Head of Information Security (HoIS)
Head of Information Security (HoIS)

Head of Information Security (HoIS)

Full-Time 72000 - 108000 £ / year (est.) No home office possible
Kroo Bank

At a Glance

  • Tasks: Lead our IT security strategy and protect digital data from threats.
  • Company: Join Kroo Bank, a forward-thinking fintech with big ambitions.
  • Benefits: Enjoy generous leave, mental health support, and top-notch equipment.
  • Why this job: Make a real impact in a fast-paced, innovative environment.
  • Qualifications: Senior leadership experience in information security within regulated financial services.
  • Other info: Hybrid working model with opportunities for personal and professional growth.

The predicted salary is between 72000 - 108000 £ per year.

At Kroo Bank, we are building a better bank from the ground up. One that puts customers first, treats money responsibly, and uses technology to make everyday banking simpler, fairer and more transparent. We are a fully regulated UK bank, backed by long-term investors, with a growing customer base and big ambitions. We move fast, think carefully, and hold ourselves to the highest standards, whether that is how we engage with our customers, build products, manage risk, or look after our people.

Job Overview

Drive our IT security strategy and implementation forward whilst protecting the business from security threats against unauthorised disruption or destruction of digital data. Direct strategy, operations and product development for the protection of the enterprise information assets and manage the program of delivery. The scope of responsibility will encompass security awareness, security operations and applications and infrastructure, including the policies and procedures which apply.

Responsibilities

  • Managing the daily operation and implementation of the information security strategy
  • Developing and maintaining a forward looking security roadmap covering cloud, mobile, AI, and software platforms
  • Collaborating with the technology leadership to deliver new security technology approaches and implementing next generation solutions and controls
  • Ensuring secure configuration and continuous compliance across IaaS, PaaS, and SaaS environments
  • Conducting a continuous assessment of current security practices and systems and identifying areas for improvement
  • Performing security audits and risk assessments and reporting on ways to minimise threats and security exposure
  • Owning the Information Security Management System (ISMS) and maintain ISO 27001 certification maintenance
  • Ensuring compliance and governance with applicable regulations
  • Collaborating with operational teams to develop, implement and test business continuity plans to ensure service is continuous when a change programme is introduced, or a security breach occurs or in the event that the disaster recovery plan needs to be triggered
  • Protecting the intellectual property of the organisation at all times
  • Monitoring security vulnerabilities and hacking threats in network and host systems
  • Leading security operations (including Managed SOC), threat intelligence, detection, and response capabilities
  • Defining KPIs and KRIs to measure security maturity and providing regular security reporting to Executive and Board level stakeholders
  • Managing and developing the information security team
  • Championing and educating the organisation about the latest security strategies and technologies
  • Managing the IT security budget and communicating this with the appropriate parties

Requirements

  • Significant senior leadership experience in information security within a FCA and PRA regulated UK bank, fintech, or other regulated financial services organisation, with demonstrated engagement on CBEST matters (including oversight of threat led penetration testing) at Board Risk Committee level
  • Demonstrable experience achieving and maintaining ISO/IEC 27001 certification
  • Strong background in software application security and mobile security
  • Experience implementing and improving DevSecOps processes in cloud native (AWS or GCP) environments
  • Knowledge of AI/ML security risks and governance frameworks like ISO 42001 or NIST AI RMF
  • Experience leading security operations, incident response, and threat management
  • Ability to work collaboratively with the 2nd line of defence to ensure the Bank remains within risk appetite
  • Ability to work with team members at all levels from Software Engineers & IT through to board level

Benefits

At our cutting-edge fintech company, we know that attracting and retaining the best talent means offering top-notch benefits that help our employees thrive both in and outside of work. Check out what we currently offer:

  • Generous holiday time: 25 days annual leave, 8 bank holidays, 1 Kroo bank holiday (June 24th), and 1 day off during the week of your birthday
  • Personal days: We know that life can be unpredictable, so we offer 3 personal days to use as needed
  • Employer-sponsored volunteer program: We are passionate about giving back to our community, and we support our employees in doing the same with up to 4 hours per month of employer-sponsored volunteer time
  • Mental health support: We care about the mental health of our team members and offer access to Spill, our mental health support partner
  • Workplace pension: We want you to feel secure about your future, so we offer a workplace pension with a 5% employee contribution and a 3% employer top-up
  • Top-notch equipment: We provide top-of-the-line equipment necessary for smooth hybrid work, including a MacBook laptop. Additionally, we also offer support in establishing your home office by contributing towards your setup if required
  • Modern office: When you are in the office, you will enjoy access to our modern, bustling workspace in Farringdon (Central London)
  • Cycle to Work scheme: We encourage sustainable transportation with our Cycle to Work scheme
  • Electric Car scheme: We are committed to reducing our carbon footprint, and our Electric Car scheme makes it easy for our employees to do the same
  • Enhanced parental leave: We know that family comes first, and we offer an enhanced parental leave policy to support our employees in starting and growing their families
  • Room for growth: As a fast-paced, high-growth start-up, we are dedicated to providing our employees with room to grow and excel
  • You get full healthcare for you and your nuclear family via Vitality

