Start Date
Immediate
Expiry Date
10 Nov, 25
Salary
0.0
Posted On
11 Aug, 25
Experience
0 year(s) or above
Remote Job
Yes
Telecommute
Yes
Sponsor Visa
No
Skills
Commercials, It Security, Cyber Security, Risk Monitoring
Industry
Financial Services
.
Job Title: Chief Security Information Officer
Location: Solihull; a flexible hybrid working model which supports you as well as enabling you to work collaboratively with your colleagues
Hours: Full time, Permanent
A BIT ABOUT US:
At BNP Paribas Personal Finance, we are proud to be part of a global banking group. Our mission is simple: to provide straightforward consumer finance solutions that empower customers to make responsible financial decisions. We partner with some of the UK’s most well-known retailers and brands to help their customers finance purchases in a responsible way.
SKILLS & ATTRIBUTES:
Extensive knowledge of IT Security and Cyber Security, Risk anticipation and Risk Monitoring.
Ability to influence at Board / Executive level.
Able to lead from the front, inspiring other and generating commitment across cross functional teams.
Knowledge of commercials within a business, well versed in negotiating / managing budgets
Experience in working in a highly regulated environment is desirable
THE ROLE:
The Chief Information Security Officer serves as the process owner of all assurance activities related to the availability, integrity and confidentiality of customer, business partner, employee and business information in compliance with the BNPP PF UK information security policies. A key element of the CISO’s role is working with executive management to determine acceptable levels of risk for the BNPP PF UK. This position is responsible for establishing and maintaining a corporate-wide information security management program to ensure that information assets are adequately protected. The CISO has the responsibility of the management of the IT budget within their department, focussed around driving down costs through internal efficiencies and negotiations with external parties where possible.
KEY RESPONSIBILITIES:
Implement and lead a cybersecurity governance that aligns with the Entity’s strategic priorities and the Group’s IT governance, which sets operational objectives for Cybersecurity and arbitrate, and finally ensures the adhesion and mandate of the Entity’s key stakeholders.
Conduct Entity-wide cybersecurity projects and provide expertise to the Entity’s IT teams and projects. Implementing project to improve and strengthen the entity’s level of cybersecurity, in accordance with the Group’s objectives and regulators’ requirements.
Coordinating action in the event of cybersecurity incidents and crises and ensuring that the entity’s essential services are restored.
Leading and supervising the security of customer data and the entity’s data and IT assets. Working with the entity’s IT teams (developers, administrators, users, etc.) and on IT production in increase the security of customer data and the entity’s data and IT assets at both the technical and organisational level.
Creating the necessary internal networks between the IT security teams, the heads of business lines, the control functions (Compliance, RISK, Internal Audit) and HR management teams to ensure the necessary alignment.
Liaising with external organisations, such as law enforcement authorities and other consultative organisations, as required, to ensure that the entity maintains a strong security posture and that its knowledge of the threats identified by these organisations is up to date.