Job Description:
BISO – Internal Platforms
London, Stains or Manchester
Permanent – Full Time – Hybrid
We make health happen
At Bupa, our purpose is simple: helping people live longer, healthier, happier lives and making a better world.
As a Business Information Security Officer (BISO), you'll play an important role in helping us deliver on that purpose. Our customers trust us with their health and wellbeing, and that trust starts with secure, resilient and reliable technology.
You'll act as the senior security partner for Internal Technology Platforms, working across critical business systems and strategic change initiatives. From supporting the safe adoption of AI and cloud technologies to strengthening cyber resilience across key platforms, you'll help make sure security is built into everything we do.
This is an opportunity to influence senior stakeholders, shape technology risk decisions and help create secure-by-design, resilient-by-design ways of working across one of the UK's leading healthcare organisations.
Key Responsibilities
As our Business Information Security Officer, you'll:
- Lead information security, technology risk and resilience activities across Internal Technology Platforms.
- Build trusted relationships with technology and business leaders to embed security standards and best practice.
- Provide clear, practical, risk-based guidance to strategic programmes, product teams and operational activities.
- Help ensure new technologies, including AI, cloud platforms and modern workplace tools, are adopted safely and responsibly.
- Oversee technology risk governance activities, including risk forums, steering groups and leadership committees.
- Maintain and manage risk registers, remediation plans and key risk indicators.
- Support business continuity, disaster recovery and operational resilience planning.
- Work closely with technology operations and incident response teams to learn from security events and strengthen future controls.
- Oversee security assessments of third-party suppliers and make sure risks are managed effectively.
- Monitor emerging cyber threats and industry developments to help shape future security strategy.
- Translate complex security and technology risks into clear, business-friendly language for senior stakeholders.
What We're Looking For
To succeed as our Business Information Security Officer, you'll bring:
- Significant experience in cyber security, technology risk management and resilience within a large organisation.
- Experience working in a regulated environment, such as healthcare, financial services or another complex industry.
- Strong knowledge of security and risk frameworks such as ISO 27001, NIST, CIS, OWASP, ITIL or COBIT.
- Experience working with cloud technologies, particularly Azure, Google Cloud and modern identity and access management solutions.
- A good understanding of cyber threats, security operations, AI security, data protection, encryption, business continuity and operational resilience.
- Excellent stakeholder management skills with the ability to influence and build credibility at senior levels.
- Strong analytical and problem-solving skills, with the ability to balance risk and business outcomes.
- Experience driving continuous improvement and introducing more efficient, effective ways of working.
- A recognised industry qualification such as CISSP, CISM, CRISC, or an equivalent degree or postgraduate qualification in Information Security or Technology.
Benefits
Our benefits are designed to make health happen for our people. Viva is our global wellbeing programme and includes all aspects of our health – from mental and physical, to financial, social and environmental wellbeing. We support flexible working and have a range of family friendly benefits.
Joining Bupa in this role you will receive the following benefits and more:
- 25 days holiday, increasing through length of service, with option to buy or sell
- Enhanced pension and life insurance
- Private medical insurance
- Access to our health and wellbeing services
- Discounts on Bupa products and services
Why Bupa
We're a health insurer and provider. With no shareholders, our customers are our focus. Our people are all driven by the same purpose – helping people live longer, healthier, happier lives and making a better world. We make health happen by being brave, caring and responsible in everything we do.
We encourage all of our people to "Be you at Bupa", we champion diversity, and we understand the importance of our people representing the communities and customers we serve. That's why we especially encourage applications from people with diverse backgrounds and experiences.
Bupa is a Level 2 Disability Confident Employer. This means we aim to offer an interview/assessment to every disabled applicant who meets the minimum criteria for the role. We'll make sure you are treated fairly and offer reasonable adjustments as part of our recruitment process to anyone that needs them.
Time Type:
Full timeJob Area:
ITLocations:
Bupa Place, Kirkstall Forge, Staines - Willow HouseSkills Required
- Significant experience in cyber security, technology risk management and resilience within a large organisation
- Experience working in a regulated environment (healthcare, financial services or similar)
- Strong knowledge of security and risk frameworks such as ISO 27001, NIST, CIS, OWASP, ITIL or COBIT
- Experience working with cloud technologies, particularly Azure and Google Cloud Platform, and modern identity and access management solutions
- Good understanding of cyber threats, security operations, AI security, data protection and encryption
- Experience in business continuity, disaster recovery and operational resilience planning
- Experience overseeing security assessments of third-party suppliers and managing remediation
- Excellent stakeholder management and ability to influence senior leaders
- Strong analytical and problem-solving skills and experience driving continuous improvement
- Recognised industry qualification such as CISSP, CISM, CRISC or equivalent degree/postgraduate qualification in Information Security or Technology
Bupa Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Bupa and has not been reviewed or approved by Bupa.
-
Healthcare Strength — Health cover via the UK Health Trust, day‑one medical support for frontline roles, and dedicated women’s health initiatives indicate a robust, health‑centric package. Access to digital GP, nurse lines, and options such as dental and health cash plans further reinforce medical and preventive care breadth.
-
Wellbeing & Lifestyle Benefits — Wellbeing programs span mental, physical, emotional, and financial support, with offerings like EAP access, gym discounts, and health assessments. Flexible work and wellbeing programs highlighted in some regions add to lifestyle value.
-
Parental & Family Support — Policies include enhanced parental leave in certain UK business units and a family mental‑health support line. Options to extend medical coverage to dependants and family‑oriented allowances strengthen support beyond the individual.
Bupa Insights
What We Do
Bupa's purpose is helping people live longer, healthier, happier lives and making a better world. We are an international healthcare company serving over 38 million customers worldwide. With no shareholders, we reinvest profits into providing more and better healthcare for the benefit of current and future customers. We directly employ around 85,000 people, principally in the UK, Australia, Spain, Chile, Poland, New Zealand, Hong Kong SAR, Türkiye, Brazil, Mexico, the US, Middle East and Ireland. We also have associate businesses in Saudi Arabia and India. For more information, visit www.bupa.com






