Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Information Security Officer image - Rise Careers
Job details

Information Security Officer

Information Security Officer

  • Full time; reporting to SVP Information Security
  • Remote/Hybrid UK based (HQ in Central London with Global Responsibilities and expected to visit the office for team meetings and in-person meetings when required)
  • UK Right to work required (No visa sponsorship provided) 
  • £52k - up to £62k + annual bonus
  • Company Benefits



Description

For far too long, pensions have been difficult to understand and manage. Founded in 2014, we aspire to make as many people as possible pension confident so that everyone can enjoy a happy retirement.

PensionBee is creating a global leader in the consumer retirement market with over £5.5 billion in assets on behalf of more than 260,000 customers. We help our customers to combine their retirement savings into a new online account, which they can manage from the palm of their hand.

PensionBee accounts are invested by the world’s largest investment managers, collectively looking after more than $10 trillion in savings between them. Each PensionBee customer has a personal account manager (“BeeKeeper”) to guide them through their savings and retirement journey. PensionBee has an “Excellent” Trustpilot rating based on over 10,000 reviews.

As a public company, we aspire to the highest standards in everything we do because our customers deserve peace of mind. Our team of over 200 pension professionals, based in London and New York, has one focus: our customer.

PensionBee is named in FT1000 Europe’s ‘Fastest Growing Companies in 2023 and 2024’ and is listed on the London Stock Exchange (LON: PBEE).

PensionBee is growing at scale and we are seeking a highly skilled Information Security Officer to support our global Information Security and data compliance initiatives. This role will be integral to our Information Security and IT Operations Team, ensuring adherence to cybersecurity frameworks, data protection regulations in both the UK & US, and best practices across multiple jurisdictions.

About the role

We are looking for an Information Security Officer who not only understands security frameworks, standards and best practices but can also simplify and unify complex IT, Information Security, and Data Privacy processes to enhance adoption across the business. The ideal candidate will work closely with various teams to implement security measures that are both effective and easy to integrate, ensuring that security and compliance are embedded into daily operations without unnecessary complexity.

This role requires someone with exposure to ISO 27001, NIST, GDPR, UK Data Protection Act, US cybersecurity regulations, and data privacy and governance frameworks, particularly in a Cloud SaaS environment. You will be responsible for streamlining security processes, helping teams onboard new systems securely, and automating workflows where possible to improve efficiency.

This is a UK-based role, but as we operate globally, flexibility to collaborate across different time zones may be required.

Hiring Process 

  1. Include a Cover Letter with your CV describing:
    1. What motivates you to apply for this role at PensionBee, and what draws you to the company specifically? 

Please note - applications without a Cover Letter will not be shortlisted to the next stage.

  1. Shortlisted candidates will be selected for a structured 1hr interview
  2. Final stage interview will consist of a series of questions and the candidate will be given a task to complete in advance of the interview which they will be expected to present to the interview panel

Additional information about the structured interview;

  • behavioural/competency interviews
  • questions are pre-determined to keep things consistent

Key responsibilities

Information & Cybersecurity Frameworks

  • Act as a trusted advisor for information security across the business.
  • Ensure ongoing compliance with ISO 27001, Cyber Essentials Plus, and other relevant certifications through monitoring and reporting.
  • Continuously assess and enhance security controls in response to evolving risks and business operations.
  • Work cross-functionally to embed security best practices, promoting a "Shift-Left" and 
  • "Secure-By-Design" mindset.
  • Conduct risk assessments and vulnerability analyses to proactively identify and address potential threats.

Data Protection, Privacy & Governance Compliance

  • Develop and enforce policies and processes to ensure compliance with UK GDPR, US data protection laws, and global privacy standards.
  • Monitor regulatory changes and adapt internal processes accordingly.
  • Conduct Data Privacy Impact Assessments (DPIAs) and compliance audits.
  • Support the VP of Data, Platforms & AI; in developing data governance policies and standards, including data catalog management.
  • Provide security and compliance guidance for data governance initiatives.

Process Simplification, Automation & Continuous Improvement

  • Work with business teams to simplify and automate security and data privacy processes to improve usability and compliance. An example of some of the process improvements you will be involved in are: Access Control Review & Recertification, Ongoing Vulnerability scanning embedded into Secure Software Development Lifecycle (SSDLC), Streamline GDPR processes in relation to Subject Access Requests and deletion etc. The vision is to implement or onboard new capability to automate these processes.
  • Assist with the secure onboarding of new systems and capabilities while ensuring compliance with security frameworks.
  • Participate in internal and external audits to assess security and compliance effectiveness.
  • Collaborate with stakeholders to address audit findings and implement corrective actions.

Training & Awareness

  • Work with the Junior Information Security Analyst to help develop and deliver engaging security awareness training to enhance employee understanding of data protection and cybersecurity best practices.
  • Stay informed about emerging threats and evolving security technologies to continuously refine security policies and training.



Candidate Experience & Skills

  • 5+ years of experience in Information Security, Cybersecurity, or Data Privacy, with a solid foundation in IT Operations & Infrastructure.
  • Previous exposure to Frameworks and Standards such as ISO 27001, NIST, GDPR, UK Data Protection Act, US cybersecurity regulations, and data governance frameworks.
  • Experience working in an Agile development environment.
  • Proven ability to simplify and automate complex security and compliance processes for broader adoption across the business.
  • Hands-on experience working in Cloud SaaS environments, implementing cloud security best practices.
  • Exposure to IT risk management and security control implementation.
  • Knowledge of network security, cloud security, and security operations.
  • Experience with Data Loss Prevention (DLP) controls to protect sensitive information.
  • Strong analytical, problem-solving, and communication skills, with the ability to explain security concepts to both technical and non-technical audiences.
  • Experience working in a global security environment, with the ability to collaborate across multiple time zones.
  • Clear written and spoken English.
  • Experience in a regulated environment is a plus but not essential.

We welcome all candidates and are proud to have been awarded Employer of the Year at the Financial Adviser Diversity in Finance Awards 2022 and Trailblazing Company of the Year 2024. 

We know the need to meet every criteria can sometimes get in the way of meeting brilliant candidates. We believe the right drive is often more important than degrees, so if you have an interest in the role, relevant past experience and are passionate about what we do, get in touch as we'd love to hear from you. 

Additionally, it’s not just about paying lip service but monthly celebrations of our differences and opportunities to learn more about our colleagues and friends; from our discussion on men’s mental health to our Pride Picnic. At PensionBee we're committed to provide equal rights, opportunities and treatment for all. We believe all companies have a duty to provide a supportive working environment for their employees and should be transparent. Here you can find our Gender Equality policy and Diversity and Inclusion policy which provide more information on our approach, including our commitments to flexible working requests and reasonable adjustments from day one. 

We want everyone to be able to access the same opportunity, and some people might need extra support to have this access. If there’s an adjustment we can make that would help you perform to the best of your ability during the application process, like using a computer during a task instead of writing by hand, or booking in time for a longer interview, please reach out to our Training & Culture Manager and we kindly ask you to only contact Emma related to reasonable adjustments enquiries. You can contact Emma on emma.ferenc@pensionbee.com. 







Benefits

  • end of year bonus and generous equity schemes;

●      remote working enabled environment and culture;

●      25 days annual leave, 5 extra days for people with caring responsibilities and additional leave days for people living with a disability;

●      generous and transparent gender inclusive Parental Leave policy; 

●      pension scheme with 5% matching employer contribution;

●      UK Healthcare Cash Plan, Thrive, SmartHealth Virtual GP, Income Protection Insurance and Enjoy Benefits;

●      regular company-wide sessions: CEO Session, Show & Tell and varied D&I agenda; giving you an opportunity to share your ideas and learn about other areas of the business;

●      a  Happiness! meeting: Every 6 weeks you will have the chance to speak with your manager about your well-being; and 

●      a warm and motivated team working to make a real difference for our customers.

Average salary estimate

$57000 / YEARLY (est.)
min
max
$52000K
$62000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Information Security Officer, PensionBee

Join PensionBee as an Information Security Officer and play a crucial role in safeguarding our customers' pensions and ensuring their peace of mind! In this vibrant and dynamic position, you will support our global Information Security and data compliance initiatives, working closely with cross-functional teams to implement security measures that align with frameworks like ISO 27001 and NIST. This hybrid role allows for flexibility while fostering collaboration with our diverse teams in London and New York. You'll help simplify complex IT and data privacy processes, making security a natural part of our daily operations. With an annual salary ranging from £52k to £62k plus bonuses, this full-time opportunity is perfect for someone passionate about cybersecurity in both UK and US contexts. Your work will involve conducting risk assessments, developing compliance policies, and guiding teams on security best practices. If you thrive in an Agile environment and are eager to help us automate workflows while enhancing security awareness, we would love for you to apply! At PensionBee, we’re committed to creating a positive and inclusive workplace where every team member can shine. Let's work together to empower people to be pension confident!

Frequently Asked Questions (FAQs) for Information Security Officer Role at PensionBee
What are the key responsibilities of an Information Security Officer at PensionBee?

As an Information Security Officer at PensionBee, you'll act as a trusted advisor, ensuring compliance with security frameworks like ISO 27001 and Cyber Essentials Plus. Your responsibilities will include conducting risk assessments, enhancing security controls, guiding on data protection regulations, and collaborating across teams to streamline security processes. This role is essential in embedding a security-first mindset throughout the company.

Join Rise to see the full answer
What qualifications are required for the Information Security Officer position at PensionBee?

To be considered for the Information Security Officer role at PensionBee, candidates should have a minimum of 5 years of experience in Information Security or Cybersecurity. Familiarity with standards such as ISO 27001, NIST, GDPR, and experience in a Cloud SaaS environment are essential. Strong analytical and communication skills are key, as you'll need to translate complex security concepts for varied audiences.

Join Rise to see the full answer
What is the work culture like for the Information Security Officer role at PensionBee?

At PensionBee, the work culture values flexibility, inclusivity, and collaboration. As an Information Security Officer, you'll be part of a warm, motivated team dedicated to making a real difference in customers' lives. The company promotes a 'Shift-Left' and 'Secure-By-Design' mindset, ensuring security is integrated seamlessly into daily operations while fostering a supportive environment for all employees.

Join Rise to see the full answer
How does PensionBee support professional growth for an Information Security Officer?

PensionBee is dedicated to the professional growth of its employees, including those in the Information Security Officer role. You'll have access to training programs, opportunities to participate in compliance audits, and the chance to lead engaging security awareness sessions. The company's commitment to employee well-being means regular feedback sessions and opportunities to share your insights, fostering an environment of continuous improvement.

Join Rise to see the full answer
What benefits can an Information Security Officer expect at PensionBee?

As an Information Security Officer at PensionBee, you'll receive a competitive salary alongside comprehensive benefits. These include an annual bonus, generous leave days, pension contributions, healthcare cash plans, and opportunities for equity schemes. The positive work environment is complemented by initiatives focused on employee well-being and regular team engagement sessions.

Join Rise to see the full answer
Common Interview Questions for Information Security Officer
Can you explain your experience with cybersecurity frameworks relevant to the Information Security Officer role?

In your response, detail specific frameworks you've worked with, such as ISO 27001 or NIST. Discuss projects where you implemented security measures and how you adapted those frameworks to the business needs, focusing on results achieved.

Join Rise to see the full answer
How do you approach risk assessments in a cybersecurity context?

Explain your risk assessment methodology, including how you identify, analyze, and prioritize risks. Provide examples of how your assessments have led to enhanced security controls or the mitigation of specific threats.

Join Rise to see the full answer
What strategies would you use to promote a security-first mindset within the organization?

Discuss how you'd work cross-functionally to educate teams about security best practices. Share methods you've used in the past, such as training sessions or workshops, that effectively raised awareness and compliance with security protocols.

Join Rise to see the full answer
Can you provide an example of how you simplified a complex security process?

Share a specific instance where your efforts led to the simplification of a security or compliance process. Describe the challenges faced, the solutions you implemented, and the positive outcome for the team or organization.

Join Rise to see the full answer
How do you stay current with emerging cybersecurity threats and technologies?

Detail your commitment to continuous learning, including industry publications, conferences, and professional networks you engage with. Highlight specific resources or communities that keep you informed about the latest trends in cybersecurity.

Join Rise to see the full answer
What experience do you have with data protection regulations like GDPR?

Discuss your hands-on experience in enforcing data protection regulations. Mention specific roles where you've developed policies to ensure compliance, and detail any assessments or audits you conducted related to data privacy.

