At a Glance
- Tasks: Lead Ripjar's global security strategy and manage cyber risk.
- Company: Ripjar develops software to combat financial crime for governments and organisations.
- Benefits: Enjoy remote work, 25 days leave, private healthcare, and a top MacBook Pro.
- Why this job: Join a mission-driven team focused on security and resilience in tech.
- Qualifications: Proven leadership in security, expertise in ISO27001, and strong communication skills required.
- Other info: This is a hands-on leadership role with significant impact on global operations.
The predicted salary is between 84000 - 196000 £ per year.
Ripjar specialises in the development of software and data products that help governments and organisations combat serious financial crime. Our technology is used to identify criminal activity such as money laundering and terrorist financing, enabling organisations to enforce sanctions at scale to help combat rogue entities and state actors.
As Chief Information Security Officer (CISO), you will be responsible for developing and executing our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like Cyber Essentials, and leading executive team engagement on security governance, regulatory readiness, and organisational resilience. You will be responsible for monitoring and improving the information security of Ripjar's technology infrastructure, products and services as we continue to scale. This is a hands-on leadership role. You will be responsible not only for setting strategy, but also for directly executing core activities such as policy development, supporting audits and accreditations, incident response, and day-to-day security operations.
What you'll be doing:
- Strategic Security Leadership
- Set the organisation-wide security vision and roadmap; act as security evangelist at the executive level.
- Maintain and evolve our security and compliance posture to support international expansion and customer growth.
- Manage and own the Information Security budget, investments, and ROI.
- Governance, Risk, and Compliance
- Maintain compliance with ISO27001, SOC2, Cyber Essentials and evolving DORA regulations.
- Lead internal risk assessments, security audits, and regulatory readiness efforts.
- Oversee third-party and supply chain security due diligence and assurance processes.
- Operational Security & Infrastructure
- Partner with infrastructure and engineering teams to drive secure architecture, code, and systems.
- Identify vulnerabilities and lead remediation in hybrid environments (AWS, private cloud).
- Ensure security principles are implemented and continuously improved.
- Culture, Education, and Awareness
- Embed a security-first culture across the business through education, training, and policy.
- Support the commercial team in client conversations and security due diligence including contributing actively to RFI/RFP processes.
- Act as the point of contact for external audits, client reviews, and incident communications.
About You:
We're looking for a security leader who blends deep technical acumen with strong strategic and business leadership. You will take a pragmatic approach to information security and its practical application to our organisation as it scales.
Ideally, you will have:
- Proven leadership in high-growth scale-up environments.
- Expertise in ISO27001, SOC2, NIST CSF, Cyber Essentials, and DORA.
- Experience with modern cloud infrastructure and security (AWS, Azure, GCP, PaaS/IaaS/SaaS).
- Familiarity with IAM, DLP, and Linux-based environments.
- Strong understanding of security architecture, governance, and regulatory trends.
- Professional certifications such as CISSP, CISM, or CRISC (preferred).
- Exceptional communication skills to engage senior internal and external stakeholders.
- High level of integrity, resilience, and executive presence.
Benefits
Why we think you'll enjoy it here:
- Salary up to 140k DOE
- 25 days annual leave + your birthday off, rising to 30 days after 5 years of service
- Fully remote working with occasional travel
- Life assurance
- Private Family Healthcare
- Employee Assistance Programme
- Company contributions to your pension
- Enhanced maternity/paternity pay
- The latest tech including a top of the range MacBook Pro
- Offices equipped with well-stocked pantries with food, snacks and drinks when in the office
Chief Information Security Officer (CISO) employer: Ripjar
Contact Detail:
Ripjar Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Chief Information Security Officer (CISO)
✨Tip Number 1
Familiarise yourself with the specific security frameworks mentioned in the job description, such as ISO27001 and SOC2. Being able to discuss these frameworks in detail during your conversations will demonstrate your expertise and alignment with Ripjar's needs.
✨Tip Number 2
Network with professionals in the cybersecurity field, especially those who have experience in high-growth environments. Engaging with industry peers can provide insights into the challenges and strategies relevant to the role of a CISO.
✨Tip Number 3
Prepare to showcase your leadership skills by discussing past experiences where you successfully led security initiatives or teams. Highlighting your ability to drive a security-first culture will resonate well with Ripjar's mission.
✨Tip Number 4
Stay updated on the latest trends in cloud security and regulatory changes. Being knowledgeable about current events and advancements in technology will help you engage effectively with the executive team and demonstrate your proactive approach.
We think you need these skills to ace Chief Information Security Officer (CISO)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in information security leadership, particularly in high-growth environments. Emphasise your expertise with frameworks like ISO27001 and SOC2, as well as any professional certifications you hold.
Craft a Compelling Cover Letter: In your cover letter, express your passion for combating financial crime and how your strategic vision aligns with Ripjar's mission. Mention specific examples of how you've successfully implemented security strategies in previous roles.
Showcase Technical Acumen: Detail your experience with modern cloud infrastructure and security practices. Highlight any hands-on experience you have with AWS, Azure, or GCP, and discuss how you've led remediation efforts in hybrid environments.
Demonstrate Leadership Skills: Provide examples of how you've engaged with executive teams and driven a security-first culture within an organisation. Discuss your approach to managing budgets and investments in security initiatives.
How to prepare for a job interview at Ripjar
✨Understand the Company’s Mission
Before your interview, make sure you understand Ripjar's mission to combat financial crime. Familiarise yourself with their technology and how it helps governments and organisations. This will show your genuine interest in the role and the company.
✨Demonstrate Your Technical Expertise
As a CISO, you'll need to showcase your deep technical knowledge. Be prepared to discuss your experience with ISO27001, SOC2, and cloud security. Highlight specific examples of how you've implemented security measures in previous roles.
✨Prepare for Strategic Discussions
Expect questions about your strategic vision for information security. Think about how you would align security initiatives with business goals and international frameworks. Be ready to articulate your approach to risk management and compliance.
✨Showcase Your Leadership Skills
This role requires strong leadership abilities. Prepare to discuss how you've led teams in high-growth environments and fostered a security-first culture. Share examples of how you've engaged with executive teams and influenced organisational change.