Назад
Company hidden
6 дней назад

IT Risks & Control Manager (Insurance)

59 200 - 88 800GBP
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
IT Risks & Control Manager (Insurance): Leading the identification, assessment, management, and reporting of IT risks across an insurance business with an accent on ISO/IEC 27001, NIST-aligned controls, and governance reporting. Focus on maintaining the IT risk register, assessing control effectiveness, supporting remediation and audits, and facilitating senior technology risk discussions.

Location: Hybrid, Eastleigh, with flexible working available within the UK

Salary: £59,200–£88,800 per year

Company

hirify.global is a major UK car and home insurer serving more than four million customers.

What you will do

  • Lead IT risk and control assessments using ISO/IEC 27001 and NIST-aligned controls.
  • Own and maintain the IT risk register, including risks, controls, and treatment plans.
  • Assess IT control design and effectiveness and support remediation, risk acceptance, or escalation.
  • Facilitate risk discussions with senior technology leaders and provide practical recommendations.
  • Prepare reporting on risk trends, control effectiveness, and key issues for governance forums.
  • Support internal and external audits and collaborate with Security Architecture, Engineering, and Operations teams.

Requirements

  • Strong experience in IT risk management, technology risk, or information security risk.
  • Good knowledge of IT control frameworks, particularly ISO/IEC 27001 and NIST-aligned controls.
  • Experience maintaining IT risk registers and working with GRC tools.
  • Confidence facilitating senior stakeholder discussions and governance meetings.
  • Ability to translate technical risk and control issues into clear, decision-ready insight.
  • Ability to work within the UK for this hybrid role.

Nice to have

  • CRISC, CISM, CISSP, or ISO 27001 Lead Implementer/Auditor certification.
  • Experience in a regulated or high-assurance environment.
  • Experience mapping controls across ISO 27001, NIST, and internal frameworks.

Culture & Benefits

  • Permanent role with full-time, part-time, and job-share options.
  • Smart working with flexibility around location within the UK and working hours.
  • Minimum of 35 days of holiday including bank holidays, with the option to buy or sell days.
  • Health, dental, wellbeing, pension, insurance, savings, and annual bonus benefits.
  • Family leave, return-to-work support, and inclusive recruitment adjustments.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →