Information Security Manager

7 days ago


London, Greater London, United Kingdom BACB plc Full time

Direct message the job poster from BACB plc

BACB is a UK bank that offers trade finance and investment expertise to clients in specialist markets, especially Africa and the Middle East.

We have been helping businesses with trade finance and complementary products for over half a century, focusing on trade flows to and from Africa and the Middle East as well as real estate in the UK.

Our in-depth knowledge of the countries and practices where our clients operate ensures that we put them first.

Additional Info

  • Hybrid Working: 3 days onsite, 2 from home
  • Location: City of London
  • Contract Type: Fixed Term Contract

Job Summary

Reporting to the Head of Operational Risk and working closely with the Head of Information Security, the role will support in managing the Bank's Second line of Defence (2LOD) for cyber security, assuring compliance with the Bank's Information Security Policies and Standards and overseeing the effective implementation of security controls through engagement with the Bank's cyber security operations team (1LOD).

Key Work Outputs and Accountabilities

  • Supporting the management of the Bank's Cyber Security function maintaining compliance with our NIST based cyber security framework.
  • Responsible to Head of Operational Risk for Information Security RCSA framework, in particular regulatory compliance, and tolerated risk exposure.
  • Act as Cyber Security expert within the Second Line of Defence (2LOD), providing advice and guidance to 1LOD on best practice cyber security and to business driven change activity.
  • Working with the Bank's Enterprise Architect to ensure solutions are delivered in accordance with BACB's IT Security policies and Standards.
  • Ensure the Bank can effectively respond and recover from Cyber Security Incidents.
  • Working with the Head of Information Security on ways to defend the Bank from current cyber threat landscape, identifying emergent threats and recommending innovative controls and mitigations.
  • Work together with the 1LOD and provide evidence that IT Security operations are within risk tolerances (e.g., Evergreen IT, Patching, Vulnerability scanning and Pen Testing) (supported by a 2nd member of the 2LOD team).
  • Oversee compliance with the Bank's cyber security standards and policies liaising with CIO (1LOD) where responsibility spans Lines of Defence.
  • Maintain security performance metrics/ KPIs, recommending improvements where appropriate.
  • Effective use of specialist tools and logging to review the Bank's cyber status and perform requested "deep dives" as necessary as well as define automated alerting mechanisms, ensuring that these alerts can be assessed and investigated independently by 1LOD and 2LOD.
  • Engaging with the CIO and the Head of Information Security to ensure that sufficient/ effective cyber defences are implemented, giving the Bank value for money for any procured Cyber Security solutions, including Cyber Risk Insurance.
  • Responsibility for the effective bank-wide cyber security training and awareness.

Required Qualifications and Experience

  • Educated to degree level (or equivalent), possessing at least one security accreditation (e.g., CISM or CISSP).
  • Good working knowledge of cyber security standards (i.e. NIST, ISO 27001, Cyber Essentials, GDPR).
  • Previous experience in the practical use and management of products such as Defender, Darktrace, and Mimecast.
  • IT security management knowledge, skills, and experience.
  • Familiarity with firewall rulesets and the requirements for effective cyber defence.
  • Familiar with the Microsoft stack from Desktop products to server products to Azure.
  • Working in Financial Services or another regulated market, such as aviation or energy.
  • Managing the delivery of an organization-wide information security related strategy.
  • Knowledgeable in common Data Leakage reasons and effective prevention.
  • Working with on-premise, public and/or hybrid cloud environments.
  • Conducting security-based investigations, the management of such inquiries and liaison with external BACB engaged investigation parties.
Seniority level

Mid-Senior level

Employment type

Contract

Job function

Information Technology

Industries

Banking

#J-18808-Ljbffr

  • London, Greater London, United Kingdom Saepio Information Security Full time

    Cloud Security ArchitectLocation: Hybrid, London or High Wycombe, United KingdomSalary: CompetitiveHours: Full Time - (Mon – Fri, 9am – 6pm)Reporting To: Technical Services ManagerWho are Saepio?Saepio are a Cyber Security Solutions Provider that work with UK based corporate customers with between 100-10,000 users. We help them to protect their...


  • London, Greater London, United Kingdom TieTalent Full time

    Are you ready for an exciting new challenge in your cyber security career? Our client is looking for an Information Security Manager to join their Information Security governance and oversight team.This technically focused role involves delivering Information Security services such as consultancy, assurance reviews, and risk management while providing...


  • London, Greater London, United Kingdom Salt Digital Recruitment Full time

    Information Security Manager – Regional Information Security Officer (RISO)Rate: £32 per hour / £240 per day (Inside IR35)Length: 6-Month Rolling ContractLocation: London or Burgess Hill or Brighton – Hybrid (2/3 days a week)We're looking for a skilled Information Security Manager to join a dynamic team that plays a crucial role in safeguarding...


  • London, Greater London, United Kingdom Autologyx Limited Full time

    We are looking for a hands-on Information Security Professional with extensive practical experience in information security best practices and application in an enterprise cloud SaaS environment. The ideal candidate will have a strong background in AWS, experience with ISO 27001, SOC 2, and the ability to communicate the importance of information security...


