Information Security Assurance Manager
Information Security Assurance Manager

Information Security Assurance Manager

Full-Time 36000 - 60000 £ / year (est.) Home office (partial)
Modulr

At a Glance

  • Tasks: Lead information security audits and ensure compliance with regulations.
  • Company: Join Modulr, a fintech innovator transforming payment solutions.
  • Benefits: Enjoy share options, flexible benefits, and 33 days of annual leave.
  • Why this job: Make a real impact in a fast-paced tech environment while ensuring security.
  • Qualifications: Experience in information security assurance and strong communication skills required.
  • Other info: Be part of a diverse and inclusive culture that values your unique background.

The predicted salary is between 36000 - 60000 £ per year.

Our vision is a world where all businesses are powered by embedded payments. Modulr enables businesses, from SMEs to Enterprise, to grow their revenue, drive efficiencies and deliver fantastic customer experiences, by embedding payments into their products and operating systems. We do this by providing products and services which allow our clients to efficiently collect, reconcile and disburse funds instantly via a range of payment schemes, accounts, and card products, fully controllable via API.

What You'll Do

  • Lead and complete information security assurance activities in support of internal audits, external audits, certifications, and regulatory reviews.
  • Act as the primary information security point of contact for internal audit, external auditors, and regulators.
  • Plan information security audit scope, timelines, and evidence requirements in collaboration with governance and delivery teams.
  • Coordinate and run information security control walkthroughs, interviews, and technical deep dives with engineering, platform, and operations teams.
  • Review, validate, and challenge information security control evidence to ensure it is accurate, complete, and auditable.
  • Independently assess the design and operating effectiveness of information security controls against governance owned policies, standards, and regulatory expectations.
  • Produce clear and information security assurance findings and audit reports for technical, executive, and regulatory audiences.
  • Identify and communicate information security control observations and assurance outcomes to the security governance to inform governance led risk assessment and decision making.
  • Track information security audit findings through to closure, validating remediation implementation without owning delivery.
  • Identify recurring or systemic information security control observations and elevate them through agreed governance forums.
  • Act as a pragmatic but independent assurance partner, ensuring information security assurance activity enables compliant, well controlled delivery.

Who You Are

  • Significant experience in information security assurance, audit, or second line security roles within a regulated environment.
  • Proven experience leading internal and external information security audits end to end, including direct interaction with auditors and regulators.
  • Strong understanding of information security control design and operating effectiveness, particularly across cloud, SaaS, identity, and modern application environments.
  • Experience assessing security controls against regulatory requirements and recognised frameworks such as PCI-DSS, ISO 27001, SOC 2, or equivalent.
  • Ability to critically assess audit evidence, identify gaps or weaknesses, and challenge findings constructively using facts and documentation.
  • Clear understanding of the separation between assurance, governance, and delivery, and the discipline to maintain independence.
  • Strong written and verbal communication skills, with the ability to explain assurance findings clearly to both technical teams and senior stakeholders.
  • Confidence operating autonomously, managing multiple audits or assurance activities in parallel without loss of quality.

Nice to haves

  • Experience working in fintech, financial services, or similarly regulated environments.
  • Direct experience supporting regulatory reviews, supervisory visits, or thematic inspections.
  • Prior exposure to internal audit functions or working as a second line assurance partner to internal audit.
  • Familiarity with multiple security and risk frameworks and how auditors interpret them in practice.
  • Experience pushing back on auditors with evidence while maintaining constructive relationships.
  • Professional certifications in information security, assurance, or audit (e.g. CISM, CISSP, CISA), without being framework driven.
  • Experience operating in fast moving technology environments where assurance must be risk based and pragmatic, not checkbox led.

