InfoSec Manager

InfoSec Manager

Full-Time 80000 - 100000 £ / year (est.) Home office (partial)
First Circle

At a Glance

  • Tasks: Lead InfoSec strategy and build a security team at a fast-growing NeoBank.
  • Company: Join First Circle, a profitable SME NeoBank backed by the World Bank Group.
  • Benefits: Flexible remote work, equity ownership, and comprehensive health insurance.
  • Other info: Dynamic culture focused on growth, problem-solving, and innovation.
  • Why this job: Make a real impact in a high-growth fintech environment with endless career opportunities.
  • Qualifications: Hands-on experience in building security functions at regulated fintechs or banks.

The predicted salary is between 80000 - 100000 £ per year.

First Circle is a fast-growing, profitable, credit-led SME NeoBank in the Philippines whose shareholders include the World Bank Group (IFC). Today, our Business Credit Line and Business Bank Accounts are used by thousands of SMEs to grow and run their business. Our product velocity has accelerated — in the next few months we’ll release SME Corporate Cards, Payroll, Invoices, and Solar Financing — redefining the SME NeoBank category through software, financial products, and exceptional risk models.

Our culture emphasises building, problem solving, ownership/responsibility, and personal & professional growth. We balance a collegiate atmosphere with free & direct communication which enables us to move very quickly and avoid politics or toxicity. Our team continues to level up quickly, necessary for business to compound more than 100% per year, which we achieve through individual growth and bar-raiser hiring.

This is a unique opportunity for a high growth individual to become the first dedicated security professional at a high-growth, regulated bank whose market leadership position lies in its technology. You will define strategy, priorities, and our security operating model aligned to business goals - reporting to the VP Engineering and supported in your development by our world-class CISO Board advisor.

As the company continues to grow you’ll have unparalleled opportunities for career growth and to build out our infosec team around you. Your first year is about building foundations, addressing primary risks, and ensuring the bar you set is consistently upheld by the wider technology organisation:

  • ISO 27001 certified. You own the certification from scoping to audit pass.
  • Implement external pen test & remediation. Every finding closed or formally risk-accepted.
  • MSSP/SOC live and producing alerts we act on. SLAs measured monthly. Escalation path drilled at least twice.
  • Engineering development processes aligned with security. Embed secure-by-design principles into technology and product development, working closely with engineering and DevOps teams.
  • Regulatory compliance. Design, implement, and maintain security policies, standards, and procedures aligned to global standards and local regulations: BSP circulars, EPFS and PPMI (payments) requirements, and PCI DSS scope.
  • Mitigate user & device threats. Define, assess, and upgrade the law of least privilege across users & devices. No unmanaged device touches production.
  • A risk register used monthly by the exec team and Board. Internal and external (eg. vendor, supply chain) risks. Tied to mitigation owners and dates.
  • Develop a strong culture & training practice. Phishing simulation, secure-coding standards, IR runbook drilled live at least once.
  • Tooling. Evaluate and implement security tools and technologies, optimising for a lean, scalable security stack. Oversee vulnerability management and remediation, ensuring regular scanning, prioritisation, and tracking of fixes.

What you own steady-state:

  • The strategy and roadmap with the exec team and Board Risk Committee.
  • The MSSP relationship.
  • Incident response.
  • Vulnerability management.
  • Third-party risk — particularly card processors, payment rails, KYC providers.
  • BSP cybersecurity engagement and PCI DSS scope where it applies.
  • Security culture — making it easier to do the right thing than the wrong thing.

About You:

  • You’ve built a security function before, hands-on. Not advised — built. At a regulated fintech, payments business or bank.
  • You’ve led a Sev-1 from page to post-mortem.
  • You’ve taken an organisation through ISO 27001 as the responsible owner, not a consultant on the sidelines.
  • You’ve stood up an MSSP — chosen the vendor, defined the use cases, tuned the alerts, fired one when it under-performed.
  • You’ve written IAM policy that survived contact with real engineers. Azure-native (that’s our stack).
  • You’re hands-on enough to read Terraform, open a PR, and debug events.
  • Certifications — CISSP, CISM, CRISC, or ISO 27001 Lead Implementer/Auditor are useful signals. They’re a tiebreaker, not the bar.

