Head of Information Security
Vor 5 Tagen
**About WSD**
WSD is a leading provider of document and workflow automation software for the global structured products industry. With a strong presence in the financial services sector, WSD supports tier-one banks and asset managers by delivering scalable, secure, and cloud-agnostic solutions that streamline operations from inception to maturity. Backed by private equity and headquartered in London, WSD combines deep domain expertise with cutting-edge technology to drive operational excellence and regulatory compliance.
**Role Overview**
As Head of Information Security & Controls, you will be responsible for defining, implementing, and maintaining WSD’s security strategy, governance framework, and operational security controls. This is a senior leadership role requiring strategic vision, hands-on technical oversight, and cross-functional collaboration across engineering, compliance, and client-facing teams.
**Key Responsibilities**
**Strategic Leadership**
- Own and deliver WSD’s security strategy and roadmap.
- Lead the development and maintenance of security and governance policies, standards, procedures, and configurations.
**Security Operations**
- Oversee all technical security controls across infrastructure, endpoints, and mobile devices.
- Manage the Managed Detection & Response (MDR) service including SIEM/SOC/alerting.
- Lead Threat & Vulnerability Management using Qualys VMDR.
- Oversee Web Application Scanning (Qualys WAS) and Static Code Analysis (SonarQube).
- Direct the Security Incident Management process and ensure timely resolution.
**Compliance & Risk Management**
- Maintain ISO/IEC 27001:2022 certification and ensure ongoing compliance.
- Lead risk management activities including risk assessments and mitigation planning.
- Manage external security assessments and ensure timely remediation.
- Serve as the principal authorizer for policy exceptions, privileged access, and critical security decisions.
**Governance & Vendor Oversight**
- Manage vendor relationships and ensure third-party compliance with WSD’s security standards.
- Oversee escrow arrangements and change management processes.
**Business Continuity & Disaster Recovery**
- Ensure BC & DR plans are current, tested, and effective.
- Lead BC & DR testing and remediation activities.
**Client & Regulatory Engagement**
- Respond to client security questionnaires and audits with accuracy and professionalism.
- Liaise with client-side security, risk, vendor, compliance, and audit teams.
**Team Leadership**
- Manage and mentor a small, high-performing Security team.
- Foster a culture of security awareness and continuous improvement across the organisation.
**PreSales / Contract Reviews**
- Support pre-sales and onboarding processes by defining security requirements and participating in due diligence discussions.
- Act as the security authority for reviewing data processing agreements, SLAs, and regulatory obligations tied to client engagements.
**Qualifications & Experience**
- Proven experience in a senior information security role, ideally within fintech or SaaS.
- Strong understanding of ISO/IEC 27001, SOC, SIEM, vulnerability management, and secure SDLC.
- Experience managing external audits, pen tests, and client compliance engagements.
- Excellent stakeholder management and communication skills.
- Relevant certifications (e.g., CISSP, CISM, ISO Lead Auditor) are highly desirable.
**Why Join WSD?**
- Be part of a mission-critical team powering the structured products industry.
- Work with cutting-edge technologies in a cloud-agnostic environment.
- Collaborate with experienced professionals in a fast-paced, innovative culture.Enjoy a flexible, hybrid working model and strong career development opportunities.
-
Head of Endpoint Security
Vor 4 Tagen
Frankfurt am Main, Deutschland Deutsche Telekom Security GmbH Vollzeit**Your task**: Als **Head of Endpoint Security (m/w/d) **suchen wir einen** **Chapterhead / Teamleiter (m/w/d) **für unser **Endpoint Security Team**. Du begleitest das Team im Wachstum und führst die Mitarbeiterinnen und Mitarbeiter **fachlich **und **personell. **Du bist in allen Belangen **erster Ansprechpartner und Know-How-Träger **zugleich. Dazu...
-
Information Security Specialist
vor 1 Woche
Frankfurt am Main, Deutschland Pictet & Cie (Europe) VollzeitCompany description: Pictet is an investment-led service company, offering wealth management, asset management and related services. We do not engage in investment banking, nor do we extend commercial loans. We are a partnership of seven owner managers and our principles of succession and transmission of ownership have remained unchanged since foundation in...
-
Information Security Specialist
Vor 5 Tagen
Frankfurt am Main, Deutschland PICTET Vollzeit**Your team**: - The Pictet Group is one of the world’s leading independent wealth and asset managers. Founded in 1805 and headquartered in Geneva, Switzerland, the Group is represented in 30 offices in financial centres worldwide, currently employing over 5200 people. Pictet has been present in Frankfurt since 1999 where it employs over 48 people.-...
-
Information Security Officer
vor 2 Wochen
Frankfurt am Main, Deutschland CMC Markets VollzeitYou will be the Information Security Officer for the CMC Markets GmbH organisation, part of CMC Markets Group. CMC Markets GmbH has the primary local responsibility for CMC Markets across Europe, and the relationship with BAFIN as the regulatory oversight. In this role you will be the European contact point for all Information Security issues, ensuring that...
-
Information Security Officer
vor 42 Minuten
Frankfurt am Main, Hessen, Deutschland DAMPSOFT GmbH VollzeitIndustrial and Commercial Bank of China ("ICBC" Group) as the largest bank in China is one of the leading brands in the banking and financial service sector worldwide. With over 400,000 employee in over 30 countries, we are constantly looking for new talents to join our teamEstablished in 1999, ICBC Frankfurt Branch plays a key role by providing a wide range...
-
Senior Information Security Officer
vor 43 Minuten
Frankfurt am Main, Hessen, Deutschland payabl. Vollzeitpayabl. empowers businesses to grow through payments innovation and banking services. Our ambition is to expand our strong portfolio of global financial services we provide to businesses and make them all available in one place on our platform we call As a licensed financial company with principal membership with card schemes, we specialize in global...
-
Head of ICT Risk Operations
vor 52 Minuten
Frankfurt am Main, Hessen, Deutschland Deutsche Börse Group VollzeitYour career at Deutsche Börse GroupYour area of workThe Chief Information Security Office / ICT Risk Office department manages the Cybersecurity and ICT Risk second line of defense for Deutsche Börse Group. It is responsible for strategy, control framework, posture, assurance, data and reporting, awareness, operations, and thought leadership across the...
-
Head of Technical Services – Security Systems
vor 49 Minuten
Frankfurt am Main, Hessen, Deutschland e-shelter security services & Co VollzeitAls Head of Technical Services verantwortest Du den technischen Service und Support integrierter Sicherheitslösungen bei internationalen Großkunden. Die Systeme umfassen Zutrittskontrolle, Videotechnik, sowie verschiedene Detektionssysteme für den Einbruch-, Perimeter- und den Brandschutz. Du willst Kunden begeistern, eine...
-
Global Head of Security Penetration Testing
vor 1 Woche
Frankfurt am Main, Deutschland Deutsche Bank Vollzeit**Global Head of Security Penetration Testing (f/m/x)**: **Job ID**:R0354918**Full/Part-Time**:Full-time**Regular/Temporary**:Regular**Listed**:2024-10-22**Location**:Frankfurt**Position Overview**: - *English version below* _ Als Leiter des Application Penetration Test (APT) -Teams innerhalb der Chief Security Office (CSO) Organisation führen Sie ein...
-
Information Security Specialist
vor 24 Minuten
Frankfurt am Main, Hessen, Deutschland Deutsche Bank VollzeitJob Description:*German version below*About the teamChief Security Office (CSO) is responsible for the creation, maintenance and implementation of the information security strategy of Deutsche Bank Group. CSO steers the measures derived from this strategy and provides guidance on all processes to reduce information security risk, respond to incidents, and...