At a Glance
- Tasks: Lead global governance, risk, and compliance initiatives in a dynamic fintech environment.
- Company: Join Ebury, a fast-growing fintech leader focused on global business growth.
- Benefits: Enjoy competitive salary, mentorship, cutting-edge tech, and generous benefits.
- Other info: Work in central Madrid with excellent transport links and a collaborative team.
- Why this job: Shape the future of fintech while advancing your career in a supportive culture.
- Qualifications: 5+ years in Information Security with strong knowledge of regulations and risk management.
The predicted salary is between 70000 - 90000 £ per year.
Ebury helps ambitious businesses unlock global growth, and we take the same approach with our people. We encourage innovation and movement, collaboration and problem-solving, and foster an environment where everyone can feel they belong, are valued, supported and empowered to succeed. If you’re a collaborator who wants to help transform how businesses operate globally, get in touch - we’d love to discuss how Ebury can accelerate your career so you can shape the future.
Ebury is seeking a high-caliber Information Security & GRC Manager to spearhead our global governance, risk, and compliance initiatives. This role is for a seasoned professional who thrives on owning programs rather than just executing tasks. You will act as the primary architect of our security frameworks, ensuring our ISMS is audit-ready and serves as a strategic enabler for Ebury’s global expansion. You will be the bridge between technical security requirements and business risk, providing expert guidance on complex regulatory landscapes. This is an opportunity to be a strategic part of an experienced infosec team at a high-growth fintech scale-up.
What you’ll do
- Governance & Compliance (BAU)
- GRC Strategy & Architecture: Design, implement, and mature our global GRC framework, collaborating with other teams to align it with ISO 27001, NIST, GDPR, and DORA.
- Risk Management Lifecycle: Own the risk assessment process - you will lead the quantification and communication of risk to business stakeholders to drive informed decision-making.
- Audit Ownership: Lead and manage external audits as the primary liaison. This includes overseeing the remediation of findings and ensuring we remain continuously compliant across multiple jurisdictions.
- TPRM Leadership: Mature our Third-Party Risk Management program. You will define the standards for vendor security and ensure high-impact partners meet Ebury’s rigorous risk appetite.
- Regulatory Horizon Scanning: Proactively monitor the evolving fintech regulatory landscape (e.g., EU AI Act, NIS2, regional cyber laws) and design the roadmaps to ensure Ebury remains ahead of the curve.
- GRC Automation: Lead the selection and full-scale implementation of automated GRC platforms to establish automation and robustness in GRC operations.
- Strategic Advisory: Act as a high-level consultant for new product launches and international expansions, ensuring 'Security by Design' is baked into strategic business moves.
- Cultural Leadership: Design and champion advanced security awareness programs that focus on shifting organizational behaviour through metrics-driven insights.
What you’ll need
- 5+ years of experience in Information Security, GRC, or Risk Management roles
- Strong knowledge of information security standards and regulations (ISO 27001, SOC 2, GDPR, FCA/DORA, NIST, etc.).
- Analytical skills: Ability to assess a 'Security Exception', experience with regulatory audits and working with financial regulators.
- Hands-on experience implementing risk management processes, control frameworks, and security metrics.
- Familiarity with GRC or risk platforms (e.g. OneTrust).
- Team player with exceptional communication and stakeholder management skills.
- Industry certifications such as CISSP, CRISC, CISA, or ISO 27001. Lead Implementer/Auditor are preferred.
Why Ebury?
- Competitive Starting Salary with an annual discretionary bonus that truly rewards your performance from day one.
- Dedicated Mentorship: Learn directly from experienced managers who are invested in your success.
- Cutting-Edge Technology: Leverage state-of-the-art tailor-made tools and systems that enable you to perform at your best.
- Clear, Accelerated Career Progression: Defined pathways to leadership and specialist roles within Ebury.
- Dynamic & Supportive Culture: Work in a collaborative environment where teamwork and personal growth are prioritized.
