Head of Information Security (HoIS)
Head of Information Security (HoIS)

Head of Information Security (HoIS)

Full-Time 72000 - 108000 £ / year (est.) Home office (partial)
Kroo Ltd

At a Glance

  • Tasks: Lead our IT security strategy and protect against digital threats.
  • Company: Join Kroo Bank, a forward-thinking UK bank with big ambitions.
  • Benefits: Enjoy generous holiday, mental health support, and top-notch equipment.
  • Why this job: Make a real impact in a fast-paced, innovative banking environment.
  • Qualifications: Senior leadership experience in information security within regulated financial services.
  • Other info: Hybrid working model with room for growth and a commitment to diversity.

The predicted salary is between 72000 - 108000 £ per year.

At Kroo Bank, we’re building a better bank from the ground up. One that puts customers first, treats money responsibly, and uses technology to make everyday banking simpler, fairer and more transparent. We’re a fully regulated UK bank, backed by long‑term investors, with a growing customer base and big ambitions. We move fast, think carefully, and hold ourselves to the highest standards, whether that’s how we engage with our customers, build products, manage risk, or look after our people.

Job Overview

Drive our IT security strategy and implementation forward whilst protecting the business from security threats against unauthorised disruption or destruction of digital data. Direct strategy, operations and product development for the protection of the enterprise information assets and manage the program of delivery. The scope of responsibility will encompass security awareness, security operations and applications and infrastructure, including the policies and procedures which apply.

Responsibilities

  • Managing the daily operation and implementation of the information security strategy
  • Developing and maintaining a forward looking security roadmap covering cloud, mobile, AI, and software platforms.
  • Collaborating with the technology leadership to deliver new security technology approaches and implementing next generation solutions and controls
  • Ensuring secure configuration and continuous compliance across IaaS, PaaS, and SaaS environments.
  • Conducting a continuous assessment of current security practices and systems and identifying areas for improvement
  • Performing security audits and risk assessments and reporting on ways to minimise threats and security exposure
  • Owning the Information Security Management System (ISMS) and maintain ISO 27001 certification maintenance
  • Ensuring compliance and governance with applicable regulations
  • Collaborating with operational teams to develop, implement and test business continuity plans to ensure service is continuous when a change programme is introduced, or a security breach occurs or in the event that the disaster recovery plan needs to be triggered
  • Protecting the intellectual property of the organisation at all times
  • Monitoring security vulnerabilities and hacking threats in network and host systems
  • Leading security operations (including Managed SOC), threat intelligence, detection, and response capabilities
  • Defining KPIs and KRIs to measure security maturity and providing regular security reporting to Executive and Board level stakeholders.
  • Managing and developing the information security team
  • Championing and educating the organisation about the latest security strategies and technologies
  • Managing the IT security budget and communicating this with the appropriate parties

Qualifications

  • Significant senior leadership experience in information security within a FCA and PRA regulated UK bank, fintech, or other regulated financial services organisation, with demonstrated engagement on CBEST matters (including oversight of threat led penetration testing) at Board Risk Committee level.
  • Demonstrable experience achieving and maintaining ISO/IEC 27001 certification.
  • Strong background in software application security and mobile security.
  • Experience implementing and improving DevSecOps processes in cloud native (AWS or GCP) environments.
  • Knowledge of AI/ML security risks and governance frameworks like ISO 42001 or NIST AI RMF.
  • Experience leading security operations, incident response, and threat management.
  • Ability to work collaboratively with the 2nd line of defence to ensure the Bank remains within risk appetite
  • Ability to work with team members at all levels from Software Engineers & IT through to board level.

What we offer

  • Generous holiday time: 25 days annual leave, 8 bank holidays, 1 Kroo bank holiday (June 24th), and 1 day off during the week of your birthday.
  • Personal days: We know that life can be unpredictable, so we offer 3 personal days to use as needed.
  • Employer-sponsored volunteer program: We're passionate about giving back to our community, and we support our employees in doing the same with up to 4 hours per month of employer-sponsored volunteer time.
  • Mental health support: We care about the mental health of our team members and offer access to Spill, our mental health support partner.
  • Workplace pension: We want you to feel secure about your future, so we offer a workplace pension with a 5% employee contribution and a 3% employer top‑up.
  • Top‑notch equipment: We provide top‑of‑the‑line equipment necessary for smooth hybrid work, including a MacBook laptop. Additionally, we also offer support in establishing your home office by contributing towards your setup if required.
  • Modern office: When you’re in the office, you’ll enjoy access to our modern, bustling workspace in Farringdon (Central London).
  • Cycle to Work scheme: We encourage sustainable transportation with our Cycle to Work scheme.
  • Electric Car scheme: We’re committed to reducing our carbon footprint, and our Electric Car scheme makes it easy for our employees to do the same.
  • Enhanced parental leave: We know that family comes first, and we offer an enhanced parental leave policy to support our employees in starting and growing their families.
  • Room for growth: As a fast‑paced, high‑growth start‑up, we’re dedicated to providing our employees with room to grow and excel. You get full healthcare for you and your nuclear family via Vitality.

