Information Security Risk Manager

4 weeks ago


London, Greater London, United Kingdom Alexander Mann Solutions (on behalf of Public Sector Resourcing Full time
Job Title: Information Security Risk Manager

On behalf of the Cabinet Office, we are seeking an experienced Information Security Risk Manager to join our team for a 5-month contract based in London, Bristol, or Manchester.

The successful candidate will be responsible for leading on cyber and information security risk assessments across the Department and its Business Units. This will involve understanding the Department's alignment to the NCSC Cyber Assessment Framework (CAF) and the related HMG standards.

The post holder will work within a cyber transformation programme, collaborating with the Central Cyber and Information Security team to deliver against agreed deadlines while maintaining all aspects of information security risk management.

SC Clearance is an essential requirement for this role, as a minimum, you must be eligible and willing to undergo these checks.

Main Responsibilities:
  1. Support the Information Security and Assurance Manager in delivering the Information Security strategy.
  2. Contribute to the continuous improvement of information security practices and engagement.
  3. Lead the development and enhancement of cyber security risk management practices, including methodologies, processes, and their adoption across the department.
  4. Develop and implement processes to scale up the assessment of compliance against internal security policy and external requirements such as GovAssure.
  5. Evaluate and assess cyber security controls across the business engineering practices and its third-party vendors to ensure compliance with the NCSC CAF.
  6. Conduct comprehensive risk assessments using the NCSC CAF.
  7. Collaborate with cross-functional teams to develop and implement risk management activities.
  8. Use risk management techniques to identify cyber threats, risks, and issues in a timely manner.
  9. Be proficient in threat modelling methods and familiar with tooling practices in threat modelling.
  10. Support the creation and maintenance of security policies, guidance, and standards.
  11. Support the creation and collection of metrics, validation of security control performance, and the identification of emerging cyber risks.
Essential Requirements:
  1. Sound knowledge of and experience in an Information Security or Security Governance Risk & Compliance (GRC) role.
  2. Experience authoring tailored policy and process documentation.
  3. Experience working in a professional services environment.
  4. Hands-on experience conducting cyber risk assessments and developing cyber risk mitigation strategies.
  5. Proficiency in conducting cyber security control assessments.
  6. Hands-on knowledge and experience working with recognised security frameworks such as, NCSC CAF, ISO27001, ISO 27005, ISO 31000, NIST.
  7. Strong interpersonal and communication skills (written and verbal), with the ability to interact with technical and non-technical stakeholders at all levels.
  8. Ability to acknowledge and respond positively to exceptional events in information security to meet business objectives.
  9. SC cleared minimum or BPSS but willing to undergo SC clearance.

Please be aware that this role can only be worked within the UK and not Overseas.



  • London, Greater London, United Kingdom TEKsystems Full time

    Job SummaryWe are seeking a highly skilled Information Security Risk Manager to join our team at TEKsystems. As a key member of our Information Security team, you will be responsible for assisting regional Information Security and IT Risk managers with routine review and approval activities.Key ResponsibilitiesProvide expert assistance for resolving...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job DescriptionOur client is seeking an experienced Information Security Risk Management Lead to join their team on a 6-month contract. The successful candidate will be responsible for overseeing the organisation's information security risk management framework, identifying potential risks, and implementing risk mitigation strategies.The Infosec Risk...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job Title: Information Security Risk Management LeadOur client is seeking an experienced Information Security Risk Management Lead to join their team on an initial 6-month contract. The successful candidate will be responsible for overseeing the organisation's information security risk management framework, identifying potential risks, and ensuring the...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job Title: Information Security and Risk LeadOur client is seeking an experienced Information Security and Risk Lead to join their team on a 6-month contract. The successful candidate will be responsible for overseeing the organization's information security risk management framework, identifying potential risks, and implementing risk mitigation...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job Title: Information Security and Risk LeadOur client is seeking an experienced Information Security and Risk Lead to join their team on a 6-month contract. The successful candidate will be responsible for overseeing the organization's information security risk management framework, identifying potential risks, and implementing risk mitigation...


  • London, Greater London, United Kingdom Trustpilot Full time

    Trustpilot's Information Security TeamWe are seeking a skilled Governance, Risk and Compliance analyst to join our team and help us reduce Information Security risk, advance the security of our products, data, infrastructures, people, and protect our brand and reputation.The ideal candidate will have a strong interest in Information Security, risk, and be...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job Title: Information Security and Risk LeadOur client is seeking an experienced Information Security and Risk Lead to join their team on a 6-month contract. The successful candidate will be responsible for overseeing the organization's information security risk management framework, identifying potential risks, and implementing risk mitigation...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job Title: Information Security and Risk LeadOur client is seeking an experienced Information Security and Risk Lead to join their team on a 6-month contract. The successful candidate will be responsible for overseeing the organization's information security risk management framework, identifying potential risks, and implementing risk mitigation...


