Назад
Company hidden
10 часов назад

Information Security GRC Manager (Fintech)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Information Security GRC Manager (Fintech): Managing and reporting information security risks across technology services and the wider business with an accent on governance, risk, and compliance. Focus on developing security policies aligned with ISO27001/2, conducting third-party security assessments, and ensuring regulatory compliance.

Location: Hybrid (Manchester or London). Minimum 50% of working time per month spent in the office. New starters: Initial period of full-time office working required.

Company

hirify.global is one of the UK’s fastest-growing investment platform businesses providing award-winning solutions for professional financial advisers and first-time investors.

What you will do

  • Develop and maintain information security policies aligned to recognised frameworks such as ISO27001/2.
  • Manage and report on policy exceptions and produce management reporting for security and change programmes.
  • Partner with business and technology teams to track the remediation of risks and issues.
  • Assess third-party security postures and undertake risk profiling of information and technology assets.
  • Support internal and external audit activities as well as supplier due diligence processes.
  • Ensure all activities support customer protection and regulatory requirements, including Consumer Duty.

Requirements

  • 5+ years’ experience in an information security role within financial services.
  • Strong knowledge of information security risk management tools and techniques.
  • Experience working within frameworks such as ISO27001, NIST or similar.
  • Understanding of the threat landscape and awareness of security technologies like SIEM and endpoint protection.
  • Knowledge of IT General Controls (ITGC) frameworks and awareness of operational risk/RCSA processes.
  • Must be based in or able to work from Manchester or London (Hybrid).

Nice to have

  • CISM certification (achieved or in progress).

Culture & Benefits

  • 27 days holiday (increasing with service) plus bank holidays and a buy/sell scheme.
  • 8% Pension with matched contributions and a discretionary bonus scheme.
  • Share schemes including free shares and BAYE.
  • Health Cash Plan, discounted private healthcare, and a free onsite gym.
  • Enhanced family leave and travel/bike loan schemes.
  • Supportive and collaborative culture with regular social events.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →