About the role

  • Information Security & Cyber Risk Manager with Phoenix Group overseeing cybersecurity in a high-regulated environment. Engaging in oversight, challenge, and recommendations for risk management teams.

Responsibilities

  • Provide ongoing oversight and challenge to Line 1 led Information Security, Information Management and Cyber Risk control management
  • Analyse and interpret key risk indicators and risk and control reporting to help determine where Line 2 effort is best focused
  • Provide insight, oversight and challenge within assigned monthly Forums
  • Lead Line 2 led Information Security, Information Management and Cyber Risk Thematic/Risk Reviews throughout the full lifecycle, including Planning/Terms of Reference, Fieldwork, Findings Validation and Reporting stages
  • Provide oversight and challenge on material Projects and Programmes
  • Oversee Line 1 activity to ensure adherence to the Group’s Risk Management Framework
  • Support the broader team with assigned Line 2 activity relating to Information Technology, AI, Operational Resilience and Third-Party Management
  • Develop and build relationships with Line 1 and Line 3 peers and senior stakeholders

Requirements

  • Proven experience managing Information Security, Information Management and Cyber Risk, in either a second or third-line capacity, within a high regulated UK industry such as Financial Services
  • Strong stakeholder, relationship management and influencing skills
  • An accomplished communicator who is comfortable, respectful and calm during sometimes challenging situations where differences of risk opinion need to be clearly positioned and justified
  • Able to analyse situations in a timely manner, producing clear, insightful and succinct written reports
  • Preferred: Professional qualification in Information Security, Information Management or Cyber Security e.g., from IRM, BCS, ISACA or ISC2 organisations
  • Preferred: Knowledge of Artificial Intelligence (AI)
  • Preferred: Knowledge of cloud computing, shared responsibility models and associated common risks
  • Preferred: A career background of having worked in IT for large UK corporations, with a solid baseline understanding of Information Security, Information Management and Cyber Risk Management, and control frameworks

Benefits

  • Up to £70,000, dependent upon experience
  • 16-32% bonus potential
  • private medical cover
  • 38 days annual leave
  • excellent pension
  • 12x salary life assurance
  • career breaks
  • income protection
  • 3x volunteering days
  • much more

Job title

IS Risk Manager

Job type

Experience level

Mid levelSenior

Salary

£70,000 per year

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job