Information Security Risk Manager

4 days ago


London, UK, United Kingdom Miryco Consultants Ltd Full time

Job Title: Information Security Risk Manager


Location: London


About Our Client: We are working with one of the UK's leading pensions insurance specialist, dedicated to protecting pension schemes and their members' pensions.


Role Overview: The Information Security Risk Manager will play a pivotal role in supporting their Information Security and Technology Governance and Risk functions. This position is part of the Chief Information Security Office and is crucial in implementing their firmwide strategy within the Information Security team. The role involves managing security standards across processes, systems, and third parties, ensuring assurance checks on external supply chains and internal controls. One of the main focuses will be to drive the development of their proprietary systems both locally and in the cloud, ensuring they remain at the forefront of security and innovation in the pensions insurance sector.


Key Responsibilities:

  • Oversee daily Information Security Risk processes, focusing on risk identification and reduction activities.
  • Support compliance efforts, including ISO22301 and ISO27001 re-certification.
  • Review and develop security policies and standards in line with industry standards, regulatory requirements, and the current threat environment.
  • Implement security processes for assurance activities, including risk issue management, third-party risk assurance, and security criteria for projects.
  • Produce regular security reporting dashboards and packs for governance groups.
  • Develop, monitor, and report key indicators (KPIs/KRIs/KCIs).
  • Assist with compliance and legal initiatives related to information security and operational risk processes such as RCSA, Threat Modelling, and Incident Management.
  • Evaluate and procure new security services, technologies, and systems.


Skills & Experience:

  • In-depth knowledge of information security, data privacy, and risk management principles.
  • Familiarity with regulations, audit, and certification processes.
  • Understanding of modern Internet technologies and ability to assess technical findings in a broader organizational context.
  • Capability to develop security standards and guidelines based on best practices, regulatory requirements, and industry standards.
  • Insight into threat vectors and security risks across different IT environments.
  • Strong understanding of effective cyber risk management.
  • Proficient project management skills.
  • Knowledge of industry standards/frameworks (e.g., ISO, NIST, COBIT, ITIL).


Qualifications:

  • Experience with security frameworks and standards.
  • Certifications such as CISA, CRISC, CISSP are desirable but not required.
  • Degree, diploma, or equivalent experience in a technology-related field is advantageous but not mandatory.



  • London, UK, United Kingdom Miryco Consultants Ltd Full time

    Job Title: Information Security Risk Manager Location: London About Our Client: We are working with one of the UK's leading pensions insurance specialist, dedicated to protecting pension schemes and their members' pensions. Role Overview: The Information Security Risk Manager will play a pivotal role in supporting their Information Security and...


  • London,, UK, United Kingdom Brown & Brown Europe Full time

    Information Security Risk AnalystLocation: Hybrid - London Package: Negotiable + BenefitsThe Information Security Risk Analyst III at Brown & Brown is responsible for analysing information security controls both within our organisation and with third-party entities. This analysis aims to identify and assess associated information security risks, and...


  • London,, UK, United Kingdom Brown & Brown Europe Full time

    Information Security Risk AnalystLocation: Hybrid - London Package: Negotiable + BenefitsThe Information Security Risk Analyst III at Brown & Brown is responsible for analysing information security controls both within our organisation and with third-party entities. This analysis aims to identify and assess associated information security risks, and...


  • London,, UK, United Kingdom Thomson Keene Full time

    Job Title: Information Security Manager3 Days onsite per week (London)Client Overview:Our partner is a leading global commodities firm distinguished for its excellence in Energy and Metals sectors. We are in search of an Information Security Manager who comprehends the integration of Infrastructure IT with Information Security.Skills & Experience:Profound...


  • London,, UK, United Kingdom EOS Risk Group Full time

    Company DescriptionEOS Risk Group is a UK-based corporate and private client security risk and crisis management practice. We provide proactive risk mitigation strategies customized to client requirements, supported by our team of analysts, consultants, and accredited 24/7/365 Security Operations and Crisis Response Centre. Our portfolio includes a holistic...


  • London,, UK, United Kingdom EOS Risk Group Full time

    Company DescriptionEOS Risk Group is a UK-based corporate and private client security risk and crisis management practice. We provide proactive risk mitigation strategies customized to client requirements, supported by our team of analysts, consultants, and accredited 24/7/365 Security Operations and Crisis Response Centre. Our portfolio includes a holistic...


  • London, UK, UK, United Kingdom Fruition IT Full time

    Information Security Manager Remote with infrequent travel to LondonMarket Rate - Outside IR356 MonthsMy client, a leading software organisation, are looking to recruit an experienced Information Security Manager to take on a new role within the organisation, dedicated to enhancing the security presence and embedding robust procedures across group...

