Skip to main content
AfterDuty

BISO Group Control

Barclays · Manchester, Greater Manchester

Type
Full-time
Posted
150 days ago

Overview

Your experience in incident command, risk assessment, and regulatory compliance (PACE, RIPA) provides a strong foundation for security governance and risk management. However, this role demands deep technical expertise in cyber security, financial crime platforms, and enterprise-scale IT transformation, which typically requires years of specialised retraining beyond a policing background.

About this role

Date live: 03/08/2026

Business Area: Chief Information Security Office

Area of Expertise: Technology

Contract: Permanent

Join us at Barclays as a Business Information Security Officer (BISO) for Group Control is responsible for providing dedicated and accountable security leadership across one of the bank’s most critical and highly regulated functions. The role ensures that Group Control, including Financial Crime technology capabilities such as KYC, AML, Fraud, and enterprise screening platforms, remains secure, compliant, and aligned with internal security standards and external regulatory expectations. The VP BISO will oversee security governance, risk management, and control assurance across complex, high-volume infrastructure and major transformation programmes, ensuring that security considerations are embedded throughout design, delivery, and operational activities.

Key Skills

  • Cyber Security Leadership & Governance

Proven ability to provide accountable security leadership across complex, enterprise-scale technology environments, ensuring alignment with security strategy, regulatory expectations, and operational risk frameworks.

  • Financial Crime Technology & Regulatory Expertise

Strong understanding of Financial Crime platforms and controls, including KYC, AML, Fraud, and payment screening technologies, with experience managing security within highly regulated banking environments.

  • Transformation & Risk Management

Experience supporting large-scale transformation programmes involving critical infrastructure, with the ability to identify and manage design, control, compliance, and cyber security dependencies across multiple stakeholders.

Desirable Skills

  • Stakeholder & Executive Engagement

Ability to influence senior leadership and collaborate effectively across business, technology, risk, and control functions within a global banking organisation.

  • Operational Resilience & Compliance Oversight

Knowledge of operational resilience, regulatory remediation, and security assurance practices within high-volume, business-critical banking services.

  • Security Team Development & Resource Management

Experience building or leading security capability within under-resourced or rapidly evolving environments, ensuring appropriate governance and operational focus.

This role is based in Radbrooke

You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job-specific technical skills

Purpose of the role

To provide a primary liaison service between the business, technology, and security functions. In order to ensure the confidentiality, integrity and availability of information, and support the mitigation of security risk.

Accountabilities

  • Collaboration with stakeholders to understand their security requirements in business processes and IT projects, to enhance overall risk management.
  • Execution of risk assessments to identify and prioritise potential cybersecurity threats that could impact the banks operations and data and guide the implementation of mitigation strategies and communicate findings to relevant findings to relevant senior stakeholders.
  • Collaboration with business units to develop and implement security policies and procedures for the banks operations aligned to the risk management framework.
  • Management of the implementation, testing and monitoring of security controls across the banks IT systems to ensure the effectiveness of controls and mitigation of risk.
  • Execution of training content and sessions to educate employees, enhance cybersecurity awareness and provide guidance on safe online practices.
  • Management of complex cybersecurity incidents by collaborating with IT teams and response experts to effectively resolve cases through analysis, expertise support and project supervision.
  • Identification of emerging cybersecurity trends, threats, and new technologies to address potential risks by advocating the adoption of new security solutions.

Vice President Expectations

  • To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and escalate breaches of policies/procedures..
  • If managing a team, they define jobs and responsibilities, planning for the department’s future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements..
  • If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L – Listen and be authentic, E – Energise and inspire, A – Align across the enterprise, D – Develop others..
  • OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi-year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions..
  • Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment.
  • Manage and mitigate risks through assessment, in support of the control and governance agenda.
  • Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does.
  • Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business.
  • Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies.
  • Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In-depth analysis with interpretative thinking will be required to define problems and develop innovative solutions.
  • Adopt and include the outcomes of extensive research in problem solving processes.
  • Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes.

All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship – our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset – to Empower, Challenge and Drive – the operating manual for how we behave.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in Manchester

Why this fits a police background

  • Financial crime & fraud
  • Risk & threat assessment
  • Working to legislation & regulation

What cyber security & digital forensics roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Digital forensics analyst£32,000–£45,000
DFIR consultant£45,000–£65,000
Senior forensics / IR specialist£60,000–£80,000
Threat-intelligence specialist£55,000–£80,000
Full cyber security & digital forensics salary guide →

More cyber security & digital forensics jobs for ex-police

  • Cyber Incident Responder

    CYFOR · Manchester

    Full-time

    £40,000 – £50,000Estimated

    Your experience investigating digital evidence and managing incidents in policing gives you a strong foundation for this role, particularly in forensic acquisition, log analysis, and producing evidential reports. The requirement for clear client communication and structured investigation aligns with your interview and case-file skills, though you would need to build specific technical knowledge of cloud environments and EDR tools.

    Posted Yesterday

  • Cybercrime Operational Lead

    HM Revenue & Customs · Manchester

    Full-time

    £65,869 – £72,711Estimated

    This role directly taps into your investigative and cybercrime expertise from policing, requiring you to lead digital forensics, intelligence operations, and complex criminal investigations. Your experience with evidence handling, interviewing, and operational command under pressure translates seamlessly into managing cyber threats and coordinating multi-agency responses at HMRC.

    Posted 9 days ago

  • Threat Analyst

    SCC · Birmingham

    Full-time

    Your background in intelligence analysis and threat assessment from policing maps directly to producing structured threat intelligence deliverables. You are used to researching hostile actors, evaluating sources, and writing concise briefings for different audiences, which is exactly what this role demands. Your incident response experience and disciplined approach to evidence and reporting would let you contribute from day one, while any gaps in specific tooling can be trained.

    Posted Today

  • Full-time

    This role focuses on information security management, risk assessment, and incident response — areas where your experience in operational policing, threat assessment, and managing critical incidents translates directly. Your background in following strict procedures, handling sensitive information, and coordinating multi-agency responses aligns well with the security governance and compliance aspects of the job. While the role requires specific technical cyber security knowledge, your investigative mindset and ability to work under pressure are strong foundations that employers in this sector

    Posted Yesterday