Information Security Engineer – CISO Track

🕒 Yesterday

🇬🇧 United Kingdom – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 14%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Tangible

Tangible

11 - 50 employees

Founded 2023

💼 Consulting

📦 Logistics

📣 Marketing

Consulting • Logistics • Marketing

Tangible is a London-based financial technology company and secondary markets platform that provides liquidity solutions and advisory for institutional investors. It operates auction and liquidity hub products for closed-end and semi-liquid funds, serving limited partners (LPs), general partners (GPs), wealth managers and secondary liquidity providers. Tangible offers a tech suite and strategic/financial advisory for secondary transactions and works with regulated broker partners to facilitate securities offers.

📋 Description

• Own security in the AWS environment, including IAM, least privilege, network segmentation, encryption, logging, and detection • Build security into the development pipeline through secrets management, dependency and container scanning, risky-change code reviews, and threat modeling • Automate detection rules, alerting, compliance evidence, and infrastructure-as-code guardrails • Run vulnerability management and incident response; write runbooks and conduct drills • Define security rules for AI and LLM use, including vendor data handling, approved models, and prompt/output logging • Assess prompt-injection and data-leakage risks and design practical controls • Own SOC 2 control design, automated evidence collection, and auditor relationships • Handle regulatory requirements for financial-institution customers, including GDPR, CCPA, DORA, EBA outsourcing guidelines, GLBA, and SEC/FINRA expectations • Lead customer security reviews, due-diligence questionnaires, RFPs, contract security terms, and calls with bank security teams • Run vendor reviews and third-party risk management • Build security awareness training, phishing resilience, and device and identity hygiene • Set security strategy, report risk to leadership, choose tooling, build a budget, and hire as the role grows • Grow into a CISO role and report to the CTO

🎯 Requirements

• 5+ years in security engineering or security-heavy infrastructure work • Depth in AWS security, including IAM, SCPs, logging, detection, and encryption • Python and Terraform, or close equivalents • Experience automating evidence collection • SOC 2 experience, ideally owning a Type II audit • Working knowledge of privacy legislation • Exposure to financial-services customer scrutiny, or appetite to make it a specialty • Working view on LLM security risks, or strong fundamentals and curiosity to build one • Judgment about which risks matter • Ability to explain controls to auditors and engineers • Clear writing for async work, policies, and risk memos • Ambition to grow into an executive role and people skills to support it • Nice to have: fintech or another regulated B2B environment with large financial-institution customers • Nice to have: DORA, EBA/ESMA outsourcing guidelines, or NYDFS 500 • Nice to have: experience securing SSO/SCIM, SFTP feeds, and APIs • Nice to have: experience as the first security hire • CET timezone or close

🏖️ Benefits

• Fully remote, flexible hours • Competitive pay • Equity • Learning budget • Direct access to leadership and customer security teams at major financial institutions • A blank slate with real ownership • A committed path to CISO

Apply Now

Similar Jobs

🕒 4 days ago

Immersive Labs

201 - 500

🔒 Cybersecurity

📚 Education

☁️ SaaS

Cloud Security Engineer creating AWS, Azure and GCP security labs for Immersive’s cyber resilience platform. Designing practical, gamified content that teaches professionals to defend cloud environments.

🕒 5 days ago

PAYTER

11 - 50

🍽️ Food & Beverage

🏨 Hospitality

📦 Logistics

SOC Engineer building Payter’s security operations centre for global contactless payment technology. Monitoring cloud threats, leading incident response, and supporting PCI compliance.

🕒 October 1

Wood

10,000+ employees

💼 Consulting

🏗️ Construction

📦 Logistics

Cybersecurity Manager leading security teams, services, risk, suppliers and improvements. Protecting Wood’s global energy and materials consulting, engineering and operations business.

🕒 September 29

Mozilla

501 - 1000

👥 B2C

🔒 Cybersecurity

Senior Security Engineer protecting Mozilla’s open-source internet products through global incident response. Leading incident command, threat hunting, security automation, and 24/7 response workflows.

🕒 September 29

Axonius

501 - 1000

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

Senior Product Security Architect securing Axonius’s cyber asset intelligence platform and AI capabilities. Designing cloud security architecture, threat models, and incident-response strategies.