Information Security Risk Manager

4 weeks ago


London, Greater London, United Kingdom Robert Walters Full time
Job Title: Information Security Risk Advisor

The role of Information Security Risk Advisor is a critical position within our organization, responsible for managing the overall security and operations team and leading the day-to-day security of our perimeter/edge defenses, endpoint security, email security, threat and vulnerability management, SOC, IAM, and overall transformation and maturity of the security initiatives.

Key Responsibilities:
  • The role requires that security processes and procedures be followed covering a range of activities: threat/vulnerability assessment, vulnerability management, security monitoring, security alert handling, incident response.
  • Able to manage a diverse workload and communicate effectively with technical teams, project managers, and key stakeholders.
  • As we move to a 'Cloud-First' strategy, strong Azure/M365 experience is a must. Windows Defender, Sentinel, Purview are all a requirement for this role.
  • Hands-on activity on regular operational tasks may also be required to support ongoing BAU activities.
  • The processes/procedures in place must be developed, documented, and implemented/operational with evidence of controls produced as KPI and KRI to evidence operational performance.
  • Manage the deployment and administration of technical security initiatives to enable adequate protection against the evolving cyber threat landscape.
  • Maintain, deploy, upgrade, and troubleshoot various security solutions across detect, protect, respond, and recover.
  • Lead security assessments and risk analysis and make recommendations to improve overall security.
  • Manage the threat and vulnerability program to ensure timely remediation of vulnerabilities in line with policy and compliance requirements.
  • Work with internal teams to ensure adequate security solutions are engineered and deployed across environments/platforms to mitigate security risks.
  • Manage the integration of security solutions, tools, and platforms with internal systems to improve organizational security posture and maturity.
  • Design, implement, and maintain procedures and controls necessary to ensure the protection of all information system assets against intentional or inadvertent misuse, access, modification, disclosure, or destruction.
  • Investigate security incidents and breaches by operationalizing technical incident response efforts, as an integral part of the Security Incident Response Team.
  • Provide people leadership, mentoring, and training on relevant networks, tools, policies, and procedures to direct reports including security analysts and engineers.
  • Maintain up-to-date knowledge of the latest security trends and technology and recommend appropriate security products and solutions for various platforms.
  • Manage relationships with third-party managed security service providers.
  • Perform all duties inherent in a supervisory role.
  • Manage a team of offshore Cyber Analysts.
Requirements:
  • 5 years+ of information security or cyber security experience.
  • Experience and/or certifications which provide evidence of Information/Cyber Security capabilities.
  • Experience and/or certification which provide evidence of Infrastructure knowledge/capabilities.
  • Strong Cloud experience, ideally recently with MS Azure.
  • Experience with the implementation of security tools such as EDR, NDR, SIEM, Data Leakage.
  • Experience in implementing various security controls, such as NIST, SOX, GDPR, CSA, etc.
  • Prevention, Automation and Orchestration, Encryption, etc.
  • Experience with DarkTrace, Proofpoint, Thales (DPOD/CipherTrust), Zscaler are a Plus.
Work Experience:
  • Recent Azure experience to include Defender, Sentinel, Purview, MS O365 - Required.
  • Strong experience of operational security activities such as vulnerability management, security monitoring, alert/incident response, security reviews - Required.
  • In-depth knowledge of security technologies such as Firewall, SIEM, vulnerability management, email security, IAM - Required.
  • Hands-on implementation experience deploying, maintaining, and administering security technologies such as Endpoint security, Firewalls & IDS, DLP, Reverse Proxies, CASB, MDM, Vulnerability and Patch management - Required.
  • Excellent knowledge of secure network design and system/security hardening - Required.
  • Advanced knowledge of incident response and threat mitigation - Required.
  • Strong understanding of cloud-based architecture and models - Required.
  • Extensive Windows experience including deep knowledge of log file analysis, log auditing and common configuration deficiencies - a Plus.
  • Experience in one or more programming languages for scripting and automation - a Plus.
  • Managing an offshore team - a Plus.
Education/Qualifications:
  • Degree is preferable.
  • Microsoft certifications are a Plus.
  • SANS GSEC/GCED/GSOC or similar are a Plus.
  • CISSP/CISM/CISA are a Plus.

We are committed to offering an inclusive recruitment experience. If you require accommodations because of a disability or health condition, please let us know.



  • London, Greater London, United Kingdom Alexander Mann Solutions (on behalf of Public Sector Resourcing Full time

    Job Title: Information Security Risk ManagerOn behalf of the Cabinet Office, we are seeking an experienced Information Security Risk Manager to join our team for a 5-month contract based in London, Bristol, or Manchester.The successful candidate will be responsible for leading on cyber and information security risk assessments across the Department and its...


  • London, Greater London, United Kingdom Alexander Mann Solutions (on behalf of Public Sector Resourcing Full time

    Job Title: Information Security Risk ManagerOn behalf of the Cabinet Office, we are seeking an experienced Information Security Risk Manager to join our team for a 5-month contract based in London, Bristol, or Manchester.The successful candidate will be responsible for leading on cyber and information security risk assessments across the Department and its...


  • London, Greater London, United Kingdom TEKsystems Full time

    Job SummaryWe are seeking a highly skilled Information Security Risk Manager to join our team at TEKsystems. As a key member of our Information Security team, you will be responsible for assisting regional Information Security and IT Risk managers with routine review and approval activities.Key ResponsibilitiesProvide expert assistance for resolving...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job DescriptionOur client is seeking an experienced Information Security Risk Management Lead to join their team on a 6-month contract. The successful candidate will be responsible for overseeing the organisation's information security risk management framework, identifying potential risks, and implementing risk mitigation strategies.The Infosec Risk...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job Title: Information Security Risk Management LeadOur client is seeking an experienced Information Security Risk Management Lead to join their team on an initial 6-month contract. The successful candidate will be responsible for overseeing the organisation's information security risk management framework, identifying potential risks, and ensuring the...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job Title: Information Security and Risk LeadOur client is seeking an experienced Information Security and Risk Lead to join their team on a 6-month contract. The successful candidate will be responsible for overseeing the organization's information security risk management framework, identifying potential risks, and implementing risk mitigation...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job Title: Information Security and Risk LeadOur client is seeking an experienced Information Security and Risk Lead to join their team on a 6-month contract. The successful candidate will be responsible for overseeing the organization's information security risk management framework, identifying potential risks, and implementing risk mitigation...


  • London, Greater London, United Kingdom Trustpilot Full time

    Trustpilot's Information Security TeamWe are seeking a skilled Governance, Risk and Compliance analyst to join our team and help us reduce Information Security risk, advance the security of our products, data, infrastructures, people, and protect our brand and reputation.The ideal candidate will have a strong interest in Information Security, risk, and be...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job Title: Information Security and Risk LeadOur client is seeking an experienced Information Security and Risk Lead to join their team on a 6-month contract. The successful candidate will be responsible for overseeing the organization's information security risk management framework, identifying potential risks, and implementing risk mitigation...


  • London, Greater London, United Kingdom Better Days Recruitment Full time

    Job Title: Information Security and Risk LeadOur client is seeking an experienced Information Security and Risk Lead to join their team on a 6-month contract. The successful candidate will be responsible for overseeing the organization's information security risk management framework, identifying potential risks, and implementing risk mitigation...


  • London, Greater London, United Kingdom Flo Full time

    Job Title: Information Security and Risk LeadFlo is seeking an experienced Information Security and Risk Lead to join our team. As a key member of our security team, you will play a critical role in designing and implementing secure systems environments and embedding security controls that mitigate risks within engineering and wider business processes.Key...


  • London, Greater London, United Kingdom Partnerize Full time

    About the RoleThe Information Security Analyst 2 plays a key part in driving the completion of incoming tickets and assisting leadership with project work. This role ensures continual improvement by escalating changes and assists other team members with knowledge sharing to improve the team's capability.ResponsibilitiesTriage and management of support desk,...


  • London, Greater London, United Kingdom Tbwa ChiatDay Inc Full time

    Job DescriptionWe are seeking an experienced Information Security and Risk Management Specialist to join our team. As a key member of our security team, you will be responsible for designing and implementing secure systems environments, embedding security controls, and mitigating risks within engineering and wider business processes.The ideal candidate will...


  • London, Greater London, United Kingdom Boston Consulting Group Full time

    KEY RESPONSIBILITIESAs a Senior Information Security Risk Manager at Boston Consulting Group, you will be responsible for leading the development and implementation of the company's information security risk management strategy. This will involve identifying and assessing potential risks to the organization's digital assets, as well as developing and...


  • London, Greater London, United Kingdom Public Sector Resourcing (PSR) Full time

    Job Title: Information Security Risk AnalystPublic Sector Resourcing (PSR) is seeking an experienced Information Security Risk Analyst to join our team. As an Information Security Risk Analyst, you will be responsible for leading on cyber and information security risk assessments across the Department and its Business Units.Key Responsibilities:Support the...


  • London, Greater London, United Kingdom Public Sector Resourcing (PSR) Full time

    Job Title: Information Security Risk AnalystPublic Sector Resourcing (PSR) is seeking an experienced Information Security Risk Analyst to join our team. As an Information Security Risk Analyst, you will be responsible for leading on cyber and information security risk assessments across the Department and its Business Units.Key Responsibilities:Support the...


  • London, Greater London, United Kingdom Public Sector Resourcing (PSR) Full time

    Job Title: Information Security Risk AnalystPublic Sector Resourcing (PSR) is seeking an experienced Information Security Risk Analyst to join our team. As an Information Security Risk Analyst, you will be responsible for leading on cyber and information security risk assessments across the Department and its Business Units.Key Responsibilities:Support the...


  • London, Greater London, United Kingdom Public Sector Resourcing (PSR) Full time

    Job Title: Information Security Risk AnalystPublic Sector Resourcing (PSR) is seeking an experienced Information Security Risk Analyst to join our team. As an Information Security Risk Analyst, you will be responsible for leading on cyber and information security risk assessments across the Department and its Business Units.Key Responsibilities:Support the...


  • London, Greater London, United Kingdom Lendscape group Full time

    Job Summary:Lendscape is seeking a skilled Information Security Risk Contractor to provide operational support and clear the backlog of security tasks. This includes handling security assessments, responding to inquiries, managing third-party risk assessments, and resolving corrective actions and vulnerabilities.Key Responsibilities:Timely completion of...


  • London, Greater London, United Kingdom RGF Staffing UK Limited Full time

    Job Title: Information Security and Risk Management SpecialistJob Summary: We are seeking an experienced Information Security and Risk Management Specialist to join our team at RGF Staffing UK Limited. As an Information Security and Risk Management Specialist, you will be responsible for ensuring the confidentiality, integrity, and availability of our...