At a Glance
- Tasks: Support cyber risk management and governance activities while enhancing security processes.
- Company: Join a leading financial infrastructure provider with a focus on innovation and development.
- Benefits: Competitive salary, career growth opportunities, and a supportive work environment.
- Other info: Enjoy a four-day in-office work model and access to leadership programs.
- Why this job: Make a real impact in cybersecurity while collaborating with global teams.
- Qualifications: Bachelor's degree in Cybersecurity or related field and 2+ years of experience.
The predicted salary is between 63000 - 77000 £ per year.
We provide the financial infrastructure that powers the global economy.
As a leading provider of market infrastructure and tradable products, Cboe delivers cutting-edge trading, clearing and investment solutions to market participants around the world.
We're building meaningful ways to support professional and personal development while strengthening the trust we've earned as a global market leader.
As champions of internal mobility and access to opportunity, we encourage our people to "go for it" and equip our managers with the training to coach their teams to the next level.
We strive to provide employees a safe space to network, share ideas and create opportunities.
To support strong partnership and team connection, this role follows a four day in office work model.
Role Overview The Information Security Specialist is responsible for supporting enterprise-wide cyber risk management and governance activities.
This role requires a strong foundation in information technology and internal controls, along with proficiency in security frameworks and a solid understanding of cybersecurity risk management practices.
The individual will collaborate across global teams to assess risks, recommend and implement robust security controls, and contribute to the development and maintenance of information security policies and standards.
In this role, the Information Security Specialist will also support both local and global regulatory compliance efforts, including identifying control gaps and assisting in risk remediation activities.
Additionally, the position plays a key role in enhancing the efficiency and effectiveness of security processes through standardization, consistency, and continuous improvement initiatives.
This role contributes to the broader mission of the Information Security function by helping protect the organization's people, assets, and reputation through strong governance, optimized controls, and scalable security practices.
Your responsibilities will be: Maintain assurance and governance activities related to organization-specific security compliance methodologies that demonstrate our security governance to management and other key stakeholders including regulators, auditors, and boards.
Develop and maintain security policies, procedures, and guidelines according to industry best practices and regulatory requirements.
Conduct regular security controls testing to evaluate the effectiveness of existing security systems and procedures and recommend improvements.
Conduct comprehensive risk assessments to identify potential risks in the organization's IT infrastructure and oversee the lifecycle of any security risks, ensuring that remediation is agreed, effective, and timely.
Prepare regular reports on the organization's cyber risk posture for presentation to senior management.
Foster strong partnerships and collaborate regularly with other departments communicating security issues, obtaining additional information as needed, and providing status of remediation to security management.
Assist with regulatory exams by obtaining documentation, drafting responses, and helping develop security action plans.
Stay current with the latest cybersecurity regulatory standards, trends, threats, and technologies, and provide recommendations for improvement.
The ideal candidate has Bachelor's degree in Cybersecurity, Computer Science, or related field. 2+ years of experience in information security risk management or similar role.
Knowledge and expertise with a wide range of security/risk management governance, guidance, compliance concepts and documentation such as NIST 800-53, NIST Cybersecurity Framework (CSF), ISO or equivalent.
Proficient with Windows and Linux, including Active Directory and Entra ID.
Proficient in using Microsoft Teams, Excel, Power Point, Word and AI tools (Copilot, Chat GPT and others).
Experience with Gen AI coding assistance and leveraging AI to improve processes.
CISSP, CRISC, CISM or other related security certifications.
We're investing deeply in leadership programs and career development initiatives that ensure everyone has an equal chance to succeed.
Learn more about life at Cboe on our website and Linked In.
Equal Employment Opportunity We're proud to be an equal opportunity employer do not discriminate against any employee or applicant for employment based on any legally protected characteristic, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, or veteran status.
The anticipated base salary range for this role is $76,500-$99,000, with actual compensation determined by job‐related factors such as skills, relevant experience, education, internal alignment, and location.#Kansas City, MOType: Full time
Information Security Specialist- Permanent Role in London employer: Cboe Exchange
Cboe Global Markets is an exceptional employer that prioritises the professional and personal development of its employees, fostering a collaborative and innovative work culture. With a commitment to internal mobility and a four-day in-office work model, employees are empowered to share ideas and pursue growth opportunities while contributing to the security of global financial markets. Located in vibrant London, the company offers a supportive environment where individuals can thrive and make a meaningful impact in the field of information security.