At a Glance
- Tasks: Lead the security program and protect customer assets in a fast-paced fintech environment.
- Company: Innovative fintech company dedicated to solving payment challenges for businesses in Africa.
- Benefits: Remote work, competitive salary, and opportunities for professional growth.
- Why this job: Make a real impact by safeguarding customer data and driving security excellence.
- Qualifications: Experience in information security governance and strong leadership skills required.
- Other info: Join a dynamic team focused on innovation and continuous learning.
The predicted salary is between 72000 - 108000 ÂŁ per year.
Our client is a technology company solving payments problems for businesses. Their mission is to help businesses in Africa become profitable, envied, and loved. They provide a suite of products to help businesses accept payments online and offline, manage their operations, and grow their business. Our client is driven by a commitment to excellence, innovation, and customer satisfaction.
Role Overview
Our client is looking for a well-rounded leader who will be responsible for building the security program and improving our client’s overall security posture. This area is very important to our client as it is a requirement for them to be better positioned to meet the needs of their customers and enables trust with the mission of safeguarding their customers’ assets and data against an evolving landscape of sophisticated global and local threats.
Job Type: Permanent
Location: London, UK
Work Place: Remote
Requirements
- Experience with information security governance, risk and compliance experience for a global organization
- Knowledge of technical infrastructure, networks, databases and systems in relation to IT Security and IT Risk
- A strategic business partner with the ability to articulate complex security concepts and risks in business terms to non-technical stakeholders, including the executive team and the board
- Possesses the capacity to effectively lead, manage, and inspire a team, enabling them to achieve both strategic and functional objectives
- Experience developing and publishing company-wide policies, standards, and other governance documents
- Ability to work very well cross-functionally and are able to think rigorously and make hard decisions and tradeoffs
- Ability to demonstrate initiative, operate autonomously, and assume complete responsibility for tasks
- In-depth knowledge of cybersecurity principles, industry standards, frameworks, and best practices
- Ability to manage key customer relationships, including with senior management across business units
- Proven experience scaling a security program in a high-growth, fast-paced technology or fintech environment
- Excellent written and verbal communication skills
Responsibilities
Strategy and Compliance
- Develop and implement a scalable information security strategy aligning with the company’s business objectives.
- Ensure compliance with relevant laws, regulations, and industry standards, including PCI DSS, GDPR, and local Nigerian data protection laws (e.g., NDPR).
- Ensure security architecture can adapt to and support the company’s growth trajectory.
- Educate staff in the organization on the best IT practices and regulatory requirements.
- Work closely with other high-level executives to develop all-encompassing security strategies within the organization’s context and goals.
Risk Management
- Own and manage the end-to-end security risk management framework.
- Identify, assess, and prioritize security risks across the organization, translating them into a clear risk posture for executive leadership and the board.
- Align security initiatives with the company's defined risk appetite.
Team Management
- Recruit, mentor, and lead a high-performing, multi-disciplinary security team.
- Foster a culture of continuous learning and development to stay ahead of emerging threats and technologies.
Threat Intelligence and Incident Response
- Establish and mature a robust threat intelligence program to proactively identify, analyze, and mitigate emerging threats, particularly those targeting the African fintech ecosystem.
- Design, operationalize, and regularly test our incident response, business continuity, and disaster recovery plans to ensure organizational resilience.
Security Architecture and Technology
- Oversee the design of secure systems and review application and infrastructure security architectures, ensuring scalability and adherence to security by design principles.
- Implement proactive security measures and controls to prevent security breaches and minimize potential impact, including managing and implementing various security technologies and tools (e.g., SIEM, IDS/IPS, vulnerability scanners).
- Lead the cloud security strategy, ensuring robust configuration, monitoring, and protection of our client’s cloud infrastructure and services.
Financial Management and Justification
- Develop business cases that support information security program investments.
- Obtain management support for information security program investments highlighted in the endorsed business cases.
- Manage the security budget and forecast costs.
Communication and Stakeholder Engagement
- Disseminate the organization’s information security goals and objectives to business units and senior management.
- Represent the organization in security-related matters with external parties and stakeholders.
- Manage key customer relationships, including with senior management across business units.
- Influence cross-functional and cross-business units to accomplish strategic goals.
Training and Awareness
- Design and implement security awareness training programs for all staff.
Metrics and KPIs
- Develop and track relevant Key Performance Indicators (KPIs) such as incident response times, compliance audit results, and vulnerability management metrics.
Cross-functional Collaboration
- Work closely with the Engineering team and other technical departments to ensure security is integrated into all development and operational processes.
CISO (Fintech/Payments) employer: Black Pen Recruitment
Contact Detail:
Black Pen Recruitment Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land CISO (Fintech/Payments)
✨Tip Number 1
Network like a pro! Attend industry events, webinars, and meetups related to fintech and cybersecurity. It's all about making connections that could lead to job opportunities. Plus, you never know who might have the inside scoop on openings!
✨Tip Number 2
Show off your expertise! Create a personal blog or LinkedIn posts discussing trends in cybersecurity and fintech. This not only showcases your knowledge but also positions you as a thought leader in the field. Trust us, hiring managers love seeing candidates who are passionate and informed.
✨Tip Number 3
Don’t just apply; engage! When you find a role that excites you, reach out to current employees on LinkedIn. Ask them about their experiences and the company culture. This can give you valuable insights and might even get your application noticed faster!
✨Tip Number 4
Keep it real with your interview prep! Research the company’s security challenges and think about how your skills can help solve them. Be ready to discuss specific examples from your past experience that align with their needs. We want you to shine and show them why you're the perfect fit!
We think you need these skills to ace CISO (Fintech/Payments)
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in information security governance and risk management. We want to see how your skills align with our mission of safeguarding customer assets and data.
Showcase Your Leadership Skills: As a CISO, you'll be leading a team, so don’t forget to mention your experience in managing and inspiring teams. Share examples of how you've developed high-performing teams in fast-paced environments like fintech.
Communicate Clearly: We love clear communication! When describing your past roles, use straightforward language to explain complex security concepts. Remember, you’ll need to articulate these ideas to non-technical stakeholders.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity to help shape our security strategy!
How to prepare for a job interview at Black Pen Recruitment
✨Know Your Stuff
Make sure you brush up on your knowledge of information security governance, risk, and compliance. Be ready to discuss how you've implemented security strategies in previous roles, especially in fast-paced environments like fintech.
✨Speak Their Language
When discussing complex security concepts, remember to translate them into business terms. This will help non-technical stakeholders understand the importance of your strategies and how they align with the company's goals.
✨Show Your Leadership Skills
Prepare examples of how you've successfully led a team in the past. Highlight your ability to inspire and mentor others, as well as how you've fostered a culture of continuous learning within your team.
✨Be Ready for Scenario Questions
Expect to face scenario-based questions that test your problem-solving skills. Think about potential security threats specific to the African fintech ecosystem and how you would address them, demonstrating your proactive approach to risk management.