Head of Information Security Risk Management

3 weeks ago


London, Greater London, United Kingdom TN United Kingdom Full time
Head of Information Security Risk Management, Greater London

Client:

Bupa

If your skills, experience, and qualifications match those in this job overview, do not delay your application.Location:

Greater London, United KingdomJob Category:

OtherEU work permit required:

YesJob Reference:

d60320bc90acJob Views:

7Posted:

03.03.2025Expiry Date:

17.04.2025Job Description:

Head of Information Security Risk ManagementUK Locations (Hybrid Working)Full TimePermanentApplications close: Friday 7th February 2024We make health happen.At Bupa, we're passionate about technology and the role it can play improving people's lives. We're undergoing an exciting digital transformation that is pivotal to our mission to help customers to live longer, happier, healthier lives. The Technology Function are at the heart of this change.The purpose of the role is to lead the strategic direction and delivery of the BGIUK Market Unit (BGIUK/MU) approach to Information Security risk, driving the reduction of security risks and improving security risk maturity. This requires close relationship with the CISO functions (both Group and MU), BUs Operational risk teams, and senior management to facilitate risk assessments and risk management processes.How you'll help us make health happen:Define, implement, and maintain the Information Security (including Cyber Security) part of the Risk Management Framework for BGIUK MU Technology.Lead in the scoping and delivery of the Market Unit Wide Information Security Risk Assessments and facilitate risk appetite evaluations.Contribute to the Cyber risk appetite definition for BGIUK.Provide subject matter expertise and independent guidance to the scoping, assurance, and delivery of the Information Security transformation programmes.Support the upskill of GRC team in Information Security topics.Provide advice and direction to the Third-Party Assurance and the Risk & Control teams on information security matters.Undertake detailed reviews of proposed security controls or solutions with the Security team.Establish the appropriate governance forums and reporting mechanisms for the assessment and reporting of the MU wide Information Security risks.Establish collaborative relationships with senior managers and stakeholders across the Group and MU.Attend selected key security meetings/forums and provide feedback/challenge, representing the GRC function.Have oversight of InfoSec risks across the MU, providing challenge on the prioritisation and reporting of such risks.Contribute to one of source of the truth for all MI.Report on InfoSec Risks and appetite position to the BGIUK Executive committee.Manage the security components of the Integrated Assurance plan.Have oversight over InfoSec risk remediation commitments by the CIO's direct reports.As a member of the MU GRC Leadership team, contribute as a senior leader to the wider agenda of MU and BU Technology.Work in conjunction with the Security Threat team to advise the GRC Director and CIO on relevant Information Security Risk matters.Work with the BINS compliance team to understand any relevant changes in regulatory expectations.What you'll bringExtensive experience in information security and governance risk and compliance.Proven track record of contributing to the strategic planning for information security.Ability to establish relationships and influence key stakeholders.Demonstrable experience of managing a team of Information security risk experts.Demonstrable experience in developing and managing information security audit and assurance programmes.Demonstrable experience in developing/managing information security reporting frameworks.Experience in providing guidance on information security to stakeholders.Excellent analytical skills and ability to manage multiple projects under strict timelines.High level of personal integrity and ability to handle confidential matters.Excellent written and oral communication skills.Graduate calibre with appropriate qualifications.Knowledge of common information security management/governance frameworks.Knowledge of cloud technologies with a preference for MS Azure.Experience of working in regulated Financial services.Our benefits are designed to make health happen for our people. Joining Bupa in this role you will receive the following benefits and more:25 days holiday, increasing through length of service, with option to buy or sell.Bupa health insurance for you and your family.An enhanced pension plan and life insurance.Annual 25% performance-based bonus.Onsite gyms or local discounts.Various other benefits and online discounts.

#J-18808-Ljbffr

  • London, Greater London, United Kingdom Horwich Farrelly Limited Full time

    About the RoleInformation Security and Risk ManagerWe are seeking a dedicated and experienced Information Security and Risk Manager to oversee our organisation's information security strategy and risk management processes. This role is crucial in protecting our data and ensuring compliance with relevant regulations.If you are passionate about safeguarding...


  • London, Greater London, United Kingdom Bestmansolutions Full time

    Our client is a forward-thinking customer focused firm committed to safeguarding their information assets. As they expand their Cyber Security function, they are seeking a dynamic and experienced Head of Information Security to join their team. This role is pivotal in supporting the Chief Information Security Officer (CISO) and ensuring the enterprise's...


  • London, Greater London, United Kingdom HOUSE OF COMMONS Full time

    UK ParliamentWorking at the UK Parliament offers a unique and rewarding career at the heart of the UK's democratic system.With a wide range of roles available, our impartial colleagues enable the day to day running of the House of Commons, House of Lords and Joint Departments. Together, we make Parliament happen.Staff BenefitsIn addition to your salary, we...


  • London, Greater London, United Kingdom HOUSE OF COMMONS Full time

    UK ParliamentWorking at the UK Parliament offers a unique and rewarding career at the heart of the UKs democratic system.With a wide range of roles available, our impartial colleagues enable the day to day running of the House of Commons, House of Lords and Joint Departments. Together, we make Parliament happen.Staff BenefitsIn addition to your salary, we...


