focus on companies that align with your values and career goals. Use our website to find roles that excite you and match your skills, making your application stand out.
✨Tip Number 4
Follow up after interviews! A quick thank-you email can go a long way in keeping you top of mind. Mention something specific from your conversation to show your genuine interest in the role.
We think you need these skills to ace Information Security Officer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Information Security Officer. Highlight your experience with ISO27001, GDPR, and cloud security, as these are key for us. We want to see how your skills align with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re the perfect fit for this role. Share specific examples of your past achievements in security strategy and compliance that relate to what we do at StudySmarter.
Showcase Your Communication Skills: Since you'll be translating technical security concepts for various audiences, make sure your application reflects your communication prowess. We love candidates who can simplify complex ideas, so don’t hold back on demonstrating this in your writing!
Apply Through Our Website: We encourage you to hit that apply button on our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at StudySmarter!
How to prepare for a job interview at Aspire Personnel Ltd
✨Know Your Security Standards
Make sure you’re well-versed in ISO27001, PCI/DSS, and GDPR compliance. Brush up on how these standards apply to the role and be ready to discuss your experience with them. This will show that you understand the core responsibilities of the Information Security Officer position.
✨Demonstrate Your Technical Skills
Prepare to talk about your hands-on experience with cloud security, particularly in Azure and AWS. Be ready to share specific examples of how you've managed security environments or conducted threat modelling in previous roles. This will help you stand out as a candidate who can hit the ground running.
✨Communicate Clearly
Since the role requires translating technical security concepts for non-technical audiences, practice explaining complex ideas in simple terms. Think of examples where you’ve successfully communicated security strategies to commercial teams or executives, as this will highlight your communication skills.
✨Show Your Strategic Thinking
Be prepared to discuss how you balance security needs with business objectives. Think of scenarios where you identified risks and proposed improvements that aligned with business goals. This will demonstrate your ability to think strategically, which is crucial for the role.