Hybrid Working

At Kroo Bank, we have a hybrid policy that gives both individuals and teams a lot of freedom when it comes to using the office space to boost productivity. Our London office is a great resource when used effectively. So, employees who can occasionally come to the office are a good fit for how we work right now. Keep in mind that this job involves working from Monday to Friday, with a mix of remote and office work, so you won’t need to be on‑site all the time.

Diversity and Inclusion

We wholeheartedly uphold our commitment to fostering a diverse and inclusive workplace. Every employee is highly regarded, respected, and supported without any form of judgement or prejudice. We consider Diversity, Equality, and Inclusion as fundamental pillars guiding our path in all aspects of our bank. We also ensure that reasonable adjustments are made available to all candidates throughout the recruitment process.

Head of Information Security (HoIS) employer: Kroo Ltd

Kroo Bank is an exceptional employer that prioritises employee well-being and professional growth, offering generous benefits such as 25 days of annual leave, mental health support, and a hybrid working model that promotes work-life balance. Located in the vibrant area of Farringdon, Central London, our modern workspace fosters collaboration and innovation, while our commitment to diversity and inclusion ensures every team member feels valued and supported. Join us in shaping the future of banking with cutting-edge technology and a customer-first approach.
Kroo Ltd

Contact Detail:

Kroo Ltd Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Head of Information Security (HoIS)

✨Tip Number 1

Network like a pro! Get out there and connect with folks in the industry. Attend events, join online forums, or even hit up LinkedIn. The more people you know, the better your chances of landing that Head of Information Security role.

✨Tip Number 2

Show off your skills! Prepare a portfolio or case studies that highlight your achievements in information security. When you get the chance to chat with potential employers, share specific examples of how you've tackled security challenges in the past.

✨Tip Number 3

Be proactive! Don’t just wait for job openings to pop up. Reach out to companies you admire, like Kroo Bank, and express your interest in working with them. Sometimes, creating your own opportunity can lead to amazing results.

✨Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in the role and the company. So, don’t hesitate – hit that apply button!

We think you need these skills to ace Head of Information Security (HoIS)

Information Security Strategy
ISO 27001 Certification
Cloud Security (AWS or GCP)
Software Application Security
Mobile Security
DevSecOps Processes
Threat Management
Incident Response
Security Audits and Risk Assessments
Security Operations
Compliance and Governance
Security Awareness Training
Collaboration with Technology Leadership
KPI and KRI Definition
Team Management

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Head of Information Security role. Highlight your relevant experience in information security, especially within regulated financial services. We want to see how your skills align with our mission at Kroo Bank!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how you can contribute to our goals. Keep it concise but impactful – we love a good story that connects your experience to our vision.

Showcase Your Achievements: Don’t just list your responsibilities; showcase your achievements! Use metrics and examples to demonstrate how you've successfully managed security strategies or improved compliance in previous roles. We’re all about results here at Kroo Bank!

Apply Through Our Website: Remember to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re serious about joining our team at Kroo Bank!

How to prepare for a job interview at Kroo Ltd

✨Know Your Stuff

Make sure you’re well-versed in the latest trends and technologies in information security. Brush up on ISO 27001, cloud security, and DevSecOps processes. Being able to discuss these topics confidently will show that you’re not just familiar with the basics but are also ahead of the curve.

✨Showcase Your Leadership Skills

As a Head of Information Security, you’ll need to demonstrate your ability to lead a team and manage operations effectively. Prepare examples from your past experiences where you successfully led security initiatives or improved security practices. This will highlight your capability to drive strategy and inspire your team.

✨Understand the Company Culture

Kroo Bank values a customer-first approach and a commitment to transparency. Familiarise yourself with their mission and values, and think about how your own philosophy aligns with theirs. During the interview, share how you can contribute to their culture while enhancing their security posture.

✨Prepare for Scenario Questions

Expect to face scenario-based questions that assess your problem-solving skills in real-world situations. Think through potential security threats and how you would handle them. This will not only showcase your expertise but also your strategic thinking and ability to act under pressure.

Head of Information Security (HoIS)
Kroo Ltd

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>