What We Offer You

  • Share Options – We offer a Company Share Option Plan (CSOP), giving you the opportunity to benefit from any increase in share value in the event of a sale, merger, or flotation.
  • Bonus – Our annual discretionary bonus, paid in May for the previous year, is based on both company and individual performance.
  • Flexible benefits – £1000 to spend on benefits to suit you, including private medical insurance, gym membership, dental etc.
  • Wellbeing app – confidential, on-demand access to therapy, coaching, counselling, management training or mindfulness sessions with accredited professionals, with company-funded hours and top-up options available.
  • Holidays – 33 days annual leave (including bank holidays) plus your birthday off.
  • Learning opportunities – Our two-day onboarding program, ModStart, helps equip you for success. Learning doesn’t stop there; we’ll continue to support your development through various channels.
  • Company-Wide Events – Participate in collaborative and engaging events with colleagues across the business.
  • Bike to work / E-bike scheme.

At Modulr, we’re committed to building a diverse, equitable and inclusive culture where everyone feels they belong and can bring their whole self to work. We welcome applications from candidates of all backgrounds as we believe it’s the right thing for our people, our business, and the community we operate in.

Information Security Assurance Manager employer: Modulr

Modulr is an exceptional employer that fosters a dynamic and inclusive work culture, offering significant opportunities for professional growth in the fast-paced fintech sector. With generous benefits such as share options, a comprehensive wellbeing app, and 33 days of annual leave, employees are empowered to thrive both personally and professionally while contributing to a mission that transforms how businesses manage payments.
Modulr

Contact Detail:

Modulr Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Assurance Manager

✨Tip Number 1

Network like a pro! Reach out to people in the industry, attend events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their products and services, especially how they relate to information security. This will help you tailor your answers and show you're genuinely interested.

✨Tip Number 3

Practice common interview questions, but also be ready for technical deep dives. Brush up on your knowledge of security frameworks like PCI-DSS and ISO 27001, as these are likely to come up in discussions.

✨Tip Number 4

Don’t forget to follow up after interviews! A quick thank-you email can leave a lasting impression and shows your enthusiasm for the role. Plus, it keeps you on their radar as they make their decision.

We think you need these skills to ace Information Security Assurance Manager

Information Security Assurance
Internal Audits
External Audits
Regulatory Reviews
Audit Planning
Control Walkthroughs
Technical Deep Dives
Evidence Validation
Security Control Assessment
PCI-DSS
ISO 27001
SOC 2
Communication Skills
Autonomous Operation
Risk-Based Assurance

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Information Security Assurance Manager role. Highlight your relevant experience in information security assurance, audits, and any regulatory frameworks you've worked with. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about this role and how your background makes you a perfect fit. Don’t forget to mention any specific experiences that relate to our mission at Modulr.

Showcase Your Communication Skills: Since strong written communication is key for this role, make sure your application is clear and concise. Use straightforward language and structure your thoughts logically. We want to see how well you can convey complex information!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, you’ll get to explore more about who we are and what we do!

How to prepare for a job interview at Modulr

✨Know Your Stuff

Make sure you have a solid understanding of information security assurance, especially in regulated environments. Brush up on frameworks like PCI-DSS and ISO 27001, as well as the specific security controls relevant to cloud and SaaS. This will help you answer questions confidently and demonstrate your expertise.

✨Prepare for Scenarios

Think about real-life scenarios where you've led audits or interacted with auditors and regulators. Be ready to discuss these experiences in detail, focusing on how you assessed evidence and communicated findings. This will show that you can handle the practical aspects of the role.

✨Practice Clear Communication

Since you'll need to explain complex security concepts to both technical teams and senior stakeholders, practice articulating your thoughts clearly. Consider doing mock interviews with a friend or using online platforms to refine your communication skills.

✨Show Your Independence

Emphasise your ability to maintain independence while working collaboratively. Be prepared to discuss how you've pushed back on auditors constructively and how you ensure that assurance activities are risk-based rather than just checkbox-led. This will highlight your pragmatic approach to information security.

Information Security Assurance Manager
Modulr

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>