At a Glance
- Tasks: Lead strategic information security initiatives and ensure compliance across all business units.
- Company: Join MUFG, a global leader in financial services with a people-first culture.
- Benefits: Competitive salary, career growth opportunities, and a dynamic work environment.
- Why this job: Make a meaningful impact on security strategy while collaborating with diverse teams.
- Qualifications: Experience in information security and strong leadership skills required.
- Other info: Be part of a culture that values innovation, collaboration, and inclusivity.
The predicted salary is between 72000 - 108000 £ per year.
Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.
With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career. Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.
Corporate Technology is accountable for the operation, development and support of all applications across all areas of the business. Corporate Technology ensures IT strategy, architecture and solutions are aligned to business requirements. The BISO role is part of the IT Security team. IT Security are collectively responsible for the following areas: Cyber Support and Engineering, Security Operations Centre covering pen tests, red and blue teams, Cyber and Risk Change portfolio, Threat Intelligence and Vulnerability Management for the Group and Identity and Access Management.
NUMBER OF DIRECT REPORTS 2
MAIN PURPOSE OF THE ROLE Responsible for providing strategic information security leadership and oversight across all business units in the region. This role bridges global security strategy and regional business execution, ensuring that security, risk, and compliance objectives are effectively implemented, measured, and governed. The position partners closely with regional executives, technology leadership, and global security functions to embed a culture of security, drive control adoption, and maintain regulatory confidence. This role will work alongside the EMEA regional CISO on supporting the strategy, initiatives and roadmap for information security in MUFG EMEA.
- Risk Advisory & Control Adoption Serve as the trusted advisor to business and technology units on security risks and control implementation. Support adoption of global security controls and standards within regional operations. Provide security input on new business initiatives, digital transformation, and third-party relationships.
- Security Training & Awareness Develop, tailor, and oversee delivery of security awareness programs by business line. Drive execution of phishing simulations and targeted learning interventions. Measure awareness effectiveness and report to management.
- Security Champion Network Establish and maintain a regional security champion community within business and operations teams. Promote local ownership of security best practices and risk reduction initiatives. Provide ongoing engagement, training, and recognition programs for champions.
- Security Strategy, Planning & Reporting Translate global and regional security objectives into actionable EMEA programs. Develop strategic plans, key risk metrics (KRIs/KPIs), and executive dashboards. Contribute to quarterly and annual reporting cycles for CISO and business leadership.
- Finance, Budgeting & Resourcing Support regional security budgeting, forecasting, and resource allocation. Track spend against plan and provide variance analysis. Assist in developing business cases for new initiatives or investments.
- Security Program Governance Oversee the implementation and governance of global security programs in EMEA. Ensure adherence to enterprise security policies and frameworks. Coordinate across multiple stakeholders to maintain governance and accountability.
- Risk, Compliance & Audit Coordination Act as the single point of contact for IT Security related audits and compliance engagements. Manage audit readiness, evidence coordination, and remediation tracking. Maintain strong relationships with internal audit, compliance, and regulatory teams.
- Reporting & Global/Regional Coordination Coordinate EMEA security reporting and represent the region in global BISO forums. Ensure consistency of risk posture and alignment with global metrics and governance. Provide regional input into global policy updates and program design.
KEY RESPONSIBILITIES
- Communication & Training Manage the Cyber & Risk training program. Ensuring Cyber integration with the business and technology. Communicating Risk & Cyber information across Bank EMEA and Securities. Be an escalation point for concerns about IT Security. Be a positive collaborator.
- People Management Ensure that the function is appropriately organised and adequately resourced by staff with appropriate skillsets to achieve its strategic objectives. Lead, direct and manage staff within the function to ensure that they: Understand the responsibilities applicable to their roles, Comply with the firm’s policies and procedures, Conduct themselves in a manner commensurate with the firm’s values. Actively manage performance, develop talent, identify key positions and persons and create sustainable success plans. Oversee appropriate training is in place to fulfil current and future skill requirements.
