TyneStack Ltd
Information Security Officer

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Information Security Officer (GRC / ISO 27001 / Cyber Security)
Location: Newcastle upon Tyne | Type: Hybrid (3 Days Office / 2 Days Home)
Type: Full-time, Permanent
Overview
A leading financial technology organisation is looking to appoint an Information Security Officer to support the management and continuous improvement of information and cyber security across the business.
This is a broad security role covering governance, risk, compliance, third party assurance and security controls across technology platforms, cloud services and business operations. You'll work closely with the Information Security Manager and stakeholders across the organisation to identify risks, strengthen controls and ensure security requirements are considered throughout technology and business change.
The position offers exposure to a mature and evolving security environment, including ISO 27001, NIST, cloud security, supplier assurance and emerging technologies such as AI and automation. It would particularly suit someone with a solid grounding in information security who wants broad responsibility rather than specialising solely in one area.
Key Responsibilities
- Support the development and continual improvement of the Information Security Management System
- Identify, assess, treat and report information security, cyber, technology and third party risks
- Conduct security risk assessments, control reviews and assurance activities
- Support compliance with FCA requirements, UK GDPR and relevant security standards
- Implement and monitor controls aligned with ISO 27001, NIST and CIS frameworks
- Provide security guidance across technology projects, cloud implementations and business change
- Conduct supplier security due diligence and ongoing third party risk assessments
- Support internal and external audits, regulatory reviews and certification activities
- Develop and maintain security policies, standards and procedures
- Support security governance around cloud, AI, automation and other emerging technologies
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Requirements
- 2+ years of commercial information or cyber security experience
- Experience with information security governance, risk and compliance
- Strong knowledge of ISO 27001 and recognised security frameworks such as NIST or CIS
- Experience conducting security risk assessments and reviewing security controls
- Understanding of cloud security and implementing security within cloud environments
- Knowledge of security technologies including endpoint, data and mobile security
- Understanding of SIEM, SOC, vulnerability management and threat intelligence capabilities
- Strong communication skills with the ability to explain security risks to technical and non-technical stakeholders


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Desirable
- CISSP, CISM, ISO 27001 or similar security certification
- Experience within Financial Services or another regulated environment
- Experience supporting or implementing an ISMS
- Third party and supplier security assurance experience
- Information Security, Information Systems or related degree
What’s on Offer
- Competitive salary
- Hybrid working with three days per week in Newcastle
- Broad exposure across information and cyber security
- Opportunity to work with ISO 27001, NIST, cloud security and emerging AI technologies
- Exposure to a highly regulated financial technology environment
- Opportunity to develop across security governance, risk, compliance and assurance
Apply
If you're an Information Security professional with experience across governance, risk and compliance and want a broad role where you can influence security across technology, cloud and business operations, apply now or get in touch for a confidential discussion.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills