Information Security, Assistant Manager
2 weeks ago
MAIN OBJECTIVES
The Assistant Manager Information Security will play a critical role in safeguarding the bank's information assets, infrastructure, and customer data against evolving cyber threats. This role is responsible for driving and managing information security operations, ensuring continuous monitoring, identification, and timely remediation of security vulnerabilities to uphold a resilient security posture, and provide management with up-to-date reports on the bank's security posture.
The role will proactively support the bank's compliance with UK regulatory requirements, industry standards, and best practices, while contributing to the development and enhancement of security frameworks, policies, and controls. Using strong analytical skills, deep knowledge of cyber security methodologies, and understanding of security infrastructure, including AWS cloud environments, the role will ensure the bank maintains cyber resilience, protects against financial and reputational risks, and fosters a culture of sound security across the organization.
MAIN DUTIES
Strategic Responsibilities
- Provide proactive security oversight and assurance for new initiatives and ongoing projects, ensuring that information security and regulatory requirements are embedded from design through implementation.
- Collaborate with senior stakeholders, regulators, and external partners to align on security standards, communicate risks, and deliver solutions that balance business objectives with compliance obligations.
- Actively participate in governance forums and internal committees, presenting emerging risks, security trends, and strategic recommendations to strengthen resilience and maintain the bank's security posture.
- Advise on regulatory compliance requirements, data protection obligations, and breach notification processes, ensuring the bank meets FCA, PRA, PSR, and other applicable regulatory expectations.
Operational Responsibilities
- Lead and conduct comprehensive information security risk assessments to identify, evaluate, and prioritize threats, ensuring effective controls are implemented and maintained.
- Establish, document, and enforce security controls that safeguard information flows across internal systems, third parties, and public networks.
- Develop, maintain, and execute incident response and crisis management procedures, ensuring swift and effective mitigation of security events while minimizing business disruption.
- Monitor security operations to identify anomalies, investigate incidents, and coordinate timely remediation with internal teams and external providers.
- Keep up-to-date with evolving threat intelligence, security breaches, and industry developments, recommending proactive remediation measures and best practices to protect the bank's systems and data.
Assurance & Compliance Responsibilities
- Partner with auditors, regulators, and payment schemes by preparing evidence, delivering subject matter expertise, and supporting internal and external audits, certifications, and reviews.
- Evaluate and enhance the effectiveness of the bank's information security policies, procedures, and controls, driving continuous improvement and compliance with internal standards and regulatory frameworks.
- Support management reporting by providing timely, accurate, and risk-focused updates on security posture, incidents, and compliance activities.
GENERAL
- Be the primary point of contact for all information security alerts and breaches within the Bank and coordinate responses via incident management protocols.
- Daily administrative tasks, reporting, and communication with the relevant departments in the organization.
- Maintain security records and documents of controls, security dashboards and reports.
- Assist in conducting reviews and assessments to identify and report potential vulnerabilities, weaknesses and threats.
- Implement, manage and monitor security controls to protect the bank's data, systems and network.
- Ensure that the organization's data and infrastructure are protected by enabling the appropriate security controls.
CONDUCT RULES
The conduct rules reflect the core standards expected of employees working at iFAST Global Bank Limited.
- CONDUCT RULE 1: You must act with integrity.
- CONDUCT RULE 2: You must act with due skill, care and diligence.
- CONDUCT RULE 3: You must be open and cooperative with the FCA, the PRA and other regulators.
- CONDUCT RULE 4: You must pay due regard to the interests of customers and treat them fairly.
- CONDUCT RULE 5: You must observe proper standards of market conduct.
KEY RELATIONSHIPS
Internal Relationships:
- Information Technology
- Risk and Compliance
- Business departments, and
- Internal forums, groups and committees
External Relationships / Contacts:
- Suppliers and Vendors
- Regulators
- Authorities and focused groups
CONFIDENTIAL INFORMATION
The holder of this job must sign a Data Confidentiality agreement. He/she shall not, directly or indirectly, disclose, allow to access to, transmit or transfer the confidential information to a third party without prior written consent.
He/she may only disclose the confidential information to employees on a "need to know" basis. He/she shall, prior to disclosing the Confidential Information to such employees issue appropriate written instructions to them to satisfy its obligations herein and to receive and use the confidential Information on a confidential basis on the same conditions as contained in the agreement.
WORKING CONDITIONS
This is an office based role, hours are 37.5 hours per week Monday to Friday with an unpaid 60-minute break each day. The standard working pattern is 9.00am to 5.30pm.
MENTAL DEMANDS & JOB COMPLEXITY
The job holder is required to plan and organise related activities, reports and ad hoc requests, so as to accomplish the assigned task in a timely efficient manner. Planning and prioritising are the key factors in this role.
Requirements
EDUCATION & TRAINING
- Bachelor's degree in Information / Cyber Security; equivalent professional experience may be considered.
- Relevant and specialized certifications in cybersecurity and information security. Technology-centric training and certification is an advantage.
EXPERIENCE AND SKILLS
- 3+ years of proven experience in information security management, covering risk management, incident response, threat intelligence, and cyber security solutions.
