TENEX.AI
ENEX.AI is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape. We're a fast growing startup backed by industry experts and top tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you'll play a meaningful role in defining and building our culture. Get in on the ground floor. We're a small but well-funded team that just raised a substantial round - joining now comes with limited risk and unlimited upside We are seeking a dynamic Customer Engineer (CE) to join our team, reporting to the VP of Customer Engineering. This hybrid role combines the technical expertise of a Pre-Sales Engineer with hands on contributions to Customer Success and Security Operations. As a CE, you will act as a trusted advisor, showcasing TENEX.AI's AI driven security solutions during the pre sales and evaluation processes, ensuring seamless handover to customer onboarding, and supporting rapid onboarding of operational initiatives to enhance security outcomes. This field based role requires up to 50% travel to client sites, with remote work flexibility. The ideal candidate is passionate about cybersecurity, thrives in a fast paced environment, and excels at translating complex technical concepts into compelling business value. Cultivated culture is one of the most important things at TENEX.AI-explore our culture deck at culture.tenex.ai to witness how we embody it, prioritizing the irreplaceable collaboration and community of in person work. Key Responsibilities Sales Engineering Excellence: Partner with the sales team to deliver technical expertise during pre sales. Conduct product demonstrations, proof of concepts (POCs), and security assessments tailored to client needs. Understand and address security concerns, compliance requirements (e.g., GDPR, HIPAA, SOC 2), and risk mitigation strategies to drive deal closures. Meet and exceed individual and team sales targets, consistently achieving and surpassing assigned quotas. Customer Success & Operational Support: Collaborate with Customer Success managers to streamline onboarding of new clients. Review client security architectures and recommend best practices for AI driven security deployments. Support incident response planning and contribute to developing operational tools, processes, and documentation to scale security operations. Thought Leadership: Represent TENEX at industry events, webinars, and conferences as a cybersecurity expert. Create high impact content (e.g., whitepapers, case studies, blog posts) to educate the market on AI driven security trends. Provide actionable customer feedback to influence product roadmap enhancements. Cross Functional Collaboration: Work with all TENEX teams to align on both customer and internal business needs. Share field insights to refine GTM strategies and operational workflows. Work closely with the marketing and technical teams to ensure cohesive messaging. Cloud Security Expertise: Develop and maintain deep knowledge of Google Cloud & Microsoft Azure solutions, aligning with TENEX's strategic partnerships to deliver integrated MDR offerings. Qualifications Experience: 5+ years in cybersecurity, with 5+ years in a customer facing role (e.g., Sales Engineer, Solutions Architect, Consultant). Technical Skills: Strong understanding of cybersecurity principles Familiarity with security operations platforms (e.g., SIEM, SOAR, Threat Intelligence, UEBA). Knowledge of cloud security (e.g., Google Cloud, AWS, Azure) is a plus. Google SecOps or Microsoft Sentinel a strong plus. Soft Skills: Exceptional communication and presentation skills, with the ability to simplify complex security topics for non technical audiences. Strong problem solving skills, customer empathy, and experience engaging executive stakeholders (e.g., CISOs, CTOs). Other: Willingness to travel (up to 50%); valid driver's license required. Must pass a background check and maintain up to date security clearances if applicable. Why Join Us? Opportunity to work with cutting edge AI driven cybersecurity technologies and Google SecOps solutions. Collaborate with a talented and innovative team focused on continuously improving security operations. Competitive salary and benefits package. A culture of growth and development, with opportunities to expand your knowledge in AI, cybersecurity, and emerging technologies.
