Job Closed
This listing is no longer active.
Robust financial controls made easy
Fractional Chief Information Security Officer – CISO
Location
United Kingdom
Posted
72 days ago
Salary
0
Seniority
Lead
Job Description
Fractional Chief Information Security Officer – CISO
ApprovalMax
• Develop and own the Information Security strategy aligned with ApprovalMax's business objectives and European expansion plans • Maintain and continuously improve the Information Security Management System (ISMS) • Create, review, and maintain core security policies, standards, and procedures • Establish and chair a cross-functional Security Working Group (Engineering, Architecture, IT, HR) • Build and present a multi-year security roadmap with clear milestones, resource requirements, and priorities • Serve as the central authority on risk assessment, risk treatment, and risk acceptance decisions • Assess and provide guidance on secure AI adoption across the organisation, including AI-powered product features and internal AI tooling • Maintain ISO 27001 certification and prepare for the 2027 recertification audit • Lead SOC 2 Type II readiness programme (target: 2026-2027), including gap analysis and control mapping • Ensure compliance with GDPR and data protection requirements across EU/UK/US/AU/NZ/CA/ZA jurisdictions • Collaborate with external DPO support provider on privacy-related matters and customer security questionnaires as needed • Provide security oversight across Azure, AWS, and Google Workspace environments • Conduct access reviews and advise on identity and access management best practices • Evaluate and guide implementation of security tooling (SIEM, vulnerability management, endpoint protection) • Oversee VMware Workspace ONE MDM deployment and device security policies • Advise engineering teams on secure SDLC practices, DevSecOps integration, and application security principles • Develop and maintain incident response plans and procedures • Lead incident response tabletop exercises and post-incident reviews • Provide guidance on business continuity and disaster recovery planning • Advise on vendor security assessments and third-party risk management • Design and deliver company-wide security awareness training programmes • Mentor and upskill internal staff on security best practices • Foster a security-first culture across all departments • Act as a trusted advisor to leadership on emerging threats and security trends • Report regularly to the CTO on security posture, risks, and programme progress • Prepare board-level security presentations as required (infrequent) • Support commercial teams by contributing to customer security discussions when escalated
Job Requirements
- 8+ years of progressive experience in information security, with at least 3 years in a CISO, Head of Security, or senior security leadership role
- Demonstrated experience in B2B SaaS environments, ideally in fintech, finance software, or similarly regulated industries
- Proven track record of achieving and maintaining ISO 27001 certification
- Experience preparing organisations for SOC 2 Type II certification
- Hands-on experience securing cloud environments (Azure and/or AWS required; GCP a plus)
- Experience with Google Workspace security configuration and administration
- Background working with distributed, remote-first engineering teams
Benefits
- 26 days paid time off
- 1 additional day off for your Birthday
- Remote office assistance
- Service years recognition financial reward
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Serve as technical lead on secure system design and implementation tasks • Oversee application of DISA STIGs and RMF controls for enterprise systems • Lead vulnerability mitigation plans and POA&M closure efforts • Review system architecture for compliance with DoD and NIST requirements • Guide development of system security plans (SSP), risk assessments, and SARs • Represent cybersecurity engineering in design reviews and CCBs • Coordinate accreditation activities and ensure readiness for audits • Develop security engineering SOPs and process documentation • Advise stakeholders on emerging threats and mitigation strategies • Mentor junior engineers and analysts on secure system practices
Role Description This is a senior, hands-on role with intentionally broad scope. Cloud infrastructure, security operations, and regulatory compliance are consolidated into a single function rather than distributed across a large team — which means real ownership, direct access to leadership, and the ability to shape how security is built and operated at Prometheum. Prometheum is actively maturing its security function, and this role will be instrumental in shaping where it goes — you'll be building on an existing foundation and defining what comes next. The right candidate has worked in a lean, regulated environment before and is energized by breadth rather than frustrated by it. - Design and maintain secure AWS cloud infrastructure using Terraform and Terragrunt, focusing on IAM least-privilege, account isolation, and