Information Security Engineer


Greenwich
Permanent
Negotiable
Financial Technology
PR/607726_1787846706
Information Security Engineer

A leading investment firm is looking to hire an experienced Information Security Engineer to play a key role in strengthening and evolving its security function. This position offers a blend of hands-on technical security, security assurance, risk management, and governance, making it ideal for someone who enjoys operating across both engineering and GRC disciplines. You'll work closely with technology teams, auditors, compliance, legal, and business stakeholders to assess security controls, drive remediation efforts, and help shape the firm's overall security strategy.

Key Responsibilities

  • Lead and support internal and external security audits, regulatory reviews, client due diligence exercises, and security assessments.
  • Evaluate the effectiveness of security controls across infrastructure, cloud, identity, endpoint security, vulnerability management, monitoring, and data protection.
  • Manage audit findings, risk treatment plans, control deficiencies, and remediation activities through to completion.
  • Conduct security and technology risk assessments, documenting risks, mitigations, and improvement initiatives.
  • Act as a trusted advisor to technical and business teams on security controls, regulatory requirements, and best practices.
  • Provide oversight of security processes including IAM, incident response, vulnerability management, cloud security, and security monitoring.
  • Develop and deliver reporting on security posture, audit activity, control effectiveness, and material risks.
  • Identify opportunities to improve security processes, tooling, automation, and reporting capabilities.
  • Serve as a key point of contact for auditors, assessors, and other assurance stakeholders.

What we are looking for

  • 5+ years of experience within Information Security, Security Engineering, Security Operations, Technology Risk, Security Assurance, or a related field.
  • Strong understanding of enterprise security domains including:
    • Identity & Access Management (IAM)
    • Vulnerability Management
    • Endpoint Security
    • Cloud Security
    • Logging & Monitoring
    • Incident Management
    • Data Protection
  • Experience supporting audits, regulatory assessments, security reviews, or assurance programmes.
  • Working knowledge of security frameworks such as ISO 27001, NIST CSF, NIST 800-53, or CIS Controls.
  • Ability to assess technical controls and translate security requirements into practical, business-aligned solutions.
  • Strong stakeholder management and communication skills, with the confidence to challenge where required.
  • Financial services, asset management, hedge fund, banking, or other regulated industry experience.
  • Experience with security tooling including SIEM, EDR, cloud security, vulnerability management, identity platforms, and GRC tools.
  • Familiarity with UK financial services regulatory and operational resilience requirements.
  • Professional certifications such as CISSP, CISM, CISA, CRISC, or ISO 27001 Lead Auditor/Implementer

FAQs

Herzlichen Glückwunsch – wir wissen, dass es ein großer Schritt ist, sich die Zeit für eine Bewerbung zu nehmen. Wenn Sie sich bewerben, werden Ihre Angaben direkt an den zuständigen Berater weitergeleitet, der aktiv nach passenden Talenten sucht. Aufgrund der hohen Nachfrage können wir uns möglicherweise nicht bei allen Bewerbern zurückmelden. Wir behalten Ihren Lebenslauf und Ihre Daten jedoch stets in unserer Datenbank und melden uns bei Ihnen, sobald wir ähnliche Positionen sehen oder Fähigkeiten identifizieren, die das Wachstum von Unternehmen vorantreiben können.

Ja. Auch wenn diese Position nicht perfekt zu Ihrem nächsten Karriereschritt passt, hilft uns Ihre Bewerbung dabei, Ihre Fachkenntnisse und Ziele besser zu verstehen. So stellen wir sicher, dass Sie bei der passenden Gelegenheit auf unserem Radar sind.

Wir arbeiten auf unterschiedliche Weise: Zum einen veröffentlichen wir die aktuell verfügbaren Positionen auf unserer Website. Häufig können wir jedoch aus Gründen der Vertraulichkeit nicht alle Vakanzen ausschreiben. Darüber hinaus arbeiten wir mit Kunden zusammen, die einen stärkeren Fokus auf Fähigkeiten legen und darauf, was erforderlich ist, um ihr Unternehmen zukunftssicher aufzustellen.

Aus diesem Grund empfehlen wir, Ihren Lebenslauf zu registrieren, damit Sie auch für Positionen berücksichtigt werden können, die noch nicht geschaffen wurden.

Ja, wir unterstützen Sie bei der Optimierung Ihres Lebenslaufs und der Vorbereitung auf Vorstellungsgespräche. Von individueller Beratung über die gezielte Vorbereitung auf Interviews bis hin zu Gehalts- und Vertragsverhandlungen stehen wir Ihnen während Ihres gesamten nächsten Karriereschritts zur Seite.

Handverlesene Positionen für Sie