At a Glance
- Tasks: Lead Ripjar's global security strategy and manage cyber risk.
- Company: Ripjar develops software to combat financial crime for governments and organisations.
- Benefits: Enjoy a salary up to Β£140k, 25 days leave, remote work, and top tech.
- Why this job: Join a mission-driven team tackling serious financial crime with innovative technology.
- Qualifications: Proven leadership in security, expertise in ISO27001, and strong communication skills required.
- Other info: Training provided to fill any skill gaps; flexible working environment.
The predicted salary is between 100000 - 140000 Β£ per year.
Chief Information Security Officer (CISO)
1 day ago Be among the first 25 applicants
Get AI-powered advice on this job and more exclusive features.
Ripjar specialises in the development of software and data products that help governments and organisations combat serious financial crime. Our technology is used to identify criminal activity such as money laundering and terrorist financing, enabling organisations to enforce sanctions at scale to help combat rogue entities and state actors.
Lead Ripjar\’s Global Security Strategy
As we scale globally, this role is central to our mission of delivering secure, resilient technology to governments and enterprises around the world.
As Chief Information Security Officer (CISO), you will be responsible for developing and executing our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like Cyber Essentials, and leading executive team engagement on security governance, regulatory readiness, and organisational resilience. You will be responsible for monitoring and improving the information security of Ripjar\’s technology infrastructure, productsand services as we continue to scale.
This is a hands-on leadership role. You will be responsible not only for setting strategy, but also for directly executing core activities such as policy development, supporting audits and accreditations, incident response, and day-to-day security operations.
What you\’ll be doing:
Strategic Security Leadership
- Set the organisation-wide security vision and roadmap; act as security evangelist at the executive level.
- Maintain and evolve our security and compliance posture to support international expansion and customer growth.
- Manage and own the Information Security budget, investments, and ROI.
Governance, Risk, and Compliance
- Maintain compliance with ISO27001, SOC2, Cyber Essentials and evolving DORA regulations.
- Lead internal risk assessments, security audits, and regulatory readiness efforts.
- Oversee third-party and supply chain security due diligence and assurance processes.
Operational Security & Infrastructure
- Partner with infrastructure and engineering teams to drive secure architecture, code, and systems.
- Identify vulnerabilities and lead remediation in hybrid environments (AWS, private cloud).
- Ensure security principles are implemented and continuously improved.
Culture, Education, and Awareness
- Embed a security-first culture across the business through education, training, and policy.
- Support the commercial team in client conversations and security due diligence including contributing actively to RFI/RFP processes.
- Act as the point of contact for external audits, client reviews, and incident communications.
About You:
We\’re looking for a security leader who blends deep technical acumen with strong strategic and business leadership. You will take a pragmatic approach to information security and its practical application to our organisation as it scales.
Ideally, you will have:
- Proven leadership in high-growth scale-up environments.
- Expertise in ISO27001, SOC2, NIST CSF, Cyber Essentials, and DORA.
- Experience with modern cloud infrastructure and security (AWS, Azure, GCP, PaaS/IaaS/SaaS).
- Familiarity with IAM, DLP, and Linux-based environments.
- Strong understanding of security architecture, governance, and regulatory trends.
- Professional certifications such as CISSP, CISM, or CRISC (preferred).
- Exceptional communication skills to engage senior internal and external stakeholders.
- High level of integrity, resilience, and executive presence.
Key tasks:
- Developing, implementing and maintaining IT information security strategies, policies and procedures for the organisationin line with security frameworks.
- Author, review, and maintain IT security policies and procedures to support compliance and security goals.
- Maintain awareness of the latest cybersecurity threats, trends, and compliance requirements to continuously improve the security framework.
- Identifying and acting on opportunities to improve and update software and systems
- Conduct risk assessments and information security audits to ensure compliance with regulatory standards and best practices, including SOC2.
- Managing and reporting on the allocation of Information Security budget
- Perform due diligence and assurance for supply chain security, assessing suppliers/third-party risks and compliance.
- Act as the main point of contact for external security audits.
- Support the commercial organisation by contributing to client security questionnaires
- In conjunction with our operational product infrastructure team, assess and monitor current technology architecture for vulnerabilities, weaknesses and for possible upgrades or improvement
- Educate the business on Information Security best practices and ensure training and internal standards are sufficient.
