Information Security and Cyber Risk Manager

23 hours ago


London, Greater London, United Kingdom Starling Bank Full time

About Starling Bank: As the UK's first digital bank, we're on a mission to revolutionize the way people manage their finances. With a focus on fast technology, fair service, and honest values, we're committed to making banking more accessible and user-friendly for everyone.

We're currently looking for an experienced Information Security Lead to join our team in London. In this role, you'll be responsible for leading a team of subject matter experts and analysts to ensure that information security is managed and continuously improved in line with bank policy and procedure.

The successful candidate will have previous experience in a similar role, with strong leadership skills and a proven track record of developing and motivating high-performing teams. You'll also have a deep understanding of best practice within information security and risk management, including standards such as NIST, CIS, and OWASP.

About the Role: As the Information Security Lead, you'll be responsible for supporting the development and progression of the Information Security Analyst team from both a technical and professional perspective. This will involve working closely with the Information Security Director - Operations to enhance and continuously improve the bank's information and cyber security systems, processes, and procedures.

You'll also be responsible for driving the continuous development of information security use case creation and automation playbooks, as well as leading the development of a 24/7 OnCall model. Additionally, you'll act as an information security SME for business continuity and crisis management planning.

Requirements:

  • Prior experience in a similar role leading, developing, and motivating a team of subject matter experts and other managers in information and cyber security
  • Prior experience working in a complex IT organization encompassing service delivery, application development, and IT infrastructure
  • Understanding of best practice within information security and risk management, including standards such as NIST, CIS, and OWASP
  • Practical experience utilizing threat analysis models such as MITRE ATT&CK to inform the prioritization and enhancement of detective controls and the bank's defensive posture
  • Ability to be pragmatic while balancing the needs of the bank against security
  • Good practical knowledge of security technologies and wider business solutions, including identity and access management, SIEM, remote working, and cloud technologies
  • Good understanding of financial services and awareness of broader requirements
  • Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), or GIAC Certified Incident Handler (GCIH) or GIAC Certified Forensic Examiner (GCFE)

Benefits: We offer a competitive salary of £85,000-£110,000 per annum, depending on experience, plus benefits including 25 days holiday, annual leave increase with length of service, life insurance at 4x salary, private medical insurance, and generous family-friendly policies.



  • London, Greater London, United Kingdom Medicines and Healthcare Products Regulatory Agency Full time

    Job OpportunityWe are seeking a skilled Cyber Security Risk Lead to join the Medicines and Healthcare Products Regulatory Agency (MHRA) in our Digital and Technology Group (DTG).This role is crucial in enabling the Agency to reduce its cyber security risk with a focus on Information Security, ensuring this remains front and centre in all of our business.The...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time £75,000

    Job OverviewWe are excited to partner with a leading investment bank in London to expand its EMEA capability at the AVP level. They seek a specialist with relevant experience in incident response, threat modeling, and cybersecurity frameworks.This role offers an excellent opportunity for a skilled cybersecurity professional to join Iceberg Cyber Security and...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Job Title: Cyber Security Project ManagerCompany Overview: Iceberg Cyber Security is a unique insurance organisation that operates a cyber function for its customers. We are seeking an experienced Cyber Security Project Manager to join our team in the City Of London area.Estimated Salary: £60,000 - £80,000 per annum based on experience and...


  • London, Greater London, United Kingdom Locke and McCloud Full time £45,000 - £55,000

    Cyber Security Consultant | UK Remote | £45,000-£55,000 per annum. About Our Client:Lokke & McCloud are working with a leading global insurance firm, looking for an experienced Cyber Security Consultant to support clients with cyber security audits and risk management. This company has a cyber security consulting arm that works with clients from various...


  • London, Greater London, United Kingdom Locke and McCloud Full time £45,000 - £55,000

    Cyber Security Risk Consultant We are seeking an experienced Cyber Security Risk Consultant to join our team at Locke & McCloud. As a key member of our Cyber Security Consulting arm, you will work closely with clients from various industries to assess and mitigate cyber security risks. Key responsibilities include: Conducting thorough risk assessments to...


  • London, Greater London, United Kingdom Cyber Crime Full time

    Cyber Crime: Secure Software ApplicationsEstimated Salary: $90,000 - $110,000 per year.We're seeking an experienced Information Security Expert to join our team at Cyber Crime. As a key member of our security team, you will play a critical role in safeguarding our software applications from potential threats and breaches. Your primary focus will be on...