security guardrails across multiple AWS environments. - Manage AWS network security: VPC segmentation and design, Transit Gateway architecture, PrivateLink for service isolation, Network Firewall, and Route 53 Resolver for DNS security. - Manage and maintain Cloudflare infrastructure including DNS, WAF, and edge compute. - Architect and operate Cloudflare Zero Trust — including Access policies, Tunnel configuration for private network routing, Gateway egress filtering and DNS security policies, and WARP client deployment. - Manage and tune AWS-native security tooling: GuardDuty, Security Hub, Config, Inspector, CloudTrail, and WAF. - Integrate security controls into CI/CD pipelines (GitHub Actions) — including SAST, DAST, container image scanning, dependency vulnerability checks, and secrets detection. - Enhance container and workload security through image signing, admission controllers (Kyverno), runtime policies, and base image hygiene. - Manage dependency and patch lifecycle across Docker images, Helm charts, Terraform modules, and application packages. - Own and operate security monitoring and incident response: maintain SIEM/log aggregation pipelines, tune alerting for anomalous behavior and policy violations, lead root cause analysis, and document post-mortems. - Conduct and coordinate vulnerability assessments; track findings through to remediation. - Automate compliance checks and drift detection using infrastructure scanning and policy-as-code tooling. - Participate in on-call rotation to respond to security and infrastructure incidents. - Support SEC and FINRA compliance obligations by implementing and documenting technical controls, and partner with legal and compliance teams during audits and regulatory reviews. - Document infrastructure patterns, access controls, and security architecture for audit readiness. Qualifications - 7+ years of experience in information technology or cloud infrastructure. - 5+ years of experience in infrastructure, security engineering, or DevOps — with meaningful hands-on overlap across all three. - Strong AWS expertise across security-relevant services: IAM, VPC, GuardDuty, Security Hub, Config, CloudTrail, Secrets Manager, KMS, Network Firewall, and PrivateLink. - Production experience with Cloudflare Zero Trust — Access, Tunnel, Gateway, and WARP; familiarity with Cloudflare Workers or edge compute is a plus. - Solid AWS networking knowledge: VPC design and segmentation, Transit Gateway, PrivateLink, Route 53 Resolver, and Network Firewall in a multi-account environment. - Strong Infrastructure-as-Code skills using Terraform and Terragrunt. - Hands-on experience securing CI/CD pipelines: SAST, container scanning, secrets detection, and policy gates in GitHub Actions or similar. - Experience operating a security observability stack; Datadog is our current platform and familiarity with it is a plus. - Experience operating in a regulated financial services environment and the compliance obligations that come with it. - Experience with vulnerability management lifecycle: scanning, prioritization, tracking, and remediation. - Proficiency in at least one scripting or programming language: Python, Go, Bash, or TypeScript. - Strong written communication skills — able to produce documentation that satisfies both engineering and audit audiences. Requirements - Kubernetes/EKS experience at any depth — even working familiarity is valued. - Experience with blockchain infrastructure or digital asset platforms. - Any of the following certifications are valued but not required: AWS Certified Security – Specialty, Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Kubernetes Security Specialist (CKS). - Experience with AI-assisted tooling in DevOps or security workflows. - Background contributing to or managing vendor security reviews and third-party risk assessments. - Experience working in a highly regulated financial services environment — broker-dealer, RIA, ATS, or custodian — with direct exposure to SEC or FINRA examinations. - Familiarity with Regulation S-P breach notification workflows, FINRA Rule 4530 incident reporting, or AML/BSA technical control implementation. Benefits - Competitive salary based on experience. - Excellent benefits including: Health, Vision & Dental Insurance. - Fully remote position with equipment provided. - Prometheum is an equal opportunity employer. - Prometheum will only contact candidates from an official @prometheum.com email.
Technical Consultant, Cyber Security – One Identity, ForgeRock, Ping Identity
Identity-Team GroupLet Us Guide You Through a World of Identities.
• Develop bespoke IAM solutions together with our clients to meet their specific requirements. • Implement and configure state-of-the-art IAM technologies such as One Identity, ForgeRock, or Ping Identity. • Advise clients throughout the entire project lifecycle and actively contribute your expertise. • Conduct workshops and training sessions to familiarize clients with IAM best practices. • Occasionally travel to client sites to provide on-site consulting and support.