  • IT Risk

    2 weeks ago


    London,, UK, United Kingdom Whitehall Resources Full time

    IT Security and Risk Manager – CISSP, CRISCWhitehall Resources have a fantastic opportunity for an IT Risk Manager to join their clients team based in London.As the IT Risk Manager, you will be responsible for establishing and maintaining a risk management framework as well as managing and performing threat and risk assessments. You will also get the...


  • London,, UK, United Kingdom KDR Talent Solutions Full time

    Information Security Analyst | Outside IR35 | £500-£650 a day | 6 Months | Hybrid 2-3 days a week central LondonKDR are working with a leading Insurance client who are looking for a Information Security Analyst (6 month contract) who can take the lead on a specific audit action with a deadline for the end of 2024.This role is focused on a set of particular...


  • London,, UK, United Kingdom Eames Consulting Full time

    Director of Information securityLondon (Hybrid)£150,000+Eames are working on the hire of a Director of Information Security. This position will play a role in implementing and running the Information security program and strategy across the UK and Europe.The role:Building and managing excellent networks and client relationships organisationally wide...


  • London,, UK, United Kingdom Hays Full time

    INFORMATION SECURITY MANAGER - LONDON CITY2 DAYS PER WEEK ON SITE - NO SPONSORSHIP AVAILABLE.Must be available within 1 month.We are looking to speak with experienced ISO27001 IT risk / compliance SME's who can hit the ground running.Taking ownership of the internal Infosec dept & manage external 3rd parties. You will play a big part of creating an ISO...


  • London,, UK, United Kingdom Comtecs Group Full time

    Junior Information Security AnalystJunior Information Security Analyst / Junior InfoSec Compliance Analyst - Governance, Risk & Compliance (GRC), Supplier Assurance (InfoSec), 3rd Party Risk Management, Supplier Due Diligence, Client Liaison, Process Implementation, Incident Analysis and Reporting. CISM, CISSP, CySA+, CASP+ etc; ISO 27001, NIST, Cyber...


  • London,, UK, United Kingdom Synapri Full time

    ✨ Permanent - Hybrid - Information Security Officer ✨Synapri are currently working with a leading sports broadcaster based out of SE London / Kent to recruit an Information Security Officer on a permanent, hybrid basis. This position is great for someone with a couple of years experience looking to take the next step in their career. This is not a senior...


  • London,, UK, United Kingdom Synapri Full time

    ✨ Permanent - Hybrid - Information Security Officer ✨Synapri are currently working with a leading sports broadcaster based out of SE London / Kent to recruit an Information Security Officer on a permanent, hybrid basis.This position is great for someone with 1-2 years InfoSec experience looking to take the next step in their career and develop within an...


  • London, UK, United Kingdom VIQU Limited Full time

    Role - Information Security Officer Location - SE London Type - Permanent Structure - Hybrid Salary - Open to discussion About the role and responsabilities for the Information Security Officer role: A well known brand in the automotive and sports car scene is looking for a Information Security Officer to join them permanently. You will be a key member of a...


  • London,, UK, United Kingdom Stack Digital Full time

    Job Title: Information Security AnalystWork Arrangement: Hybrid ( 2 to 3 days)Location: RBC Europe Limited, 100 Bishopsgate, London, EC2N 4AARate Payable to Contractors: £350 - £400 per dayDuration of Assignment: 6 monthsRole Description:The Information Security Analyst role at RBC BlueBay Asset Management involves providing expert advice and support on...


  • London,, UK, United Kingdom Stack Digital Full time

    Job Title: Information Security AnalystWork Arrangement: Hybrid ( 2 to 3 days)Location: RBC Europe Limited, 100 Bishopsgate, London, EC2N 4AARate Payable to Contractors: £350 - £400 per dayDuration of Assignment: 6 monthsRole Description:The Information Security Analyst role at RBC BlueBay Asset Management involves providing expert advice and support on...

  • Senior Risk Officer

    3 weeks ago


    London, UK, United Kingdom Paritas Recruitment - Risk Full time

    Senior Risk Officer - Data Risk / Data Management A European bank is currently seeking a Senior Risk Officer to join their City based team.. The hiring manager is looking for a candidate who has strong experience of Data Risk, BCBS239 / PERDARR and Information Risk, in addition, Operational Risk exposure would be ideal. The core focus of the role will...


  • London,, UK, United Kingdom Stott and May Full time

    Information Security Governance LeadLocation: London, UKReporting to: Director of Security & TrustBasic + Bonus + Share options + BenefitsAs an Information Security Governance Lead, you will be an integral part of the Security & Trust Team, driving the implementation of industry standards and best practices. This hands-on role offers a unique opportunity to...


  • London,, UK, United Kingdom Stott and May Full time

    Information Security Governance LeadLocation: London, UKReporting to: Director of Security & TrustBasic + Bonus + Share options + BenefitsAs an Information Security Governance Lead, you will be an integral part of the Security & Trust Team, driving the implementation of industry standards and best practices. This hands-on role offers a unique opportunity to...