  • London, Greater London, United Kingdom Medicines and Healthcare Products Regulatory Agency Full time

    We are seeking an experienced Cyber Security Risk Manager to play a key role in reducing the cyber security risk of the Medicines and Healthcare Products Regulatory Agency. This is an exciting opportunity for a skilled professional who can deliver strong information security risk management frameworks aligned to industry and government best practice.The...


  • London, Greater London, United Kingdom Locke and McCloud Full time

    A global Insurance firm seeks an experienced Information Security Risk Manager to support their clients with Cyber Security audits and risk management.The company has a dedicated Cyber Security Consulting arm, working with clients across various industries, and a small team of offensive Cyber Security experts.As a crucial member, you will collaborate closely...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Iceberg Cyber Security is seeking an Information Security Specialist to join its security assurance team. The role will focus on achieving information security, accreditation such as NIST, ISO-27001, JSP 440. To be successful in this role the candidate must have a familiarity working with a secure by design approach and experience communicating with senior...


  • London, Greater London, United Kingdom Department for Work and Pensions Full time

    About the RoleWe are seeking a highly skilled Cyber Security Risk Management Specialist to join our Digital Security Risk Management (DSRM) team at the Department for Work and Pensions.As a key member of our team, you will play a crucial role in identifying and assessing security risks, developing innovative solutions, and driving business growth. Your...


  • London, Greater London, United Kingdom Spectrum IT Recruitment Full time

    Spectrum IT Recruitment is seeking a highly skilled Cyber Security Risk Manager to join their team. This is a permanent, full-time position offering a highly competitive salary of $120,000 - $180,000 per annum.About the RoleThis key member of the Cyber Security Team will drive adoption of Cyber Security processes and best practices to protect the...


  • London, Greater London, United Kingdom CHUBB Full time

    Job Title: Cyber Security Risk ManagerJob Summary:We are seeking a highly skilled Cyber Security Risk Manager to join our team at CHUBB.Key Responsibilities:* Manage regional Security Issues and Policy Exceptions* Provide guidance to the business on how to use InfoSec processes to enhance security posture* Develop detailed country-level security posture...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Iceberg Cyber Security is seeking an experienced Ethical Hacker to join its team of security professionals. This role offers a unique opportunity for a security expert with a strong background in testing complex infrastructures and building new security tools using Python.">About the Role:">In this position, you will conduct in-depth security assessments,...


  • London, Greater London, United Kingdom Cyber Crime Full time

    Job DescriptionThis is a unique opportunity to join our team as an IT Risk Management Director and take charge of our regional information security program. As a key member of our team, you will be responsible for ensuring the implementation and monitoring of a strategic, comprehensive cyber security and IT risk management program for the defined scope.Key...


  • London, Greater London, United Kingdom Locke and McCloud Full time £45,000 - £55,000

    Information Security ConsultantLocke & McCloud is a leading UK-based staffing company specializing in cyber security and information security. We are currently looking for an experienced Information Security Consultant to support our clients with cyber security audits and risk management.The ideal candidate will have a strong background in information...


  • London, Greater London, United Kingdom Context Information Security Full time

    Context Information Security is a dynamic and growing company that offers a unique opportunity for experienced Python/Django developers to grow their careers in the field of cyber security.About UsWe are a leading provider of cyber security services, working with high-profile clients to deliver innovative solutions to complex security challenges. Our team of...


  • London, Greater London, United Kingdom Cyber Crime Full time

    Job Title: Senior Cyber Security Specialist">Job Summary:">As a Senior Cyber Security Specialist, you will play a key role in supporting the definition and maintenance of the technology risk and control environment for the line of business.">Key Responsibilities:">Assess the effectiveness of technology controls against requirements and policy...


  • London, Greater London, United Kingdom Cyber Crime Full time

    About Our CompanyWe're a leading financial institution dedicated to creating innovative products that tackle real-world problems. Our focus is on delivering exceptional customer experiences while fostering an environment that nurtures skills and helps individuals realize their potential.As a Technology Risk & Controls Manager within our Cyber Security team,...


  • London, Greater London, United Kingdom Locke and McCloud Full time £45,000 - £55,000

    Job Overview:Cyber Risk ConsultantLocke & McCloud, a leading cyber security and information security staffing company, is seeking a skilled Cyber Risk Consultant to join their team. The ideal candidate will have 3 or more years of experience working with Information Security, preferably within a Consultancy.The successful candidate will be responsible for...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    At Iceberg Cyber Security, we are seeking a highly skilled Cyber Senior Security Engineer to join our team in London. This is an exciting opportunity for a technical security problem solver who is curious about how and why things work.About the RoleThis role is a lot more than traditional network security; it's a wide-ranging position across cybersecurity....