
Posted a month ago
No clicks
**Information Security Director:** Lead Starling's Information Security, driving continuous improvement and governance. Oversee team, manage policy framework, liaise with external bodies, and support strategy reviews. Requires proven InfoSec leadership, team management, and knowledge of industry standards (ISO/IEC 27001). Senior role, hybrid work arrangement, hands-on with a keen eye on future CISO potential.
- Compensation
- Not specified GBP
- City
- London, Cardiff, Manchester
- Country
- United Kingdom
Currency: £ (GBP)
Full Job Description
Description
Starling is the UKs first and leading digital bank on a mission to fix banking! We built a new kind of bank because we knew technology had the power to help people save, spend and manage their money in a new and transformative way.
Were a fully licensed UK bank with the culture and spirit of a fast-moving, disruptive tech company. Were a bank, but better: fairer, easier to use and designed to demystify money for everyone. We employ more than 3,000 people across our London, Southampton, Cardiff and Manchester offices.
Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together!
The way to thrive and shine within Starling is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, discovering, to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness.
Hybrid Working
We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week.
About the role
Here at Starling we are growing, and we are keen to recruit an Information Security Director as part of our continued investment in Information and Cyber Security capability. Reporting to the CISO, the Information Security Director will lead the Office of the CISO and act as a line manager to a team of Information Security analyst(s). The successful candidate will lead the continuous improvement of our Information Security capabilities and governance.
The role will suit an ambitious information security or cyber specialist, with strong team building and leadership skills who aspires to the CISO role in the future.
What youll get to do
- Manage and maintain the Information Security Policy Framework across Starling Group that addresses the needs of the Group, its customers, employees and other stakeholders in line with relevant legislation and industry standards.
- Establish and maintain standards for control implementation procedures.
- Liaise with external bodies and organisations to keep abreast of emerging trends, technologies and legislation that have an impact on Information Security.
- Support security controls assessment, and accreditation, e.g. ISO/IEC 27001.
- Manage the input to the Information Security Risk Register and ensure coherence with the Banks Risk Management framework.
- Act as point of contact for the second, third line of defense and other stakeholders (e.g. Legal, Regulatory Affairs) and coordinate audit and request response.
- Manage the creation of Board, committees and regulatory engagement meeting material and communication.
- Establish a framework and manage the Information Security reporting capability incl. regular revision of Key Risk and Performance Indicators.
- Support the CISO in the yearly Information Security strategy review and roadmap definition.
- Manage the Information Security related budget.