ENEX.AI is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape. We're a fast growing startup backed by industry experts and top tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you'll play a meaningful role in defining and building our culture. Get in on the ground floor. We're a small but well-funded team that just raised a substantial round - joining now comes with limited risk and unlimited upside We are seeking a dynamic Customer Engineer (CE) to join our team, reporting to the VP of Customer Engineering. This hybrid role combines the technical expertise of a Pre-Sales Engineer with hands on contributions to Customer Success and Security Operations. As a CE, you will act as a trusted advisor, showcasing TENEX.AI's AI driven security solutions during the pre sales and evaluation processes, ensuring seamless handover to customer onboarding, and supporting rapid onboarding of operational initiatives to enhance security outcomes. This field based role requires up to 50% travel to client sites, with remote work flexibility. The ideal candidate is passionate about cybersecurity, thrives in a fast paced environment, and excels at translating complex technical concepts into compelling business value. Cultivated culture is one of the most important things at TENEX.AI-explore our culture deck at culture.tenex.ai to witness how we embody it, prioritizing the irreplaceable collaboration and community of in person work. Key Responsibilities Sales Engineering Excellence: Partner with the sales team to deliver technical expertise during pre sales. Conduct product demonstrations, proof of concepts (POCs), and security assessments tailored to client needs. Understand and address security concerns, compliance requirements (e.g., GDPR, HIPAA, SOC 2), and risk mitigation strategies to drive deal closures. Meet and exceed individual and team sales targets, consistently achieving and surpassing assigned quotas. Customer Success & Operational Support: Collaborate with Customer Success managers to streamline onboarding of new clients. Review client security architectures and recommend best practices for AI driven security deployments. Support incident response planning and contribute to developing operational tools, processes, and documentation to scale security operations. Thought Leadership: Represent TENEX at industry events, webinars, and conferences as a cybersecurity expert. Create high impact content (e.g., whitepapers, case studies, blog posts) to educate the market on AI driven security trends. Provide actionable customer feedback to influence product roadmap enhancements. Cross Functional Collaboration: Work with all TENEX teams to align on both customer and internal business needs. Share field insights to refine GTM strategies and operational workflows. Work closely with the marketing and technical teams to ensure cohesive messaging. Cloud Security Expertise: Develop and maintain deep knowledge of Google Cloud & Microsoft Azure solutions, aligning with TENEX's strategic partnerships to deliver integrated MDR offerings. Qualifications Experience: 5+ years in cybersecurity, with 5+ years in a customer facing role (e.g., Sales Engineer, Solutions Architect, Consultant). Technical Skills: Strong understanding of cybersecurity principles Familiarity with security operations platforms (e.g., SIEM, SOAR, Threat Intelligence, UEBA). Knowledge of cloud security (e.g., Google Cloud, AWS, Azure) is a plus. Google SecOps or Microsoft Sentinel a strong plus. Soft Skills: Exceptional communication and presentation skills, with the ability to simplify complex security topics for non technical audiences. Strong problem solving skills, customer empathy, and experience engaging executive stakeholders (e.g., CISOs, CTOs). Other: Willingness to travel (up to 50%); valid driver's license required. Must pass a background check and maintain up to date security clearances if applicable. Why Join Us? Opportunity to work with cutting edge AI driven cybersecurity technologies and Google SecOps solutions. Collaborate with a talented and innovative team focused on continuously improving security operations. Competitive salary and benefits package. A culture of growth and development, with opportunities to expand your knowledge in AI, cybersecurity, and emerging technologies.
Vantage Data Centers
OT Cybersecurity Engineer - Pen Testing / Purple TeamApplylocations: London, England: Newport, Wales: Frankfurt, Germany: Remote - Germany: Remote - UKtime type: Full timeposted on: Posted Todayjob requisition id: R22876# About Vantage Data Centers Vantage Data Centers powers, cools, protects and connects the technology of the world's well-known hyperscalers, cloud providers and large enterprises. Developing and operating across North America, EMEA and Asia Pacific, Vantage has evolved data center design in innovative ways to deliver dramatic gains in reliability, efficiency and sustainability in flexible environments that can scale as quickly as the market demands.