Join Rise to see the full answer
What role do you think automation will play in cybersecurity?

Offer insights into the future of cybersecurity, emphasizing the importance of automation in streamlining processes, enhancing compliance, and reducing human error. Provide examples from your experience where automation led to improved safety.

Join Rise to see the full answer
How do you prioritize tasks in a fast-paced cybersecurity environment?

Describe your task prioritization techniques, especially in high-pressure situations. Use examples that illustrate your ability to assess urgency and importance while ensuring compliance and security measures are upheld.

Join Rise to see the full answer
Describe a time when you had to communicate a complex security issue to a non-technical audience.

Share an anecdote highlighting how you translated technical jargon into understandable language. Emphasize your communication techniques and the successful outcome, which might include improved awareness or action taken by non-technical stakeholders.

Join Rise to see the full answer
What do you see as the biggest challenge facing information security today?

Provide your perspective on current challenges, such as evolving threats or regulatory compliance. Connect this insight to the role of an Information Security Officer and how you plan to address these challenges in your work at PensionBee.

Join Rise to see the full answer
Similar Jobs
Amartha Remote No location specified
Posted 9 days ago

Become part of Amartha's dynamic team in our Tech Talent Pool and contribute to impactful projects while growing professionally.

Photo of the Rise User
Posted 5 days ago
Customer-Centric
Rapid Growth
Diversity of Opinions
Reward & Recognition
Friends Outside of Work
Inclusive & Diverse
Empathetic
Feedback Forward
Work/Life Harmony
Casual Dress Code
Startup Mindset
Collaboration over Competition
Fast-Paced
Growth & Learning
Open Door Policy
Rise from Within
Maternity Leave
Paternity Leave
Flex-Friendly
Family Coverage (Insurance)
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off

Seeking a hands-on Microsoft Cloud Architect to drive cloud modernization and implementation for the Town of Herndon.

Photo of the Rise User
ProArch Remote No location specified
Posted 6 days ago

Become an integral part of ProArch as a Cloud Support Engineer, providing expert support in cloud technologies.

Photo of the Rise User
Anduril Industries Hybrid Costa Mesa, California, United States
Posted 6 days ago

Anduril Industries seeks a Hardware Technician I to join their team in Costa Mesa, supporting essential hardware and software functions.

Photo of the Rise User
Posted 4 days ago

Lead the development of critical data infrastructure as the Senior Technical Lead at the Office of Technology and Innovation in NYC.

Photo of the Rise User

Join Access Softek as a Junior Mobile/Web Penetration Tester to revolutionize digital banking security through innovative technology.

Snapchat Hybrid Los Angeles, California
Posted 11 days ago

Join Snap Inc as a Privacy Engineer to develop cutting-edge privacy-preserving systems and enhance user experiences across their platforms.

Photo of the Rise User
General Dynamics Information Technology Hybrid US, Loudoun County, VA; Virginia, Chantilly, Loudoun County, VA
Posted 4 days ago

Join GDIT as a Systems Administrator and maintain the crucial infrastructure that supports our technology-driven solutions for the U.S. government.

PensionBee is an online pension manager that helps customers find and combine their old pensions into one good value online plan. Customers can manage their pension like they manage their bank account; they can look at their live balance, make con...

3 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
INDUSTRY
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 16, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
80 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
Someone from OH, Alliance just viewed Store Representative - Mid-Shift at Serv-U-Success
Photo of the Rise User
Someone from OH, Eastlake just viewed (REMOTE) Account Executive at Trellis
Photo of the Rise User
12 people applied to Junior Security Engineer at Epic
Photo of the Rise User
Someone from OH, Elyria just viewed Security Officer - Factory Patrol at Allied Universal
C
14 people applied to ISSE/ ISSO at Centuria
Photo of the Rise User
Someone from OH, Cincinnati just viewed Staff Software Test Engineer, Platform at Clari
Photo of the Rise User
Someone from OH, Perrysburg just viewed Sourcing Leader, Minerals & Cullet at Owens Corning
Photo of the Rise User
Someone from OH, North Royalton just viewed Remote AI Voice Trainer (High-Quality Microphone Required) at Datadog
C
Someone from OH, Akron just viewed Phlebotomy Technician - Outpatient at CCF