Information Risk Specialist

2 weeks ago


London, United Kingdom Information Security Solutions Full time

Company: Financial Services

Location: Hybrid - City of London

Reports to Information Risk Manager

**Salary**: £80,000

Benefits: Generous

No. Required: 1

Start Date: ASAP

**The Role**

As the Information Security Risk Specialist, you shall support the Information Risk Manager which has responsibility for all Governance Risk and Compliance activities in the designing of appropriate policies and organisational controls. You will ensure that the control environment supports the mission of enterprise software vendor, operator of the Corda Network and Managed Services provider.

You'll be used to working in environments with mature security controls, but have the insight to bring a risk-based approach to a fast-moving company with a start-up culture. This is an opportunity to help "write the book" on building security assurance and good security practices for enterprise blockchain.

**Responsibilities**- Support the Information Risk Manager in the delivery of security governance, risk and compliance activities globally.-
- Drive the different types of security risk assessments across different business lines and manage risks via the risk register.-
- Ensure assurance activities are appropriately implemented across different business lines, and as required, you will be required to test the effectiveness of those controls.-
- Conduct security assessments and due diligence activities of critical 3rd party suppliers/vendors. This shall include liaising with key stakeholders such as IT, Legal and Business Resources.-
- Support customer due diligence activities, contract reviews and customer security review activities as necessary.-
- Support the Information Risk Manager and the wider Security team in the development, operation and maintenance of the security control environment (ISMS) including information security policies, standards and guidelines.-
- Identify emerging security requirements from our clients and ensure that capabilities to meet those are baked-in to our products and services.-
- Have a firm understanding of implementing mature security controls/practices across the organisation and engaging with stakeholders across the business.**Qualifications**- You'll have 3/5 years of experience in a direct information security role specialising in governance, risk and compliance activities.-
- We believe that we work better as a team, and hope you share that belief. You'll be working in a diverse group of people with a variety of skills and backgrounds, a high level of emotional intelligence will be assumed.-
- You'll need excellent communication skills, both verbal and written. You should be confident in explaining security terms and principles to an audience who may not be familiar with the underlying concepts.-
- You will assist in defining the ISMS and controls assurance environment creating the appropriate documentation/evidence to support external assessments.-
- Working knowledge of ISO 27000 or NIST Cyber Security Framework would be great, but experience with other recognised standards will be acceptable.-
- You should have worked in an organisation certified to ISO 27001 or gained SOC2 certification. You will have been part of this journey and understand the controls needed to achieve different certifications.-
- A firm understanding of the security practices which should be adopted for different legal and regulatory requirements such as PCI-DSS, GDPR, or different regulatory bodies.-
- Have responsibility for conducting security assurance/assessment activities and able to demonstrate process improvements to enhance the maturity of security controls.-
- You will have a solid appreciation of the variety of technical controls including endpoint security, identity and access management, network security controls (firewalls, VPN), intrusion detection and security event management/log analysis tools.-
- You won't be expected to be hands-on with these tools, but you'll certainly need to be aware of how they fit within the control environment which you will help to design and operate.An MSc in Information Security or a CISSP, CISM, CISA. Appropriate career experience is just as important though. Be prepared to tell us all about that experience.


  • Risk Information

    2 weeks ago


    London, United Kingdom eFinancialCareers Full time

    **What the Hiring Manager Says** An exciting opportunity to join the Quilter Central Risk Team, supporting a wide variety of risk reporting, systems, and oversight activities. The role holder will have the opportunity to develop skills in broader areas including the oversight of ESG andclimate-related risk and emerging risks analysis and...

  • Information Assurance Specialist

    Found in: Whatjobs ES C2 - 6 days ago


    London, United Kingdom Burman Recruitment Full time

    My client who are a leading university based in London are looking to add an Information Assurance Specialist to their team on a contract that will be running until end of September Information Assurance Specialist Hybrid - 1/2 days per week on site £450 outside IR35 5 month contractThe Information Assurance Team is responsible for overseeing information...


  • London, United Kingdom Burman Recruitment Full time

    My client who are a leading university based in London are looking to add an Information Assurance Specialist to their team on a contract that will be running until end of September Information Assurance Specialist Hybrid - 1/2 days per week on site £450 outside IR35 5 month contract The Information Assurance Team is responsible for overseeing...

  • Credit Risk

    3 days ago


    London, United Kingdom Paritas Recruitment - Risk Full time

    -Paritas Recruitment - Risk London, United Kingdom Posted 4 hours ago Hybrid Permanent £70k - £125k - A Tier 1 bank are currently seeking Collateral Management specialists (AVP, VP and SVP level) to join a newly established first line Quality Assurance function relating to the management of Wholesale Credit Risk.This Quality Assurance function has been...

  • Operational Risk Analyst

    Found in: beBee jobs GB - 2 weeks ago


    London, Greater London, United Kingdom Paritas Recruitment - Risk Full time

    The Operational Risk Analyst will support the management of the Bank's Operational Risk profile, with a focus on incident management, controls, business continuity and operational resilience. Applicants should have operational risk experience within the financial services sector and have a proven track record in preparing and delivering accurate management...


