At a Glance
- Tasks: Lead information security initiatives and support compliance across Europe, U.K., Australia, and New Zealand.
- Company: Join Corpay, a global leader in innovative commercial payment solutions.
- Benefits: Competitive salary, inclusive culture, and opportunities for professional growth.
- Why this job: Make a real impact on cybersecurity while working with cutting-edge technologies.
- Qualifications: 10+ years in information security and strong communication skills required.
- Other info: Dynamic, fast-paced environment with a focus on diversity and inclusion.
The predicted salary is between 48000 - 72000 £ per year.
Your role is responsible for monitoring, reacting and reporting on information security events as well as supporting the management of security operations activities within the core business lines in the U.K., Europe, Australia and New Zealand. You will provide governance and support for regulatory and industry compliance requirements, facilitate audit activities and direct remediation efforts to ensure compliance and security best practices, and serve as a trusted security advisor.
Role and Responsibilities
- The business information security officer (BISO) serves as a trusted security advisor to lines of business and IT leadership.
- The BISO understands security risks and technologies and is able to effectively communicate them to business and IT units.
- The BISO works in tandem with the business across multiple services and platforms to address risk, while advising business leaders to ensure they are making decisions with security in mind.
- The BISO is an advanced role supporting the cybersecurity program, providing leadership, executive support, and strategic and tactical guidance for a world-class cybersecurity program supporting enterprise security initiatives.
- Serve as a trusted advisor to business unit and IT leadership.
- Act as a liaison to ensure cybersecurity practices are built into business unit initiatives for the entire lifecycle.
- Work closely with security leadership to instill cybersecurity policies and practices throughout business units to address security operations, incident response, application security and infrastructure.
- Be actively informed and engaged in security projects across the business.
- Provide disaster recovery and business continuity planning advice when working with leaders for business and cybersecurity resiliency.
- Enforce the strong security culture set forth by the CISO, ensuring uniformity across security leadership, business units and employees.
- Advise business units on enterprise-wide people, process and technology security recommendations.
- Maintain up-to-date knowledge related to security threats, vulnerabilities and mitigations set forth to reduce the attack surface; circulate this knowledge through the business units.
- Identify and document threats and vulnerabilities that may impact the business and address them regularly with business units.
- Provide motivation to business units to adopt cybersecurity controls.
- Build relationships with business units to deliver security-by-design controls incorporated into projects, architecture, infrastructure and applications.
- Stay abreast of new laws, regulations and standards, and assess their impact to the business.
- Support the effort to maintain security requirements for regulatory bodies such as PCI, SOX, GDPR, and ISO standards.
- Lead the effort to ensure appropriate monitoring is in place and react quickly to security incidents using multiple sources and tools (e.g. SIEMs, vulnerability scans Firewalls and IPS, etc.).
- Support and facilitate the development of an information security risk management program and knowledgeable in various risk assessment methodologies within the line of businesses.
- Perform other duties as assigned.
Qualifications and Education Requirements
- At least 10+ years of technical information security experience including but not limited to vulnerability assessment, intrusion detection, incident response, forensics, system audit, firewall management and support to compliance audits (e.g. PCI-DSS, SOX, ISO27001, etc.).
- At least 5 years’ experience working with business leadership and enterprise projects.
- Experience managing projects and deliverables in a complex matrix.
- Must understand and demonstrate following security technology and concepts: File Integrity Monitoring, Firewalls and IPS functionality, server hardening, security incident qualifiers, risk assessment ranking, application security concepts and protocols, network level security concepts, data encryption standards and implementation, cloud security and auditing.
- Minimum of 3 years of IT and/or Information Security compliance and audit support (e.g. PCI DSS, SOX, SSAE18, GDPR, etc.).
- High level of integrity, trustworthiness and confidence, and able to represent the company and security leadership with the highest level of professionalism.
- Bachelor’s degree in IT or Information Security, CISSP, CRISC, CISA, or other relevant certification.
Additional Notes
- Ideal candidates will be a self-starter, can manage multiple projects/initiatives at once, with experience in multiple information security management and monitoring tools as well as navigating a variety of industry and international regulatory frameworks.
- Work in fast-paced highly technical environment.
- Strong verbal and written communication skills with the ability to effectively communicate and articulate information security and compliance related topics and strategies to both peers and senior leadership.
Corpay is dedicated to encouraging a supportive and inclusive culture among our employees. It is within our best interest to promote diversity and eliminate discrimination in the workplace. We seek to ensure that all employees and job applicants are given equal opportunities.
Information Security Lead, Europe employer: Corpay
Contact Detail:
Corpay Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Lead, Europe
✨Tip Number 1
Network like a pro! Reach out to your connections in the industry, attend relevant events, and engage with professionals on platforms like LinkedIn. We all know that sometimes it’s not just what you know, but who you know that can help you land that dream job.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their security practices and be ready to discuss how your experience aligns with their needs. We want you to shine, so practice common interview questions and have your own questions ready to show your interest!
✨Tip Number 3
Showcase your expertise! Create a portfolio or a personal website where you can highlight your projects, certifications, and any relevant achievements. This gives potential employers a tangible way to see what you bring to the table, and we think it’s a great way to stand out.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in being part of our team. So, get those applications in and let’s make it happen!
We think you need these skills to ace Information Security Lead, Europe
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in information security. We want to see how your skills align with the role of Information Security Lead, so don’t hold back on showcasing your relevant achievements!
Showcase Your Communication Skills: Since this role involves acting as a trusted advisor, it’s crucial to demonstrate your ability to communicate complex security concepts clearly. Use examples from your past experiences where you effectively communicated with both technical and non-technical stakeholders.
Highlight Your Technical Expertise: We’re looking for someone with a solid background in various security technologies and compliance standards. Be sure to mention your experience with tools like SIEMs, firewalls, and any relevant certifications you hold that relate to the job description.
Apply Through Our Website: To make sure your application gets the attention it deserves, apply directly through our website. This way, we can easily track your application and ensure it reaches the right people in our team!
How to prepare for a job interview at Corpay
✨Know Your Stuff
Make sure you brush up on your technical knowledge related to information security. Familiarise yourself with key concepts like vulnerability assessment, incident response, and compliance standards such as PCI-DSS and GDPR. Being able to discuss these topics confidently will show that you're the right fit for the role.
✨Communicate Effectively
As a BISO, you'll need to communicate complex security concepts to both technical and non-technical stakeholders. Practice explaining your past experiences in a way that's easy to understand. Use examples that highlight your ability to bridge the gap between IT and business leadership.
✨Show Your Leadership Skills
This role requires strong leadership abilities. Be prepared to discuss how you've led security initiatives in the past, managed projects, or influenced business decisions. Highlight any experience you have in building relationships with business units to ensure security is integrated into their processes.
✨Stay Current
The cybersecurity landscape is always changing, so it's crucial to stay informed about the latest threats and regulations. Mention any recent developments you've followed or training you've undertaken. This shows your commitment to continuous learning and your proactive approach to security.