Join our community.
Santander Corporate & Investment Banking (SCIB) is Santander's global division that supports some of the world's most complex and sophisticated corporate and institutional clients, offering customised services and value-added wholesale products to best meet their needs.
The Chief Information Security Office function is responsible for managing cyber and technology risks on behalf of Santander London Branch (SLB) based on Santander group policies and standards in line with internally defined risk management frameworks, appetite and best practice.
Reporting to the CISO for SLB, you’ll play a key role in the effective application, administration, and implementation of strategies and controls designed to manage cyber risks for SLB. You’ll promote and embed the technology risk management framework and operating model, driving measurable reductions across all areas of technology risk.
The difference you’ll make:
- Providing independent oversight and effective challenge of cyber and information security risks across SLB
- Assessing the effectiveness of cyber risk management frameworks, controls and remediation activity
- Reviewing and challenging cyber risk assessments, control testing, risk acceptances and treatment plans
- Monitoring the cyber risk profile, including key risk indicators, emerging threats, material incidents and control weaknesses
- Supporting the identification and assessment of risks arising from new technologies, transformation programmes, cloud adoption, third parties and changes to the threat landscape
- Providing clear reporting and insight on cyber risk exposures to senior management, governance forums and relevant committees
- Challenging the adequacy and timeliness of remediation plans relating to cyber vulnerabilities, audit findings, incidents and control deficiencies
- Partnering with Technology, Cyber Security, Operational Risk, Compliance, Internal Audit and business teams to promote effective management of cyber risk
- Supporting regulatory and supervisory activity relating to cyber security, operational resilience and technology risk
- Contributing to the continued development of cyber risk methodologies, policies, standards and risk appetite measures
- Monitoring emerging cyber threats, regulatory developments and industry practices, assessing their potential impact
What you’ll bring:
Our people are our greatest strength. Every individual contributes unique perspectives that make us stronger as a team and as an organisation. We’re enabling teams to go beyond by valuing who they are and empowering what they bring.
The following requirements represent the knowledge, skills, and abilities essential for success in this role.
- An excellent understanding of cyber security domains including identity and access management, vulnerability management, security operations, cloud security, data protection, network security and incident response
- Experience assessing technology and cyber risks arising from complex infrastructure, applications, cloud environments and third-party services
- Knowledge of relevant UK regulatory expectations relating to technology risk, cyber security and operational resilience
- Strong analytical skills and the ability to identify the key risk implications within complex technical information
- Proven experience in developing risk reporting, metrics, KRIs and management information for senior audiences
- Excellent written and verbal communication skills, with the confidence to constructively challenge senior stakeholders
- The ability to work effectively across technology, security, risk and business teams in a complex international organisation
- Strong judgement, organisation and prioritisation skills
- Excellent communication and stakeholder management skills, both internally and externally
- Previous experience in an information security role
- Graduate degree and relevant professional qualifications, or equivalent experience
What else you need to know:
This role is based at our offices in Triton Square, London located within easy walking distance from Warren Street and Euston.
We want our people to thrive at work and home, and also be able to deliver the best outcomes for our customers and to help each other develop.
Equal Opportunities.
Santander is proud of being an organization where there are equal opportunities regardless of age, gender, disability, civil status, race, religion or sexual orientation. We are committed to providing an inclusive and accessible application process for all candidates.
How we’ll reward you.
Your contribution matters, and it’s recognised. You can expect a fair, competitive reward package that reflects the impact you create and the value you deliver.
As well as a competitive salary, you’ll enjoy a benefits package that you can tailor to your needs.
- Eligible for a discretionary performance-related annual bonus.
- We put 8% of salary into your pension, even if you don’t contribute yourself. We’ll pay in up to 12.5% of salary, if you contribute as well, and you can take some of our contribution in cash if you prefer.
- 30 days’ holiday plus bank holidays, which increases to 31 days after 5yrs service, with the option to purchase up to 5 contractual days per year.
- Company funded individual private medical insurance.
- Voluntary healthcare benefits at discounted rates such as private medical insurance for your family, dental insurance, and health assessments.
- Protection for you and your family, with company-funded death-in-service benefit and income protection insurance, and the option to take advantage of discounted rates for additional life assurance and critical illness cover.
- Share in Santander’s success by saving or investing in our share plans.
Learn more about our benefits and family friendly policies
What to do next:-
If this sounds like a role you’re interested in, then please apply.
Skills Required
- Excellent understanding of cybersecurity domains, including identity and access management, vulnerability management, security operations, cloud security, data protection, network security, and incident response
- Experience assessing technology and cyber risks arising from complex infrastructure, applications, cloud environments, and third-party services
- Knowledge of relevant UK regulatory expectations for technology risk, cybersecurity, and operational resilience
- Strong analytical skills and ability to identify key risk implications within complex technical information
- Experience developing risk reporting, metrics, key risk indicators, and management information for senior audiences
- Excellent written and verbal communication skills, including confidence constructively challenging senior stakeholders
- Ability to work effectively across technology, security, risk, and business teams in a complex international organisation
- Strong judgement, organisation, and prioritisation skills
- Excellent internal and external communication and stakeholder management skills
- Previous experience in an information security role
- Graduate degree and relevant professional qualifications, or equivalent experience
Santander Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Santander and has not been reviewed or approved by Santander.
-
Retirement Support — A dollar‑for‑dollar 401(k) match up to 6% of eligible pay and immediate vesting are highlighted as core strengths, supporting long‑term savings. This is reinforced by company‑paid disability and life/AD&D coverage that bolster financial security.
-
Leave & Time Off Breadth — Paid time off typically ranges from 18–30 days in the U.S. with 11 paid holidays, plus dedicated volunteer and development time; the UK features a minimum of 25 days with buy/sell options. Some roles also use self‑managed PTO, offering additional flexibility depending on team norms.
-
Parental & Family Support — U.S. parental benefits include 8 weeks paid for all parents and a total of 16 weeks paid for birth mothers, with flexibility for reduced hours around childbirth. Caregiver leave and dependent‑care programs add further family support.
Santander Insights
What We Do
Banco Santander (SAN SM, STD US, BNC LN) is a leading commercial bank, founded in 1857 and headquartered in Spain and one of the largest banks in the world by market capitalization. The group’s activities are consolidated into five global businesses: Retail & Commercial Banking, Digital Consumer Bank, Corporate & Investment Banking (CIB), Wealth Management & Insurance and Payments (PagoNxt and Cards). This operating model allows the bank to better leverage its unique combination of global scale and local leadership. Santander aims to be the best open financial services platform providing services to individuals, SMEs, corporates, financial institutions and governments. The bank’s purpose is to help people and businesses prosper in a simple, personal and fair way. Santander is building a more responsible bank and has made a number of commitments to support this objective, including raising €220 billion in green financing between 2019 and 2030. In the first quarter of 2024, Banco Santander had €1.3 trillion in total funds, 166 million customers, 8,400 branches and 211,000 employees.









