CrawlJobs Logo

Biso

United Kingdom, Knutsford · Job Posted January 18, 2026
Apply Position
Job Link Share

Job Description

Join us as BISO within Mortgages, Savings & Investments (MSI) - to provide a primary liaison service between the business, technology, and security functions in order to ensure the confidentiality, integrity and availability of information, and support the mitigation of security risk.

Job Responsibility

  • Collaboration with stakeholders to understand their security requirements in business processes and IT projects, to enhance overall risk management
  • Execution of risk assessments to identify and prioritise potential cybersecurity threats that could impact the banks operations and data and guide the implementation of mitigation strategies and communicate findings to relevant findings to relevant senior stakeholders
  • Collaboration with business units to develop and implement security policies and procedures for the banks operations aligned to the risk management framework
  • Management of the implementation, testing and monitoring of security controls across the banks IT systems to ensure the effectiveness of controls and mitigation of risk
  • Execution of training content and sessions to educate employees, enhance cybersecurity awareness and provide guidance on safe online practices
  • Management of complex cybersecurity incidents by collaborating with IT teams and response experts to effectively resolve cases through analysis, expertise support and project supervision
  • Identification of emerging cybersecurity trends, threats, and new technologies to address potential risks by advocating the adoption of new security solutions

Requirements

  • Experienced with candidate experience showing good level understanding of security technology
  • Ability to articulate technical risks clearly to business
  • Ability to manage challenging stakeholders
  • Technical background with certifications and education to show
  • Multiple years’ experience in the cyber tech and risk fields
  • Challenge the status quo by giving ideas and concepts the business can use gained from previous cyber experience

What we offer

  • Competitive holiday allowance
  • Life assurance
  • Private medical care
  • Pension contribution

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Biso

8 matching positions

Business Information Security Officer MEI (BISO)

In support of Fugro's digitalization journey and nature of its business, as a Ge...
Location
Location
India , Navi Mumbai
Salary
Salary:
Not provided
fugro.com Logo
Fugro
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor or Masters Information Security, Information Technology or relevant professional experience
  • 3-8 years of experience. Ideal candidates would have work experience in both Security Operations and Governance, Risk and Compliance
  • Relevant Information Security certifications are seen as a plus, but not required
Job Responsibility
Job Responsibility
  • Collaborates with stakeholders to address and identify high-risk areas and support business-critical projects and key initiatives
  • Works with Project Managers, Business Analysts, architecture, compliance, and support team to ensure Fugro Information Security standards are being followed
  • Responsible for information security posture and assurance for MEI, and where applicable Global
  • Influences to achieve positive change to the Information Security posture through regular engagement and collaboration
  • Actively shares knowledge and insights to increase Information Security awareness throughout the region
  • Collaborates with the Security Operations Center and to respond to and manage priority incidents
  • Actively works with the Security Operating Center to remediate regional vulnerabilities and develop possible use cases
  • Fulltime
Read More
Arrow Right

Biso Information Security Lead - Deputy Director

The Information Security Integration Lead is a key member of the Business Inform...
Location
Location
India , Hyderabad
Salary
Salary:
Not provided
pepsico.com Logo
Pepsico
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s or Advanced degree (Information Security or IT-related studies preferred)
  • 4+ years of IT experience (Consumer and Packaged Goods preferred
  • , with technical knowledge in software engineering, AI, ERP, CRM, Supply Chain)
  • 3+ years Information Security experience (technical experience as a BISO, security architect or engineer preferred)
  • CISM, CISSP, CRISC, GIAC/GSEC certifications (preferred)
  • Well-versed in NIST Cybersecurity Framework and AI RMF, CIS Top 20 Critical Controls, OWASP Top 20 and LLM Top 10
  • Knowledge of Project Management and Agile methodologies
  • Written/spoken English proficiency
  • Strong interpersonal, oral and written communication skills
  • Innovative and collaborative problem solver
Job Responsibility
Job Responsibility
  • Act as Security Coach and advisor to global capability teams in all aspects of security risk management, from issue identification, stakeholder alignment, development of mitigating controls, and execution of remediation plans
  • Identify, assess, and report on security gaps within global capability teams
  • develop action plans to address opportunity areas
  • Provide feedback and coaching to delivery teams to drive defense-in-depth security requirements from initiative planning cycles
  • Engage with key stakeholders and partners as trusted advisor on Information Security strategy, services and processes
  • Develop tailored content and present on Information Security programs, initiatives, incidents, threats and risk topics
  • Identify and overcome stakeholder resistance and barriers, tightening the cohesion between Business, IT, OT and Cybersecurity
  • Monitor and facilitate post-incident recovery activities in collaboration with stakeholders, incident management teams and other key partners
  • Continuously advance and deepen knowledge of PepsiCo’s business, technology and security ecosystem, along with associated best practices and emerging threats
Read More
Arrow Right

Incident Response and BISO Support

Join us as an “Incident Response and BISO Support " at Barclays, where you'll sp...
Location
Location
India , Pune
Salary
Salary:
Not provided
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree in information systems or computer science or any equivalent
  • Understanding of security principles, data protection, and regulatory requirements
  • To be able to identify, prioritize, and guide mitigation of cybersecurity threats
  • Lead Identity and Access Management assurance and related initiatives
  • Enforce secure baselines and remediate cybersecurity configuration deviations
  • Coordinate, investigate, and review cyber incidents
  • Effectively communicate cybersecurity findings and recommendations to senior stakeholders
Job Responsibility
Job Responsibility
  • Collaboration with stakeholders to understand their security requirements in business processes and IT projects, to enhance overall risk management
  • Execution of risk assessments to identify and prioritise potential cybersecurity threats that could impact the banks operations and data and guide the implementation of mitigation strategies and communicate findings to relevant findings to relevant senior stakeholders
  • Collaboration with business units to develop and implement security policies and procedures for the banks operations aligned to the risk management framework
  • Management of the implementation, testing and monitoring of security controls across the banks IT systems to ensure the effectiveness of controls and mitigation of risk
  • Execution of training content and sessions to educate employees, enhance cybersecurity awareness and provide guidance on safe online practices
  • Management of complex cybersecurity incidents by collaborating with IT teams and response experts to effectively resolve cases through analysis, expertise support and project supervision
  • Identification of emerging cybersecurity trends, threats, and new technologies to address potential risks by advocating the adoption of new security solutions
What we offer
What we offer
  • Competitive holiday allowance
  • Life assurance
  • Private medical care
  • Pension contribution
  • Fulltime
Read More
Arrow Right

Global Head of Mainframe and Host System Service

The Global Head of Mainframe and Host System Service provides strategic leadersh...
Location
Location
United States , Irving
Salary
Salary:
250000.00 - 500000.00 USD / Year
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years in mainframe systems management, with at least 5+ years in a senior leadership role over large-scale, complex z/OS environments
  • Deep technical knowledge of z/17 Processors, z Operating systems, Hardware Configuration Management, z/OS, z/VM, LinuxOne, and IBM and Dell storage technologies (DS8K, VMAX TS7700)
  • Extensive experience with IBM DB2, CICS, and MQ
  • Proven ability to manage global teams, vendor relationships, and budgetary responsibilities
Job Responsibility
Job Responsibility
  • Develop and execute a multi-year technology roadmap for mainframe hardware (IBM Z) and software (z/OS, z/TPF, z/VM, LinuxOne) to support digital transformation and high-volume transaction processing
  • Oversee the performance, availability, and capacity planning of z/17 processors and Coupling Facilities, critical storage (DS8K, FlashCopy technologies, FS9K, and TS7700 virtual tape)
  • Manage large data base estate of mission critical database predominantly DB2
  • Ensure high availability and optimization of middleware, including CICS transaction servers, Websphere and MQ Series messaging
  • Lead 24/7 global operations, implementing automation (z/OSMF, System Automation), disaster recovery (BCP), and system security compliance
  • Drive modernization initiatives, manage the mainframe technology budget, manage vendor relationships (IBM, Broadcom etc), and lead technical teams
  • Work closely with BISO’s and Internal Audit to insure all aspects of Security and Vulnerability management are rigorously managed and reported on
What we offer
What we offer
  • medical, dental & vision coverage
  • 401(k)
  • life, accident, and disability insurance
  • wellness programs
  • paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays
  • Fulltime
Read More
Arrow Right

