Information Security Policy Manager

Interactive Brokers Group
United States
Workplace: HybridFull timeFunction: CybersecurityExperience: 7+ yearsEducation: bachelorsSkills: ["Critical thinking","Analytical skills","Organizational skills","Time management","Writing and editing"]

Develop, maintain, and communicate a comprehensive information security policy library aligned to regulatory requirements, industry best practices, and IBKR’s risk appetite. Coordinate the creation, review, and update of policies and standards, map them to frameworks such as DORA, FFIEC, and NIST CSF, and support audits and regulatory examinations. Partner with security controls to improve alignment, and translate complex technical and regulatory requirements into clear, actionable policy guidance.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Interactive Brokers Group
Interactive Brokers Group
2 months ago

Information Security Policy Manager

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 3 days agoStatus: Live
Reposted: similar role first listed 6 months ago

Job Summary

Develop, maintain, and communicate a comprehensive information security policy library aligned to regulatory requirements, industry best practices, and IBKR’s risk appetite. Coordinate the creation, review, and update of policies and standards, map them to frameworks such as DORA, FFIEC, and NIST CSF, and support audits and regulatory examinations. Partner with security controls to improve alignment, and translate complex technical and regulatory requirements into clear, actionable policy guidance.
Location: United States
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Maintain and extend the information security policy library aligned to regulatory requirements, risk appetite, and control environment.
  • •Coordinate development, review, and updates of information security policies and standards on defined maintenance intervals.
  • •Map security policies to risk and regulatory frameworks and analyze gaps against applicable laws and frameworks (e.g., DORA, FFIEC, NIST CSF).
  • •Support security-related external assessments, audits, and regulatory examinations by providing evidence of compliance.
  • •Partner with the Information Security Controls Manager to ensure policies are supported by appropriate controls and testing procedures.

Pay and Benefits

Perks:Annual BonusEquity401kHealth InsuranceDentalVisionPaid ParentalLife InsuranceLong-term DisabilityRemote WorkLearning BudgetGym MembershipMeal Allowance

Key Requirements

  • •7+ years in information/cybersecurity, including 3+ years developing and managing information security policies in a regulated industry (preferably financial services) and 3+ years hands-on technical cybersecurity roles.
  • •Fluent understanding of cybersecurity-related regulatory requirements, including DORA, SEC, FFIEC, and regulations issued in Europe and APAC.
  • •Working familiarity with security frameworks, including NIST CSF and ISO 27001/27002.
  • •Experience owning information security policies or technical standards documentation.
  • •Proven ability to write clear, actionable policies for complex regulatory and technical requirements, grounded in risk management concepts.
Experience:7+ yearsFinancial servicesRegulated industryCybersecurityInformation securityGRC
Education:Bachelor's in Information Security, Computer Science, Information Technology or related field
Skills:Critical thinkingAnalytical skillsOrganizational skillsTime managementWriting and editing
Certifications:CISM
Tech Stack:DORAFFIECNIST CSFISO 27001ISO 27002GRC toolingGRC

Company Brief

Interactive Brokers Group
Operates an electronic trading platform providing brokerage services for individuals and institutions across global markets, offering equities, options, futures, forex, bonds, and related clearing and custody services with advanced trading technology and low-cost executions.
Industry: Trading Platforms
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Greenwich, United States
Founded: 1977
WebsiteLinkedIn