- Strong knowledge of security technologies and controls (e.g., firewalls/WAF, SIEM, anti-malware, mobile application security, IAM/PAM) with exposure to cloud security (AWS).
- Experience conducting vulnerability assessments, penetration testing, and security evaluations, with the ability to analyse events and deliver effective remediation.
- Solid understanding of the cyber threat landscape, incident/breach management, and industry frameworks such as ISO27001, NIST CSF, PCI-DSS and the likes.
- Excellent analytical, communication, and stakeholder engagement skills, with the ability to influence decision-making across technical and non-technical teams.
- Committed to continuous learning, keeping up-to-date with evolving threats, technologies, and regulatory requirements.
Benefits
- 25 days annual leave entitlement plus 8 bank holidays
- Pension scheme, 4% employer contribution
- Private Medical Insurance
- 60-40 Hybrid working after successful probation period
- Training and development
- Free gym access in the building
-
Security Manager
3 days ago
London, Greater London, United Kingdom Information Security Solutions Full time £120,000 - £160,000 per yearWe are searching for candidates that match the role below:Title………………………Security ManagerCompany………………Financial ServicesLocation………………..LondonWorking pattern……Hybrid – 2 days per week in the officeSalary……………………£120,000 - £160,000The RoleWe are seeking a Security Manager to lead security...
-
Security Manager
7 days ago
London, Greater London, United Kingdom Ward Security Full time £44,000 - £60,000 per yearAre you a confident leader and strategic thinker? Do you thrive on leading a team, building strong partnerships, and ensuring the highest standards of security and professionalism?If so, we want to hear from you.At Ward Security, we're looking for a dynamic Security Manager to take charge of operations at one of our key sites – a thriving Technology...
-
Information Security Manager
1 week ago
London, Greater London, United Kingdom Academia Ltd ta Smartdesc Full time £70,000 - £80,000 per yearInformation Security ManagerBased: Field-based, predominantly in the London area Type: Full-time Salary: £70-80k Eligibility: You must be eligible to work in the UKAs the Smartdesc Information Security Manager, you will be working with the Information Security team and technical delivery team to deliver security solutions to our customers.You will work with...
-
Information Security Analyst
4 days ago
London, Greater London, United Kingdom Robert Walters Full timeMy client, an International bank, based in London, is looking for an Information Security Analyst to join it's team. Three MUST for this role: 1) Three days per week in the office 2) They dont offer sponsorship 3) You must come from banking or financial services background 4) Must have at least 2/3 years experience in your current firmAbout The Information...
-
Information Security Manager
5 days ago
London, Greater London, United Kingdom Policy Expert Full time £60,000 - £100,000 per yearPolicy Expert – Information Security ManagerAre you ready to transform the insurance industry?Policy Expert is a forward-thinking business that loves to get things done. Leveraging proprietary technology and smart data, we offer reliable products and a wow customer experience.Having achieved rapid growth since being founded in 2011, we've won over 1.5...
-
Information Security Manager
3 days ago
London, Greater London, United Kingdom Policy Expert Full time £60,000 - £100,000 per yearPolicy Expert – Information Security Manager Are you ready to transform the insurance industry? Policy Expert is a forward-thinking business that loves to get things done. Leveraging proprietary technology and smart data, we offer reliable products and a wow customer experience. Having achieved rapid growth since being founded in 2011, we've won over...
-
Information Security Manager
5 days ago
London, Greater London, United Kingdom Navro Full time £60,000 - £90,000 per yearLocation: London, UK (Hybrid: 2 days per week in the office)Company: Navro – Pioneering the Future of PaymentsArchitecting Trust: Information Security ManagerThis isn't just another Information Security role. No legacy systems. No corporate red tape. No coasting. This is about building something from the ground up. Fast.We're Navro, a rapidly scaling B2B...
-
Information Security Manager
1 day ago
London, Greater London, United Kingdom Policy Expert Full time £60,000 - £100,000 per yearPolicy Expert – Information Security Manager Are you ready to transform the insurance industry? Policy Expert is a forward-thinking business that loves to get things done. Leveraging proprietary technology and smart data, we offer reliable products and a wow customer experience. Having achieved rapid growth since being founded in 2011, we've won over...
-
Senior Manager Information Security
2 weeks ago
London, Greater London, United Kingdom Clayton Davies Full time £100,000 - £120,000 per yearSenior Information Security ManagerBirmingham, Reading or LondonCompetitive SalaryOur client is a leading organisation in the financial services industry, committed to innovation, integrity, and excellence in everything we do. With a growing national presence and an unwavering focus on protecting our clients' trust, they are seeking an exceptionalSenior...
-
Senior Security Information Manager
3 days ago
London, Greater London, United Kingdom Nscale Full time £60,000 - £120,000 per yearSenior Security Information Manager, LondonAbout NscaleNscale is the GPU cloud engineered for AI. We provide cost-effective, high-performance infrastructure for AI start-ups and large enterprise customers. Nscale enables AI-focused companies to achieve superior results by reducing the complexity of AI development. Our GPU cloud bolsters technical...