Cyber Security Risk

3 days ago


Greater London, United Kingdom LegalAndGeneral Full time

Company DescriptionLegal & General (L&G) is a leading UK financial services group and major global investor.We have been safeguarding people's financial futures since 1836, and strive to build a better society, while improving the lives of our customers and creating value for shareholders.We are one of the world's largest asset managers and provide powerful asset origination capabilities. Together, these underpin our retirement and protection solutions: we are an international player in pension risk transfer, in UK and US life insurance, and in UK workplace pensions and retirement income.Our Group Functions provide the services that all areas of the business need. This requires a talented and diverse team behind the scenes, who enable everyone at L&G to do what they do best.Joining us means helping to improve the lives of our customers and contributing to the success of the business every day.Job DescriptionAs a Cyber Security Security Risk and Controls Analyst you will support the execution and continuous improvement of risk and control activities within the first-line Global Cyber Security Risk and Controls Function. The role works closely with control owners, product teams, and risk partners to help ensure that risks are effectively identified, assessed, managed, and reported across areas such as third-party risks specific to technology, cyber security and information technology risk.The Cyber Security Risk and Controls Analyst provides hands-on support in the maintenance and assurance of controls, issue tracking, evidence gathering, and risk reporting. It drives control effectiveness, policy compliance and effective risk management across L&G globally.What you'll be doingMaintaining and monitoring key cyber security controls to ensure control performance is effective and appropriately evidenced for compliance, audit and assurance purposesSupporting the identification, management and closure of cyber security issues, audit actions and remediation plans to ensure timely resolution and control improvementsContributing to cyber security risk and control self-assessments (RCSAs), supplier assessments or thematic reviews to ensure accurate identification of control weaknesses, exposures and required enhancementsAssisting in the application of cyber security policies, standards and regulatory requirements across global technology teams to ensure appropriate alignment, awareness and compliance across teamsUndertaking cyber security controls testing, assurance reviews and preparation for internal or external audits to ensure that evidence is complete, timely and meets defined control objectivesWorking closely with technology teams, Business Technology Risk Partners and subject matter experts to ensure a shared understanding of effective cyber security risk management processes and supporting the embedding of strong risk cultureMaintaining and sharing up-to-date knowledge of specialist cyber security domain to ensure risk and control activities reflect current threats, best practices and regulatory requirementsProviding SME support on IT and change initiatives with respect to delivering improvements to customer support and experienceQualificationsWho we're looking for:Familiarity with security frameworks such as NIST Cyber Security Framework (CSF), COBIT, ISO27001/2 and COSOUnderstanding of regulatory requirements relevant to financial services (e.g. FCA/PRA regulations, UK GDPR, DORA)Ability to interact with cyber security stakeholders, product owners and technical operational rolesExperience in cyber security risk, governance or assurance within a complex, regulated environmentExperience testing and assuring cyber security controls implementation, controls automation, risk frameworks, and audit responses across cyber securityCyber security related qualifications such as CISM or CISSP would also be a plusBenefitsThe opportunity to participate in our annual, performance -related bonus plan and valuable share schemesGenerous pension contributionLife assuranceHealthcare Plan (permanent employees only)At least 25 days holiday, plus public holidays, 26 days after 2 years' service. There's also the option to buy and sell holidayCompetitive family leaveParticipate in our electric car scheme, which offers employees the option to hire a brand-new electric car through tax efficient salary sacrifice (permanent employees only)There are the many discounts we offer - both for our own products and at a range of high street stores and onlineIn 2023, some of our workspaces were redesigned. Our offices are great spaces to connect and collaborate and have your wellbeing at the heartAdditional InformationAt L&G, we believe it's possible to generate positive returns today while helping to build a better future for all.If you join us, you'll be part of a welcoming, inclusive culture, with opportunities to collaborate with people of diverse backgrounds, views, and experiences. Guided by leaders with integrity who care about your future and wellbeing. Empowered through initiatives which support people to develop their careers and excel.We care passionately about outcomes rather than attendance and are therefore open to discussing all kinds of flexible working options including part-time, term-time and job shares. Although some roles have limited flexibility due to customer demand, we accommodate requests when we can.It doesn't matter if you don't meet every single criterion in this advert. Instead, think about what you excel at and what else you can bring in terms of strengths, potential and connection to our purpose.Videos To Watchhttps://www.youtube.com/watch?v=djTs2V4JUFs #J-18808-Ljbffr



  • Greater London, United Kingdom Cyber Security training courses Full time

    Cyber Security Programme Manager - Strategic Transformation - London - up to £120k Are you a seasoned Cyber Security Programme Manager with a track record of delivering enterprise-wide transformation programmes? A leading organisation is embarking on a multi-year cyber security uplift initiative and is seeking a strategic leader to drive this critical...


  • Greater London, United Kingdom Cyber Security training courses Full time

    Assistant Manager - Cybersecurity Cybersecurity Specialist at the Assistant Manager level to join our growing team of experts. In this role, you'll help organisations strengthen their cyber resilience, align with regulatory requirements, and respond effectively to incidents with a focus on governance. You'll work on diverse engagements across multiple...


  • Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time

    A leading Cyber Security recruitment firm is seeking a Cyber Security Consultant to work closely with the CISO in a hybrid role. This position is ideal for those with proven experience leading cyber engagements for SMEs, who can communicate risk and translate findings into actionable plans. You will join an expanding practice at an early stage, ensuring your...


  • City Of London, United Kingdom Cyber Security training courses Full time

    Cyber Security Program Manager I am working with an organisation that is embarking on a major cyber security transformation and looking to bring on a Cyber Security Program Manager to lead a multi-year, enterprise-wide uplift program. This is a strategic role where you'll work closely with senior stakeholders and an external delivery partner to enhance cyber...


  • City Of London, United Kingdom Cyber Security training courses Full time

    Are you an experienced Cyber Security Programme Manager looking for your next challenge? We're working with a global organisation seeking a strategic leader to drive a multi-year, enterprise-wide cyber security transformation. In this high-impact role, you'll oversee the end-to-end delivery of complex security initiatives, working closely with an external...


  • London, Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time £40,000 - £55,000 per year

    Cyber Security ConsultantLocation:Hybrid -Sponsorship:Not availableSalary:£40k–£55kIf you've got around2ish years of client-facing cyber consulting experienceand you're ready to step up, learn fast, and take on more responsibility, this role is for you.We're building a next-generation cybersecurity consultancy that stands out by giving clients clear,...


  • London, Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time £40,000 - £45,000 per year

    Cyber Security Consultant - Remote UKLocation:UK Remote -Sponsorship:Not availableSalary:£40k–£45kIf you've got around 1ish years of client-facing cyber consulting experienceand you're ready to step up, learn fast, and take on more responsibility, this role is for you.We're building a next-generation cybersecurity consultancy that stands out by giving...


  • Greater London, United Kingdom Cyber Security training courses Full time

    A leading cybersecurity training organization in Greater London is seeking an experienced Cyber Security Programme Manager to lead a significant security transformation initiative. This role involves managing a portfolio of critical projects with key stakeholders, shaping security strategy, and implementing advanced security solutions. Ideal candidates will...


  • Greater London, United Kingdom Cyber Security training courses Full time

    A leading organization in London is seeking an experienced Cyber Security Programme Manager to lead a critical transformation initiative. The role involves managing third-party vendors and internal stakeholders, overseeing various project streams, and driving change management across the organisation. Ideal candidates will have extensive experience in...


  • Greater London, United Kingdom Cyber Security training courses Full time

    An industry leading organisation is looking for a strategic and experienced Cyber Security Programme Manager to lead a high-profile, enterprise-wide security transformation programme. This 24-36 month initiative offers a unique opportunity to shape the organisation's security posture, strengthen its defence-in-depth controls, and drive measurable...