Technical Security Analyst

Location
Location
Romania , Cluj
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A minimum of 3 years of experience in the information security field and the responsibilities described above, especially related to vulnerability management and SecOps teams
  • Experience in end-to-end vulnerability lifecycle management (discovery, classification, remediation, validation, and closure)
  • Awareness of compensating controls and risk mitigation strategies
  • Cross-functional collaboration with BISOs, asset owners, IT operations, and security teams experience
  • Ability to provide expert security guidance to technical teams
  • Continuous security improvement mindset
  • Strong written and verbal communication skills for both technical and non-technical audiences
  • Awareness of corporate security controls, policies, and standards
  • Analytical and problem-solving skills
  • Attention to detail and strong organizational skills
Job Responsibility
Job Responsibility
  • Monitor, analyze, and prioritize vulnerabilities identified across corporate infrastructure, applications, and cloud environments, ensuring alignment with internal severity models and remediation SLAs
  • Validate vulnerability alerts, assess business impact, and coordinate triage activities with asset owners, BISOs, IT operations, and security teams to drive timely remediation
  • Oversee the end-to-end vulnerability lifecycle, from discovery and classification to remediation tracking, closure verification, and compliance reporting
  • Support security posture improvement initiatives by analyzing recurring weaknesses, identifying systemic gaps, and recommending corrective or preventive measures
  • Produce clear dashboards, reports, and metrics to communicate risk exposure, remediation progress, SLA adherence, and posture improvement trends to leadership
  • Collaborate with penetration testing, configuration, and threat intelligence functions to contextualize vulnerabilities and strengthen operational resilience
  • Ensure alignment with corporate vulnerability management standards, policies, and security controls, supporting audits and regulatory requirements
  • Provide expert guidance to technical teams on remediation strategies, compensating controls, and secure configuration improvements
  • Contribute to continuous improvement initiatives, unified workflows, and automation efforts that enhance the organization's overall security posture
  • Undertake additional duties as needed
What we offer
What we offer
  • Smooth integration and a supportive mentor
  • Pick your working style: choose from Remote, Hybrid or Office work opportunities
  • Different working hours to suit your needs
  • Sponsored certifications, trainings and top e-learning platforms
  • Private Health Insurance custom-made for you
  • Individual coaching sessions and accredited Coaching School
  • Epic parties or themed events for our people and their families
  • Fulltime
Read More
Arrow Right

Information Security Risk Officer

Harrington Starr are seeking a BISO\ Business Information Security Officer for a...
Location
Location
Australia , Sydney
Salary
Salary:
Not provided
harringtonstarr.com Logo
Harrington Starr
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • proven track record in a similar BISO role with good broad knowledge across both security risk and compliance and the ability to liaise with technical teams
  • demonstrable knowledge of working with C level stakeholders ideally in a global environment
Job Responsibility
Job Responsibility
  • Help establish security policies, procedures, and guidelines on a variety of information security controls
  • Analyze source system data, existing data models, and profiling data to uncover additional security insights not inherently visible
  • Assess surface security risks and propose ideas, and recommendations to mitigate threats
  • Prepare dashboards and technical reports by collecting, analyzing and summarizing information and trends
  • Provide support to the Global SecOps function in the planning, deployment, and execution of the security business plan
  • Act as a liaison to the business and IT groups and assist them in the implementation of data security, compliance requirements, and information security technologies
  • Partner with the enterprise architecture team to create, publish, and continuously improve the information security architecture for the enterprise
  • Identify regional information security issues and gaps with the enterprise information security policies, standards, and procedures among employees, contractors, alliances, and other third parties
  • Map regional legal and regulatory requirements and developments onto global policies/procedures and make suggestions where needed
  • Coordinate the execution of security governance and assessment control initiatives and Cybersecurity Awareness Programs, and assist with implementation where needed
  • Fulltime
Read More
Arrow Right

