Enable job alerts via email!

Senior Cyber Risk Manager

Pearson Education

City Of London

On-site

GBP 70,000 - 90,000

Full time

Today
Be an early applicant

Job summary

A leading education company in the City of London is seeking a Senior Manager of Risk to lead cyber risk and third-party risk management. You will oversee the development of a comprehensive risk management framework while managing a small team. Ideal candidates will have experience in cyber risk management and a strong understanding of risk frameworks. This role also emphasizes team leadership and stakeholder engagement, with opportunities for professional development.

Qualifications

  • Proven experience in cyber risk management or third-party risk management.
  • Strong understanding of risk management frameworks like ISO 31000 or NIST CSF.
  • Excellent leadership and team management abilities.

Responsibilities

  • Lead the development of the cyber risk management framework.
  • Oversee third-party risk management including due diligence and monitoring.
  • Manage and develop a team of cyber risk professionals.

Skills

Cyber risk management
Third-party risk management
Leadership
Stakeholder engagement
Analytical skills
Risk reporting

Education

Professional certifications (e.g., CRISC, CISM, CISSP, CISA)
Job description
Overview

We are seeking a highly motivated and experienced Senior Manager of Risk to lead our cyber risk and third-party risk management functions within the Cyber Governance, Risk & Compliance (GRC) team. This individual will manage a small team of risk professionals and be responsible for building, embedding, and continuously improving the organisation's cyber risk management framework, ensuring effective oversight of third-party and supplier risks, and supporting executive and board-level reporting.

Key Responsibilities

Cyber Risk Management

  • Lead the development, implementation, and ongoing maturity of the cyber risk management framework.
  • Oversee risk identification, assessment, treatment, and monitoring across all cyber domains.
  • Provide risk insights and reporting to senior leadership, risk committees, and the board.
  • Partner with business and technology teams to ensure risks are effectively understood, prioritised, and mitigated.
  • Drive risk culture awareness, ensuring risk management principles are embedded across the organisation.

Third-Party Risk Management

  • Oversee the third-party risk management (TPRM) programme, including onboarding, due diligence, and ongoing monitoring of suppliers.
  • Define risk appetite, assurance requirements, and contractual controls for third-party cyber security.
  • Partner with procurement, legal, and business teams to ensure suppliers meet security and compliance requirements.
  • Provide risk assessments, recommendations, and remediation guidance to business stakeholders.
  • Escalate material supplier risks and lead risk acceptance discussions where required.

Leadership & Team Management

  • Manage, coach, and develop a small team of cyber risk and third-party risk professionals.
  • Allocate workload effectively and foster a high-performance culture.
  • Support professional development and provide clear career growth pathways.
  • Act as a senior subject matter expert and escalation point within the Cyber GRC function
Key Skills & Experience
  • Proven experience in cyber risk management and/or third-party risk management, ideally within financial services, technology, or a regulated industry.
  • Strong understanding of risk management frameworks (e.g., ISO 31000, NIST CSF, FAIR, ISO 27005).
  • Experience in third-party/vendor risk management practices, frameworks, and tools.
  • Excellent leadership, team management, and stakeholder engagement skills.
  • Strong analytical, problem-solving, and decision-making abilities.
  • Ability to produce clear, concise, and executive-ready risk reporting.
  • Professional certifications desirable (e.g., CRISC, CISM, CISSP, CISA).
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.