Skip to main content
AfterDuty

Business Information Security Officer

Barclays · Glasgow, Scotland

Type
Full-time
Posted
15 days ago

Overview

Your incident command and risk assessment discipline transfers to cyber risk governance.

About this role

Join us as a Business Information Security Officer at Barclays, where you will play a critical role in partnering with business and technology leadership to strengthen cyber resilience and manage technology risk across the organisation. The role will include providing cyber risk oversight across business and technology portfolios, driving governance and accountability for security controls and remediation activities and partnering with senior stakeholders to ensure cybersecurity risks are effectively managed and communicated across leadership and governance forums.

To be successful as a Business Information Security Officer, you should have:

  • Cyber Risk Management & Control Oversight - Demonstrated ability to identify, assess, articulate and manage cyber and technology risks, translating complex technical issues into clear business risk and control outcomes. Experience of operating within a risk management framework and driving remediation of control weaknesses.
  • Senior Stakeholder Management & Influencing - Ability to build trusted relationships and influence outcomes across business, technology and security leadership. Strong communication skills with experience presenting cyber risk, control performance, investment priorities and remediation strategies to Executives and governance forums.
  • Security Governance & Strategic Delivery - Experience establishing governance, driving accountability and overseeing delivery of cybersecurity remediation programmes. Ability to challenge, prioritise and coordinate activity across multiple teams to improve security posture while balancing business objectives and regulatory expectations.

Some Other Highly Valued Skills May Include

  • Financial Services Cyber Security Experience - Experience working within a global financial services organisation, with knowledge of cybersecurity regulatory expectations, operational resilience, technology controls and risk governance practices.
  • Cyber Metrics, Assurance & Reporting - Experience defining, interpreting and presenting cybersecurity KRIs, KCIs and control performance metrics, with the ability to drive executive discussion and decision-making through data-led insights.
  • Change Leadership & Transformation - Experience leading cross-functional cybersecurity improvement initiatives, technology risk reduction programmes or large-scale remediation efforts, with a proven ability to deliver change through influence rather than direct authority.

You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job-specific technical skills

This role can be based in Glasgow or Knutsford, Radbroke Hall.

Purpose of the role

To provide a primary liaison service between the business, technology, and security functions. In order to ensure the confidentiality, integrity and availability of information, and support the mitigation of security risk.

Accountabilities

  • Collaboration with stakeholders to understand their security requirements in business processes and IT projects, to enhance overall risk management.
  • Execution of risk assessments to identify and prioritise potential cybersecurity threats that could impact the banks operations and data and guide the implementation of mitigation strategies and communicate findings to relevant findings to relevant senior stakeholders.
  • Collaboration with business units to develop and implement security policies and procedures for the banks operations aligned to the risk management framework.
  • Management of the implementation, testing and monitoring of security controls across the banks IT systems to ensure the effectiveness of controls and mitigation of risk.
  • Execution of training content and sessions to educate employees, enhance cybersecurity awareness and provide guidance on safe online practices.
  • Management of complex cybersecurity incidents by collaborating with IT teams and response experts to effectively resolve cases through analysis, expertise support and project supervision.
  • Identification of emerging cybersecurity trends, threats, and new technologies to address potential risks by advocating the adoption of new security solutions.

Vice President Expectations

  • To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and escalate breaches of policies/procedures..
  • If managing a team, they define jobs and responsibilities, planning for the department’s future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements..
  • If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L – Listen and be authentic, E – Energise and inspire, A – Align across the enterprise, D – Develop others..
  • OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi-year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions..
  • Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment.
  • Manage and mitigate risks through assessment, in support of the control and governance agenda.
  • Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does.
  • Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business.
  • Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies.
  • Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In-depth analysis with interpretative thinking will be required to define problems and develop innovative solutions.
  • Adopt and include the outcomes of extensive research in problem solving processes.
  • Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes.

All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship – our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset – to Empower, Challenge and Drive – the operating manual for how we behave.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in Glasgow

Why this fits a police background

  • Risk & threat assessment
  • Working to legislation & regulation

What cyber security & digital forensics roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Digital forensics analyst£32,000–£45,000
DFIR consultant£45,000–£65,000
Senior forensics / IR specialist£60,000–£80,000
Threat-intelligence specialist£55,000–£80,000
Full cyber security & digital forensics salary guide →

More cyber security & digital forensics jobs for ex-police

  • Full-time

    Your digital forensics and evidence-handling discipline from policing maps directly onto this insider risk investigation role.

    Posted 10 days ago

  • Full-time

    £39,767 – £45,472Estimated

    Your investigative mindset and intelligence analysis experience from policing directly apply to identifying and assessing cyber threats.

    Posted 15 days ago

  • Full-time

    Your incident command and evidence-handling skills directly apply to coordinating cyber incident response and maintaining chain-of-custody.

    Posted 16 days ago

  • Cyber Security Analyst

    The Scottish Government · Glasgow

    Full-time

    £62,111 – £77,439Estimated

    Your experience managing incidents, assessing threats, and leading multi-agency responses in policing directly translates to leading cyber incident management and risk assessments. The role's emphasis on stakeholder engagement and policy development mirrors the collaborative and procedural work you did in command or investigation roles. While deep technical cyber expertise may require upskilling, your operational discipline and strategic thinking make you a strong candidate for this managerial position.

    Posted 18 days ago