# Position Overview The Vantage Cybersecurity Department is very hands-on. In most cases, we specify, purchase, configure, and maintain all networking and server hardware with a keen focus on cybersecurity measures. We also work closely with partner Value Added Resellers (VARs) to learn about the latest technological changes and cybersecurity trends so that we can make informed purchase decisions. We are always looking for ways to strike the best balance between technology, performance, cost, and cybersecurity. Vantage Cybersecurity Department also participates in designing each of our new data center building's cybersecurity infrastructure. If you like getting your hands dirty and helping to design, build, and maintain cybersecurity infrastructure in a modern data center, then come work at Vantage. We're expanding with many new builds, enhancing our focus on safeguarding data and infrastructure in the face of evolving cyber threats.The ICS/OT Cybersecurity Engineer will support the security of a global OT environment by implementing, and validating cybersecurity controls across ICS/OT systems. The role includes performing risk and vulnerability assessments, contributing to secure architecture and strategy, and delivering hands-on implementation of OT security solutions such as segmentation, monitoring, and privileged remote access.The engineer will also support controlled security testing and purple team activities to validate controls, identify attack paths, and improve detection and response. Additional responsibilities include analysis of security events, root cause investigation, and continuous improvement of monitoring and response capabilities, while working closely with other teams to ensure a safe, non disruptive security posture.# Responsibilities Partner closely with the OT Cybersecurity Manager, other OT Cybersecurity Engineers, and wider cybersecurity functions including GRC and Threat Intelligence. Represent OT Cybersecurity, supporting on call activities and participating in meetings with site operations, vendors, and internal stakeholders to drive consistent implementation of OT cybersecurity practices. Perform OT Cybersecurity Risk assessments against best practices and industry frameworks (e.g., ISA/IEC 62443, NIST SP 800-82, NIST CSF) including participating in audits. Act as a key contributor in OT security testing by conducting controlled, non disruptive vulnerability assessments, security validation, and simulation based (purple team) activities to identify vulnerabilities, validate security controls, and assess potential attack paths in coordination with engineering and operations teams. Conduct technical data collection and analysis, including packet capture (PCAP), firewall rule reviews, system configuration reviews, Active Directory enumeration where relevant, and industrial network traffic analysis to identify vulnerabilities, attack paths, anomalous activity, and misconfigurations. Support integration of OT security monitoring into SOC workflows, including alert tuning, use case development, detection improvement, and SOAR playbook development. Support validation of alerts, reduce false positives, identify detection gaps, and improve response effectiveness against relevant OT attack techniques. Support Implementation and Ongoing management of Privileged Remote Access (PRA) solution to control and monitor third party access to critical OT environments. Perform OT asset discovery, inventory management, and risk classification using OT monitoring platforms (e.g., passive monitoring tools), and support the deployment and configuration of ICS/OT IDS solutions. Work closely with data center teams to ensure cybersecurity controls do not impact uptime, safety, or operational resilience. Researching, developing, operationalizing, evaluating, and improving OT defensive tactics, techniques, and procedures (TTPs) for detecting and responding to cyber threats Maintain and create documentation as needed Perform other ad hoc duties to support the company's security goals.# Job Requirements Hands-on experience in IT / OT environments , deploying, configuring, and supporting IT / OT cybersecurity solutions across industrial systems and critical infrastructure. Proven experience performing cybersecurity risk assessments across IT / OT environments, including identification of threats, vulnerabilities, and operational impacts. Understanding of security testing methodologies , including white box, grey box, and controlled (non-disruptive) assessment approaches in IT / OT environments. Strong knowledge of cyber threats , attack vectors, exploits, and adversary tactics, techniques, and procedures (TTPs), with the ability to apply this knowledge to real-world scenarios. Experience in purple team or security validation activities , including simulating attack scenarios in a controlled manner to validate security controls, detection capabilities, and response effectiveness. Ability to analyse network traffic and host-based data (e.g., logs, packet captures, system configurations) to identify anomalies, security events, and potential attack paths. Strong understanding of networking fundamentals , including routing, switching, VLANs, segmentation, and secure network design for IT / OT environments. Experience supporting or participating in incident response activities and tabletop exercises, helping validate readiness and improve coordination across teams. Knowledge and Experience in one or more of the following areas: Building Management Systems (BMS) Electrical Power Monitoring Systems (EPMS) SCADA platforms PLC platforms (e.g., Siemens, Schneider, Rockwell) Industrial Protocols (Modbus, DNP3, BACnet, OPC, S7, CIP) Passive OT monitoring solutions (e.g., Tenable, Nozomi, Claroty) Firewalls (IDS/IPS, DPI, application control, web filtering) Network infrastructure (routing, switching, wireless, segmentation) SIEM, SOAR, and XDR platforms Log analysis, alert investigation, and incident response workflows Familiarity with security testing and analysis tools