Rodeo
ResourcesPartnersSign in

Elsevier

Cyber Security Business Information Officer (BISO)

Oxford
Posted about 16 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Are you ready to embed security by design and influence risk decisions at enterprise scale?

Can you partner with senior leaders to turn cyber risk into trusted business outcomes?

About Our Team

The Business Information Security Office (BISO) team partners with business, product, and technology leaders to deliver measurable security outcomes that support enterprise objectives. We focus on managing complex risk, embedding secure-by-design practices, and driving long-term cybersecurity maturity. Our work enables trusted innovation, operational resilience, and informed risk decision-making across the organization.

About The Role

As a Business Information Security Officer (BISO), you act as the primary security partner for assigned business units, bridging business strategy and enterprise cybersecurity. You are accountable for planning and executing security initiatives that reduce risk, strengthen cyber defenses, and enable delivery at scale.

The role is highly collaborative, advisory, and outcome-focused—ensuring security is embedded early and pragmatically across products, platforms, and major initiatives.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Responsibilities

  • Act as the primary security partner for assigned business units, building trusted senior stakeholder relationships.
  • Embed security early into business initiatives, product development, and technology delivery.
  • Sponsor and support enterprise and business-aligned security initiatives end-to-end.
  • Provide expert security guidance across concurrent IT, engineering, and business projects.
  • Oversee security assessments including vulnerability management, penetration testing, and third-party risk.
  • Translate security findings into prioritized, actionable remediation plans with clear ownership.
  • Provide security input into solution architecture and major technology decisions.
  • Serve as the security point of contact for customer-facing inquiries, audits, and due-diligence.
  • Identify, document, and govern cyber risks, supporting risk acceptance and escalation processes.
  • Develop and report meaningful security metrics to inform leadership decisions and continuous improvement.

Requirements

  • Several years’ experience in a BISO or senior security leadership / advisory role.
  • Strong cloud and application security experience (AWS, Azure, GCP; secure SDLC).
  • Hands-on knowledge of security tooling (SIEM, SOAR, EDR/XDR, CSPM, SAST/DAST).
  • Experience embedding security into CI/CD pipelines and DevSecOps practices.
  • Proven capability in risk assessments, threat modeling, and control gap analysis.
  • Experience collaborating with SOC and Incident Response teams during security events.
  • Working knowledge of security frameworks and regulations (NIST, ISO 27001, CIS, GDPR, etc.).
  • Ability to translate technical risk into clear, business-relevant language.
  • Strong stakeholder management skills with the ability to influence without authority.
  • Bachelor’s degree in Engineering, Computer Science, or equivalent experience, plus relevant certifications (CISSP, CISM, GIAC, or similar).

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click here to access benefits specific to your location.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Cloud Security
Application Security
AWS
Azure
GCP
Secure SDLC
SIEM
SOAR
EDR/XDR
CSPM
SAST/DAST
CI/CD
DevSecOps
Threat Modeling
Risk Assessment
Stakeholder Management

Location

Oxford, England, United Kingdom

Sign up to applySee more jobs like this