  • London, Greater London, United Kingdom Intaso Full time

    Get AI-powered advice on this job and more exclusivefeatures. This range is provided by Intaso. Your actual pay will bebased on your skills and experience — talk with your recruiter tolearn more. Base pay range Direct message the job poster fromIntaso Head of Interim - Building Security teams to shape andprotect the future. Head of Information Security...


  • London, Greater London, United Kingdom Intaso Full time

    Get AI-powered advice on this job and more exclusive features.This range is provided by Intaso. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Base pay rangeDirect message the job poster from IntasoHead of Interim - Building Security teams to shape and protect the future.Head of Information...


  • London, Greater London, United Kingdom Intaso Full time

    Get AI-powered advice on this job and more exclusive features.This range is provided by Intaso. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Base pay rangeDirect message the job poster from IntasoHead of Interim - Building Security teams to shape and protect the future.Head of Information...


  • London, Greater London, United Kingdom Emeria UK Full time

    Job Role: Head of Information SecurityLocation: LondonHours: 35 hours per week Monday to FridayWe are looking for a highly experienced and strategic Head of Information Security to lead and shape the organisation's security posture across IT Security, Cyber Security, and Information Security functions. You have a deep understanding of technical and...


  • London, Greater London, United Kingdom BACB plc Full time

    Direct message the job poster from BACB plcBACB is a UK bank that offers trade finance and investment expertise to clients in specialist markets, especially Africa and the Middle East.We have been helping businesses with trade finance and complementary products for over half a century, focusing on trade flows to and from Africa and the Middle East as well as...


  • London, Greater London, United Kingdom BACB plc Full time

    Direct message the job poster from BACB plcBACB is a UK bank that offers trade finance and investment expertise to clients in specialist markets, especially Africa and the Middle East.We have been helping businesses with trade finance and complementary products for over half a century, focusing on trade flows to and from Africa and the Middle East as well as...


  • London, Greater London, United Kingdom Silver Birch Rec Ltd TA Etech Partners Full time

    My client is a leading organisation in the renewables sector seeking an experienced Information Security Manager.For this opportunity, you must have experience maintaining information security frameworks, e.g., ISO27001, within a medium/large-sized organisation.Hybrid/Flexible working including a 4-day working week.What you will do:Develop Information...


  • London, Greater London, United Kingdom The MBA Fund Full time

    As the Head of Security and Data Protection Officer at NALA, you will play a pivotal role in our mission to increase economic opportunities for migrants across the globe. NALA is a groundbreaking fintech company that aims to build a bank for the migrant diaspora, starting with a focus on remittances. Our goal is to provide innovative financial services and...


  • London, Greater London, United Kingdom Audit & Risk Recruitment Full time

    The Audit & Risk Recruitment Company is working with a major Telecommunications company to help them find an IT Audit Manager to help continue to grow their team.Led by the Group Director of Internal Audit, the Internal Audit team delivers risk-based audits that offer valuable, pragmatic insights and assurance to the business and the Audit Committee.This is...


  • London, Greater London, United Kingdom Saepio Information Security Full time

    Cloud Security ArchitectLocation: Hybrid, London or High Wycombe, United KingdomSalary: CompetitiveHours: Full Time - (Mon – Fri, 9am – 6pm)Reporting To: Technical Services ManagerWho are Saepio?Saepio are a Cyber Security Solutions Provider that work with UK based corporate customers with between 100-10,000 users. We help them to protect their...


  • London, Greater London, United Kingdom GBST Holdings Limited Full time

    Joining GBST means you will be part of a global leader in financial services technology. We are a forward-thinking business, delivering innovative wealth management solutions to enable, support and scale wealth management and advice to some of the largest financial services organisations in the world.This role will report to the Head of Information Security...


  • London, Greater London, United Kingdom Robert Walters UK Full time

    My client, an International Financial Services organisation based in London, is looking for an Information Security Risk VP to join their growing team. For this role, you will have to be in their offices 2 days per week in London.About the Information Security Risk VP role:As part of the CCO team, you will play a key role:Improving the oversight of...


  • London, Greater London, United Kingdom Aviva Full time

    Cyber and Information Security Risk ManagerSalary: London circa £85,000 / National circa £75,00012-Month FTC We are looking for a Cyber and Information Security Risk Manager join our IT and Cyber Risk team (second line).The successful candidate will be responsible for identifying, assessing, and mitigating risks associated with the organization's...


  • London, Greater London, United Kingdom Griffin Fire Full time

    Head of Information SecurityLocation: London / New York (Flexible)Type: Full-timeReports to: CEOAbout CornspringCornspring is redefining data solutions for Family Offices, Asset Owners, and UHNW clients. Our AI-powered platform integrates, validates, and secures private financial data, allowing intelligent insights via Gen-AI and LLM-based...


  • London, Greater London, United Kingdom Secore information security limited Full time

    We are looking for a skilled Security Tester and Evaluator to evaluate and conduct security testing for applications and systems. In this role, you will support threat modelling and security assurance activities in collaboration with the security team. As a security tester and evaluator, you will be responsible for designing and creating appropriate test...


  • London, Greater London, United Kingdom Salt Digital Recruitment Full time

    Information Security Manager – Regional Information Security Officer (RISO)Rate: £32 per hour / £240 per day (Inside IR35)Length: 6-Month Rolling ContractLocation: London or Burgess Hill or Brighton – Hybrid (2/3 days a week)We're looking for a skilled Information Security Manager to join a dynamic team that plays a crucial role in safeguarding...