Requirements
The successful candidate should have these skills:
We recognise that demonstrable skills in all these technologies is not easy to find. Don\’t let that stop you from applying! We can work in partnership to identify your strengths and provide you with the training necessary to fill any gaps
- A
Benefits
Why we think you\’ll enjoy it here:
- Salary up to 140k DOE
- 25 days annual leave + your birthday off, rising to 30 days after 5 years of service
- Fully remote working with occasional travel
- Life assurance
- Private Family Healthcare
- Employee Assistance Programme
- Company contributions to your pension
- Enhanced maternity/paternity pay
- The latest tech including a top of the range MacBook Pro
- Offices equipped with well-stocked pantries with food, snacks and drinks when in the office
Seniority level
-
Seniority level
Executive
Employment type
-
Employment type
Full-time
Job function
-
Job function
Other
-
Industries
IT Services and IT Consulting
Referrals increase your chances of interviewing at Ripjar by 2x
Runcorn, England, United Kingdom 4 days ago
London, England, United Kingdom 4 days ago
Chief Marketing Officer (CMO) β Cybersecurity
Mangotsfield, England, United Kingdom 2 weeks ago
Volunteer SW London Learning Disabilities charity seeks trustees with finance and/or marketing backgrounds | Balance (Support) CIO
Kingston Upon Thames, England, United Kingdom 1 day ago
London, England, United Kingdom 1 week ago
London, England, United Kingdom 3 months ago
Distinguished Strategic Advisor, Office of the Field CTO
London, England, United Kingdom 1 month ago
London, England, United Kingdom 2 weeks ago
Client CTO – Field and Frontline services Innovation
London, England, United Kingdom 3 days ago
Weβre unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr
Chief Information Security Officer (CISO) employer: Ripjar
Contact Detail:
Ripjar Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Chief Information Security Officer (CISO)
β¨Tip Number 1
Network with professionals in the cybersecurity field, especially those who have experience in high-growth environments. Attend industry conferences or webinars where you can meet potential colleagues and learn about the latest trends in information security.
β¨Tip Number 2
Familiarise yourself with the specific compliance frameworks mentioned in the job description, such as ISO27001 and SOC2. Consider joining online forums or groups focused on these standards to gain insights and share experiences with others in the field.
β¨Tip Number 3
Prepare to discuss your hands-on leadership experience in developing security strategies. Think of specific examples where you've successfully implemented security measures or led teams through audits and compliance processes.
β¨Tip Number 4
Showcase your understanding of modern cloud infrastructure and security practices. Be ready to discuss how you've managed security in hybrid environments, particularly with AWS or similar platforms, as this is crucial for the role.
We think you need these skills to ace Chief Information Security Officer (CISO)
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights relevant experience in information security, particularly in leadership roles. Emphasise your familiarity with frameworks like ISO27001 and SOC2, as well as any hands-on experience with cloud infrastructure.
Craft a Compelling Cover Letter: In your cover letter, express your passion for cybersecurity and how your strategic vision aligns with Ripjar's mission. Mention specific achievements that demonstrate your ability to lead security initiatives and manage compliance effectively.
Showcase Technical Expertise: Detail your technical skills related to security architecture, risk assessments, and incident response. Highlight any professional certifications you hold, such as CISSP or CISM, to reinforce your qualifications.
Demonstrate Leadership Skills: Provide examples of how you've successfully led teams in high-growth environments. Discuss your approach to fostering a security-first culture and how you've engaged with senior stakeholders in previous roles.
How to prepare for a job interview at Ripjar
β¨Understand the Companyβs Mission
Before your interview, make sure you understand Ripjar's mission and how their technology combats financial crime. This will help you align your answers with their goals and demonstrate your genuine interest in the role.
β¨Showcase Your Technical Expertise
Be prepared to discuss your experience with security frameworks like ISO27001 and SOC2, as well as your familiarity with cloud infrastructure. Highlight specific projects where you've successfully implemented security measures.
β¨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Think of examples where you've led incident responses or managed compliance audits, and be ready to explain your thought process.
β¨Demonstrate Leadership and Communication Skills
As a CISO, you'll need to engage with senior stakeholders. Prepare to discuss how you've effectively communicated security strategies in the past and how you plan to foster a security-first culture within the organisation.