Business Information Security Officer

Business Information Security Officer

Full-Time 75600 - 92400 £ / year (est.) No working from home possible
Bloomberg L.P.

At a Glance

  • Tasks: Lead and develop security programs to protect Bloomberg's products and customer data.
  • Company: Join a leading tech firm dedicated to information security and innovation.
  • Benefits: Competitive salary, health benefits, and opportunities for professional growth.
  • Other info: Collaborative culture with excellent career advancement opportunities.
  • Why this job: Make a real impact on global security initiatives in a dynamic environment.
  • Qualifications: 7+ years in information security with strong technical and communication skills.

The predicted salary is between 75600 - 92400 £ per year.

We protect Bloomberg. The Bloomberg Information Security Office team is dedicated to making our products and technologies as secure as possible through design, development, and operation. We report into the Chief Information Security Office while working closely with regulated businesses, key lines of business, and development/engineering across Bloomberg L.P. Our colleagues depend on us to help design, run, and improve our most important security programs.

What\'s in it for you:

The Bloomberg BISO team focuses on identifying opportunities to improve the security of Bloomberg, our products and services, and the security of our customers’ data. In this role, you will be the owner, manager, and developer of multiple security programs, each with unique challenges and in a global setting. You will be responsible for setting strategic direction, evangelizing security and compliance efforts, and influencing the direction of Bloomberg L.P.’s business efforts all in a day’s work.

We\'ll trust you to:

  • Develop a deep understanding of your business domains, keeping abreast of new technologies, regulatory changes, and industry best practices as you design, lead, and oversee the information security programs for your lines of business.
  • Work with stakeholders to effectively manage cyber risk including consulting on security controls, mitigation strategies, and incident response planning and management.
  • Foster cross-functional relationships between teams to improve all aspects of our security program.
  • Define and develop management information, including key risk indicators, program maturity indicators, and key performance indicators for use in reporting.
  • Establish and review information security policies and procedures in your line of business.
  • Become a trusted voice to senior management, report on the status of information security programs to boards and various governance forums.
  • Lead in the development and delivery of scenario testing such as Tabletop Exercises and Threat Led Penetration Testing.
  • Lead remediation efforts and support transformational change initiatives across the broader organization.

We\'d love to see:

  • 7+ years of experience in information security, cyber security risk management, data security and cyber security regulation.
  • Demonstrated ability to influence internal and external stakeholders to achieve success in a complex global setting.
  • Proven delivery of complex projects involving cross-functional teams.
  • Ability to proactively identify and manage cyber security risks to deliver services and meet business objectives in a secure and compliant way.
  • Strong technical knowledge in key cyber security domains such as cloud security, network security and architecture, application security, secure software development lifecycle (SSDLC) and vulnerability management.
  • Proven experience in delivering Threat Led Penetration Tests such as CBEST or equivalent TLPT regimes.
  • Good knowledge of key technologies such as Operating Systems, Software Development Build Pipelines and Processes, Security Tooling, O365 Suite, and Business Intelligence Tools.
  • Experience with industry standards such as NIST CSF and ISO 27001.
  • Knowledge and experience with Regulation pertaining to Information Security such as DORA, Operational Resilience, UK CTP Regime, GDPR.
  • Excellent written and oral communication skills.
  • Demonstrated ability to perform under pressure and consistently meet program deadlines.
  • An industry recognized certifications such as CISSP, GIAC, CISM, ISO 27001 Lead Implementor/Auditor.

#J-18808-Ljbffr

Business Information Security Officer employer: Bloomberg L.P.

Bloomberg is an exceptional employer, offering a dynamic work environment in London that fosters innovation and collaboration among its 20,000+ employees. With a strong focus on employee growth, Bloomberg provides rigorous training and development opportunities, ensuring that team members are well-equipped to excel in their roles. The company's commitment to diversity and inclusion, along with its cutting-edge technology and resources, makes it an attractive place for professionals seeking meaningful and rewarding careers in the financial solutions sector.

Bloomberg L.P.

Contact Details:

Bloomberg L.P. Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Business Information Security Officer

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Bloomberg L.P., love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Bloomberg L.P.

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Bloomberg L.P.. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Business Information Security Officer

Information Security Management
Cyber Security Risk Management
Data Security
Regulatory Compliance
Stakeholder Engagement
Cross-Functional Collaboration
Key Risk Indicators Development

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Bloomberg L.P. insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Bloomberg L.P. that you’re committed to staying ahead in the game.

How to prepare for a job interview at Bloomberg L.P.

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Bloomberg L.P. to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Bloomberg L.P..

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.