- Culture and Leadership Actively lead the integration of Bank and Securities technology functions. Promote the MUFG values-led culture which is inclusive and diverse. Promote a dynamic, delivery driven culture that works alongside business units to provide responsive resolutions and value driven solutions. Collective leadership by example on staff cyber education and awareness to embed a proactive cyber culture. Find ways to strengthen working relationships with stakeholders, including business teams. Lead by example in building relationships across the bank, establishing a stronger peer network and helping to strengthen collaboration. Build strong relationships with internal and external stakeholders to understand industry best practice, influence change and promote technical credibility.
WORK EXPERIENCE
- Experienced in information security, technology risk, or related disciplines within financial services sector.
- Experienced in IT security and control policy with specific experience of FFEIC, SOX, COBIT, NIST, CRI Profile and ISO standards.
- Conversant in the security & risk trends across banking and other industries.
- Experienced with the Defence in Depth approach.
- Strong track record of managing teams and building effective partnerships with peers.
- Strong experience in delivering training.
- Professional information security certifications (i.e. CISSP, CISM, CRISC or similar experience).
- Cloud Security experience and a good understanding of privacy legislation (Data Protection Act 2018 / GDPR).
SKILLS AND EXPERIENCE
- Functional / Technical Competencies: Strong strategic and analytical thinking. Excellent communication and stakeholder management. Proven ability to balance technical, business, and regulatory priorities. Collaborative, pragmatic, and outcomes-driven leadership style. Demonstrated experience of risks & controls. A deep understanding of IT Control, Security and Cyber risks: Defence in Depth model, Network defence, IDS and DMZ, Network protocols and firewall standards, Detective monitoring – SIEM, Vulnerability Management, Access and Privileged Access Management. Experienced in writing and maintaining IT documents, such as standards and procedures. Demonstrates an understanding of strategic business and IT issues impacting the financial services market. Strong understanding of risk and its application across technology and the business.
Vice President, Business Information Security Officer in City of London employer: MUFG Bank, Ltd
Contact Detail:
MUFG Bank, Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Vice President, Business Information Security Officer in City of London
✨Tip Number 1
Network like a pro! Get out there and connect with people in the industry. Attend events, join online forums, and don’t be shy about reaching out on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their values and how they align with your own. This will help you tailor your responses and show that you’re genuinely interested in being part of their team.
✨Tip Number 3
Practice makes perfect! Conduct mock interviews with friends or use online resources to refine your answers. Focus on articulating your experience and how it relates to the role of Vice President, Business Information Security Officer.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who take the initiative to engage directly with us. So, go ahead and submit your application today!
We think you need these skills to ace Vice President, Business Information Security Officer in City of London
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the Vice President, Business Information Security Officer role. Highlight your relevant experience in information security and how it aligns with MUFG's values and objectives.
Showcase Your Leadership Skills: Since this role involves managing teams and driving security culture, emphasise your leadership experience. Share examples of how you've successfully led initiatives or teams in the past, especially in the financial services sector.
Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use clear language to convey your skills and experiences, making it easy for the hiring team to see why you’re a great fit for the role.
Apply Through Our Website: We encourage you to submit your application through our website. This ensures that your application is received directly by our team and allows us to process it more efficiently. Don’t miss out on this opportunity!
How to prepare for a job interview at MUFG Bank, Ltd
✨Know Your Stuff
Make sure you’re well-versed in the key responsibilities of the Vice President, Business Information Security Officer role. Brush up on your knowledge of security frameworks like NIST and COBIT, and be ready to discuss how you've implemented these in past roles.
✨Showcase Your Leadership Skills
This role requires strong leadership, so prepare examples that demonstrate your ability to manage teams and foster a culture of security. Think about times when you’ve successfully led initiatives or trained others in security best practices.
✨Understand the Company Culture
Familiarise yourself with MUFG’s values and culture. Be ready to discuss how you can contribute to their mission of being the world’s most trusted financial group, and how you can promote an inclusive and diverse environment within the team.
✨Prepare for Scenario Questions
Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think through potential security challenges that could arise in a financial institution and how you would address them, especially in terms of risk management and compliance.