Information Security Engineer
London
Job description
Ready to make a real impact in Information Security?
At Zempler Bank, we’re not just safeguarding systems! We’re protecting trust. We’re looking for an Information Security Engineer who’s passionate about building robust security frameworks and ensuring compliance that keeps our customers and colleagues safe.
This is your chance to join a forward-thinking team where your expertise will help shape the future of secure banking. We value diversity, collaboration, and fresh ideas because we know the best solutions come from different perspectives. If you’re curious, proactive, and driven by doing things the right way, we’d love to hear from you.
Hybrid Working
We are very proud to offer one of the most flexible hybrid working arrangements in the industry!
The expectation for this role, will involve a minimum of one day each month - working out of our London Bridge office.
Key Accountabilities Include
Security Control Framework
Ensure high levels of information security are maintained across Zempler Bank and assist other technical teams to understand and meet those high levels based upon PCI-DSS compliance and NISTCSF
Lifecycle Support
Support management of Information Security assets to ensure they are secure and fully supported, including Patch and Vulnerability management to agreed standards
Incident Response
Configure and respond to monitoring alerts for issues detected by Information security tools, supporting incidents 24x7 (average once per month) as required, escalating when required
Support the Post Incident Resolution (PIR) process and provide recommendations to avoid future incidents
Documentation
Maintain documentation and configuration repositories, including security diagrams, IT asset management systems and agreed
documentation
Document and share knowledge with other members of the team, including delivering training sessions when required
Change Management
Support the wider project and change programme, design and deliver agreed improvements following governance processes and industry best practices including documentation
Ensure all changes are released or made into controlled environments following agreed and repeatable processes, including roll-back to a known working state
Reporting
Provide agreed reporting and updates to the Chief Information Security Officer and wider team, including accurate status of tickets being worked on
Threat and Risk Management
Risk mitigation through best practice and by following company procedures
Identify risks and escalate to management, maintain the Information Security risk register and support the wider Enterprise Risk
Management framework
Use horizon scanning to keep abreast of relevant new technologies, security threats and regulatory changes
Qualifications, skills and experience
Essential:
- Prior experience of working within an Information Security team
- Experience and familiarity with one or more of the following security tools: Logrythm SIEM, McAfee suite, Firewalls, Officer
- 365 Compliance tools, CASB
- Experience and ability to achieve and maintain PCI, or similar security standards (e.g. NIST-CSF, ISO 27001)
- Experience in Windows Server, security configuration: Windows 2012, 2016; Active Directory; Group Policy, Certificate Services;
- Office 365 and Windows 10 security configuration
- Automation through scripting and other tools
- General security technical skills: networks, storage area networks, backups, firewalls, virtualisation, virtual desktop environments,
- monitoring, alerting, efficiency and optimisation, documentation, procedural controls, identity and access management, automation,
- 24x7 support
- Good verbal, written communication and interpersonal skills
- Job type
- Permanent
- Industry
- MIS / IT
- Posted
- 2025-12-03T00:00:00
Skills
- InfoSec