Interactive Brokers

Information Security Policy Manager

Interactive Brokers$120K — $150K *
Finance & Insurance
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years in information/cyber security, with 3+ years in policy development in financial services.
  • Fluency in cybersecurity regulatory requirements such as DORA, SEC, and FFIEC.
  • Familiarity with security frameworks like NIST CSF and ISO 27001/27002.
  • Experience owning technical standards documentation.
  • Lead responder for regulatory audits and compliance assessments.
  • Ability to write clear, actionable policies based on risk management and technology environments.
  • Experience with GRC (Governance, Risk, and Compliance) tools is a plus.

Responsibilities

  • Maintain and update IBKR's information security policy library to meet regulations and business needs.
  • Coordinate development and reviews of security policies based on identified requirements.
  • Analyze current security policies against applicable frameworks and identify gaps.
  • Support external compliance assessments and provide required documentation.
  • Collaborate with the Information Security Controls Manager on supporting policies with appropriate controls.
  • Evaluate security controls and offer recommendations for improvements.
  • Perform additional duties as assigned.

Benefits

  • Competitive salary, performance-based bonus, and stock grants.
  • 401(k) with competitive company match.
  • Comprehensive health benefits with fully employer-paid medical premiums.
  • Employee Assistance Program offering wellness screenings and health coaching.
  • Generous parental leave policy of up to 16 weeks.
  • Company-paid life insurance and disability coverage.
  • Flexible Spending Accounts for various health and support needs.
  • Quarterly fitness stipend for gym memberships.
  • Education reimbursement and professional development opportunities.
  • Access to legal services and telehealth options.
  • Backup care support through Care.com and daily lunch allowance.
Full Job Description
This is Hybrid role (4 days in office /1 day remote)

About your Team:

The Information Security Policy Manager develops, maintains, and communicates IBKR's information security policies aligned to regulatory requirements, industry best practices, and IBKR's control environment and risk appetite. This role is responsible for IBKR's formal information security policy library, ensuring IBKR's security program is supported by well-considered policy mandates.

What will be your responsibilities within IBKR:
  • Maintain and extend IBKR's information security policy library to align with regulatory requirements, business risk appetite, industry-accepted risk frameworks, and IBKR's control environment.
  • Coordinate and drive the development, review, and update of information security policies and standards based on identified need and defined maintenance intervals.
  • Map IBKR's security policies to, and analyze gaps against, applicable risk and regulatory frameworks and laws, such as DORA, FFIEC, NIST CSF.
  • Support security-related external assessments, audits, and regulatory examinations by providing evidence of compliance.
  • Partner with the Information Security Controls Manager to ensure policies are supported by appropriate controls and testing procedures.
  • Evaluate security controls, identify opportunities for improvement, and communicate constructive recommendations.
  • Other duties, as assigned

What required skill's you need:
  • 7+ years of experience in information / cyber security experience, including 3+ years developing and managing information security policies in a regulated industry (preferably financial services) and 3+ years hands-on, technical cybersecurity roles.
  • Fluent understanding of regulatory requirements affecting cybersecurity, including DORA, SEC, FFIEC, and common regulations issued in Europe (EBA) and APAC (SFC, MAS).
  • Working familiarity with common security frameworks, including NIST CSF and ISO 27001/27002.
  • Prior experience as owner of policies or technical standards documentation.
  • Experience as lead responder to regulatory examinations, audit requests, and client due diligence questionnaires related to policy and compliance.
  • Proven ability to write clear, actionable policies addressing complex regulatory and technical requirements, grounded in industry accepted practices and risk management concepts, and based on existing controls and technology environments
  • Experience working with GRC (Governance, Risk, and Compliance) tooling a plus.
  • Experience building cross functional consensus as an individual contributor
  • Bachelor's degree in Information Security, Computer Science, Information Technology or a related field, or equivalent experience
  • CISM certification a plus.

To be successful in this position, you will have the following:
  • Strong critical thinking, analytical, organizational, time management, and writing and editing skills - all with attention to detail.
  • Track record of building bridges with technology practitioners and translating complex technical concepts into simple, accessible language for business audiences.
  • A self-motivated, open, collaborative, client-centric, consensus-building problem-solving mentality
  • Ability to exercise good judgment when solving problems with incomplete information

Company Benefits & Perks

  • Competitive salary, annual performance-based bonus, and stock grant awards
  • 401(k) retirement plan with competitive company match
  • Excellent health and wellness benefits, including medical, dental, and vision benefits. 100% employer-paid medical premiums, with generous employer contributions to dental & vision plans as well.
  • Wellness screening and assessments, health coaches, and counseling services through an Employee Assistance Program (EAP)
  • Generous paid parental leave (up to 16 weeks paid parental leave for eligible employees)
  • Company-paid basic life insurance, accidental death & dismemberment (AD&D), and short- and long-term disability coverage
  • Flexible Spending Accounts (Healthcare, Dependent Care, and Commuter FSAs)
  • Quarterly fitness stipend to offset costs associated with traditional gym and fitness memberships or fees
  • Education reimbursement and professional development opportunities
  • Legal services, telehealth access, and voluntary insurance options
  • Backup child and adult care support through Care.com
  • Daily lunch allowance and fully stocked kitchen with healthy breakfast and snack options

About Interactive Brokers

Interactive Brokers is a leading online brokerage firm. They offer a wide range of services to clients, including trading in stocks, options, futures, currencies, and bonds. Interactive Brokers is known for their low fees and advanced trading platform. They have a team of experienced professionals who are committed to providing the best service to their clients. Interactive Brokers is a publicly traded company and is listed on the NASDAQ stock exchange.
Learn more about Interactive Brokers
Size
2,683 employees
Market Cap
$30 billion
Industry
Net Income
$195 million
5 Year Trend
+14.8%
Revenue
$2.4 billion
NASDAQ

Similar Jobs

More Jobs at Interactive Brokers

More Finance & Insurance Jobs

Find similar Information Security Policy Manager jobs: