Information and Security Control Risk Manager

4 weeks ago


Scarborough North Yorkshire, United Kingdom Nexus Systems Group Inc. Full time

Location Address: Scarborough – hybrid – onsite 1-2 x/week
Contract Duration: 1 year
Possibility of extension & conversion to FTE
Number of Positions: 1
Schedule Hours: 9am-5pm Monday-Friday (Possible OT) – flexibility required – may be required to work on weekends at peak times
Reason: additional workload

Story Behind the Need
Business group: Global Technology Control Testing
The US cybersecurity and IT risk team oversees and advise on cybersecurity and IT risk matter in US. The team primary focuses is to ensure the bank's security controls are in line with industry standards and compliant with the regulator requirement.

The primary function of an Information and Security Control Risk Manager is to monitor, analyze, and report on cybersecurity requirements against relevant regulations and standards, such as NYDFS, FFIEC, and NIST CSF, while taking a risk-based approach. The IS&C manager will be able to understand complex security challenges, identify vulnerabilities, and propose effective solutions.

• Candidate Value Proposition:
The successful candidate will have the opportunity to work with the US team and build on their Cybersecurity skills within one of the Top 5 banks in Canada. The candidate will be exposed to opportunity to grow within the bank as the team is expanding as well.

• Typical Day in Role:
Dedicated and detail-oriented cybersecurity professional with a strong background in regulatory compliance.
• Continuously monitor and assess the effectiveness of security controls and processes.
• Perform the information security compliance tasks such as ensuring IT activities, processes, and procedures meet defined requirements, policies and regulations.
• Perform control assessments against enterprise cybersecurity frameworks and standards.
• Track, manage, and report on any internal or external cybersecurity-related issues.

Candidate Requirements/Must Have Skills:
1. 5+ years of experience in related cybersecurity technical background and exposure to cloud technologies (Azure, Google)
2. 3+ years of recent project experience with security governance, policies, cybersecurity frameworks, security standards, and regulatory compliance
3. 3+ years of experience with and strong knowledge of security controls/mechanisms (gap analysis)
4. Intermediate Excel skills (V-lookups, macro, etc.)

Nice-To-Have Skills:
1) experience with risk assessment techniques pertaining to complex data, application, and networking environments
2) Information security related certification (such as Security+, CISA, CISM, CISSP)
3) Recent relevant Financial Industry Experience

Soft Skills Required:
- Excellent communications and written skills.
- Comfortable putting together and presenting risk reporting to a US IS&C management.
- Candidate must be a team player and may be required to assist other team members in other security and IT risk tasks, as needed.
- Ability to manage assigned tasks and expectations without direct instruction or oversight.
- Fast, adaptable learner who can hit the ground running.
- Ability to work well under pressure while demonstrating strong professionalism.
- Willingness to learn new technologies and security-related information

Education:
Bachelors degree in related Cyber/ IT field or relevant experience

Best vs. Average Candidate
The ideal candidate would have knowledge with NYDFS Cybersecurity regulations, experience with regulatory examinations, or strong understanding of NIST CSF.

Candidate Review & Selection
2 rounds
1st – HM – 45 mins – MS Teams Video
2nd – Panel (Director, IT risk, cyber risk team) – 1 hr – MS Teams Video

Hiring Manager’s availability to interview: ASAP #J-18808-Ljbffr
  • IT Security Analyst

    2 days ago


    York, North Yorkshire, United Kingdom Randstad Delivery Full time

    IT Security and Compliance Analyst York - Hybrid (2-3 days per week on-site) 12 months Main Purpose: Provide Security & Compliance support to the NiM businesses and IT incl. relevant contribution to agreed IT support model, operational sustain incl. incident and request management, Market Security Compliance Indicator (MSCI) measure and Information...

  • IT Security Analyst

    7 days ago


    Scarborough, North Yorkshire, United Kingdom ProViso Staffing Full time

    Story Behind the Need: • Reporting to the Director of Cybercrime Coordination Centre, the Senior Analyst role within the Cybercrime Coordination Centre is responsible for supporting operational services to combat and mitigate cyber-enabled crime throughout client globally. • The Senior Analyst role within the Cybercrime Coordination Centre is...


  • York, North Yorkshire, United Kingdom Randstad UK Full time

    IT Security and Compliance Analyst York - Hybrid (2-3 days on-site) Main Purpose: Provide Security & Compliance support to the NiM businesses and IT incl. relevant contribution to agreed IT support model, operational sustain incl. incident and request management, Market Security Compliance Indicator (MSCI) measure and Information Security Managment (ISMS)...

  • IT Security Analyst

    3 weeks ago


    Scarborough, North Yorkshire, United Kingdom ProViso Staffing Full time

    Story Behind the Need: • The Identity Lifecycle Management team within the Access Management Operations is responsible for the execution of established security controls pertaining to identity and access. This includes the centralized provisioning of user identities, the user accounts linked to those identities, management of user access, privileged...


  • York, North Yorkshire, United Kingdom Randstad UK Full time

    IT Security and Compliance Analyst York - Hybrid (2-3 days on-site) Main Purpose: Provide Security & Compliance support to the NiM businesses and IT incl. relevant contribution to agreed IT support model, operational sustain incl. incident and request management, Market Security Compliance Indicator (MSCI) measure and Information Security Managment...


