At a Glance
- Tasks: Lead security initiatives and implement robust controls in a fast-paced fintech environment.
- Company: Join an innovative FinTech revolutionising global money movement with cutting-edge technology.
- Benefits: Enjoy flexible working with 1-2 days in the office and competitive salary.
- Why this job: Make a real impact on cybersecurity while shaping the future of payments.
- Qualifications: Experience in Information Security, GRC, and cloud security, preferably in a tech start-up.
- Other info: Be part of a small team, reporting directly to the Head of Security.
The predicted salary is between 75000 - 85000 £ per year.
An industry leading FinTech who is revolutionizing how the world moves money, is looking for an Information Security Lead to play a pivotal role in embedding robust security controls, policies, and processes across their rapidly growing organisation. This is an exciting opportunity for an experienced Information Security Lead to enhance their cybersecurity posture, implement cutting-edge strategies, analyse potential breaches, and ensure compliance within a dynamic fintech environment. You'll be instrumental in guiding their engineering teams on application security and championing security by design across our entire technology stack. You will report directly into the Head of Security, in a two person team, so you will have lots of ability to influence what they are doing and have exposure to all areas within security.
The Information Security Lead's responsibilities include:
- Contributing to building world-class security practices and controls within a high-growth financial technology business shaping the future of payments.
- Conducting vulnerability assessments, leading external penetration testing, and performing risk analysis to proactively identify weaknesses in our applications, systems, and networks.
- Developing and maintaining comprehensive security policies, processes, procedures, and documentation.
- Championing a 'security by design' ethos and leading threat modelling activities across our innovative product suite.
- Driving the incident response planning and execution process in close collaboration with key stakeholders across the business.
- Partnering effectively with Engineering, IT, and business teams to implement and continuously enhance our security measures.
- Ensuring strict compliance with relevant regulatory frameworks, including GDPR, ISO 27001, CCPA, and other pertinent standards.
The ideal Information Security Lead will have experience with the following:
- Proven experience in the Information and Cyber Security space, with a strong focus on Governance, Risk, and Compliance (GRC), ideally gained within a high-growth technology business.
- A broad understanding of cloud and application security, as well as infrastructure and network security, particularly within AWS environments.
- Hands-on experience with ISO 27001 or SOC 2 implementations and ongoing maintenance.
- Knowledge of payment security standards such as PCI DSS.
- Start-up or FinTech experience.
This is an exceptional opportunity to be a key security leader within a well-funded and rapidly expanding fintech company with a clear vision to transform global payments. If you are a proactive and knowledgeable security professional ready to make a significant impact, please apply!
Contact Detail:
Burns Sheehan Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Lead
✨Tip Number 1
Network with professionals in the FinTech and cybersecurity sectors. Attend industry events, webinars, or local meetups to connect with others who may have insights into the company or role. Building relationships can often lead to referrals or insider information that can give you an edge.
✨Tip Number 2
Familiarise yourself with the latest trends and technologies in information security, particularly those relevant to AWS and GRC. Being able to discuss current challenges and solutions in your interviews will demonstrate your expertise and passion for the field.
✨Tip Number 3
Prepare to discuss specific examples of how you've implemented security measures in previous roles. Highlight your experience with vulnerability assessments, incident response, and compliance frameworks like ISO 27001 or PCI DSS to showcase your hands-on knowledge.
✨Tip Number 4
Research the company's culture and values, especially their approach to security and innovation. Tailoring your conversation to align with their mission can help you stand out as a candidate who is not only qualified but also a good fit for their team.
We think you need these skills to ace Security Lead
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience in Information and Cyber Security, particularly focusing on Governance, Risk, and Compliance (GRC). Include specific examples of your work with AWS environments and any relevant certifications like ISO 27001.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for cybersecurity and your understanding of the fintech landscape. Mention how your skills align with the responsibilities listed in the job description, such as conducting vulnerability assessments and championing security by design.
Highlight Relevant Experience: In your application, emphasise your hands-on experience with security standards like PCI DSS and your involvement in incident response planning. This will demonstrate your capability to contribute effectively to the company's security posture.
Showcase Soft Skills: Don't forget to mention your ability to collaborate with engineering and IT teams. Highlight your communication skills and how you can influence security practices across the organisation, as this is crucial for the role.
How to prepare for a job interview at Burns Sheehan
✨Showcase Your GRC Expertise
Make sure to highlight your experience in Governance, Risk, and Compliance (GRC) during the interview. Be prepared to discuss specific examples of how you've implemented GRC frameworks in previous roles, especially within a high-growth technology environment.
✨Demonstrate Cloud Security Knowledge
Since the role involves AWS environments, brush up on your cloud security knowledge. Be ready to explain how you would secure applications and infrastructure in the cloud, and share any relevant experiences you've had with AWS security best practices.
✨Prepare for Technical Questions
Expect technical questions related to vulnerability assessments, penetration testing, and incident response. Review common scenarios and be ready to discuss how you would approach these situations, showcasing your problem-solving skills and technical expertise.
✨Emphasise Collaboration Skills
This role requires effective partnership with various teams. Prepare to discuss how you've successfully collaborated with engineering, IT, and business teams in the past to enhance security measures. Highlight your ability to communicate complex security concepts to non-technical stakeholders.