Information Security GRC Manager (Fintech)
ΠΡΡΡ & Π‘ΠΎΠΏΡΠΎΠ²ΠΎΠ΄
ΠΠ»Ρ ΠΌΡΡΡΠ° Ρ ΡΡΠΎΠΉ Π²Π°ΠΊΠ°Π½ΡΠΈΠ΅ΠΉ Π½ΡΠΆΠ΅Π½ Plus
ΠΠΏΠΈΡΠ°Π½ΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
TL;DR
Information Security GRC Manager (Fintech): Supporting the Senior Manager and Chief Information Security Officer in managing and reporting information security risks across Technology Services and the wider business with an accent on ensuring appropriate controls, policies, and procedures are in place. Focus on supporting internal and external audits, as well as due diligence activities with partners and suppliers.
Location: Manchester or London, minimum of 50% of your working time per month spent in the office.
Company
is one of the UKβs fastest-growing investment platform businesses, providing award-winning solutions for everyone, from professional financial advisers to first-time investors.
What you will do
- Develop and maintain information security policies aligned to recognised frameworks (e.g. ISO27001/2).
- Manage and report on policy exceptions.
- Produce management reporting on information security and change programmes.
- Partner with business and technology teams to track remediation of risks and issues.
- Support the assessment of third-party security posture.
- Support audit activity and supplier due diligence processes.
Requirements
- Strong knowledge of information security risk management tools and techniques.
- Experience with security frameworks and standards such as ISO27001, NIST or similar.
- Understanding of the threat landscape and awareness of security technologies.
- Knowledge of IT General Controls frameworks and awareness of operational risk and RCSA processes.
- Ideally 5+ yearsβ experience in an information security role within financial services.
- Strong communication skills and ability to manage multiple priorities in a fast-paced environment.
Nice to have
- CISM certification (achieved or in progress) preferred.
Culture & Benefits
- 27 days holiday, increasing with service + buy/sell scheme + bank holidays.
- 8% Pension with matched contributions and discretionary bonus scheme.
- Health Cash Plan and discounted private healthcare.
- Regular social events and learning and development opportunities.
- Casual dress code and friendly, supportive team environment.
ΠΡΠ΄ΡΡΠ΅ ΠΎΡΡΠΎΡΠΎΠΆΠ½Ρ: Π΅ΡΠ»ΠΈ ΡΠ°Π±ΠΎΡΠΎΠ΄Π°ΡΠ΅Π»Ρ ΠΏΡΠΎΡΠΈΡ Π²ΠΎΠΉΡΠΈ Π² ΠΈΡ ΡΠΈΡΡΠ΅ΠΌΡ, ΠΈΡΠΏΠΎΠ»ΡΠ·ΡΡ iCloud/Google, ΠΏΡΠΈΡΠ»Π°ΡΡ ΠΊΠΎΠ΄/ΠΏΠ°ΡΠΎΠ»Ρ, Π·Π°ΠΏΡΡΡΠΈΡΡ ΠΊΠΎΠ΄/ΠΠ, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡΠ΅ ΡΡΠΎΠ³ΠΎ - ΡΡΠΎ ΠΌΠΎΡΠ΅Π½Π½ΠΈΠΊΠΈ. ΠΠ±ΡΠ·Π°ΡΠ΅Π»ΡΠ½ΠΎ ΠΆΠΌΠΈΡΠ΅ "ΠΠΎΠΆΠ°Π»ΠΎΠ²Π°ΡΡΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡΠΈΡΠ΅ Π² ΠΏΠΎΠ΄Π΄Π΅ΡΠΆΠΊΡ. ΠΠΎΠ΄ΡΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β