such as Kali Linux, Nmap, Wireshark, Metasploit (controlled use), and other network and protocol analysis tools Bachelor's degree in Cybersecurity, Computer Science, Engineering, or related focused technical training or 4 additional years of engineering experience that may have been acquired in the military, public or private sectors. Following certifications are preferred CCNA, GICSP, GRID, other Network and Security certifications Following certifications are nice to have OSCP / OSCP+, GPEN Understanding of general cybersecurity frameworks (ISO IEC 27001/27002, ISO 15408, NIST Cybersecurity Framework (CSF), NIST SP800-53) Excellent written and verbal communication skills with transparent and timely communication Expected travel is less than 20% but may be higher during construction projects. May grow and evolve over time Be available outside standard working hours when required Data Center experience is strongly preferred, but not required operate with No Ego and No Arrogance. We work to build each other up and support one another, appreciating each other's strengths and respecting each other's weaknesses. We find joy in our work and each other, actively seeking opportunities to inject fun into what we do. Our hard and efficient work is rewarded with an above market total compensation package. We offer a comprehensive suite of health and welfare, retirement, and paid leave benefits exceeding local expectations.Throughout the year, the advantage of being part of the Vantage team is evident with an array of benefits, recognition, training and development, and the knowledge that your contribution adds value to the company and our community.Don't meet all the requirements? Please still apply if you think you are the right person for the position. We are always keen to speak to people who connect with our mission and values.Vantage Data Centers is an Equal Opportunity EmployerVantage Data Centers does not accept unsolicited resumes from search firm agencies. Fees will not be paid in the event a candidate submitted by a recruiter without an agreement in place is hired; such resumes will be deemed the sole property of Vantage Data Centers.
OT Cybersecurity Engineer - Pen Testing / Purple TeamApplylocations: London, England: Newport, Wales: Frankfurt, Germany: Remote - Germany: Remote - UKtime type: Full timeposted on: Posted Todayjob requisition id: R22876# About Vantage Data Centers Vantage Data Centers powers, cools, protects and connects the technology of the world's well-known hyperscalers, cloud providers and large enterprises. Developing and operating across North America, EMEA and Asia Pacific, Vantage has evolved data center design in innovative ways to deliver dramatic gains in reliability, efficiency and sustainability in flexible environments that can scale as quickly as the market demands.# Position Overview The Vantage Cybersecurity Department is very hands-on. In most cases, we specify, purchase, configure, and maintain all networking and server hardware with a keen focus on cybersecurity measures. We also work closely with partner Value Added Resellers (VARs) to learn about the latest technological changes and cybersecurity trends so that we can make informed purchase decisions. We are always looking for ways to strike the best balance between technology, performance, cost, and cybersecurity. Vantage Cybersecurity Department also participates in designing each of our new data center building's cybersecurity infrastructure. If you like getting your hands dirty and helping to design, build, and maintain cybersecurity infrastructure in a modern data center, then come work at Vantage. We're expanding with many new builds, enhancing our focus on safeguarding data and infrastructure in the face of evolving cyber threats.The ICS/OT Cybersecurity Engineer will support the security of a global OT environment by implementing, and validating cybersecurity controls across ICS/OT systems. The role includes performing risk and vulnerability assessments, contributing to secure architecture and strategy, and delivering hands-on implementation of OT security solutions such as segmentation, monitoring, and privileged remote access.The engineer will also support controlled security testing and purple team activities to validate controls, identify attack paths, and improve detection and response. Additional responsibilities include analysis of security events, root cause investigation, and continuous improvement of monitoring and response capabilities, while working closely with other teams to ensure a safe, non disruptive security posture.# Responsibilities Partner closely with the OT Cybersecurity Manager, other OT Cybersecurity Engineers, and wider cybersecurity functions including GRC and Threat Intelligence. Represent OT Cybersecurity, supporting on call activities and participating in meetings with site operations, vendors, and internal stakeholders to drive consistent implementation of OT cybersecurity practices. Perform OT Cybersecurity Risk assessments against best practices and industry frameworks (e.g., ISA/IEC 62443, NIST SP 800-82, NIST CSF) including participating in audits. Act as a key contributor in OT security testing by conducting controlled, non disruptive vulnerability assessments, security validation, and simulation based (purple team) activities to identify vulnerabilities, validate security controls, and assess potential attack paths in coordination with engineering and operations teams. Conduct technical data collection and analysis, including packet capture (PCAP), firewall rule reviews, system configuration reviews, Active Directory enumeration where relevant, and industrial network traffic analysis to identify vulnerabilities, attack paths, anomalous activity, and misconfigurations. Support integration of OT security monitoring into SOC workflows, including alert tuning, use case development, detection improvement, and SOAR playbook development. Support validation of alerts, reduce false positives, identify detection gaps, and improve response effectiveness against relevant OT attack techniques. Support Implementation and Ongoing management of Privileged Remote Access (PRA) solution to control and monitor third party access to critical OT environments. Perform OT asset discovery, inventory management, and risk classification using OT monitoring platforms (e.g., passive monitoring tools), and support the deployment and configuration of ICS/OT IDS solutions. Work closely with data center teams to ensure cybersecurity controls do not impact uptime, safety, or operational resilience. Researching, developing, operationalizing, evaluating, and improving OT defensive tactics, techniques, and procedures (TTPs) for detecting and responding to cyber threats Maintain and create documentation as needed Perform other ad hoc duties to support the company's security goals.# Job Requirements Hands-on experience in IT / OT environments , deploying, configuring, and supporting IT / OT cybersecurity solutions across industrial systems and critical infrastructure. Proven experience performing cybersecurity risk assessments across IT / OT environments, including identification of threats, vulnerabilities, and operational impacts. Understanding of security testing methodologies , including white box, grey box, and controlled (non-disruptive) assessment approaches in IT / OT environments. Strong knowledge of cyber threats , attack vectors, exploits, and adversary tactics, techniques, and procedures (TTPs), with the ability to apply this knowledge to real-world scenarios. Experience in purple team or security validation activities , including simulating attack scenarios in a controlled manner to validate security controls, detection capabilities, and response effectiveness. Ability to analyse network traffic and host-based data (e.g., logs, packet captures, system configurations) to identify anomalies, security events, and potential attack paths. Strong understanding of networking fundamentals , including routing, switching, VLANs, segmentation, and secure network design for IT / OT environments. Experience supporting or participating in incident response activities and tabletop exercises, helping validate readiness and improve coordination across teams. Knowledge and Experience in one or more of the following areas: Building Management Systems (BMS) Electrical Power Monitoring Systems (EPMS) SCADA platforms PLC platforms (e.g., Siemens, Schneider, Rockwell) Industrial Protocols (Modbus, DNP3, BACnet, OPC, S7, CIP) Passive OT monitoring solutions (e.g., Tenable, Nozomi, Claroty) Firewalls (IDS/IPS, DPI, application control, web filtering) Network infrastructure (routing, switching, wireless, segmentation) SIEM, SOAR, and XDR platforms Log analysis, alert investigation, and incident response workflows Familiarity with security testing and analysis tools such as Kali Linux, Nmap, Wireshark, Metasploit (controlled use), and other network and protocol analysis tools Bachelor's degree in Cybersecurity, Computer Science, Engineering, or related focused technical training or 4 additional years of engineering experience that may have been acquired in the military, public or private sectors. Following certifications are preferred CCNA, GICSP, GRID, other Network and Security certifications Following certifications are nice to have OSCP / OSCP+, GPEN Understanding of general cybersecurity frameworks (ISO IEC 27001/27002, ISO 15408, NIST Cybersecurity Framework (CSF), NIST SP800-53) Excellent written and verbal communication skills with transparent and timely communication Expected travel is less than 20% but may be higher during construction projects. May grow and evolve over time Be available outside standard working hours when required Data Center experience is strongly preferred, but not required operate with No Ego and No Arrogance. We work to build each other up and support one another, appreciating each other's strengths and respecting each other's weaknesses. We find joy in our work and each other, actively seeking opportunities to inject fun into what we do. Our hard and efficient work is rewarded with an above market total compensation package. We offer a comprehensive suite of health and welfare, retirement, and paid leave benefits exceeding local expectations.Throughout the year, the advantage of being part of the Vantage team is evident with an array of benefits, recognition, training and development, and the knowledge that your contribution adds value to the company and our community.Don't meet all the requirements? Please still apply if you think you are the right person for the position. We are always keen to speak to people who connect with our mission and values.Vantage Data Centers is an Equal Opportunity EmployerVantage Data Centers does not accept unsolicited resumes from search firm agencies. Fees will not be paid in the event a candidate submitted by a recruiter without an agreement in place is hired; such resumes will be deemed the sole property of Vantage Data Centers.
