CrawlJobs Logo

Head of Cyber Regulatory Controls

barclays.co.uk Logo

Barclays

Location Icon

Location:
United States , Wilmington

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Head of Cyber Regulatory Control (Americas) is a key leadership role, reporting to the Head of Global Cyber Regulatory Control within the Cyber Posture and Assurance team, part of Global CISO. The role holder will represent activities specifically within the Americas/US time zone. They are responsible for ensuring that our internal enterprise cyber security control framework is aligned with the Americas regulatory expectations, internal risk appetite, and industry standards and in support of the wider global position. This role contributes to driving cyber control effectiveness across the technology estate, partnering with engineering, operational risk, and compliance teams to embed security-by-design practices and close control gaps. The director leads preparations for regulatory exams, supervisory engagements, and regulator led assessment, serving as a central point of coordination with internal and external auditors as well as with key regulatory bodies in the Americas time zone. With deep expertise in control frameworks (e.g., NIST, ISO, CIS), cyber threat landscapes, and regulatory expectations of Americas Regulators such as FDIC, FRBNY, DFS and SEC / FINRA, the successful candidate will ensure the organization remains resilient, defensible, and regulator-ready at all times.

Job Responsibility:

  • Collaboration with stakeholders to understand their security requirements in business processes and IT projects, to enhance overall risk management
  • Execution of risk assessments to identify and prioritise potential cybersecurity threats that could impact the banks operations and data and guide the implementation of mitigation strategies and communicate findings to relevant findings to relevant senior stakeholders
  • Collaboration with business units to develop and implement security policies and procedures for the banks operations aligned to the risk management framework
  • Management of the implementation, testing and monitoring of security controls across the banks IT systems to ensure the effectiveness of controls and mitigation of risk
  • Execution of training content and sessions to educate employees, enhance cybersecurity awareness and provide guidance on safe online practices
  • Management of complex cybersecurity incidents by collaborating with IT teams and response experts to effectively resolve cases through analysis, expertise support and project supervision
  • Identification of emerging cybersecurity trends, threats, and new technologies to address potential risks by advocating the adoption of new security solutions.

Requirements:

  • Superior written and verbal communication skills, with the ability to present complex technical information to diverse audiences and especially to synthesise complex topics to senior management and external bodies
  • Strong organisation skills, capable of overseeing multiple concurrent activities in a dynamic environment
  • Effective leadership and influence skills
  • Preferably strong experience in any of information security and/or technology with a leadership capacity focused on operational delivery, controls enforcement, or risk management
  • First-hand experience of leading regulatory engagements / examinations
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related discipline
  • Professional certifications such as CISSP, CISM, OSCP, CREST, or equivalent are highly valued.
What we offer:
  • Competitive holiday allowance
  • Life assurance
  • Private medical care
  • Pension contribution

Additional Information:

Job Posted:
March 04, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Head of Cyber Regulatory Controls

Head of Security Governance, Risk & Compliance

We’re looking for a dynamic, experienced Head of GRC to lead our global governan...
Location
Location
Luxembourg , Luxembourg
Salary
Salary:
Not provided
ppro.com Logo
PPRO GmbH
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A proven track record transforming traditional GRC frameworks (ISO27001, PCI DSS, SOC2) into modern, automated, developer-friendly control assurance programmes
  • Solid grounding in financial services regulation, payments, operational resilience, outsourcing/cloud guidelines etc.
  • Strong experience interacting with regulators and auditors (CSSF, FCA, etc.) and implementing regulatory requirements
  • Proven ability to run risk management processes, control frameworks and audit cycles
  • Experience evaluating technology, cyber and operational risks in a cloud-native environment
  • Engineering-first mindset, with an understanding of cloud-native architectures (AWS preferred) and how GRC requirements fit into engineering workflows
  • Experience with GRC tooling, workflow automation or process optimisation
  • Ability to translate regulatory requirements into practical, technical control expectations
  • Excellent communicator, capable of influencing executives, engineers, auditors and regulators
  • Pragmatic, commercially-minded, empathetic and customer-focused
Job Responsibility
Job Responsibility
  • Lead PPRO’s global Security GRC strategy and team, to support our international regulatory and compliance footprint
  • Oversee and enhance our ISO27001:2022 and PCI DSS v4.0 programmes, building a culture of continuous compliance through automation and control transformation
  • Partner with relevant functions to ensure ongoing DORA compliance, including security risk management, incident reporting, operational resilience testing and governance
  • Define and deliver a strategy for a pragmatic, high-value 2nd line automated control assurance programme, underpinned by relevant business metrics
  • Own and manage regulatory expectations on security topics by the CSSF in Luxembourg, FCA in the UK and other international bodies as relevant
  • Maintain and enhance PPRO’s security risk register, defining and delivering cross-organisation improvement and remediation roadmaps
  • Lead security control testing, issue management, KRI monitoring, SLA reporting and Board-level reporting
  • Act as Information Security Officer for PPRO’s local Luxembourg entity
  • Own third party security risk management and oversight for PPRO across the full procurement lifecycle
  • Partner closely with Engineering to build shared understanding and transform controls via thoughtful automation, streamlining evidence collection and control monitoring
What we offer
What we offer
  • Hybrid working with a 3 days / week on site expectation
  • Work from abroad policy, enabling employees to work remotely for up to another 30 days per year
  • €1,000 annual budget for professional growth
  • Leadership cafés, on-the-job training
  • Lunch Vouchers - 12,80euros x 18 / month
  • Enhanced family leave
  • Travel Insurance
  • Gym membership contribution
  • Mental Health Platform
  • Pet-friendly office
  • Fulltime
Read More
Arrow Right

