Enable job alerts via email!

Cyber Security Risk Specialist - VP

JR United Kingdom

London

Hybrid

GBP 100,000 - 125,000

Full time

Today
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a Cyber Security Risk Specialist at the VP level to enhance their security posture. This role involves governance, risk management, and assurance, ensuring compliance with industry standards. You will conduct risk assessments, manage security controls, and collaborate with teams to drive security objectives. The position offers a hybrid work environment, allowing you to balance work and life while making a significant impact on the organization’s security framework. If you have a passion for cybersecurity and a strong background in risk management, this opportunity is perfect for you.

Qualifications

  • 5+ years in Cyber Security Risk Management.
  • Experience in testing security controls.
  • Expertise in risk assessment and management.

Responsibilities

  • Maintain security policies and frameworks.
  • Conduct regular risk assessments.
  • Provide assurance through detailed reporting.

Skills

Cyber Security Risk Management
Security Control Testing
Risk Assessment
Technical Writing
Problem Solving
Communication Skills
Collaboration
Attention to Detail

Education

MSc Information Security
CISA
CISM
CRISC

Tools

RSA Archer
GRC Tools

Job description

Social network you want to login/join with:

Cyber Security Risk Specialist - VP, london

col-narrow-left

Client:

Spencer Rose

Location:

london, United Kingdom

Job Category:

Other

-

EU work permit required:

Yes

col-narrow-right

Job Views:

4

Posted:

05.05.2025

Expiry Date:

19.06.2025

col-wide

Job Description:

Cyber Security Risk Specialist - VP

Docklands, London (Hybrid)

£100,000 - £110,000 per annum + annual discretionary bonus

On behalf of a Leading financial services organisation, I am seeking a highly experienced Cyber Security Risk Specialist at VP level. The individual will be part of the security function that is responsible for security governance, risk and assurance, to ensure the organisations security posture is robust, compliant against the security policy, standards and controls. In particular I am seeking someone with an extensive background in managing Security Control testing.

The company operate a hybrid work policy and therefore you must be willing to commit to 2 days per week and must be within commutable distance of their London HQ.

Responsibilities:

  • Maintain security policy, standards, procedures and frameworks.
  • Ensure alignment with security industry standards such as NIST CSF and NIST 800-53.
  • Act as an advisor to colleagues across the organisation on best security practice.
  • Conduct regular risk assessments and maintain risk register in RSA Archer.
  • Identify assess and prioritize security risk across the organisation's information assets and environments.
  • Understanding security gaps and provide evaluation and treatment options, consultation on remediation approaches to address gaps and continue ongoing monitoring of remediation, re-assess until reduced to an acceptable level.
  • Supporting Cybersecurity Risk Management strategies based on security findings and observations. Including informing improvements to organizational cybersecurity risk management processes, procedures and activities are identified across all security functions
  • Profile and assign asset security criticality and prioritize risk assessments.
  • Where risk driven change is agreed across security functions, monitoring improvements against the baselined risk to evidence and report where security risk is being reduced to an acceptable level across security functions. Including Policy exceptions and dispensations.
  • Run lessons learned forums and recommend improvements to security controls.
  • Represent security on audits and assessments, ensuring compliance with internal and external requirements.
  • Provide assurance to stakeholders through detailed reporting and metrics.

Experience/Skills required:

  • Minimum of 5 years' experience in a Cyber Security Risk Management capacity
  • Experience of the testing of Security controls is essential
  • Financial and/or Banking industry experience essential
  • Experience in Managing security risk across 3rd party, assets and systems
  • Ability to collaborate effectively with others to drive forward key security objectives.
  • Expert in technical writing reports and documenting risk assessment findings and mitigation plans clearly and accurately.
  • Attention to detail, Meticulous attention to detail to ensure data accuracy and integrity and ensure thorough and accurate risk assessment.
  • Problem solving, ability to grasp security issues that impact multiple entities and troubleshoot with proposing and consulting with colleagues on effective solutions to mitigate risks.
  • Excellent verbal and written communication skills to convey complex technical information clearly and effectively.
  • Presenting data insights to non-technical stakeholders
  • Strong understanding of security risk management and taxonomy principles, to reduce risk to an acceptable level.
  • Knowledge of vulnerability management and incident management practices.
  • Experience with GRC tools and best practices. RSA Archer is preferred.

Professional Certifications:

  • Ideally qualified in MSc Information Security, CICA, CRISC, CISM and/or Data analysis beneficial but not essential if experience validates skills.
  • Proficiency in security frameworks (eg, NIST CSF, ISO 27001, SOC1,2).
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.