At a Glance
- Tasks: Lead and develop a robust information security strategy for a fast-growing fintech.
- Company: Join Modulr, a leading embedded payments platform transforming business transactions across Europe.
- Benefits: Enjoy 33 days holiday, share options, and a £1000 benefits pot for your well-being.
- Why this job: Be part of a dynamic team that values innovation, collaboration, and personal growth.
- Qualifications: Experience in information security leadership and compliance with financial regulations is essential.
- Other info: Work in state-of-the-art offices and embrace a culture of diversity and inclusion.
The predicted salary is between 48000 - 84000 £ per year.
Do you want to build and lead a high-performing product team in a rapidly-scaling fintech in the embedded payments space? Are you curious, always looking for a better way of doing things and motivated by collaborating cross-functionally to deliver outstanding results? If so, we would love to hear from you!
About Us
At Modulr, our vision is a world where all businesses are powered by embedded payments. Modulr enables thousands of businesses, from SMEs to Enterprises, across the UK and Europe to efficiently pay-in, collect and disburse funds instantly via a range of payment methods, accounts, and card products. We’ve created an industry-leading platform with comprehensive online tools and API access, to meet the demands of daily business payments.
The Role
The Director of Infosecurity is a crucial leadership role responsible for establishing and maintaining a robust information security program within the Modulr financial services environment. This individual will be instrumental in protecting the organization’s sensitive data, systems, and infrastructure from cyber threats while ensuring compliance with global regulations and industry standards.
- Key responsibilities
- Leadership and Strategy:
- Develop and implement a comprehensive information security strategy aligned with business objectives and UK regulatory requirements.
- Provide leadership and direction to the information security team.
- Stay abreast of industry best practices, emerging threats, and regulatory changes, specifically those relevant to the UK financial sector.
- Conduct regular risk assessments to identify and evaluate potential security threats, taking into account the specific risks faced by UK financial institutions.
- Develop and implement risk mitigation strategies to address identified vulnerabilities.
- Oversee incident response planning and execution, ensuring alignment with UK regulations and reporting requirements.
- Design and implement security architecture to protect critical assets, including on-premise and cloud-based systems (with a focus on AWS).
- Manage security technologies such as firewalls, intrusion detection systems, data loss prevention tools, and cloud security posture management (CSPM) solutions for AWS.
- Oversee security operations, including monitoring, incident response, and vulnerability management, with a focus on UK-specific threats and regulations.
- Develop and maintain information security policies, standards, and procedures in accordance with UK laws and regulations (GDPR, Data Protection Act 2018, FCA regulations).
- Ensure compliance with relevant industry standards (PCI DSS, ISO 27001) and UK-specific guidelines.
- Conduct security awareness training for employees, tailored to the UK financial services context.
- Assess and manage security risks associated with third-party vendors and service providers, ensuring compliance with UK data protection and outsourcing regulations.
- Ensure vendors comply with security requirements and contractual obligations, with particular attention to data residency and cross-border data transfer regulations.
- Develop and implement security controls and best practices for AWS cloud environments.
- Utilize AWS security services (Security Hub, GuardDuty, Config) to monitor and manage the organization’s security posture in AWS.
- Ensure compliance with AWS Well-Architected Framework security principles.
- Collaborate with other departments to integrate security into business processes, considering the specific requirements of the UK financial services industry.
- Report on security posture and key performance indicators to senior management, including UK-specific metrics and regulatory compliance updates.
The Ideal Candidate
- Substantial experience in information security including leadership experience.
- Proven track record of building and managing successful information security programs in compliance with financial regulations.
- Strong understanding of security frameworks, standards, and best practices.
- Extensive experience with cloud security and managing security posture in cloud environments.
- Strong analytical and problem-solving abilities.
- Deep understanding of security technologies and architecture, including cloud security and AWS-specific services.
- Knowledge of risk assessment methodologies and incident response procedures, tailored to the UK financial services context.
- Ability to develop and implement security policies and procedures in line with UK regulations.
- Experience with third-party risk management, with an understanding of UK-specific outsourcing and data protection requirements.
What can Modulr offer you
- You’ll be part of a cross-disciplinary team(s), with co-workers located in London, Edinburgh, Amsterdam and/or Mumbai.
- 33 days holiday (including bank holidays) + your birthday off - choose which days you take off to relax and/or spend time with loved ones.
- Learning Opportunities - on joining Modulr you will embark on our onboarding programme, called ModStart, to be equipped with the Modulr know-how and arm you with the tools you need to be successful from day 1!
- Great workspace - Modulr thrives on innovation which is best done through in-person collaboration.
- Bike to work scheme.
- ModInclusion - we actively encourage applications from anyone and everyone.
Information Security Director employer: Modulr
Contact Detail:
Modulr Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Director
✨Tip Number 1
Familiarise yourself with the latest trends and regulations in information security, particularly those relevant to the UK financial sector. This knowledge will not only help you during interviews but also demonstrate your commitment to staying updated in a rapidly evolving field.
✨Tip Number 2
Network with professionals in the fintech and information security sectors. Attend industry events, webinars, or local meetups to connect with others who can provide insights into the role and potentially refer you to opportunities at Modulr.
✨Tip Number 3
Prepare to discuss specific examples of how you've successfully implemented security strategies or managed risks in previous roles. Tailoring your experiences to align with Modulr's focus on compliance and risk management will make you stand out.
✨Tip Number 4
Showcase your leadership skills by highlighting any experience you have in building and managing teams. Modulr values collaboration, so be ready to discuss how you've fostered teamwork and driven results in past positions.
We think you need these skills to ace Information Security Director
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in information security, particularly in the financial services sector. Emphasise your leadership roles and any specific achievements related to compliance with UK regulations.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for information security and your understanding of the fintech landscape. Mention how your skills align with Modulr's mission and values, and provide examples of how you've successfully led security initiatives in the past.
Highlight Relevant Skills: In your application, clearly outline your expertise in risk management, cloud security (especially AWS), and third-party risk management. Use specific terminology from the job description to demonstrate your familiarity with industry standards and regulations.
Showcase Collaboration Experience: Since the role involves cross-functional collaboration, include examples of how you've worked with other departments to integrate security into business processes. Highlight any successful projects where teamwork led to improved security outcomes.
How to prepare for a job interview at Modulr
✨Understand the Company and Its Vision
Before your interview, make sure to research Modulr thoroughly. Understand their vision of embedded payments and how they operate within the fintech space. This will help you align your answers with their goals and demonstrate your genuine interest in the company.
✨Showcase Your Leadership Experience
As an Information Security Director, you'll need to exhibit strong leadership skills. Prepare examples from your past roles where you've successfully led teams or projects, particularly in information security. Highlight how you developed strategies and managed risks effectively.
✨Familiarise Yourself with Relevant Regulations
Given the regulatory nature of the financial services industry, it's crucial to be well-versed in UK regulations such as GDPR, FCA regulations, and PCI DSS. Be ready to discuss how you've ensured compliance in previous roles and how you would approach this at Modulr.
✨Prepare for Technical Questions
Expect technical questions related to information security frameworks, cloud security (especially AWS), and risk management methodologies. Brush up on your knowledge of security technologies and be prepared to discuss how you would implement security measures tailored to Modulr's needs.