Group Head of Security
Core
Lead and develop the cybersecurity function as an independent structure reporting to the CEO, building security into the delivery pipeline while preparing the organization for regulatory compliance in financial services.
Role type
Group Head of Security (Cybersecurity)
Builds
Security frameworks, governance structures, secure SDLC practices, and automated security controls for a global trading provider.
Domain
Financial Services / Cybersecurity / Regulated Finance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Offensive security expertise, hands-on engineering background, security framework implementation, risk management, security metrics reporting, network segmentation, secure SDLC integration, penetration testing, vulnerability assessment, DevSecOps practices, security automation, regulatory audit experience, Python programming, Bash/Zsh/PowerShell scripting.
Preferred skills
Trading platform experience, payment systems knowledge, AI/ML/LLM security considerations, familiarity with MT5 and trading APIs.
Technologies
Kali Linux, Metasploit, Burp Suite, Nmap, Wireshark, SQLMap, CI/CD pipelines, SAST, DAST, SCA, container scanning tools.
Responsibilities
Build security frameworks based on ISO 27001, NIST CSF, CIS Controls, and SOC 2; Implement information security governance, policies, and risk management processes; Establish and maintain security metrics, KPIs, and reporting for executive leadership; Design and implement network segmentation and secure perimeter architecture; Collaborate with development teams to establish secure SDLC practices; Conduct penetration testing and API security assessments; Provide hands-on remediation guidance to developers.
Seniority
Group Head, strategic leadership with hands-on technical execution.