  • London, Greater London, United Kingdom Flo Full time

    Job Title: Information Security and Risk LeadFlo is seeking an experienced Information Security and Risk Lead to join our team. As a key member of our security team, you will play a critical role in designing and implementing secure systems environments and embedding security controls that mitigate risks within engineering and wider business processes.Key...


  • London, Greater London, United Kingdom Partnerize Full time

    About the RoleThe Information Security Analyst 2 plays a key part in driving the completion of incoming tickets and assisting leadership with project work. This role ensures continual improvement by escalating changes and assists other team members with knowledge sharing to improve the team's capability.ResponsibilitiesTriage and management of support desk,...


  • London, Greater London, United Kingdom Tbwa ChiatDay Inc Full time

    Job DescriptionWe are seeking an experienced Information Security and Risk Management Specialist to join our team. As a key member of our security team, you will be responsible for designing and implementing secure systems environments, embedding security controls, and mitigating risks within engineering and wider business processes.The ideal candidate will...


  • London, Greater London, United Kingdom Boston Consulting Group Full time

    KEY RESPONSIBILITIESAs a Senior Information Security Risk Manager at Boston Consulting Group, you will be responsible for leading the development and implementation of the company's information security risk management strategy. This will involve identifying and assessing potential risks to the organization's digital assets, as well as developing and...


  • London, Greater London, United Kingdom Robert Walters Full time

    Job Title: Information Security Risk AdvisorThe role of Information Security Risk Advisor is a critical position within our organization, responsible for managing the overall security and operations team and leading the day-to-day security of our perimeter/edge defenses, endpoint security, email security, threat and vulnerability management, SOC, IAM, and...


  • London, Greater London, United Kingdom Robert Walters Full time

    Job Title: Information Security Risk AdvisorThe role of Information Security Risk Advisor is a critical position within our organization, responsible for managing the overall security and operations team and leading the day-to-day security of our perimeter/edge defenses, endpoint security, email security, threat and vulnerability management, SOC, IAM, and...


  • London, Greater London, United Kingdom Public Sector Resourcing (PSR) Full time

    Job Title: Information Security Risk AnalystPublic Sector Resourcing (PSR) is seeking an experienced Information Security Risk Analyst to join our team. As an Information Security Risk Analyst, you will be responsible for leading on cyber and information security risk assessments across the Department and its Business Units.Key Responsibilities:Support the...


  • London, Greater London, United Kingdom Public Sector Resourcing (PSR) Full time

    Job Title: Information Security Risk AnalystPublic Sector Resourcing (PSR) is seeking an experienced Information Security Risk Analyst to join our team. As an Information Security Risk Analyst, you will be responsible for leading on cyber and information security risk assessments across the Department and its Business Units.Key Responsibilities:Support the...


  • London, Greater London, United Kingdom Public Sector Resourcing (PSR) Full time

    Job Title: Information Security Risk AnalystPublic Sector Resourcing (PSR) is seeking an experienced Information Security Risk Analyst to join our team. As an Information Security Risk Analyst, you will be responsible for leading on cyber and information security risk assessments across the Department and its Business Units.Key Responsibilities:Support the...


  • London, Greater London, United Kingdom Public Sector Resourcing (PSR) Full time

    Job Title: Information Security Risk AnalystPublic Sector Resourcing (PSR) is seeking an experienced Information Security Risk Analyst to join our team. As an Information Security Risk Analyst, you will be responsible for leading on cyber and information security risk assessments across the Department and its Business Units.Key Responsibilities:Support the...


  • London, Greater London, United Kingdom Lendscape group Full time

    Job Summary:Lendscape is seeking a skilled Information Security Risk Contractor to provide operational support and clear the backlog of security tasks. This includes handling security assessments, responding to inquiries, managing third-party risk assessments, and resolving corrective actions and vulnerabilities.Key Responsibilities:Timely completion of...


  • London, Greater London, United Kingdom RGF Staffing UK Limited Full time

    Job Title: Information Security and Risk Management SpecialistJob Summary: We are seeking an experienced Information Security and Risk Management Specialist to join our team at RGF Staffing UK Limited. As an Information Security and Risk Management Specialist, you will be responsible for ensuring the confidentiality, integrity, and availability of our...