Jobs
My ads
My job alerts
Sign in
Find a job Career Tips Companies
Find

Head of security

London
Sonata One
Head of security
Posted: 16h ago
Offer description

Job Description

This job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board.

Sonata One is a rapidly scaling, regulated fund services and technology (fintech) business. We're The Private Funds Clearinghouse, connecting more than 53,000 investors with 6,500 funds and 180 fund managers around the globe. Our vision is to change the paradigm of private markets investing through harmonising the end-to-end investment process within one platform. Investors benefit from a seamless, one & done experience across the fund lifecycle (from fund selection and subscription through to settlement and reporting) underpinned by a globally compliant KYC passport and 24/7 support. Fund managers can raise capital faster at a lower cost from a wider pool of pre-approved investors. Founded in 2015, Sonata One has a presence in eight locations worldwide including the US, UK, Luxembourg, Guernsey, South Africa, and Mauritius.

We operate as #OneGlobalThread in line with our values: We challenge the norm, we change the way we think and work, by connecting systems and people, while committing to our vision and each other. We are now looking to recruit an experienced Head of Security to join our global team.

Position Overview:

We are seeking a highly skilled Head of Security to lead and enhance the security posture of Sonata One. This role is critical in protecting the confidentiality, integrity, and availability of our information systems and data. The ideal candidate will have a deep understanding of cybersecurity threats, risk management frameworks, regulatory compliance, and modern security technologies. This role also includes responsibilities typical of a Data Protection Officer, ensuring that data privacy and governance meet the high regulatory standards of the financial sector.

Responsibilities:
* Strategic Management and Security Operations
* Develop, implement, and maintain information security policies, standards, and procedures.
* Lead the organization's cybersecurity strategy, risk assessments, and security roadmap.
* Manage information security projects and initiatives across IT and business units.
* Collaborate with senior leadership to align security goals with business objectives.
* Lead risk assessments and threat modelling exercises for internal systems and third-party services.
* Manage the deployment and maintenance of security solutions (SIEM, firewalls, endpoint protection, DLP, etc.).
* Oversee the organization's incident response and business continuity plans, including simulations and real-time responses.
* Conduct regular security audits and work with internal/external auditors to support compliance.
* Collaborate with IT and business units to ensure secure systems development and operations.
* Compliance & Risk Management
o Ensure compliance with regulatory and legal security requirements (e.g., ISO 27001, NIST, HIPAA, GDPR, SOX, etc.).
o Ensure compliance with applicable data protection laws (e.g., GDPR, CCPA, GLBA).
o Guide Data Protection Impact Assessments (DPIAs) for high-risk financial data processing activities.
o Work closely with Legal, Risk, and Compliance to monitor data handling practices across business units.
o Perform regular risk assessments and implement appropriate risk mitigation controls.
o Work with internal and external auditors on information security reviews.
Training & Awareness
o Promote a culture of security awareness across the organization.
o Deliver security training and education programs for employees.
o Serve as a subject matter expert on information security practices and controls.
Qualifications:
o Bachelor's degree in information security, Computer Science, or a related field
o 5-7+ years of experience in information security, preferably in financial services.
o In-depth understanding of security frameworks (e.g., ISO/IEC 27001, NIST CSF, CIS Controls) and cybersecurity principles, practices, and regulatory requirements in the finance sector.
o Experience in security technologies such as firewalls, IDS/IPS, SIEM, encryption, and identity management.
o Experience with secure cloud computing platforms (e.g., Azure) in a regulated environment.
o Familiarity with data analytics platforms and financial data governance tooling.
o Strong working knowledge of financial compliance frameworks (e.g., GLBA, SOX, FFIEC CAT, NYDFS).
o Familiarity with privacy regulations (GDPR, CCPA) and best practices in data governance.
o Certifications such as CISSP, CISM, CISA, CRISC, or Certified Data Protection Officer (CDPO) are highly desirable.

We offer a collaborative and inclusive work culture that values innovation and diversity. Everyone has an important role to fulfill, and your contribution will be an integral part of our success story.

Benefits:
o Competitive compensation package
o Flexibility in work arrangements, including remote work options.
o Opportunities for professional growth and career advancement.

#J-18808-Ljbffr

Apply
Create E-mail Alert
Job alert activated
Saved
Save
Similar job
Head of security
Greenford
B&S Group
Head of security
Similar job
Head of security
Greenford
B&S Group
Head of security
Similar job
Head of security architecture & engineering
London
MK Global Training
Head of security
€200,000 a year
See more jobs
Similar jobs
Security jobs in London
jobs London
jobs Greater London
jobs England
Home > Jobs > Security jobs > Head of security jobs > Head of security jobs in London > Head of Security

About Jobijoba

  • Career Advice
  • Company Reviews

Search for jobs

  • Jobs by Job Title
  • Jobs by Industry
  • Jobs by Company
  • Jobs by Location
  • Jobs by Keywords

Contact / Partnership

  • Contact
  • Publish your job offers on Jobijoba

Legal notice - Terms of Service - Privacy Policy - Manage my cookies

© 2025 Jobijoba - All Rights Reserved

Apply
Create E-mail Alert
Job alert activated
Saved
Save