  • York, North Yorkshire, United Kingdom Randstad UK Full time

    Job Description IT Security and Compliance Analyst York - Hybrid (2-3 days on-site) Main Purpose: Provide Security & Compliance support to the NiM businesses and IT incl. relevant contribution to agreed IT support model, operational sustain incl. incident and request management, Market Security Compliance Indicator (MSCI) measure and Information Security...


  • York, North Yorkshire, United Kingdom Randstad UK Full time

    Job Description IT Security and Compliance Analyst York - Hybrid (2-3 days on-site) Main Purpose: Provide Security & Compliance support to the NiM businesses and IT incl. relevant contribution to agreed IT support model, operational sustain incl. incident and request management, Market Security Compliance Indicator (MSCI) measure and Information...


  • West Yorkshire, United Kingdom Erin Associates Full time

    **Information Security Officer - Hybrid / Yorkshire or Midlands** **Circa £40,000 + Benefits such as 35-hour work week, flexible hours, 25 days Holidays + Bank holidays, Life assurance and more** Some of the responsibilities of the Information Security Officer will include but not be limited to: - Developing the company’s Information Security Consultancy...

  • Security Officer

    4 weeks ago


    Scarborough, United Kingdom Rapid Security Services Ltd Full time

    **Responsibilities**: - Guard and protect locations and property (including cash) from theft, vandalism and damage. - Respond to emergencies and alarms. - Control access to and from secured areas. - Supervise subordinates and other security staff. - Direct ongoing activity of security staff. **Job Type**: Zero hours contract Contract length: 12...


  • South Yorkshire, United Kingdom Xpertise Recruitment Full time

    Head of Information Security - Midlands (Hybrid) - £100k + Car Allowance + Bonus Information Security | Strategy | Governance | Stakeholder Management | Risk | ISO27001 Salary: £100k + Car Allowance + Bonus Location: Midlands (Hybrid) Are you an Information Security leader looking for the next challenge in your career? Do you have demonstrable...

  • Senior Developer

    4 weeks ago


    Scarborough, North Yorkshire, United Kingdom ProViso Staffing Full time

    Client’s Information Security & Control (IS&C)’s Vulnerability Management Services – Application Security is responsible to improve security practices and, through that, to find and preferably prevent security issues within applications. • This function provides core competency in proactively detecting application code flaws and/or bugs while...

  • Risk Manager

    7 days ago


    North Yorkshire, United Kingdom Marks Sattin recruitment Full time

    Marks Sattin is currently working with a well known business in North Yorkshire to help recruit a Risk Manager to their team. Reporting to the Group Senior Risk Manager. **Role responsibilities**: - Support the business in embedding the risk management framework including helping them to identify and control risks - Ability to motivate and inspire...

  • Risk Manager

    3 weeks ago


    York, North Yorkshire, United Kingdom Turner & Townsend Full time

    This job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board. Company Description At Turner & Townsend we're passionate about making the difference. That means delivering better outcomes for our clients, helping our people to realize their potential, and doing our part to create a prosperous society. Every day...


  • Woodhouse, South Yorkshire, United Kingdom Fire and Security Careers Full time

    Fire and Security Systems Sales Manager/ Business Development Manager To Live in Midlands area and work South of UK developing £750k+ of sales + £My client is a Fire Detection, Fire Alarm and Fire & Security installation and maintenance company seeking a Fire and Security Sales Manager for South of the UK, or a Senior Business Development Manager who can...

  • Developer - Java

    4 weeks ago


    Scarborough, North Yorkshire, United Kingdom ProViso Staffing Full time

    Story Behind the Need: • Client’s Information Security & Control (IS&C)’s Vulnerability Management Services – Application Security is responsible to improve security practices and, through that, to find and preferably prevent security issues within applications. • The Application Security team has global accountability and is highly supportive of...


  • North West Leicestershire, Leicestershire, United Kingdom Fire and Security Careers Full time

    Fire and Security Systems Sales Manager/ Business Development Manager To Live in Midlands area and work South of UK developing £750k+ of sales + £My client is a Fire Detection, Fire Alarm and Fire & Security installation and maintenance company seeking a Fire and Security Sales Manager for South of the UK, or a Senior Business Development Manager who...

  • Risk Manager

    3 weeks ago


    York, North Yorkshire, United Kingdom Turner & Townsend Full time

    That means delivering better outcomes for our clients, helping our people to realize their potential, and doing our part to create a prosperous society. Every day we help our major global clients deliver ambitious and highly technical projects, in over 130 countries worldwide. Our team is dynamic, innovative and client-focused, supported by an inclusive...


  • West Yorkshire, United Kingdom Defence Full time

    What Will You Be Doing? Your role will be at the core of everything that our client does - from supporting their customers with high quality cyber security consultancy and cyber assurance. As part of the growth of their existing successful cyber security risk and compliance team, new and exciting roles are available for cyber security specialists. You...


  • West Yorkshire, United Kingdom Defence Full time

    What Will You Be Doing?Your role will be at the core of everything that our client does - from supporting their customers with high quality cyber security consultancy and cyber assurance.As part of the growth of their existing successful cyber security risk and compliance team, new and exciting roles are available for cyber security specialists. You...


  • West Yorkshire, United Kingdom Locke and McCloud Full time

    Role: Cyber Security Sales Manager Locke & McCloud have partnered with a rapidly growing consultancy who are seeking a new Cyber Security Sales Manager. The successful individual will be responsible for developing and leading the business development sales team. This role involves working closely with both the CEO and COO in creating, defining and...