MUFG Bank, Ltd
Vice President, Business Information Security OfficerApplylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: -WD Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.With a vision to be the world's most trusted financial group, it's part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.Corporate Technology is accountable for the operation, development and support of all applications across all areas of the business. Corporate Technology ensures IT strategy, architecture and solutions are aligned to business requirements. The BISO role is part of the IT Security team. IT Security are collectively responsible for the following areas: Cyber Support and Engineering, Security Operations Centre covering pen tests, red and blue teams, Cyber and Risk Change portfolio, Threat Intelligence and Vulnerability Management for the Group and Identity and Access Management. NUMBER OF DIRECT REPORTS 2 MAIN PURPOSE OF THE ROLE Responsible for providing strategic information security leadership and oversight across all business units in the region. This role bridges global security strategy and regional business execution, ensuring that security, risk, and compliance objectives are effectively implemented, measured, and governed.The position partners closely with regional executives, technology leadership, and global security functions to embed a culture of security, drive control adoption, and maintain regulatory confidence.This role will work alongside the EMEA regional CISO on supporting the strategy, initiatives and roadmap for information security in MUFG EMEA. Working with key stakeholders internally to help embed security into the culture, whilst embedding technical controls into the mission critical business systems:Risk Advisory & Control Adoption Serve as the trusted advisor to business and technology units on security risks and control implementation. Support adoption of global security controls and standards within regional operations. Provide security input on new business initiatives, digital transformation, and third-party relationships.2. Security Training & Awareness Develop, tailor, and oversee delivery of security awareness programs by business line. Drive execution of phishing simulations and targeted learning interventions. Measure awareness effectiveness and report to management.3. Security Champion Network Establish and maintain a regional security champion community within business and operations teams. Promote local ownership of security best practices and risk reduction initiatives. Provide ongoing engagement, training, and recognition programs for champions.4. Security Strategy, Planning & Reporting Translate global and regional security objectives into actionable EMEA programs. Develop strategic plans, key risk metrics (KRIs/KPIs), and executive dashboards. Contribute to quarterly and annual reporting cycles for CISO and business leadership.5. Finance, Budgeting & Resourcing Support regional security budgeting, forecasting, and resource allocation. Track spend against plan and provide variance analysis. Assist in developing business cases for new initiatives or investments.6. Security Program Governance Oversee the implementation and governance of global security programs in EMEA. Ensure adherence to enterprise security policies and frameworks. Coordinate across multiple stakeholders to maintain governance and accountability.7. Risk, Compliance & Audit Coordination Act as the single point of contact for IT Security related audits and compliance engagements. Manage audit readiness, evidence coordination, and remediation tracking. Maintain strong relationships with internal audit, compliance, and regulatory teams.8. Reporting & Global/Regional Coordination Coordinate EMEA security reporting and represent the region in global BISO forums. Ensure consistency of risk posture and alignment with global metrics and governance. Provide regional input into global policy updates and program design. KEY RESPONSIBILITIES Communication & Training Manage the Cyber & Risk training program. Ensuring Cyber integration with the business and technology. Communicating Risk & Cyber information across Bank EMEA and Securities. Be an escalation point for concerns about IT Security. Be a positive collaborator. People Management Ensure that the function is appropriately organised and adequately resourced by staff with appropriate skillsets to achieve its strategic objectives. Lead, direct and manage staff within the function to ensure that they: + Understand the responsibilities applicable to their roles + Comply with the firm's policies and procedures + Conduct themselves in a manner commensurate with the firm's values Actively manage performance, develop talent, identify key positions and persons and create sustainable success plans. Oversee appropriate training is in place to fulfil current and future skill requirements. Culture and Leadership Actively lead the integration of Bank and Securities technology functions. Promote the MUFG values-led culture which is inclusive and diverse. Promote a dynamic, delivery driven culture that works alongside business units to provide responsive resolutions and value driven solutions. Collective leadership by example on staff cyber education and awareness to embed a proactive cyber culture. Find ways to strengthen working relationships with stakeholders, including business teams. Lead by example in building relationships across the bank, establishing a stronger peer network and helping to strengthen collaboration. Build strong