Job Description General Education High focuses on K12-powered virtual high schools with 9-12 programs offering core, comprehensive, credit recovery, honors, and Advanced Placement online courses and a wide variety of electives. Responsible for relationship building with families, students, and learning coaches to ensures that all students are progressing successfully through the program. Bachelor’s degree, 0-1 year of related professional experience Required Certificates and Licenses: Missouri High School English Teaching Certification Required - OR appropriate High School English certification in another state with the ability to obtain AZ licensure within 60 days of employment. Residency Requirements: Must reside in Missouri - This position is remote and strongly prefers candidates that reside in Missouri. May consider candidates that reside in surrounding states. The High School English Teacher is a highly qualified, state certified educator responsible for delivering specific course content in an online environment. Teachers provide instruction, support, and guidance, manage the learning process, and focus on students’ individual needs. Teachers monitor student progress through Stride K12’s learning management system. They actively work closely with students and parents/learning coaches to advance each student’s learning toward established goals. Teachers typically work from home but must travel occasionally throughout the year to various school functions, such as state testing or as otherwise required by the school. K12, a Stride Company, believes in Education for ANY ONE. We provide families with an online option for a high-quality, personalized education experience. Students can thrive, find their passion, and learn in an environment that encourages discovery at their own pace. Passionate Educators are needed at the Stride K12 partner school, Missouri Virtual Academy (MOVA) We want you to be a part of our talented team! The mission of Missouri Virtual Academy (MOVA) is to provide an exemplary individualized and engaging educational experience for students by incorporating school and community/family partnerships coupled with a rigorous curriculum along with a data-driven and student-centered instructional model. Student success will be measured by valid and reliable assessment data, parent and student satisfaction, and continued institutional growth within the academic community. Join us! This is a full-time position. Ability to work independently, typically 40+ hours per week is required. Ability to maintain a professional home office without distraction during workday, typically 9-5 (or 8-4) or as defined by the school. ESSENTIAL FUNCTIONS: Reasonable accommodation may be made to enable individuals with disabilities to perform the essential duties. - Provides rich and engaging synchronous and asynchronous learning experiences for students - Commitment to personalizing learning for all students - Demonstrates a belief in all students’ ability to succeed and meet high expectations - Differentiates instruction based on student level of mastery - Augments course content according to prescribed policies and procedures using appropriate asynchronous and synchronous tools under guidance from principal and coach - Maintains grade book ensuring student academic integrity, makes student placement and promotion decisions, and alerts administrators to concerns about student performance and progress - Prepares students for high stakes standardized tests - Understands that a primary responsibility is to establish and maintain positive rapport with families and regularly communicates with and responds to students and learning coaches/parents in a timely manner - Supports learning coaches/parents with student curricular and instructional issues, as well as basic troubleshooting in a virtual classroom environment that is in line with academy policies and procedures - Travels as required (on average once per month and/or approximately 20% of the time) for face-to-face professional development, student testing, and as required by school REQUIRED MINIMUM QUALIFICATIONS: - Bachelor's degree AND - Active state teaching license AND - Ability to clear required background check DESIRED QUALIFICATION: - Experience working with proposed age group. - Experience supporting adults and children in the use of technology. - Experience teaching in an online (virtual) and/or in a brick-and-mortar environment. - Experience with online learning platforms. - Ability to work collaboratively with other teachers to interpret and produce numeric, tabular, and graphic representations of student data, and use it to drive instructional decisions. - Receptive to receiving coaching regularly with administrators and teacher trainers. - Ability to embrace change and adapt to ensure excellent student outcomes. - Proficient in Microsoft Excel, Outlook, Word, PowerPoint. - Ability to rapidly learn and adapt to new technologies and teaching platforms. - Ability to maintain teacher certification/professional development hours and fluency in K12 systems, programs and curriculum. Compensation & Benefits: Stride, Inc. considers a person’s education, experience, and qualifications, as well as the position’s work location, expected quality and quantity of work, required travel (if any), external market and internal value when determining a new employee’s salary level. Salaries will differ based on these factors, the position’s level and expected contribution, and the employee’s benefits elections. Offers will typically be in the bottom half of the range. - Exempt (salary): We anticipate the salary range to be $48,752- $60.940. Eligible employees may receive a bonus. This salary is not guaranteed, as an individual’s compensation can vary based on several factors. These factors include, but are not limited to, geographic location, experience, training, education, and local market conditions. Stride offers a robust benefits package for eligible employees that can include health benefits, retirement contributions, and paid time off. Work Environment: The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. - This position is virtual. The above job is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow any other instructions, and perform any other related duties, as assigned by their supervisor. All employment is “at-will” as governed by the law of the state where the employee works. It is further understood that the “at-will” nature of employment is one aspect of employment that cannot be changed except in writing and signed by an authorized officer. Job Type Regular The above job is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow any other instructions, and perform any other related duties, as assigned by their supervisor. All employment is “at-will” as governed by the law of the state where the employee works. It is further understood that the “at-will” nature of employment is one aspect of employment that cannot be changed except in writing and signed by an authorized officer. If you are a job seeker with a disability and require a reasonable accommodation to apply for one of our jobs, you can request the appropriate accommodation by contacting stridecareers@k12.com. Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities Stride, Inc. is an equal opportunity employer. Applicants receive consideration for employment based on merit without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status, or any other basis prohibited by federal, state, or local law. Stride, Inc. complies with all legally required affirmative action obligations. Applicants will not be discriminated against because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.