Head of Cyber Security

The Head of Cyber Security plays a critical role in strengthening Solaris’ cyber...
Location
Location
Germany , Berlin
Salary
Salary:
Not provided
solarisbank.com Logo
Solarisbank
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Information Security, Information Technology, Engineering, or a related field
  • Extensive, hands-on cyber security leadership experience, including a proven track record leading first-line cyber security teams, and implementing technical controls in regulated environments
  • Demonstrated success designing and executing cyber security strategies and programmes in complex, regulated environments
  • Strong knowledge of recognised frameworks and regulatory standards (e.g., NIST, ISO 27001, DORA, PCI DSS, SWIFT CSP, MaRisk)
  • Business-fluent English (written and spoken)
  • Strong analytical and problem-solving skills, with sound judgement under pressure
  • Proactive, ownership-driven, and a collaborative partner to Technology and the wider business
  • Structured and hands-on working style
  • comfortable operating both strategically and operationally
Job Responsibility
Job Responsibility
  • Develop and execute a comprehensive cybersecurity strategy aligned with the overall business objectives and regulatory requirements
  • Drive a culture of security awareness and accountability throughout the organization
  • Lead, mentor, and develop a high-performing and semi-autonomous cybersecurity team consisting of 10 team members covering areas like: Offensive Security, Product Security, Cyber Defense Center, Platform & Operations Security, Identity & Access Management
  • Identify, assess, and prioritize cybersecurity risks, vulnerabilities, and threats
  • Implement robust risk mitigation measures to safeguard all digital assets, products, services, customer data, and infrastructure
  • Ensure compliance with relevant cybersecurity laws, regulations, and industry standards, namely DORA, PCI DSS, SWIFT CSP and ISO 27001
  • Establish and maintain effective governance frameworks, guidelines, and procedures to support continuous improvement in cybersecurity practices
  • Oversee the operation and optimization of security technologies, tools, and processes on Preventive Security, Offensive Security, Product Security, Cyber Defense Center, Projects & Architecture and Support and Operations in an effective way
  • Monitor the security posture of networks, systems and applications through proactive threat intelligence and security monitoring
  • Lead the security incident response team in managing cybersecurity incidents and breaches promptly and efficiently
What we offer
What we offer
  • Home office budget
  • Learning & development budget of €1000 per year and a transparent growth framework to support your career goals
  • Competitive salary and a variable remuneration program
  • Monthly meal allowance
  • Deutschland ticket subsidy
  • 28 vacation days, increasing by 2 days after 2 years and 3 days after 3 years with Solaris
  • Opportunity to work abroad for up to 12 weeks per year
  • Monthly trips are reimbursed in line with our travel policy
  • Fulltime
Read More
Arrow Right