relationships with internal and external stakeholders to understand industry best practice, influence change and promote technical credibility. WORK EXPERIENCE Experienced in information security, technology risk, or related disciplines within financial services sector. Experienced in IT security and control policy with specific experience of FFEIC, SOX, COBIT, NIST, CRI Profile and ISO standards. Conversant in the security & risk trends across banking and other industries. Experienced with the Defence in Depth approach Strong track record of managing teams and building effective partnerships with peers. Strong experience in delivering training Professional information security certifications (i.e. CISSP, CISM, CRISC or similar experience). Cloud Security experience and a good understanding of privacy legislation (Data Protection Act 2018 / GDPR). SKILLS AND EXPERIENCE Functional / Technical Competencies: Strong strategic and analytical thinking. Excellent communication and stakeholder management. Proven ability to balance technical, business, and regulatory priorities. Collaborative, pragmatic, and outcomes-driven leadership style. A deep understanding of IT and Cyber Security: + Defence in Depth model. + Network defence, IDS and DMZ + Network protocols and firewall standards + Detective monitoring - SIEM + Vulnerability Management + Access and Privileged Access Management Experienced in writing and maintaining IT documents, such as standards and procedures. Demonstrates an understanding of strategic business and IT issues impacting the financial services market. Strong understanding of risk and its application across technology and the business. Good understanding of project lifecycles. Education / Qualifications: Degree educated and / or equivalent experience. PERSONAL REQUIREMENTS Excellent Leadership skills Excellent communication skills Ability to manage constructive conflict effectively Strong facilitation skills Ability to build strong and lasting relationships across the bank Results driven, with a strong sense of accountability, focused on business outcomes A proactive, motivated approach. The ability to operate with urgency and prioritise work accordingly Strong decision-making skills, the ability to demonstrate sound judgement A structured and logical approach to work Strong problem-solving skills A creative and innovative approach to work Excellent interpersonal skills Excellent attention to detail and accuracy Strong numerical skills A confident approach, with the ability to provide clear direction to your team Excellent managerial/leadership experience The ability to articulate and implement the vision/strategy for the planning departmentWe are open to considering flexible working requests in line with organisational requirements.
Vice President, Business Information Security OfficerApplylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: -WD Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.With a vision to be the world's most trusted financial group, it's part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.Corporate Technology is accountable for the operation, development and support of all applications across all areas of the business. Corporate Technology ensures IT strategy, architecture and solutions are aligned to business requirements. The BISO role is part of the IT Security team. IT Security are collectively responsible for the following areas: Cyber Support and Engineering, Security Operations Centre covering pen tests, red and blue teams, Cyber and Risk Change portfolio, Threat Intelligence and Vulnerability Management for the Group and Identity and Access Management. NUMBER OF DIRECT REPORTS 2 MAIN PURPOSE OF THE ROLE Responsible for providing strategic information security leadership and oversight across all business units in the region. This role bridges global security strategy and regional business execution, ensuring that security, risk, and compliance objectives are effectively implemented, measured, and governed.The position partners closely with regional executives, technology leadership, and global security functions to embed a culture of security, drive control adoption, and maintain regulatory confidence.This role will work alongside the EMEA regional CISO on supporting the strategy, initiatives and roadmap for information security in MUFG EMEA. Working with key stakeholders internally to help embed security into the culture, whilst embedding technical controls into the mission critical business systems:Risk Advisory & Control Adoption Serve as the trusted advisor to business and technology units on security risks and control implementation. Support adoption of global security controls and standards within regional operations. Provide security input on new business initiatives, digital transformation, and third-party relationships.2. Security Training & Awareness Develop, tailor, and oversee delivery of security awareness programs by business line. Drive execution of phishing simulations and targeted learning interventions. Measure awareness effectiveness and report to management.3. Security Champion Network Establish and maintain a regional security champion community within business and operations teams. Promote local ownership of security best practices and risk reduction initiatives. Provide ongoing engagement, training, and recognition programs for champions.4. Security Strategy, Planning & Reporting Translate global and regional security objectives into actionable EMEA programs. Develop strategic plans, key risk