At a Glance
- Tasks: Lead global information security strategy and ensure data integrity at GLAS.
- Company: Join GLAS, a top-tier provider of institutional debt administration services.
- Benefits: Enjoy competitive salary, 28 days leave, private medical insurance, and gym discounts.
- Other info: Be part of a collaborative team with excellent career development opportunities.
- Why this job: Shape the future of cybersecurity in a dynamic, global environment.
- Qualifications: Proven experience in cybersecurity leadership and knowledge of ISO 27001 and GDPR.
The predicted salary is between 100000 - 120000 ÂŁ per year.
Location: London
Salary: Negotiable
Hybrid Working
About GLAS
GLAS is an international provider of institutional debt administration services, serving lenders, borrowers, issuers, and advisers offering a global platform across Loan Agency and related services, Capital Markets and Restructuring.
GLAS’ vision is to be recognised as the best-in-class independent, non-creditor, conflict-free provider of institutional debt administration services, enabling global clients and counterparties to achieve successful outcomes on their transactions.
The business currently comprises c.500 employees who deliver a solution-based, innovative service, ensuring GLAS is the preferred global partner of choice. GLAS has a blue-chip customer base developed over many years; select clients include Apollo, Blackstone, CVC, Deutsche Bank and Goldman Sachs. GLAS has been recognised as the premier independent provider of loan agency and bond trustee services with a portfolio of over $800 billion assets across its global platform. The company is headquartered in London with offices in Paris, Frankfurt, Madrid, New York, New Jersey, Sydney, Melbourne, Brisbane, Singapore, Dubai, Hong Kong, Milan and Rome.
Role Summary
The Chief Information Security Officer (CISO) at GLAS is responsible for leading the global information security strategy, governance, and operations to ensure the confidentiality, integrity, and availability of GLAS systems and data. As a senior executive, the CISO shapes security initiatives aligned with the firm’s cloud-first strategy, regulatory compliance (including ISO 27001 and DORA), and business continuity objectives. The role demands technical acumen, strong leadership, and close collaboration with technology, risk, operations, legal, and executive stakeholders globally.
Key Responsibilities
- Strategic Leadership
- Own and evolve GLAS’s global Information Security Management System (ISMS) in line with ISO 27001, Cyber Essentials, and DORA requirements.
- Direct global security governance and risk management initiatives, including oversight of security KPIs, KRIs, and CAPA tracking.
- Security Operations
- Lead threat detection, prevention, and response, including management of security incidents, red-teaming, phishing simulations, and vulnerability remediation.
- Oversee outsourced SOC operations, SIEM tools, and endpoint protection, including tools such as SentinelOne, Cisco Meraki, and Microsoft Defender.
- Compliance and Audit
- Manage internal and external audits (ISO 27001, ISO 14001, SOC 1) and address audit findings and recommendations.
- Ensure adherence to legal and regulatory cybersecurity standards, especially DORA, by maintaining policies, procedures, and audit trails.
- Security Architecture and Risk
- Evaluate and approve security design for new technologies and third-party services (e.g., SWIFT, SaaS applications).
- Oversee asset classification, secure configurations, and vendor risk assessments.
- Training and Awareness
- Champion security awareness and behavioural change initiatives such as “escape room” training, phishing exercises, and ongoing staff education.
- Business Continuity and Crisis Management
- Collaborate with the Resilience team and participate in CMT (Crisis Management Team) to ensure alignment between security, DR, and BCP planning.
Skills and Experience
- Proven experience as a CISO or senior cybersecurity leader in financial services or regulated environments.
- In-depth knowledge of ISO 27001, NIST, DORA, GDPR, and related frameworks.
- Familiarity with global risk management, business continuity, and cyber resilience practices.
- Strong understanding of enterprise IT, cloud environments (Azure preferred), network security, and identity management.
- Experience managing cross-border teams, external vendors, and regulatory bodies.
- Demonstrated ability to handle complex incidents and lead through crisis situations.
Qualifications
- Bachelor’s or Master’s degree in Information Security, Computer Science, or a related field.
- Professional certifications such as CISSP, CISM, CISA, or ISO 27001 Lead Implementer/Auditor.
- Strong leadership, communication, and stakeholder engagement skills.
Benefits
- Competitive base salary + bonus
- 28 days annual leave + bank holidays
- Private medical insurance & pension
- Life insurance
- Employee Assistance Programme (EAP)
- Eye care support
- Gym membership discounts
- Ongoing career development and study support
Chief Information Security Officer (CISO) in London employer: GLAS
Contact Detail:
GLAS Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Chief Information Security Officer (CISO) in London
✨Tip Number 1
Network like a pro! Reach out to your connections in the cybersecurity field, especially those who work at GLAS or similar companies. A friendly chat can sometimes lead to insider info about job openings or even a referral.
✨Tip Number 2
Prepare for interviews by brushing up on your knowledge of ISO 27001 and DORA. Be ready to discuss how you would implement security strategies that align with GLAS’s cloud-first approach. Show them you’re the perfect fit!
✨Tip Number 3
Don’t just wait for job postings! Keep an eye on GLAS’s website and apply directly through it. This shows initiative and gives you a better chance of being noticed by the hiring team.
✨Tip Number 4
Stay updated on the latest trends in cybersecurity. Being knowledgeable about current threats and solutions will not only help you in interviews but also demonstrate your passion for the field.
We think you need these skills to ace Chief Information Security Officer (CISO) in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the CISO role. Highlight your experience in cybersecurity, especially in financial services, and showcase your knowledge of ISO 27001 and DORA. We want to see how your skills align with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're the perfect fit for GLAS. Share specific examples of your leadership in security initiatives and how you've tackled challenges in previous roles. We love a good story!
Showcase Your Technical Acumen: In your application, don’t shy away from discussing your technical skills. Mention your familiarity with tools like SentinelOne and Microsoft Defender, and any experience you have with cloud environments. We’re looking for someone who can hit the ground running!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re genuinely interested in joining the GLAS team!
How to prepare for a job interview at GLAS
✨Know Your Stuff
Make sure you brush up on your knowledge of ISO 27001, DORA, and other relevant frameworks. Be ready to discuss how you've applied these in previous roles, especially in financial services or regulated environments.
✨Showcase Your Leadership Skills
As a CISO, you'll need to demonstrate strong leadership. Prepare examples of how you've led teams through complex incidents or crises, and how you've collaborated with various stakeholders to achieve security objectives.
✨Understand the Business
GLAS is all about providing top-notch debt administration services. Familiarise yourself with their business model and key clients. This will help you articulate how your security strategies can align with their goals and enhance their operations.
✨Prepare for Scenario Questions
Expect to face scenario-based questions that test your problem-solving skills. Think about potential security threats and how you would handle them, particularly in a cloud-first environment. This will show your proactive approach to security management.