VP - Business Information Security Officer in London

VP - Business Information Security Officer in London

London Full-Time 80000 - 100000 € / year (est.) No home office possible
Moody's Corporation

At a Glance

  • Tasks: Lead cybersecurity initiatives and embed secure practices across business units.
  • Company: Join Moody's, a global leader in risk assessment and innovation.
  • Benefits: Inclusive culture, competitive salary, and opportunities for professional growth.
  • Other info: Dynamic team focused on innovation and security in a rapidly changing environment.
  • Why this job: Make a real impact by transforming how the world sees risk.
  • Qualifications: Strong background in cybersecurity and excellent communication skills required.

The predicted salary is between 80000 - 100000 € per year.

At Moody's, we unite the brightest minds to turn today’s risks into tomorrow’s opportunities. We do this by striving to create an inclusive environment where everyone feels welcome to be who they are—with the freedom to exchange ideas, think innovatively, and listen to each other and customers in meaningful ways. Moody’s is transforming how the world sees risk. As a global leader in ratings and integrated risk assessment, we’re advancing AI to move from insight to action—enabling intelligence that not only understands complexity but responds to it. We decode risk to unlock opportunity, helping our clients navigate uncertainty with clarity, speed, and confidence.

We are seeking candidates who model our values: invest in every relationship, lead with curiosity, champion diverse perspectives, turn inputs into actions, and uphold trust through integrity.

Skills And Competencies
  • Strong background in information security, cybersecurity engineering, or security architecture, enabling effective advisory support to the business.
  • In-depth knowledge of cybersecurity and risk management frameworks such as NIST Cybersecurity Framework, ISO 27001, and Cloud Security Alliance controls.
  • Ability to translate complex technical risks into clear, actionable business language for senior stakeholders.
  • Experience working with cloud-native environments, modern application architectures, and DevOps practices.
  • Excellent stakeholder management, communication, and executive-level presentation skills.
  • Professional certifications such as CISSP, CISM, CISA, CCSP, or similar (preferred).
  • Demonstrated understanding of artificial intelligence concepts, with experience using AI-enabled tools to improve security analysis, risk management processes, and operational efficiency, while maintaining awareness of ethical and responsible AI use.
Education
  • Bachelor’s degree in Information Security, Computer Science, Information Technology, or a related discipline (or equivalent professional experience).
Responsibilities
  • Vice President - BISO will act as the primary cybersecurity partner for assigned business units, embedding secure-by-design practices, managing risk, and aligning security strategy with business objectives.
  • Serve as the primary security liaison for business unit leadership, ensuring enterprise security strategy is embedded into business planning and decision-making.
  • Partner with engineering and architecture teams to apply secure design patterns, cloud security frameworks, and cybersecurity best practices.
  • Conduct, oversee, and validate cybersecurity risk assessments covering applications, products, and third parties, and maintain risk registers.
  • Ensure alignment with applicable regulatory and compliance frameworks, including GDPR, DORA, and other jurisdictional requirements.
  • Support cyber vendor risk management activities by reviewing onboarding assessments, continuous monitoring outputs, and risk exceptions.
  • Act as an escalation point between business applications, Security Operations, and Incident Response teams during security events.
  • Promote cybersecurity culture by supporting security awareness initiatives and developing Security Champions within the business.
  • Prepare and present updates on security posture, key risks, metrics, and roadmaps to senior leaders and governance forums.
About The Team

Our Cyber Security team is responsible for protecting Moody’s information assets and enabling the business to operate securely and resiliently. The team partners closely with technology and business stakeholders to embed security into products, platforms, and daily operations, supporting innovation while effectively managing risk.

Moody’s is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status, sexual orientation, gender expression, gender identity or any other characteristic protected by law.

VP - Business Information Security Officer in London employer: Moody's Corporation

At Moody's, we pride ourselves on fostering an inclusive and innovative work environment where every employee is empowered to contribute their unique perspectives. As a global leader in risk assessment, we offer exceptional growth opportunities, a commitment to professional development, and a culture that champions collaboration and integrity. Join us in our mission to transform risk into opportunity while enjoying the benefits of a supportive workplace that values diversity and encourages continuous learning.

Moody's Corporation

Contact Detail:

Moody's Corporation Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land VP - Business Information Security Officer in London

Tip Number 1

Network like a pro! Reach out to current or former employees at Moody's on LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.

Tip Number 2

Prepare for the interview by diving deep into Moody's values and mission. Show us how your experience aligns with their goals, especially around cybersecurity and risk management. We love candidates who can connect the dots!

Tip Number 3

Practice your storytelling skills! Be ready to share specific examples of how you've tackled complex security challenges in the past. We want to hear how you turned risks into opportunities—make it memorable!

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, if you’re not a perfect match for this role, we might have other openings that suit you better.

We think you need these skills to ace VP - Business Information Security Officer in London

Information Security
Cybersecurity Engineering
Security Architecture
NIST Cybersecurity Framework
ISO 27001
Cloud Security Alliance Controls
Risk Management

Some tips for your application 🫡

Show Your Passion for Cybersecurity:When writing your application, let your enthusiasm for cybersecurity shine through! We want to see how your background aligns with our mission at Moody's and how you can contribute to turning risks into opportunities.

Tailor Your Application:Make sure to customise your CV and cover letter to highlight your experience with information security frameworks and cloud-native environments. We love seeing candidates who can translate complex technical risks into business language!

Highlight Your Soft Skills:Don’t forget to showcase your communication and stakeholder management skills. At Moody's, we value the ability to present ideas clearly and work collaboratively, so share examples of how you've done this in the past.

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity. Don’t hesitate—if you’re interested, go for it!

How to prepare for a job interview at Moody's Corporation

Know Your Cybersecurity Frameworks

Make sure you brush up on your knowledge of cybersecurity frameworks like NIST and ISO 27001. Be ready to discuss how these frameworks can be applied in real-world scenarios, especially in relation to risk management and compliance.

Translate Tech Speak into Business Language

Practice explaining complex technical risks in simple terms. Moody's values clear communication, so think about how you can convey your insights to senior stakeholders who may not have a technical background.

Showcase Your Stakeholder Management Skills

Prepare examples of how you've successfully managed relationships with various stakeholders in the past. Highlight your ability to collaborate with engineering teams and business leaders to embed security practices effectively.

Demonstrate Your AI Knowledge

Since the role involves understanding AI concepts, be ready to discuss how you've used AI tools in your previous roles. Share specific examples of how these tools improved security analysis or risk management processes.