Allica Bank
Fintech
Headof2LODData&InfoSec
Neural analysis suggests this role is
optimal for Senior candidates.
“Head of 2LOD Data & InfoSec at Allica Bank. Skills: Data Risk Management, Data privacy protection and management, security operations, cloud security, application security, incident response. Strategically develop and maintain the 2nd line of defence oversight of Data and Information Security Risk. Provide coverage of how 1LOD identify potential data and info sec threats and associated mitigating actions”
What You'll Achieve.
Ensure suitable data & information security metrics are measured and reported to senior management; Use data and analytics to identify issues, trends and potential vulnerabilities
Industry & Context.
An ability to provide constructive challenge
What They're Looking For.
Must Have
Experience of Data Risk Management including measuring data quality and integrity, Skills in Data privacy protection and management, Expertise in security operations, cloud security, application security, and incident response, Hands-on experience with security technologies (e.g., SIEM, endpoint protection, cloud security tools), Exceptional leadership and communication skills, with the ability to engage and influence diverse stakeholders, Excellent communication skills both verbal and written, Excellent presentational skills – the ability to convey complex subjects in an easily understood format, An ability to provide constructive challenge in a range of circumstances
Nice to Have
knowledge of security frameworks (e.g., NIST, CIS, ISO 27001) and compliance standards (e.g., PCI-DSS, PSD2, GDPR)
What You'll Do.
Strategically develop and maintain the 2nd line of defence oversight of Data and Information Security Risk
Provide coverage of how 1LOD identify potential data and info sec threats and associated mitigating actions
Provide challenge and oversight of 1LOD security monitoring and alerting strategies
Ensure 1LOD security threat analysis and detection is fit for purpose and suitable for a fast-growing dynamic fintech
Provide review and challenge of data and info sec risks identified and assessed through Allica’s RCSA process
including control testing and gap analysis
Provide oversight on how 1LOD are managing the data integrity risks
ensuring that data quality is effectively measured and managed with suitable MI to identify risks and appropriate mitigation
Provide 2LOD oversight of the risks surrounding the collection and storage of data including liaising with the Bank’s Data Protection Office
Review and support the updating of the Bank’s Data Risk Management Framework
Provide oversight of 1LOD security operations ensuring they are set up to monitor
and respond to potential threats in a timely manner with the appropriate tools and technologies
Review the cloud security frameworks that safeguard sensitive data and applications providing challenge where appropriate and ensuring they protect our data
Challenge the Cybersecurity Incident Response Plans (CSIRP) and Disaster Recovery Plans (DRP) ensuring they are appropriate for Allica
Conducting independent testing and challenge of information security controls and their effectiveness
Challenge the approach to Data integrity assessment
measurement and remediation
Be engaged in data and cybersecurity incidents
including post-incident analysis
Ensure data and info sec risk assessments and due diligence is suitably performed for third-party vendors and partners
Review compliance with relevant regulations (e.g.
Ensure suitable data & information security metrics are measured and reported to senior management
Use data and analytics to identify issues
trends and potential vulnerabilities
How You'll Work.
Team & Collaboration
Engage and influence diverse stakeholders
Communication Scope
Exceptional leadership and communication skills; Excellent communication skills both verbal and written; Excellent presentational skills
Full Job Description
About Allica Bank Allica is the UK’s fastest growing company - and the fastest-growing financial technology (Fintech) firm ever. Our purpose is to help established SMEs, one of the last major underserved opportunities in Fintech. Established SMEs are the backbone of local communities - representing over a third of our economy - yet have been largely neglected both by traditional high street banks and modern fintech providers. Role Description This role will strategically develop and maintain the 2nd line of defence oversight of Data and Information Security Risk. This includes providing coverage of how 1LOD identify potential data and info sec threats and associated mitigating actions. Using comprehensive sources of data, you will provide challenge and oversight of 1LOD security monitoring and alerting strategies. You will ensure 1LOD security threat analysis and detection is fit for purpose and suitable for a fast-growing dynamic fintech. This role is required to provide review and challenge of data and info sec risks identified and assessed through Allica’s RCSA process, including control testing and gap analysis. You will provide oversight on how 1LOD are managing the data integrity risks, ensuring that data quality is effectively measured and managed with suitable MI to identify risks and appropriate mitigation. This role will also provide 2LOD oversight of the risks surrounding the collection and storage of data including liaising with the Bank’s Data Protection Office. Principal Accountabilities - To review and support the updating of the Bank’s Data Risk Management Framework which articulates how Allica should think about managing Data and information Security risks. - Provide oversight of 1LOD security operations ensuring they are set up to monitor, detect, and respond to potential threats in a timely manner with the appropriate tools and technologies. - Review the cloud security frameworks that safeguard sensitive data and applications providing challenge
Applying for this Head of 2LOD Data & InfoSec role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Allica Bank?
Real rants from real employees. Read before you apply.