Technology Control and Log Review Head

The primary objective of this role is to provide Risk Control and log review ser...
Location
Location
Turkey , Istanbul
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of progressive experience in technology risk management, IT audit, information security, or IT governance, with a significant portion in the banking sector
  • In-depth knowledge of banking industry-specific regulations and compliance requirements
  • Strong understanding of IT control frameworks (e.g., COBIT, ITIL, NIST) and information security standards (e.g., ISO 27001)
  • Professional certifications such as CRISC, CISA, CISSP, or CISM are highly preferred
  • Exceptional analytical and problem-solving skills
  • Excellent written and verbal communication skills in English
  • Demonstrated ability to build and maintain effective working relationships
  • Strong leadership capabilities
  • Ability to thrive in a fast-paced, highly regulated, and dynamic environment
  • Familiarity with SDLC, databases, operating systems, application controls, encryption, development tools and processes
Job Responsibility
Job Responsibility
  • Lead the identification, assessment, and monitoring of technology risks
  • Oversee the design and implementation of technology controls
  • Manage and coordinate all internal and external technology audits, regulatory examinations, and compliance reviews
  • Provide expert guidance and support to technology managers and teams on risk management best practices
  • Manage the tracking and remediation of all technology-related audit findings, risk issues, and control deficiencies
  • Manage communication with local regulators and auditors regarding technology-related topics
  • Collaborate with other risk functions to ensure an integrated approach to enterprise-wide risk management
  • Works closely with regional control teams on risk and control subjects
  • Acts as a technology liaison for cyber security related cases
  • Manages the Local Log Review process and the team
  • Fulltime
Read More
Arrow Right
New

Head of Cyber Security

At Vodafone, we’re not just shaping the future of connectivity for our customers...
Location
Location
Ireland , Dublin
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University Degree: IT/Telecom Studies
  • Minimum 8 years of experience in Cyber field
  • Experience in team management and coaching
  • Experience in risk management
  • Good understanding of communication protocols
  • Windows/Linux knowledge
  • Knowledge of network principles
  • DBMS knowledge
  • Experience in adopting ISO27001
  • Certifications in the field of information security CISA, CISSP, CISM, CRISC, CCNA, etc.
Job Responsibility
Job Responsibility
  • Deliver a secure by design strategy and process for Vodafone’s technology platforms including network, cloud, and digital services
  • Lead the implementation of NIS2 requirements across IT, network and digital infrastructure
  • Define and maintain security governance aligned to global and local policy and regulation
  • Implement enhanced risk-management practices across supply chain and incident response
  • Act as primary liaison with authorities and regulatory bodies regarding cyber security reporting obligations
  • Provide structured reporting to executive committees and company-wide forums
  • Ensure management-body accountability and support for cybersecurity risk management
  • Develop and maintain KPIs for threat detection, vulnerability reduction, incident response, and compliance posture
  • Act as the first level of escalation for prioritising requests within the managed team
  • Responsible for the quality of the team's results and alignment with applicable policies and procedures
What we offer
What we offer
  • Competitive Salary
  • Flexible working (times and location) is part of our culture where your hours can facilitate your personal work-life balance
  • Generous Employer Pension contribution
  • Free Phone Bill – When you join the team, your phone bill is on us! You will also receive mobile phone purchasing discounts
  • Learning and Development – We provide extensive training to all of our employees so they can progress in their careers! There is also the Vodafone University where our employees can gain incredible skills!
  • Exclusive Family and Friends Discounts – Receive additional discounts for you, your Family and Friends on Vodafone Products!
  • 23 days annual leave and 3 charity days off – PLUS a dedicated day off for your birthday
  • Access to our Wellness centre including free access to our Gym, health and wellness centre and external practitioners
  • Fulltime
Read More
Arrow Right

Head of IT

Harbour Healthcare is recruiting for a Head of IT to lead and develop our IT Ser...
Location
Location
United Kingdom , Stockport
Salary
Salary:
65000.00 - 75000.00 GBP / Year
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Significant experience leading IT operations in a multi-site or regulated environment
  • Strong background in infrastructure, cybersecurity, and operational risk management
  • Experience owning both hands-on delivery and strategic accountability
  • Comfortable operating with executive visibility and accountability
  • Enhanced DBS check in relation to Children and Adults
  • Driving License required
Job Responsibility
Job Responsibility
  • Conduct a comprehensive review of the organisation’s existing IT infrastructure, security controls, and operational practices
  • Assess current arrangements covering: Networks, connectivity, and remote access
  • Identity and access management
  • Devices and mobile technology
  • Backup, disaster recovery, and business continuity
  • Third-party suppliers and outsourced IT services
  • Identify key risks, gaps, and dependencies, with clear prioritisation based on business and regulatory risk
  • Produce a costed, phased improvement plan, aligned to organisational growth and operational priorities
  • Provide regular, clear updates to the Executive Team on findings, risks, and progress
  • Lead day-to-day IT operations across care homes and central teams
What we offer
What we offer
  • £5000 Car Allowance
  • Paid Mileage
  • Fulltime
Read More
Arrow Right

Risk Analyst – Pensions & Investment Management

We are working with a highly respected pension administration and investment man...
Location
Location
United Kingdom , London
Salary
Salary:
45000.00 - 60000.00 GBP / Year
auditandriskrecruitment.com Logo
Audit & Risk Recruitment
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Some in enterprise risk management, preferably within pensions, asset management, or a regulated environment
  • You will already have developed some understanding of risk frameworks, governance, policies, and control environments
  • Some experience or understanding of delivering regulatory change initiatives, such as General Code of Practice, Provision 29 or GDPR
Job Responsibility
Job Responsibility
  • Support the Risk Manager and Head of Risk with ORAs in line with the General Code of Practice
  • Assess risks across a wide range of areas including investment, administration, cyber security, and internal controls
  • Support the development and embedding of enterprise risk frameworks, policies, and controls
  • Work closely with senior stakeholders to identify, assess, and mitigate key business risks
  • Play a hands-on role in regulatory change projects, including delivery and implementation
  • Produce clear, high-quality risk documentation and reporting
  • Fulltime
Read More
Arrow Right
New

Director, UK & EU Head of Technology Risk

Own and develop the regional UK and Europe technology risk roadmap, including al...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
brewin.co.uk Logo
Brewin Dolphin
Expiration Date
March 31, 2026
Flip Icon
Requirements
Requirements
  • Critical Thinking
  • Cyber Security Management
  • Decision Making
  • Detail-Oriented
  • Information Security Management
  • Information Technology Security
  • Interpersonal Relationship Management
  • IT Security Architecture
  • Performance Management (PM)
Job Responsibility
Job Responsibility
  • Own and develop the regional UK and Europe technology risk roadmap, including all aspects of talent management, to create and cultivate a high performing technology risk team
  • Develop the regional delivery model of Enterprise Global IT Risk (GITR) services
  • Manage and measure how GITR capabilities and services are delivered to drive consistency whilst ensuring regional needs are met
  • Responsible for all GITR content and input into regional 1LoD and 2LoD Technology Risk Committees
  • Execute the regional Technology Risk Profile, presenting outputs to support risk reporting at the appropriate 1LoD and 2LoD Technology Risk committees
  • Provide oversight of and strategic direction for all regional IT risk reporting, ensuring alignment with Enterprise logic whilst ensuring region-specific capabilities are appropriately developed
  • Develop and implement a regional strategy to ensure compliance with regional technology regulatory requirements can be effectively demonstrated in a comprehensive, efficient and timely manner
  • Develop and implement a regional IT Asset Identification execution strategy, in conjunction with the relevant Enterprise teams to ensure regional alignment and global consistency
  • Act as a technology risk ambassador across business platforms in region, identifying IT Risk issues and partnering with functional heads in technology, group risk management, compliance and privacy to define and implement solutions
  • Engage with regulators and audit teams on regional assessments ensuring high caliber capability is provided driving confident engagement, and high quality, accurate output
  • Fulltime
Read More
Arrow Right

Head of Legal Cyber Services

We are seeking a confident, entrepreneurial, and highly capable Head of Cyber to...
Location
Location
United Kingdom
Salary
Salary:
Not provided
calibrecandidates.com Logo
Calibre Candidates
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience as a senior legal leader or partner-level professional, with significant specialist expertise in Cybersecurity and data protection
  • Strong track record of business development, client acquisition and relationship management
  • Demonstrable experience building and leading successful legal teams
  • High level of commercial awareness with the ability to manage profitability and growth
  • Excellent leadership, communication and stakeholder engagement skills
  • Ability to operate strategically while remaining hands-on with complex client work
  • Strong understanding of regulatory requirements and professional standards
  • A growth-focused mindset with a commitment to innovation and service excellence
Job Responsibility
Job Responsibility
  • Lead the development, strategy and delivery of the Cyber practice as a core growth area
  • Sit on the Executive Leadership Team, contributing to firm-wide decision making and long-term strategy
  • Undertake complex, high-value fee earning work while ensuring profitability and service excellence
  • Provide specialist legal advice across a broad range of cybersecurity and data protection matters
  • Build, lead and inspire a high-performing team, fostering a culture of accountability and continuous improvement
  • Drive business development and marketing initiatives to establish the Firm as a trusted advisor in the Cyber sector
  • Develop and maintain strong client relationships, delivering clear communication and outstanding service
  • Manage financial performance of client matters, ensuring efficiency and commercial control
  • Identify and promote collaboration opportunities across departments and the wider Group
  • Represent the company at external events, with clients and industry stakeholders
What we offer
What we offer
  • Competitive salary (negotiable)
  • Enhanced contributory pension scheme
  • Performance-related bonus
  • Flexible benefits package
  • Electric car scheme
  • Share purchase scheme with interest-free loans
  • Flexible working with home and office-based options
  • Fulltime
Read More
Arrow Right