  • London, Greater London, United Kingdom Enva Full time

    Information Security Manager - UK We are seeking a dedicated and experienced Information Security Manager to join our dynamic IT team. Focused on governance, risk management, compliance, processes and ensuring the organization\\\'s information security framework is robust and aligned with industry standards, this is not solely a technical role.Reporting to...


  • London, Greater London, United Kingdom Enva Full time

    Information Security ManagerApplication Deadline: 25 March 2025Department: ITEmployment Type: Permanent - Full TimeLocation: HomeDescriptionWe are seeking a dedicated and experienced Information Security Manager to join our dynamic IT team. Focused on governance, risk management, compliance, processes and ensuring the organization's information security...


  • London, Greater London, United Kingdom Bench Direct Full time

    Reporting to the CIO, you will be responsible for managing the day-to-day information security at the firm. Working closely with third-party providers, you will ensure that the day-to-day IT security suppliers perform to expectations.For a complete understanding of this opportunity, and what will be required to be a successful applicant, read on.You will...


  • London, Greater London, United Kingdom ION Full time

    The Role:This is an exciting opportunity to join our dynamic Information Security team at ION. We are seeking a highly skilled and experienced Information Security Officer. The ideal candidate will have a strong background in information security management and extensive experience leading ISO 27001 and SOC2 certification. This role is critical in ensuring...


  • London, Greater London, United Kingdom Insight Global Full time

    This range is provided by Insight Global. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Base pay rangeThe Information Security Manager is responsible for designing, implementing, and enhancing a comprehensive technology compliance and risk management program to bolster the organization's security...


  • London, Greater London, United Kingdom Your Next Hire Full time

    Get AI-powered advice on this job and more exclusive features.This range is provided by Your Next Hire. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Base pay rangeDirect message the job poster from Your Next HireFounder | Talent Advisor serving high-growth SAAS scale-upsInformation Security &...


  • London, Greater London, United Kingdom Bench Direct Full time

    Job Description Reporting to the CIO, you will be responsible for managing the day to day information security at the firm. Working closely with third party providers you will be responsible for ensuring the day to day IT security suppliers perform to expectations. You will take part in ongoing and upcoming improvement projects, working through the...


  • London, Greater London, United Kingdom Bench Direct Full time

    Reporting to the CIO, you will be responsible for managing the day-to-day information security at the firm. Working closely with third-party providers, you will ensure that the day-to-day IT security suppliers perform to expectations.You will take part in ongoing and upcoming improvement projects, working through the implications within hardware and software...


  • London, Greater London, United Kingdom LMA Recruitment Formerly Ball & Hoolahan Full time

    Get AI-powered advice on this job and more exclusive features.Direct message the job poster from LMA Recruitment Formerly Ball & HoolahanSales & Marketing Recruitment Consultant | Green Tech & FMCG | Passionate Advocate for Sustainability Perm and FreelanceInformation Security LeadSalary circa 100kPerm or FreelanceDo you have experience in information...


  • London, Greater London, United Kingdom Walkersglobal Full time

    We are a leading international law and professional services firm providing legal, corporate and fiduciary services to global corporations, financial institutions, capital market participants and investment fund managers. With a global presence spanning the Americas, Europe, the Middle East and Asia, we advise on the laws of Bermuda, the British Virgin...


  • London, Greater London, United Kingdom 6dg Full time

    Job Details: Information Security Manager Six Degrees is a leading secure, integrated cloud services provider, where everyone is welcome. We believe success lies in harnessing a truly diverse and inclusive culture.Our business protects UK organisations with the goal of enabling them to operate effectively and securely in the cloud, by giving them secure...


  • London, Greater London, United Kingdom Walkers Full time

    We are a leading international law and professional services firm providing legal, corporate and fiduciary services to global corporations, financial institutions, capital market participants and investment fund managers. With a global presence spanning the Americas, Europe, the Middle East and Asia, we advise on the laws of Bermuda, the British Virgin...


  • London, Greater London, United Kingdom 6dg Full time

    Job Details: Information Security ManagerSix Degrees is a leading secure, integrated cloud services provider, where everyone is welcome. We believe success lies in harnessing a truly diverse and inclusive culture.Our business protects UK organisations with the goal of enabling them to operate effectively and securely in the cloud, by giving them secure...


  • London, Greater London, United Kingdom 6dg Full time

    Job Details: Information Security ManagerSix Degrees is a leading secure, integrated cloud services provider, where everyone is welcome. We believe success lies in harnessing a truly diverse and inclusive culture.Our business protects UK organisations with the goal of enabling them to operate effectively and securely in the cloud, by giving them secure...


  • London, Greater London, United Kingdom TN United Kingdom Full time

    We're looking for an Information Security Manager to take ownership of Attest's security posture as we scale.Our consumer research platform helps brands make better decisions; keeping our data, people, and customers secure is critical to our success.If you're excited about shaping security in a fast-growing SaaS company - without the bureaucracy of a big...


  • London, Greater London, United Kingdom CloudMargin Part time

    PART TIME OPPORTUNITY - 12 MONTH FIXED TERM CONTRACT (REMOTE/HYBRID REMOTE)CloudMargin is an award winning, fast growing, FinTech company offering an innovative Software-as-a-Service (SaaS) solution. Through our disruptive technology, our community of users benefit from our affordable, easy to deploy and scalable service. Our vision is to become the dominant...