What this role is not:

  • Not a CISO inheriting a team — you’ll build it. Year 1 you may have one or two hires.
  • Not a paper-driven compliance role — we expect you in the codebase, in the cloud console, on the on-call rotation when it matters.
  • Not for someone who needs a clean SOC 2 starting point. We’re earlier than that, by design, and moving fast.

Benefits:

  • No fixed budget for this role, we hire globally and adjust offers based on experience and market rate.
  • Equity ownership in a 150%+ growing, profitable NeoBank with a market which supports a business 50-100× today’s size.
  • Flexibility around working hours and location. The role can be worked remotely, with the option to work from one of our offices in London, Manila, Singapore, Hong Kong & Belgrade.
  • Macbooks, private health insurance, training budgets and more!
  • Periodic travel to HQ in Southeast Asia.

InfoSec Manager employer: First Circle

First Circle is an exceptional employer that fosters a culture of innovation, collaboration, and personal growth, making it an ideal place for an InfoSec Manager to thrive. With unparalleled opportunities for career advancement in a fast-paced, regulated environment, employees benefit from flexible working arrangements, competitive compensation, and a commitment to professional development. Join us in redefining the SME NeoBank landscape while enjoying a supportive atmosphere that prioritises ownership and responsibility.
First Circle

Contact Detail:

First Circle Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land InfoSec Manager

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their products and challenges, especially in the InfoSec space. This will help you tailor your answers and show that you're genuinely interested in being part of their team.

✨Tip Number 3

Practice your technical skills! Since this role is hands-on, be ready to demonstrate your knowledge in security frameworks and tools. Mock interviews with friends or using online platforms can help you feel more confident.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re serious about joining our fast-growing team at First Circle.

We think you need these skills to ace InfoSec Manager

ISO 27001
Security Policy Development
Risk Management
Incident Response
Vulnerability Management
Third-Party Risk Assessment
Security Culture Development
Penetration Testing
Regulatory Compliance
Secure Coding Standards
Cloud Security (Azure)
IAM Policy Writing
MSSP Management
Technical Hands-On Skills
Communication Skills

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in building security functions, especially in regulated fintech or banking environments. We want to see how your skills align with our needs!

Showcase Your Hands-On Experience: We’re looking for someone who’s been in the trenches. Share specific examples of how you’ve led security initiatives, like taking an organisation through ISO 27001 or managing a Sev-1 incident. This is your chance to shine!

Be Clear and Concise: When writing your application, keep it straightforward. Use bullet points where possible to make your achievements stand out. We appreciate clarity and directness, just like our communication style!

Apply Through Our Website: Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for this exciting opportunity. We can’t wait to hear from you!

How to prepare for a job interview at First Circle

✨Know Your Stuff

Make sure you’re well-versed in InfoSec principles, especially ISO 27001. Be ready to discuss your hands-on experience with building security functions and leading incidents. They’ll want to hear about specific challenges you faced and how you overcame them.

✨Show Your Problem-Solving Skills

First Circle values problem-solving and ownership. Prepare examples of how you've tackled security issues in the past. Think about times when you had to make tough decisions or innovate under pressure, and be ready to share those stories.

✨Understand Their Culture

Familiarise yourself with First Circle’s culture of fast-paced growth and direct communication. Be prepared to discuss how you can contribute to a positive team environment and help build a strong security culture within the organisation.

✨Ask Smart Questions

Prepare insightful questions that show your interest in their security strategy and future plans. Inquire about their current security challenges or how they envision the InfoSec team evolving as the company grows. This demonstrates your proactive mindset and genuine interest in the role.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>