6 дней назад
IT Risks & Control Manager (Insurance)
59 200 - 88 800GBP
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
IT Risks & Control Manager (Insurance): Leading the identification, assessment, management, and reporting of IT risks across an insurance business with an accent on ISO/IEC 27001, NIST-aligned controls, and governance reporting. Focus on maintaining the IT risk register, assessing control effectiveness, supporting remediation and audits, and facilitating senior technology risk discussions.
Location: Hybrid, Eastleigh, with flexible working available within the UK
Salary: £59,200–£88,800 per year
Company
is a major UK car and home insurer serving more than four million customers.
What you will do
- Lead IT risk and control assessments using ISO/IEC 27001 and NIST-aligned controls.
- Own and maintain the IT risk register, including risks, controls, and treatment plans.
- Assess IT control design and effectiveness and support remediation, risk acceptance, or escalation.
- Facilitate risk discussions with senior technology leaders and provide practical recommendations.
- Prepare reporting on risk trends, control effectiveness, and key issues for governance forums.
- Support internal and external audits and collaborate with Security Architecture, Engineering, and Operations teams.
Requirements
- Strong experience in IT risk management, technology risk, or information security risk.
- Good knowledge of IT control frameworks, particularly ISO/IEC 27001 and NIST-aligned controls.
- Experience maintaining IT risk registers and working with GRC tools.
- Confidence facilitating senior stakeholder discussions and governance meetings.
- Ability to translate technical risk and control issues into clear, decision-ready insight.
- Ability to work within the UK for this hybrid role.
Nice to have
- CRISC, CISM, CISSP, or ISO 27001 Lead Implementer/Auditor certification.
- Experience in a regulated or high-assurance environment.
- Experience mapping controls across ISO 27001, NIST, and internal frameworks.
Culture & Benefits
- Permanent role with full-time, part-time, and job-share options.
- Smart working with flexibility around location within the UK and working hours.
- Minimum of 35 days of holiday including bank holidays, with the option to buy or sell days.
- Health, dental, wellbeing, pension, insurance, savings, and annual bonus benefits.
- Family leave, return-to-work support, and inclusive recruitment adjustments.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
13 дней назад
Information Security Analyst (Cybersecurity)
35 000 - 45 000GBP
Ping Identity
9 дней назад
Risk Manager (Cybersecurity)
8 дней назад
GRC Cyber Security Consultant
9 дней назад
GRC Engineer (Cybersecurity)
52 000 - 72 000€
7 дней назад
Head of IT (AI)
60 000 - 70 000GBP
7 дней назад
Senior Security Engineer (Cloud Security)
110 000 - 130 000€