CloudMargin is an award winning, fast growing, FinTech company offering an innovative Software-as-a-Service (SaaS) solution.Through our disruptive technology, our community of users benefit from our affordable, easy to deploy and scalable service.Our vision is to become the dominant provider of collateral management solutions to ALL market participants, irrespective of their size or the instruments they trade.
Backed by influential VC and corporate investors, our global team of over 80 work closely across product, technology, client services, support, sales and marketing. Our flat structure and ethos of trust and communication means you’ll be engaged with many teammates across the business and have members of senior leadership team as key stakeholders.
Primary Purpose of Role
As our Information Security Manager, you’ll own the information security function. You will be the first point of contact for everything from ISMS governance to platform security. You’ll run and evolve an established ISO 27001:2022-aligned programme with real scope to shape it, working directly with our CTO, VP of Engineering and commercial leadership. It’s a hands‑on role for someone ready to step up and build their reputation as a security leader.
- Own and improve the ISMS and Risk Management Framework, including governance meetings, annual audits and policy/process documentation
- Lead reviews of security policies and procedures, adapting them to business needs and generating new policies where required
- Deliver and promote relevant security awareness training and security programs (e.g. phishing simulations)
- Own responses to client and prospect RFIs, RFPs and security questionnaires
- Partner with the Technology team to strengthen our SaaS platform’s security posture, including secure development practices (e.g. OWASP), infrastructure security and data protection, and help developers understand their security responsibilities
- Support the CTO and VP of Engineering in defining and maintaining technical security standards
- Build scalable, proactive security processes, making use of tools and AI where appropriate
Experience
- 5+ years’ experience in Information Security, Governance, Risk Management and/or Compliance roles in a technology / financial services setting
- Demonstrable experience managing an ISMS in an ISO 27001:2022 aligned environment, including external audits and auditors
- Managing budgets and suppliers
- Exposure to securing SaaS or cloud-hosted platforms, including secure development practices (e.g. OWASP), infrastructure security and data protection
- Experience responding to client security questionnaires, RFIs and RFPs, ideally using automation or managed tooling
Skills
- Detailed knowledge of the ISO 27001:2022 standard
- Understanding of application and cloud security fundamentals (e.g. OWASP Top 10, secure SDLC) and the ability to translate these for development teams
- Excellent administrative skills, including document management, audit management, reporting and presenting (Jira and Confluence beneficial)
- Communication skills supporting diverse audiences from external parties to internal technical stakeholders
- Process improvement and automation – comfortable using tools and AI to scale security operations
Education / Professional Qualifications
Relevant professional certifications are desirable but not required (e.g. ISO 27001:2022 Lead Implementer / Lead Auditor, CISSP, CISM, CCSP or cloud security certifications)
At CloudMargin we are committed to reflecting and representing diversity of all people and to equal opportunities in employment. The policies and practices of CloudMargin aim to promote an environment that is free from all forms of unlawful or unfair discrimination and values the diversity of all people. At the heart of our policy, we seek to treat people fairly and with dignity and respect.
We will take every possible step to ensure that no person working at CloudMargin, seeking employment with us, or any member our team will receive less favourable treatment (direct discrimination) or will be disadvantaged by requirements or conditions that cannot be shown to be justifiable (indirect discrimination) on the grounds of their:
- Age
- Disability
- Gender Reassignment
- Marriage and civil partnership
- Pregnancy and maternity
- Race
- Religion or belief
- Sex
- Sexual Orientation
Our equal opportunities policy will help all those who work for us to develop their full potential and the talents and resources of the workforce will be utilised fully to create an organisation of opportunity for all. We will take positive steps to ensure that the policy is known to all employees and potential employees. We will also ensure that equal opportunity is embedded in all our policies, procedures, day to day practices and external relationships.
Equal opportunities in employment
As an applicant, you can be assured that CloudMargin will take positive steps to ensure:
- Job descriptions and associated conditions relate to the job, define any essential qualifications, experience and other skills required in the role, and only include those factors which are necessary and justifiable in terms of objective criteria for the satisfactory performance of the job.
- All applicants are treated equally and fairly throughout the recruitment and selection process.
- All decisions are made in line with CloudMargin’s equal opportunities and recruitment and selection decisions, are made on merit – in line with the job and skills requirements set for the open role.
- A fair, transparent and equal chance in learning and development and terms and conditions of employment.
- A working environment that is free from discrimination, bullying, harassment and victimisation and where all complaints are promptly investigated and dealt with.
- A working environment where a person’s identity and culture are valued and respected.
Positive about disability
We value and encourage diversity in our workforce and are committed to promoting equality and eliminating discrimination.
As an employer, we are aware of our obligations under the Equality Act 2010 and are committed to offering support and making reasonable adjustments to allow full participation in the process. It is important that you let the Recruiting Team know of any requirements you have. CloudMargin will consider any reasonable adjustments. Examples include changing the timing of interview, giving extra time for tests, providing equipment or assistance throughout the process e.g., a reader or scribe.
#J-18808-Ljbffr…