Hybrid Working

At Kroo Bank, we have a hybrid policy that gives both individuals and teams a lot of freedom when it comes to using the office space to boost productivity. Our London office is a great resource when used effectively. So, employees who can occasionally come to the office are a good fit for how we work right now. Keep in mind that this job involves working from Monday to Friday, with a mix of remote and office work, so you won’t need to be on-site all the time.

Diversity and Inclusion

We wholeheartedly uphold our commitment to fostering a diverse and inclusive workplace. Every employee is highly regarded, respected, and supported without any form of judgement or prejudice. We consider Diversity, Equality, and Inclusion as fundamental pillars guiding our path in all aspects of our bank. We also ensure that reasonable adjustments are made available to all candidates throughout the recruitment process.

Head of Information Security (HoIS) employer: Kroo Bank

At Kroo Bank, we pride ourselves on being an exceptional employer that prioritises employee well-being and professional growth. Our modern office in Farringdon, London, offers a vibrant work environment complemented by generous benefits such as enhanced parental leave, mental health support, and a commitment to diversity and inclusion. With a strong focus on innovation and collaboration, we empower our team members to thrive in their careers while contributing to our mission of building a better bank.
Kroo Bank

Contact Detail:

Kroo Bank Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Head of Information Security (HoIS)

✨Tip Number 1

Network like a pro! Reach out to your connections in the fintech and banking sectors. Attend industry events or webinars, and don’t be shy about introducing yourself. You never know who might have the inside scoop on job openings!

✨Tip Number 2

Prepare for interviews by researching Kroo Bank’s values and recent projects. Tailor your responses to show how your experience aligns with their mission of putting customers first and using tech to simplify banking. Be ready to discuss your vision for information security!

✨Tip Number 3

Showcase your expertise! Bring examples of your past work in information security, especially any achievements related to ISO 27001 or cloud security. Use these to demonstrate how you can drive their IT security strategy forward.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re serious about joining the team at Kroo Bank. Let’s get you that interview!

We think you need these skills to ace Head of Information Security (HoIS)

Information Security Strategy
ISO/IEC 27001 Certification
Cloud Security (AWS or GCP)
DevSecOps Processes
Software Application Security
Mobile Security
Incident Response
Threat Management
Security Audits and Risk Assessments
Security Operations
Collaboration with Technology Leadership
Security Awareness Training
Budget Management
Regulatory Compliance (FCA and PRA)

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Head of Information Security role. Highlight your relevant experience in information security, especially within regulated financial services. We want to see how your skills align with our mission at Kroo Bank!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how you can contribute to our goals. Be sure to mention any specific achievements that demonstrate your expertise.

Showcase Your Leadership Skills: As a senior leader, we’re looking for someone who can drive strategy and manage teams effectively. Make sure to highlight your leadership experience and how you've successfully led security initiatives in the past.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets seen by the right people. Plus, it shows us you’re serious about joining our team at Kroo Bank!

How to prepare for a job interview at Kroo Bank

✨Know Your Stuff

Make sure you’re well-versed in the latest trends and technologies in information security. Brush up on ISO 27001, DevSecOps, and AI/ML security risks. Being able to discuss these topics confidently will show that you’re not just familiar with the basics but are also ahead of the curve.

✨Showcase Your Leadership Skills

As a Head of Information Security, you’ll need to demonstrate your senior leadership experience. Prepare examples of how you've successfully led teams, managed budgets, and collaborated with various departments. Highlighting your ability to engage with board-level stakeholders will set you apart.

✨Prepare for Scenario Questions

Expect questions that ask how you would handle specific security threats or incidents. Think through potential scenarios related to risk assessments, incident responses, and compliance challenges. Practising your responses will help you articulate your thought process clearly during the interview.

✨Cultural Fit Matters

Kroo Bank values a diverse and inclusive workplace, so be ready to discuss how you can contribute to this culture. Share your experiences in fostering collaboration and inclusivity within teams. Showing that you align with their values will make a strong impression.

Head of Information Security (HoIS)
Kroo Bank

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>