- Generous Benefits Package: Access competitive benefits tailored to your location, which typically include health care and social benefits.
- Central Madrid Office: A fantastic location with excellent transport links.
Ready to launch your career with a global FinTech? Click the ‘Apply’ Today and discover your potential at Ebury!
About us Ebury delivers sophisticated, integrated solutions — business accounts, hedging, and financing — on a single platform with a seamless workflow. Our success is built on a simple premise and singular purpose: To help businesses operate and scale globally. Since its founding in 2009, Ebury has always been a fast-growing leader in fintech. Today, we bring together 1,800+ Eburians across nearly 70 cities and we’re always looking to add to our team. At the heart of our offering is a proprietary platform, purpose-built to help businesses seamlessly streamline and manage global cash flow. We focus on continuous product evolution and innovation to build the infrastructure for borderless growth and help our clients scale at every stage. The opportunities at Ebury are as diverse as our people, ranging from business development to engineering roles across our tech pillars. We believe in inclusion. We stand against discrimination in all forms and are against the intolerance of differences that makes us a modern and successful organisation. At Ebury, you can be whoever you want to be and still feel a sense of belonging no matter your story.
Senior Information Security Manager in London employer: Ebury
Contact Detail:
Ebury Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Information Security Manager in London
✨Tip Number 1
Network like a pro! Reach out to current or former Ebury employees on LinkedIn. Ask them about their experiences and any tips they might have for landing a role here. Personal connections can make all the difference!
✨Tip Number 2
Prepare for the interview by understanding Ebury's mission and values. Think about how your skills in information security align with their goals. Show them you’re not just a fit for the role, but for the company culture too!
✨Tip Number 3
Practice your storytelling! Be ready to share specific examples of how you've tackled challenges in previous roles. This will help you demonstrate your problem-solving skills and experience in a relatable way.
✨Tip Number 4
Don’t forget to follow up after your interview! A quick thank-you email can leave a lasting impression and show your enthusiasm for the role. Plus, it’s a great chance to reiterate why you’d be a perfect fit for Ebury.
We think you need these skills to ace Senior Information Security Manager in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV reflects the skills and experiences that align with the Senior Information Security Manager role. Highlight your experience with GRC frameworks, risk management, and any relevant certifications to catch our eye!
Craft a Compelling Cover Letter: Use your cover letter to tell us why you’re passionate about information security and how you can contribute to Ebury’s mission. Share specific examples of past achievements that demonstrate your ability to lead and innovate in this space.
Showcase Your Collaboration Skills: Since we value teamwork, make sure to highlight instances where you've successfully collaborated with cross-functional teams. We want to see how you bridge technical requirements with business needs!
Apply Through Our Website: We encourage you to apply directly through our website for the best chance of getting noticed. It’s the quickest way for us to receive your application and start the conversation about your future at Ebury!
How to prepare for a job interview at Ebury
✨Know Your Stuff
Make sure you brush up on your knowledge of information security standards and regulations like ISO 27001, GDPR, and NIST. Be ready to discuss how you've applied these in your previous roles, as this will show that you're not just familiar with the theory but can also implement it effectively.
✨Showcase Your Strategic Thinking
Ebury is looking for someone who can own programs and lead initiatives. Prepare examples of how you've designed or improved governance frameworks or risk management processes in the past. Highlight your ability to think strategically and how you've contributed to business growth through security measures.
✨Be a Team Player
Collaboration is key at Ebury. Think of instances where you've worked closely with other teams to achieve a common goal, especially in cross-functional projects. Emphasise your communication skills and how you've managed stakeholder relationships to drive security initiatives forward.
✨Stay Ahead of the Curve
Ebury values proactive monitoring of the regulatory landscape. Be prepared to discuss recent changes in fintech regulations and how they might impact the business. Show that you're not just reactive but can anticipate challenges and design solutions to keep the company compliant and secure.