At a Glance
- Tasks: Lead and develop security programs to protect Bloomberg's products and customer data.
- Company: Join Bloomberg, a leader in financial technology with a strong focus on security.
- Benefits: Competitive salary, health benefits, and opportunities for professional growth.
- Why this job: Make a real impact on global security initiatives and work with cutting-edge technologies.
- Qualifications: 7+ years in information security and strong stakeholder management skills.
- Other info: Dynamic role with excellent career advancement opportunities in a collaborative environment.
The predicted salary is between 36000 - 60000 £ per year.
The Bloomberg Information Security Office team is dedicated to making our products and technologies as secure as possible through design, development, and operation. We report into the Chief Information Security Office while working closely with regulated businesses, key lines of business, and development/engineering across Bloomberg L.P. Our colleagues depend on us to help design, run, and improve our most important security programs.
The Bloomberg BISO team focuses on identifying opportunities to improve the security of Bloomberg, our products and services, and the security of our customers’ data. In this role, you will be the owner, manager, and developer of multiple security programs, each with unique challenges and in a global setting. You will be responsible for setting strategic direction, evangelizing security and compliance efforts, and influencing the direction of Bloomberg L.P.’s business efforts all in a day’s work.
We trust you to:
- Develop a deep understanding of your business domains, keeping abreast of new technologies, regulatory changes, and industry best practices as you design, lead, and oversee the information security programs for your lines of business.
- Work with stakeholders to effectively manage cyber risk including consulting on security controls, mitigation strategies, and incident response planning and management.
- Foster cross-functional relationships between teams to improve all aspects of our security program.
- Define and develop management information, including key risk indicators, program maturity indicators, and key performance indicators for use in reporting.
- Establish and review information security policies and procedures in your line of business.
- Become a trusted voice to senior management, report on the status of information security programs to boards and various governance forums.
- Lead in the development and delivery of scenario testing such as Tabletop Exercises and Threat Led Penetration Testing.
- Lead remediation efforts and support transformational change initiatives across the broader organization.
We'd love to see:
- 7+ years of experience in information security, cyber security risk management, data security and cyber security regulation.
- Demonstrated ability to influence internal and external stakeholders to achieve success in a complex global setting.
- Proven delivery of complex projects involving cross-functional teams.
- Ability to proactively identify and manage cyber security risks to deliver services and meet business objectives in a secure and compliant way.
- Strong technical knowledge in key cyber security domains such as cloud security, network security and architecture, application security, secure software development lifecycle (SSDLC) and vulnerability management.
- Proven experience in delivering Threat Led Penetration Tests such as CBEST or equivalent TLPT regimes.
- Good knowledge of key technologies such as Operating Systems, Software Development Build Pipelines and Processes, Security Tooling, O365 Suite, and Business Intelligence Tools.
- Experience with industry standards such as NIST CSF and ISO 27001.
- Knowledge and experience with Regulation pertaining to Information Security such as DORA, Operational Resilience, UK CTP Regime, GDPR.
- Excellent written and oral communication skills.
- Demonstrated ability to perform under pressure and consistently meet program deadlines.
- An industry recognized certification such as CISSP, GIAC, CISM, ISO 27001 Lead Implementor/Auditor.
If this sounds like you, apply if you think we’re a good match.
Business Information Security Officer employer: Bloomberg New Energy Finance
Contact Detail:
Bloomberg New Energy Finance Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Business Information Security Officer
✨Tip Number 1
Network like a pro! Reach out to current or former employees at Bloomberg through LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.
✨Tip Number 2
Prepare for the interview by diving deep into Bloomberg's security programs. Show us that you understand their challenges and how your experience aligns with their needs. Tailor your examples to highlight your relevant skills!
✨Tip Number 3
Don’t just wait for the job to come to you! Apply directly through our website. It shows initiative and gives you a better chance of being noticed by the hiring team.
✨Tip Number 4
Follow up after your interview! A quick thank-you email reiterating your interest in the role can keep you fresh in their minds. Plus, it shows us that you're genuinely excited about the opportunity.
We think you need these skills to ace Business Information Security Officer
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the Business Information Security Officer role. Highlight your relevant experience in information security and how it aligns with the job description. We want to see how you can bring value to our team!
Showcase Your Skills: Don’t just list your qualifications; demonstrate them! Use specific examples from your past work that showcase your ability to manage cyber risks and lead security programs. We love seeing real-world applications of your skills.
Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use clear language and avoid jargon unless it's necessary. We appreciate a well-structured application that’s easy to read and understand.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, you’ll get to explore more about what we do at Bloomberg!
How to prepare for a job interview at Bloomberg New Energy Finance
✨Know Your Stuff
Make sure you have a solid grasp of the key technologies and regulations mentioned in the job description. Brush up on your knowledge of NIST CSF, ISO 27001, and the latest trends in cloud and network security. Being able to discuss these topics confidently will show that you're serious about the role.
✨Showcase Your Experience
Prepare specific examples from your past work that demonstrate your ability to manage cyber risks and lead complex projects. Think about times when you influenced stakeholders or improved security programs. This will help you illustrate your fit for the role effectively.
✨Build Relationships
Since the role involves fostering cross-functional relationships, be ready to discuss how you've successfully collaborated with different teams in the past. Highlight your communication skills and how you’ve navigated challenges in a global setting to achieve security goals.
✨Ask Insightful Questions
Prepare thoughtful questions about Bloomberg's current security initiatives and future plans. This shows your genuine interest in the company and the role, and it gives you a chance to assess if the company culture aligns with your values.