  • London, United Kingdom Audit & Risk Recruitment Full time

    The Audit & Risk Recruitment Company are working exclusively with an entertainment production and distribution company to help them source a Business Information Security Officer. This opportunity is with a global entertainment powerhouse, one of the the largest and most successful creators, producers and distributors of scripted and unscripted content in...


  • London, United Kingdom Barclay Simpson Full time

    **Information Security Specialist**: - Hybrid - WFH/City of London 2 days a week - £700 per day (Inside IR35) - Job type: Contract - Sector: Financial Services, Insurance - Job reference: 41173 Information Security, Agile Security and Risk Management Specialist required for global financial services firm. The role will be to augment the Information...


  • London, United Kingdom Resource Solutions Full time

    Job Description Information Risk Manager Salary: £80,000 Location: London (hybrid 3 days a week in office) Role Type: Permanent An exciting opportunity has arisen for a highly skilled Information Risk Manager to join a leading financial institution based in London. This is a fantastic opportunity to contribute to the organisation's cyber-security...

  • Information Security Risk Officer

    Found in: Jooble UK C2 - 2 weeks ago


    London, United Kingdom Harrington Starr Full time

    Exciting new role has become available with our global law firm at their London head office. This role has arisen due to new business expansion, and offers superb opportunities to join a small, specialist team, and the successful candidate will focus on security risk, policy and governance. Key accountabilities in the role will include: Authoring,...


  • London, United Kingdom Harrington Starr Full time

    Exciting new role has become available with our global law firm at their London head office. This role has arisen due to new business expansion, and offers superb opportunities to join a small, specialist team, and the successful candidate will focus on security risk, policy and governance. Key accountabilities in the role will include: Authoring,...

  • information Specialist

    21 hours ago


    London, United Kingdom Sue Hill Recruitment & Services Ltd Full time

    **Information Specialist** **£26,388 - £29,986 plus £3,366 Inner London Weighting (pro rata)** **Permanent - Hybrid** **28hrs per week** **London** Sue Hill Recruitment are pleased to be working with one of the UK’s leading charities in their search for a qualified information professional, Information Specialist as part of their busy Library...


  • London, United Kingdom Marcus Donald People Full time

    **Hybrid role: 3 days per week in London office** This is a great opportunity for an experienced GRC specialist to execute the companies heightened security processes. Someone with at least 2-3 years’ experience within security governance, risk and compliance is necessary, as the motivation and aptitude to learn and grow is a key feature. **Third-Party...


  • London, United Kingdom H&R Talent Full time

    A global payments company located in London is seeking a Technical Information Security Specialist to join their team on a permanent basis with Hybrid working. The ideal candidate for this role is someone who is passionate for Information Security and is a natural problem-solver to be able to provide efficient IT solutions across the organisation. The...


  • London, United Kingdom Sportradar Full time

    Job DescriptionOverview:We are in search of a dedicated Information Security Governance, Risk and Compliance Analyst to play a key role in our organization's InfoSec risk assessments, compliance activities, and ISO 27001 audit management and ISO 31000 . The successful candidate will possess a solid background in information security with a focus on policy,...


  • London, United Kingdom Marcus Donald People Full time

    Marcus Donald are currently looking for a **Third-Party Risk Specialist **to join a large & Global Business Consulting firm. You will need to confidently perform third-party security vendor diligence and liaise with business / external stakeholders to perform assessments and identify risk. **Hybrid role: 3 days per week in London office** This is a great...


  • London, United Kingdom Resource Solutions Full time

    Information Risk Manager Location: London (hybrid 3 days a week in office) Role Type: Permanent An exciting opportunity has arisen for a highly skilled Information Risk Manager to join a leading financial institution based in London. This is a fantastic opportunity to contribute to the organisation's cyber-security resilience and play a pivotal role...


  • London, United Kingdom Auricoe Full time

    Job Description A FTSE 100 blue chip Media organisation based in Central London requires an Information Security Risk Analyst / Info Sec Risk Analyst to join a large and rapidly expanding team. The role is a fully hybrid position - 1 day a week in the office (4 days / week homeworking) The Information Security Risk Analyst / Information Security Analyst /...


  • London, United Kingdom Bank of England Full time

    **Technical Specialist Operational Risk** **-** **(** **009905** **)** **Primary Location** UK-ENG-London **Job** Financial Markets Infrastructure **Organisation** 214000 - FMI ANALYTICS DIVISION **Job Posting** 13-Nov-2023, 1:26:46 PM - The Bank of England is the UK's central bank. Our mission is to deliver monetary and financial stability for the...


  • London, United Kingdom Deutsche Bank Full time

    **Job Title **Risk & Governance Specialist **Location **London **Corporate Title **Assistant Vice President Non-Financial Risk Management (NFRM) manages the Bank’s non-financial risks (NFR), including Operational Risk and Reputational Risk. NFRM works in partnership with the business and infrastructure functions to proactively manage the Bank’s risk...

  • Risk Manager

    5 days ago


    London, United Kingdom Hays Specialist Recruitment Limited Full time

    Risk Manager for a London Fintech Company Your new company An exciting London Fintech Company is looking for a Risk Manager. They offer financial trading services worldwide and are looking to expand their London team. Your new role You will support the Head of TPRM in developing and maintaining the TPRM policy and strategy. You will manage within the second...