Information Security Specialist

Information Security Specialist

Full-Time 45000 - 55000 £ / year (est.) No working from home possible
Cboe

At a Glance

  • Tasks: Support enterprise-wide cyber risk management and governance activities, conduct risk assessments.
  • Company: Join a global team focused on enhancing cybersecurity practices and compliance.
  • Benefits: Opportunity to work with cutting-edge AI tools like Copilot and ChatGPT.
  • Other info: Experience with GRC tooling and security frameworks like NIST and ISO is essential.
  • Why this job: Contribute to protecting the organization’s assets and reputation through strong governance.
  • Qualifications: Bachelor's degree in Cybersecurity or related field; 2+ years in information security risk management.

The predicted salary is between 45000 - 55000 £ per year.

Requirements

  • Bachelor's degree in Cybersecurity, Computer Science, or related field.
  • 2+ years of experience in information security risk management or similar role.
  • Knowledge and expertise with a wide range of security/risk management governance, guidance, compliance concepts and documentation such as NIST 800-53, NIST Cybersecurity Framework (CSF), ISO or equivalent.
  • Experience using and administrating GRC tooling.
  • Proficient with Windows and Linux, including Active Directory and EntraID.
  • Strong analytical, good organizational, effective communication, and presentation skills.
  • Flexibility in work given and ability to actively research how to perform new tasks.
  • Proficient in using Microsoft Teams, Excel, PowerPoint, Word and AI tools (Copilot, ChatGPT and others).
  • Experience with GenAI coding assistance and leveraging AI to improve processes.
  • CISSP, CRISC, CISM or other related security certifications.

What the job involves

  • The Information Security Specialist is responsible for supporting enterprise-wide cyber risk management and governance activities.
  • This role requires a strong foundation in information technology and internal controls, along with proficiency in security frameworks and a solid understanding of cybersecurity risk management practices.
  • The individual will collaborate across global teams to assess risks, recommend and implement robust security controls, and contribute to the development and maintenance of information security policies and standards.
  • In this role, the Information Security Specialist will also support both local and global regulatory compliance efforts, including identifying control gaps and assisting in risk remediation activities.
  • Additionally, the position plays a key role in enhancing the efficiency and effectiveness of security processes through standardization, consistency, and continuous improvement initiatives.
  • This role contributes to the broader mission of the Information Security function by helping protect the organization’s people, assets, and reputation through strong governance, optimized controls, and scalable security practices.
  • Maintain assurance and governance activities related to organization-specific security compliance methodologies that demonstrate our security governance to management and other key stakeholders including regulators, auditors, and boards.
  • Develop and maintain security policies, procedures, and guidelines according to industry best practices and regulatory requirements.
  • Conduct regular security controls testing to evaluate the effectiveness of existing security systems and procedures and recommend improvements.
  • Conduct comprehensive risk assessments to identify potential risks in the organization’s IT infrastructure and oversee the lifecycle of any security risks, ensuring that remediation is agreed, effective, and timely.
  • Prepare regular reports on the organization’s cyber risk posture for presentation to senior management.
  • Foster strong partnerships and collaborate regularly with other departments communicating security issues, obtaining additional information as needed, and providing status of remediation to security management.
  • Assist with regulatory exams by obtaining documentation, drafting responses, and helping develop security action plans.
  • Stay current with the latest cybersecurity regulatory standards, trends, threats, and technologies, and provide recommendations for improvement.

Information Security Specialist employer: Cboe

This role is based in a dynamic global environment where you will collaborate across teams. The company prioritises continuous improvement in security processes and offers access to advanced AI tools for efficiency. Join a mission-driven team dedicated to safeguarding the organisation's integrity and compliance.

Cboe

Contact Details:

Cboe Recruitment Team

We think you need these skills to ace Information Security Specialist

Cybersecurity
Information Security Risk Management
NIST 800-53
NIST Cybersecurity Framework (CSF)
ISO Compliance
GRC Tooling Administration
Windows Administration