Information Risk Manager

HW Finance

Skipton

On-site

GBP 65,000 - 95,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

HW Finance seeks an Information Risk Manager in the UK to act as a subject matter expert across information security, data, and operational resilience. You will provide second line oversight and assurance to ensure risks are identified, assessed, mitigated and monitored, aligning with risk appetite and governance standards.

The role requires a recognised risk/IT security qualification, strong technical experience, and demonstrated leadership delivering risk initiatives.

Qualifications

  • Certification in risk, IT or information security (e.g., CISA, CISM, CISSP, CRISC) or equivalent.
  • Strong technical experience in IT, information security, technology risk and resilience.
  • Proven second line risk oversight, assessment and embedding enterprise risk frameworks.
  • Demonstrated leadership coordinating multiple workstreams and delivering initiatives.
  • Strong analytical and strategic thinking with ability to translate risks into insights.

Responsibilities

  • Provide independent second line oversight and challenge of first line activities, including risk assessments and control testing.
  • Ensure risks are managed in line with risk framework and risk appetite.
  • Lead oversight across cyber, technology risk, AI, data risk and operational resilience.
  • Deliver risk reporting and insights to senior committees, including emerging risks.
  • Support Enterprise Risk objectives and lead priority information risk initiatives.
  • Oversee risk events and incidents, including root cause analysis and remediation effectiveness.
  • Provide technical leadership and coaching to colleagues on risk framework application.

Skills

Information risk management
Second line oversight
Leadership
Strategic thinking
Analytical mindset

Tools

NIST framework
ISO 27001

Job description

HW Finance is working closely with a leading client who is recruiting for an Information Risk Manager.

This business has successfully balanced customer-focused innovation with prudent risk management, continuing to invest in technology and digital transformation while maintaining the financial strength and governance standards expected of a leading financial services organisation.

In the role you will be acting as a subject matter expert across information security, technology (including AI), data, change, and operational resilience.

You will provide independent second line oversight, challenge, and assurance to support robust risk management and ensure risks are proactively identified, assessed, mitigated, and monitored.

Key responsibilities include:

  • Provide strong independent second line oversight and challenge of first line activities, including risk assessments, control testing and mitigation actions, ensuring effective framework implementation and escalation of key risks.
  • Provide oversight, guidance and support to ensure risks are managed in line with the Group Risk Management Framework, Group Risk Policy Framework and Board Risk Appetite.
  • Lead oversight and provide assurance across cyber and technology risk, AI and emerging technologies, data risk, operational resilience and strategic change, aligned to evolving industry practice and regulatory expectations.
  • Deliver high quality, timely risk reporting and insight to senior committees, including thematic reviews and emerging risk identification.
  • Support senior leadership in delivering annual Enterprise Risk objectives, while leading priority information risk initiatives.
  • Oversee risk events, incidents and issues, including independent review of root cause analysis, timely escalation, and challenge of remediation effectiveness.
  • Provide technical leadership and coaching to colleagues, supporting capability development and consistent application of the Group Risk Management Framework.

To be successful in this role, you’ll have:

  • A recognised certification (e.g. CISA, CISM, CISSP, CRISC) or an equivalent qualification in risk, IT or information security.
  • Strong technical experience in IT, information security, technology risk and resilience, including frameworks such as NIST and ISO 27001.
  • Proven second line experience in risk oversight, assessment, control evaluation and embedding enterprise risk frameworks and risk appetite.
  • Demonstrated leadership and delivery capability coordinating multiple workstreams and delivering initiatives.
  • Strong analytical and strategic thinking skills, with the ability to interpret complex issues, identify emerging risks and translate this into actionable insights.

** Unfortunately, visa sponsorship is not available for this role. Applicants must have the right to work in the UK without sponsorship. **

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Risk & Cyber Resilience Lead
Senior Information Risk & Cyber Resilience Lead

HW Finance • Skipton

On-site
GBP 65,000 - 95,000
Technology Risk Manager
Technology Risk Manager

JSS Search • Manchester

Hybrid
GBP 75,000 - 80,000
Information Security Manager
Information Security Manager

Frontpoint Partners Ltd • City Of London

On-site
GBP 70,000 - 110,000
Information Technology Risk Manager
Information Technology Risk Manager

psd group • Manchester

Hybrid
GBP 64,000 - 76,000
Competitive salary up to £76K
Hybrid work flexibility
Career growth potential
Head of Information Security and Privacy
Head of Information Security and Privacy

Morgan Law • Greater London

On-site
GBP 120,000 - 180,000
Information Security Manager
Information Security Manager

Frontpoint Partners Ltd • Greater London

On-site
GBP 85,000 - 110,000
Technology Risk and Controls manager (12 month FTC)
Technology Risk and Controls manager (12 month FTC)

Audit & Risk Recruitment • Greater London, Manchester

Hybrid
GBP 70,000 - 90,000
Information Security Manager
Information Security Manager

itecopeople • Greater London

Hybrid
GBP 68,000
30 days annual leave
Generous pension
Flexible hybrid working
ICT Cyber and Information Security Manager
ICT Cyber and Information Security Manager

ISR RECRUITMENT LIMITED • North East

On-site
GBP 80,000 - 100,000
Head of Information Security GRC & Awareness
Head of Information Security GRC & Awareness

TRIA • England

On-site
GBP 165,000 - 344,000