Head of Information Security leading cybersecurity strategy and managing risk at TradingHub. Collaborate across teams to maintain security posture for corporate and cloud environments.
Responsibilities
Take ownership of the firm’s Information Security function and maintain/improve its security posture
Take the lead in responding to customer security questionnaires or audit follow-ups
Oversee our regular ISO27001 and SOC 2 Type II audits
Research and choose technical tools to proactively detect and respond to weaknesses, threats and potential compromises
Lead the development, implementation, and continuous improvement of information security practices across all teams
Manage regular pentests by external consultants and coordinate with internal resources to remediate issues
Information security risk assessment of third-party service providers
Offer guidance, direction and approval on security solutions and approaches
Advocate for secure engineering best practices throughout the company
Manage the standards, policies and guidelines of the InfoSec frameworks
Maintain an on-going information security awareness program
Monitor our SIEM, and maintain useful reports and alerts in the system
Requirements
Significant industry experience in a technical security role (Security Engineering or Application Security Engineering)
Experience speaking to customers and establishing a good working relationship with infosec counterparts at major financial institutions
Strong technical intuition, with an ability to partner with engineering to evaluate and develop good security standards
Take a risk-based approach when suggesting improvements, or proposing fixes
Ability to perform design reviews and/or technical assessments of software and infrastructure
Excellent knowledge of InfoSec, risk management and governance, data protection
Programming/scripting experience, especially to automate repetitive tasks
Used to multi-tasking and working in a fast-paced environment
Proven ability to identify and articulate information security requirements, risks and issues, and to make clear decisions / recommendations
Ability to understand business drivers and risk appetite and align information security compliance accordingly
Strong ability to communicate clearly and simply, both verbally and in writing
Benefits
Annual discretionary performance bonus
Hybrid working policy
Office lunches twice a week
Aviva private medical insurance + Unum dental cover
Extended parental leave (up to 6 months of fully paid maternity leave)
25 days annual leave + bank holidays
Enhanced company pension plan
Salary sacrifice scheme
5 days study leave towards professional qualifications
Product Security Engineer at Junglee Games ensuring security is integrated into each stage of the software development lifecycle. Collaborate across teams and harden the security of products and platforms.
Senior Penetration Testing Analyst collaborating with DoD and other teams on cybersecurity solutions. Conducting penetration tests and assessments to enhance security across various environments.
Senior Cybersecurity Documentation Specialist managing Risk Management Framework initiatives for Leidos. Supporting cybersecurity documentation and compliance activities across departments with a focus on national security.
Security Engineer role at Contour Software focused on IT administration and security operations. Ensuring tools and systems are secure and aligned with best practices across the organization.
First Vice President driving Axos Bank's information security strategy and leading a high - performing team. Architecting solutions and leading technical initiatives within a fast - paced environment.
Mid to Senior Data Engineer joining CrowdStrike's Cloud Identity & Perimeter team. Focus on developing and maintaining complex data pipelines and security analytics at scale.
Cybersecurity Assessor evaluating enterprise systems for vulnerabilities and compliance. Engaging in assessments and reporting within a hybrid work structure based in Brooklyn Heights, NY.
Security Business Analyst engaging in requirements gathering, risk assessments, and stakeholder liaison. Supporting measurable security outcomes with comprehensive documentation in a hybrid work setup.
Senior Software Engineer developing engaging gamified learning experiences for cybersecurity awareness. Driving technical leadership and product ownership in a rapidly growing team.
Cyber Security Engineer providing cybersecurity support for SCADA, OT networks and industrial control systems at Vestas. Collaborating with cross - functional teams to ensure secure operations in offshore wind farms.