Cloud Security Engineer

The Cloud Security Engineer will play a crucial role in ensuring the security of...
Location
Location
Romania , Cluj
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A minimum of 5 years of experience in the information security field and the responsibilities described above
  • Have a bachelor’s degree (Computer Science or similar degree) and higher education or equivalent professional experience
  • Strong technical knowledge of cloud security involving serverless infrastructures, Kubernetes, containers, WAF, encryption protocols, IAM integration, key managers, API management
  • Strong technical knowledge of networking security concepts, including firewalls, IDS/IPS, WAF, VPNs, Zscaler ZPA & ZIA, and encryption protocols
  • Knowledge related to Fortinet, CISCO & Palo Alto
  • Knowledge related to AWS and Azure NW Security
Job Responsibility
Job Responsibility
  • Support for the integration of the global OIS framework
  • Act as a focal point and subject matter expert in cloud security with local corporate and business units, providing thought leadership to key stakeholders
  • Security Standards Compliance: Implement and ensure adherence to corporate security policies and frameworks such as NIST, CIS, ISO, and ENS
  • Cloud Security Advisory: Review that cloud security architectures align with organizational goals. Support hardening processes and assess asset update policies for the infrastructure. Oversee security protocols for cloud providers, primarily Azure and AWS. Evaluate and mitigate security risks associated with the entire cloud environment
  • Network Security Advisory: Review that network security architectures align with organizational goals. Support hardening processes and assess asset update policies for networking infrastructure
  • Interact with technical teams: Direct relations with teams that serve as security champions across the organization to ensure policies low level application
  • Negotiate effectively with technical teams and BISOs at the sub-regional level
  • Engage with platform owners to discuss and resolve technical issues, presenting insights from a security perspective
  • Foster a culture of security awareness and best practices within technical teams
  • Identify tools and processes needed to improve the cloud security maturity, moving towards a zero-trust posture
What we offer
What we offer
  • Smooth integration and a supportive mentor
  • Pick your working style: choose from Remote, Hybrid or Office work opportunities
  • Early bird or night owl? Our projects have different working hours to suit your needs
  • Sharpen your tech skills with our sponsored certifications, trainings and top e-learning platforms
  • Private Health Insurance custom-made for you
  • Individual coaching sessions or join our accredited Coaching School
  • Epic parties or themed events for our people and their families
  • Fulltime
Read More
Arrow Right

Data Security Backend Engineer - Java/ UI Development

Engineer the future of global finance. At Citi, our Tech team doesn’t just suppo...
Location
Location
United Kingdom , Belfast
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven relevant experience in a Frontend Engineering role, with a strong focus on UI development
  • Demonstrated experience working in a large, complex, and/or global environment, preferably within Financial Services
  • Proven ability to manage technical projects or significant project components effectively
  • Consistently demonstrates clear and concise written and verbal communication skills, especially in technical contexts
  • Comprehensive understanding of software design principles, frontend architecture, and analytics tools to identify best practices
  • Demonstrated analytic and diagnostic skills for troubleshooting and problem-solving
  • Ability to work effectively in a matrix environment and partner with virtual teams
  • Ability to work independently, prioritize tasks, and take ownership of various parts of a project or initiative from conception to deployment
  • Ability to work under pressure and manage tight deadlines or unexpected changes in expectations or requirements in a fast-paced development environment
  • Proven track record of contributing to operational process change and improvement through technical solutions
Job Responsibility
Job Responsibility
  • Design, develop, and maintain high-quality, responsive, and performant user interfaces using TypeScript, React.js, and modern frontend technologies
  • Implement state management solutions (e.g., Redux, Redux Toolkit) to ensure scalable and maintainable application state
  • Collaborate with UI/UX designers, backend developers, and product owners to translate requirements into engaging and user-friendly web experiences
  • Integrate frontend applications with various APIs and ensure seamless data flow and authentication (e.g., via OAuth-2 for SSO)
  • Develop reusable UI components and maintain a component storybook for consistency and efficiency across projects
  • Ensure the technical feasibility of UI/UX designs and optimize applications for maximum speed and scalability
  • Write comprehensive unit and integration tests for frontend components and applications
  • Participate in code reviews, mentor junior team members, and contribute to continuous improvement of frontend development processes and best practices
  • Ensure solutions and processes are in accordance with audit initiatives and requirements, consulting with Business Information Security Officers (BISOs) and Technology Information Security Officers (TISOs) as needed
  • Appropriately assess risk when making technical decisions, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients, and assets, by driving compliance with applicable laws, rules, and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct, and business practices, and escalating, managing, and reporting control issues with transparency
What we offer
What we offer
  • 27 days annual leave (plus bank holidays)
  • A discretional annual performance related bonus
  • Private Medical Care & Life Insurance
  • Employee Assistance Program
  • Pension Plan
  • Paid Parental Leave
  • Special discounts for employees, family, and friends
  • Access to an array of learning and development resources
  • Fulltime
Read More
Arrow Right