Information Security Manager
New Yesterday
Overview
Join to apply for the Information Security Manager role at Specialist Risk Group
The IT Risk Manager is responsible leading the development, implementation, and maintenance of a robust information security programme in alignment with regulatory requirements, industry best practices, and business objectives. The ideal candidate will have deep expertise in risk management, compliance, cybersecurity frameworks, and technology governance, in a regulated financial services industry.
Responsibilities
- Information Security Programme Management
- Develop, implement, and maintain security policies, standards, and procedures in line with ISO 27001, NIST, FFIEC, and other relevant frameworks.
- Ensure alignment of security strategies with business goals and regulatory obligations (e.g., FCA, PRA, GDPR, SOX, GLBA).
- Manage the company’s information security risk register and conduct regular risk assessments.
- Lead internal and external security audits, and ensure timely remediation of findings.
- Monitor and enforce compliance with data protection regulations and cybersecurity laws.
- Lead incident response efforts, including detection, investigation, containment, and recovery.
- Coordinate with legal, compliance, and executive teams during security incidents or data breaches.
- Conduct post-incident reviews and implement lessons learned.
- Third-Party Risk Management
- Oversee vendor security assessments and ensure third-party providers meet security requirements.
- Review and negotiate security clauses in contracts and SLAs.
- Security Operations
- Oversee daily security operations including vulnerability management, access control, endpoint security, and network monitoring.
- Collaborate with IT and infrastructure teams to implement technical controls and solutions (e.g., SIEM, DLP, EDR, IAM).
- Build and develop a (new) information security team.
- Manage and mentor security analysts or junior team members.
- Drive security awareness training and phishing simulations across the organisation.
- Reporting & Metrics
- Prepare and deliver regular reports on security posture, incidents, and KPIs to senior leadership and regulatory bodies.
- Advise executives on emerging threats and risk mitigation strategies.
Skills & Experience
- Strong leadership and stakeholder management skills.
- Excellent analytical and problem-solving abilities.
- Strong written and verbal communication; able to articulate complex issues to both technical and non-technical audiences
- Proven ability to manage multiple priorities and projects in a fast-paced, high-stakes environment.
- High level of integrity and discretion when handling sensitive information.
- Bachelor’s degree in Information Security, Computer Science, or related field.
- 5+ years of experience in information security, including at least 2 years in a managerial or leadership role.
- Experience working in a regulated financial services environment.
- Knowledge of relevant regulations and standards (e.g., FCA, PRA, GDPR, PCI-DSS, SOX, DORA).
- Master’s degree or MBA with a focus on information assurance or risk management.
- Experience with cloud security (AWS, Azure) and DevSecOps.
- Familiarity with identity and access management (IAM), security architecture, and threat intelligence.
- Experience of delivering operational resilience programmes.
What We Offer
- Competitive salary and benefits package
- Opportunity to work in a growing, digitally-focused brokerage
- Professional development and training support
- Hybrid working model and flexible hours
- Location:
- London, England, United Kingdom
- Salary:
- £150,000 - £200,000
- Job Type:
- FullTime
- Category:
- IT & Technology
We found some similar jobs based on your search
-
New Today
Senior Consulting Information Security Manager
-
Hull And East Yorkshire, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Overview ITO Information Security Management delivers advisory and implementation services, helping organisations enhance their security maturity and resilience. We blend industry-leading frameworks with tailored strategies, risk assessments, and AI...
More Details -
-
New Yesterday
Category Manager - Cloud & Information Security Procurement
-
London, England, United Kingdom
-
£150,000 - £200,000
- IT & Technology
The Category Manager for Cloud & InfoSec will support the Head of Enterprise Technology Procurement with relevant category planning for the business. The successful candidate will also have a creative and positive approach to problem solving. The role will require you to work on multiple large and complex projects simultaneously.
More Details -
-
New Yesterday
Information Security & Compliance Manager
-
London, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Information Security & Compliance Manager. Drive strategic planning, execution, and operations of scalable, automated, and resilient security controls. Contribute towards defining Ravio’s security engineering strategy that addresses identity, endpoint, and data protection across all environments. Oversee security monitoring, vulnerability...
More Details -
-
New Yesterday
Information Security Manager
-
London, England, United Kingdom
-
£150,000 - £200,000
- IT & Technology
The IT Risk Manager is responsible leading the development, implementation, and maintenance of a robust information security programme. The ideal candidate will have deep expertise in risk management, compliance, cybersecurity frameworks, and technology governance, in a regulated financial services industry.
More Details -
-
2 Days Old
Information Security Manager with 2nd and 3rd Line Support
-
London, England, United Kingdom
-
£150,000 - £200,000
- IT & Technology
The Information Security Manager will also provide IT support to the company. The position is 3 days in the office per week in Central London. Salary will be negotiable and aims to be in the range £65K - £80K. Please send your CV in Word format along with your salary and notice period.
More Details -
-
2 Days Old
Senior Manager Information Security
-
London, England, United Kingdom
-
£150,000 - £200,000
- IT & Technology
The Senior Manager of Risk is responsible for building, embedding, and continuously improving the organisation’s cyber risk management framework. This individual will manage a small team of risk professionals and be responsible for ensuring effective oversight of third-party and supplier risks.
More Details -