Lead Information and Cyber Security Specialist

5 days ago


London, Greater London, United Kingdom Metro Bank (UK) Full time £35,000 - £90,000 per year

At Metro Bank, we believe the best banking experience starts with people who genuinely care. We're not just delivering banking services - we're building trust through authentic connections. Here, our people come first; our colleagues are part of a team that values individuality, collaboration, and long-standing relationships. We are also all about balance so most of our jobs offer the opportunity for hybrid working built around your role and home life, wherever possible.

What You Will Do
As the Lead Information and Cyber Security Specialist you will provide, information security support and oversight service to change initiatives at a variety of scales across the Bank. You will ensure that Information Security risk is managed in accordance with the Bank's Risk Management and Information Security policy frameworks, to inform and direct both tactical and strategic decision making.

  • Collaborate with various first line of defence teams to ensure alignment of technology controls to relevant information

security standards

  • Support and challenge Information Security control design across IT and the wider business to be as efficient and effective

as possible given the dynamic nature of risk and threat within the banking industry

  • Ensure transparency in Information Security decisions made across all programmes and projects that you are supporting
  • Support a varied and demanding programme of bank-wide change working with project teams to advise and guide on

information security best practice. You will help ensure that final outputs comply with external best practice, regulation and

internal governance, whilst balancing the specific delivery needs and challenges of the project

  • Identify security testing requirements, collaborate with appropriate stakeholders to scope these tests and to ensure that the

business risk associated with any issues identified is incorporated into project risk management and treated in accordance

with the Bank's risk management policies and processes

  • Information Security management reporting, specifically within the change and project environment
  • When required, deputise for the Head of Information Security Change

And... we are a bank so risk is a part of everything we do. We love people who take responsibility, do the right thing for customers, colleagues and Metro Bank and have the ability to call out any concerns.

What You Will Need

  • You must have a strong understanding of information security within the project management lifecycle, alongside a solid

working knowledge of enterprise technology

  • You must have a strong risk management background and experience in conducting security risk assessments on projects

and developing security controls

  • Specific experience in secure design, build and control methodologies aligned to relevant security standards, e.g.

ISO27001, PCI DSS, NIST

  • Demonstrable experience of Agile, DevSecOps, Cloud, containerization, microservices and similar technologies is desirable
  • Excellent stakeholder management skills with the ability to distil complex conversations into information that can be

consumed by a non-technical audience to make decisions

  • You are able to critically assess regulatory risks applicable to systems and projects within the financial industry against the

wider business and information security risks

  • Understand the risks associated with your job and what that means for you, Metro Bank and all our stakeholders

Our promise to you…

  • We will make sure that you are well-rewarded by providing you with a competitive salary, discretionary annual bonus, and a wide range of benefits, including generous holiday allowance, attractive pension scheme, healthcare, life assurance, and a number of colleague discounts
  • We will give you the training to ensure you succeed in your role and plenty of internal opportunities to progress your career (around 40% of our recruitment comes from internal promotions

Diverse teams really are the best teams. We know that candidates (especially women, research tells us) may be put off applying for a job unless they can tick every box. We also know that 'normal' office hours aren't always doable, and while we can't accommodate every flexible working request we are happy to be asked. So if you are excited about working with us and think you can do much of what we are looking for but aren't sure if you are 100% there yet… why not give it a whirl? Please note that sometimes we may close a job earlier for applications if we are inundated with amazing candidates.. Good luck



  • London, Greater London, United Kingdom Sadler Recruitment Full time £960,000 - £1,008,000 per year

    Job Description: Role: Head of Cyber SecurityLocation: Hybrid 1 day per week in London (flexible)Salary: £80,000 - £84,000 + benefitsOverviewThis is a pivotal leadership role in shaping and strengthening the cybersecurity landscape of a values-driven, non-profit organisation. The organisation is recognised as a top 100 Employer, historically named as...


  • London, Greater London, United Kingdom Elevate Cyber Services Full time £40,000 - £80,000 per year

    The role holder will be responsible for assisting clients gain Cyber Essentials and Cyber Essentials Plus certification.This will involve:• Reviewing Cyber Essentials self-assessment questionnaires with existing and new clients withinagreed timescales• Performing Cyber Essentials Plus assessment and advisory services around it, including...


  • London, Greater London, United Kingdom Alfa Laval Full time £60,000 - £120,000 per year

    Every day, we get opportunities to make a positive impact – on our colleagues, partners, customers and society. Together, we're pioneering the solutions of the future and unlocking the full potential of precious resources. Trusted to act on initiative, we challenge conventional thinking to develop world-leading technologies that inspire progress in vital...


  • London, Greater London, United Kingdom Orpheus Cyber Full time £60,000 - £120,000 per year

    There is a new and exciting opportunity for a Cyber Threat Intelligence Analyst, or Associate Threat Intelligence Analyst (DOE) to join our team.Orpheus is a specialist CTI provider that uses its understanding of the threat landscape to power its consulting, managed service, cyber risk ratings, and data services. We are also accredited to the highest level...


  • London, Greater London, United Kingdom TEaM Consulting Full time £40,000 - £80,000 per year

    Company Description OverviewSpecialist role Cyber security consultantSummary of the work The candidate will provide Cyber Security expertise to manage the successful transition and day to day operations of the Strategic Operations Centre (SOC) .Latest start date 01/08/2016Expected contract length Approx. 12 monthsRegion LondonOrganisation the...


  • London, Greater London, United Kingdom Campion Pickworth Full time £40,000 - £80,000 per year

    Our client, a specialist bank, is looking to recruit a Cyber Security Technician within their London office, with hybrid working. This is a new role, working with the Cyber and Information Security team to enhance the banks security capability and strengthen its ability to safeguard company information and client data. The ideal candidate will be ambitious...


  • London, Greater London, United Kingdom La Fosse Full time

    Information & Cyber Security Consultant - Inside IR35 - REMOTE - £600 p/d - SC Clearance PreferentialLooking to speak with ideally SC Cleared Info & Cyber Sec consultants interested in helping a hugely complex org assure a business transformation programme.Especially want to hear from candidates with Data Residency experienceMust have experience...


  • London, Greater London, United Kingdom HM Revenue & Customs Full time

    Senior Cyber Security Consultant – Asset Identification and ManagementHybrid Working from one of our Regional CentresActive SC Clearance requiredThe TeamThe Government Security Centre for Cyber (Cyber GSeC) develops and provides, consultancy and advice services to government departments to build their cyber security resilience, and the cyber security...


  • London, Greater London, United Kingdom Hewlett Packard Enterprise Full time £60,000 - £120,000 per year

    This role has been designed as ''Onsite' with an expectation that you will primarily work from an HPE office.Who We AreHewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can...


  • London, Greater London, United Kingdom Hewlett Packard Enterprise Full time £60,000 - £150,000 per year

    Cyber Security Sale SpecialistThis role has been designed as ''Onsite' with an expectation that you will primarily work from an HPE office Who We Are: Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live,...