metrics (KRIs/KPIs), and executive dashboards. Contribute to quarterly and annual reporting cycles for CISO and business leadership.5. Finance, Budgeting & Resourcing Support regional security budgeting, forecasting, and resource allocation. Track spend against plan and provide variance analysis. Assist in developing business cases for new initiatives or investments.6. Security Program Governance Oversee the implementation and governance of global security programs in EMEA. Ensure adherence to enterprise security policies and frameworks. Coordinate across multiple stakeholders to maintain governance and accountability.7. Risk, Compliance & Audit Coordination Act as the single point of contact for IT Security related audits and compliance engagements. Manage audit readiness, evidence coordination, and remediation tracking. Maintain strong relationships with internal audit, compliance, and regulatory teams.8. Reporting & Global/Regional Coordination Coordinate EMEA security reporting and represent the region in global BISO forums. Ensure consistency of risk posture and alignment with global metrics and governance. Provide regional input into global policy updates and program design. KEY RESPONSIBILITIES Communication & Training Manage the Cyber & Risk training program. Ensuring Cyber integration with the business and technology. Communicating Risk & Cyber information across Bank EMEA and Securities. Be an escalation point for concerns about IT Security. Be a positive collaborator. People Management Ensure that the function is appropriately organised and adequately resourced by staff with appropriate skillsets to achieve its strategic objectives. Lead, direct and manage staff within the function to ensure that they: + Understand the responsibilities applicable to their roles + Comply with the firm's policies and procedures + Conduct themselves in a manner commensurate with the firm's values Actively manage performance, develop talent, identify key positions and persons and create sustainable success plans. Oversee appropriate training is in place to fulfil current and future skill requirements. Culture and Leadership Actively lead the integration of Bank and Securities technology functions. Promote the MUFG values-led culture which is inclusive and diverse. Promote a dynamic, delivery driven culture that works alongside business units to provide responsive resolutions and value driven solutions. Collective leadership by example on staff cyber education and awareness to embed a proactive cyber culture. Find ways to strengthen working relationships with stakeholders, including business teams. Lead by example in building relationships across the bank, establishing a stronger peer network and helping to strengthen collaboration. Build strong relationships with internal and external stakeholders to understand industry best practice, influence change and promote technical credibility. WORK EXPERIENCE Experienced in information security, technology risk, or related disciplines within financial services sector. Experienced in IT security and control policy with specific experience of FFEIC, SOX, COBIT, NIST, CRI Profile and ISO standards. Conversant in the security & risk trends across banking and other industries. Experienced with the Defence in Depth approach Strong track record of managing teams and building effective partnerships with peers. Strong experience in delivering training Professional information security certifications (i.e. CISSP, CISM, CRISC or similar experience). Cloud Security experience and a good understanding of privacy legislation (Data Protection Act 2018 / GDPR). SKILLS AND EXPERIENCE Functional / Technical Competencies: Strong strategic and analytical thinking. Excellent communication and stakeholder management. Proven ability to balance technical, business, and regulatory priorities. Collaborative, pragmatic, and outcomes-driven leadership style. A deep understanding of IT and Cyber Security: + Defence in Depth model. + Network defence, IDS and DMZ + Network protocols and firewall standards + Detective monitoring - SIEM + Vulnerability Management + Access and Privileged Access Management Experienced in writing and maintaining IT documents, such as standards and procedures. Demonstrates an understanding of strategic business and IT issues impacting the financial services market. Strong understanding of risk and its application across technology and the business. Good understanding of project lifecycles. Education / Qualifications: Degree educated and / or equivalent experience. PERSONAL REQUIREMENTS Excellent Leadership skills Excellent communication skills Ability to manage constructive conflict effectively Strong facilitation skills Ability to build strong and lasting relationships across the bank Results driven, with a strong sense of accountability, focused on business outcomes A proactive, motivated approach. The ability to operate with urgency and prioritise work accordingly Strong decision-making skills, the ability to demonstrate sound judgement A structured and logical approach to work Strong problem-solving skills A creative and innovative approach to work Excellent interpersonal skills Excellent attention to detail and accuracy Strong numerical skills A confident approach, with the ability to provide clear direction to your team Excellent managerial/leadership experience The ability to articulate and implement the vision/strategy for the planning departmentWe are open to considering flexible working requests in line with organisational requirements.