At a Glance
- Tasks: Lead the development of security strategies and ensure compliance for major UK clients.
- Company: Join a global fintech leader shaping the future of finance with innovative solutions.
- Benefits: Competitive salary, inclusive work culture, and opportunities for professional growth.
- Why this job: Make a real impact on information security in a dynamic and evolving industry.
- Qualifications: 5+ years in information security with relevant certifications and strong communication skills.
- Other info: Inclusive environment welcoming diverse backgrounds and experiences.
The predicted salary is between 36000 - 60000 £ per year.
SBS is a global financial technology leader, empowering banks and financial institutions to thrive in an increasingly digital world. Trusted by over 1,500 institutions across 80 countries, SBS delivers innovative, future-ready solutions. Its cloud-native platform features a composable architecture that supports a wide range of financial services—from banking, lending, and compliance to payments and consumer or asset finance.
SBS is embarking on delivering a significant programme of work over the next 2 years, which will improve the experience of millions of customers in the UK. We are looking for an Information Security Officer (ISO) to lead the development of the programme’s security posture, ensuring appropriate certifications, processes and operating model are in place. The ISO plays a critical role in ensuring a highly effective and secure service for one of our major UK clients.
High-Level Objectives:
- Responsible for all aspects of Security delivery for the Major UK Client.
- Be the go-to authority for all Security-related issues and strategies regarding service delivery to the Client.
- Identify, manage, and mitigate information security risks.
- Align information security strategy with business goals and objectives.
- Ensure compliance with relevant local and international laws, as well as internal policies.
- Foster a culture of information security awareness and continuous improvement.
- Drive the adoption of best practices in data protection and cybersecurity.
Core Responsibilities:
- Strategic Leadership: Develop and implement an annual information security roadmap in alignment with business objectives.
- Compliance Management: Keep up-to-date with legal and regulatory changes, ensuring timely compliance and client commitments.
- Risk Assessment: Ensure regular Data Protection Impact Assessments, vulnerability scans, and risk assessments are executed.
- Stakeholder Engagement: Liaise with internal and external stakeholders including regulatory bodies, auditors, and third-party vendors to ensure alignment of Security standards & plans.
- Incident Management: Develop and maintain an incident response plan. Handle security incidents and breaches effectively.
- Budget Oversight: Manage the information security budget to ensure adequate funding for critical initiatives.
- Policy Development & Enforcement: Create and enforce policies related to emerging trends which may impact the service to our client.
- Performance Metrics: Establish, monitor, and report on KPIs to assess the effectiveness of the information security program.
- Resilience Testing: Conduct periodic resilience and penetration testing to evaluate organizational preparedness.
- Employee Training: Evangelise and enable regular training and awareness programs on various aspects of information security relative to the service.
- Vendor Risk Management: Perform security assessments on third-party vendors and manage associated risks.
- Board Reporting: Provide regular reports to the internal and external senior management on the status of information security and risk.
Qualifications Minimum Competencies & Experience:
- Educational Qualification: Relevant security professional accreditations, such as CISSP, IBITGQ, (ISC)² - with evidence of how these have been applied into a working role.
- Experience: Minimum of 5 years of experience in information security, preferably in the financial services or technology sectors.
- Technical Skills: Proficiency in common security tools and AWS platforms, including SIEM, firewalls, and endpoint protection.
- Legal and Regulatory Knowledge: Familiarity with GDPR, ISO 27001, and other relevant information security laws and standards.
- Communication Skills: Excellent written and verbal communication skills, with the ability to convey complex information in a clear manner.
Preferred Competencies & Experience:
- Strong experience across UK government security requirements, such as GBEST, ITHC, His Majesty’s Government (HMG) Security Policy Framework, and equivalent UK public‑sector security standards, particularly in Technology / IT practices is considered as a strong asset.
- Experience in working within a Service Integration and Management (SIAM) model.
- Experience leading or participating in cross-functional teams across departments like legal, human resources, and operations, particularly in the context of incident response and compliance.
- BPSS Security Cleared.
At our organization, we are committed to fighting against all forms of discrimination. We foster a work environment that is inclusive and respectful of all differences. All of our positions are open to people with disabilities.
Information security officer - SBS UK - Sheffield employer: SBS
Contact Detail:
SBS Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information security officer - SBS UK - Sheffield
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the industry. Attend events, join online forums, or even hit up LinkedIn. The more people you know, the better your chances of landing that Information Security Officer role.
✨Tip Number 2
Show off your skills! Prepare a portfolio or a presentation that highlights your experience in information security. When you get the chance to chat with potential employers, use this to demonstrate how you can add value to their team.
✨Tip Number 3
Be proactive! Don’t just wait for job openings to pop up. Reach out to companies you admire, like SBS, and express your interest in working with them. Sometimes, creating your own opportunity is the best way to land the job.
✨Tip Number 4
Apply through our website! We’ve got loads of resources to help you prepare for interviews and showcase your skills. Plus, applying directly shows your enthusiasm for the role and gives you a better shot at standing out.
We think you need these skills to ace Information security officer - SBS UK - Sheffield
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security Officer role. Highlight relevant experience and skills that align with the job description, especially your knowledge of security standards like GDPR and ISO 27001.
Craft a Compelling Cover Letter: Your cover letter should tell us why you're the perfect fit for this role. Share specific examples of how you've led security initiatives or managed risks in previous positions, and don’t forget to express your enthusiasm for working with SBS.
Showcase Your Communication Skills: Since excellent communication is key for this role, make sure your application reflects your ability to convey complex information clearly. Use straightforward language and structure your documents well to demonstrate your skills.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re proactive and keen to join our team!
How to prepare for a job interview at SBS
✨Know Your Stuff
Make sure you brush up on your knowledge of information security standards like GDPR and ISO 27001. Be ready to discuss how you've applied these in your previous roles, especially in the financial services sector.
✨Showcase Your Leadership Skills
As an Information Security Officer, you'll need to demonstrate strong leadership. Prepare examples of how you've led teams or projects, particularly in developing security strategies or managing compliance initiatives.
✨Engage with Stakeholders
Since this role involves liaising with various stakeholders, think about how you can effectively communicate complex security concepts. Practice explaining your ideas clearly and concisely, as if you're talking to someone without a technical background.
✨Prepare for Scenario Questions
Expect questions that put you in hypothetical situations related to incident management or risk assessment. Think through your approach to handling security breaches or compliance issues, and be ready to articulate your thought process.