Enable job alerts via email!
A leading company in pensions insurance is seeking an Information Security Risk Manager to enhance security frameworks and risk management practices. The role involves implementing the NIST CSF 2 framework and ensuring compliance across the organization. Candidates should have substantial experience in security risk management and knowledge of cyber security principles.
Rothesay is the UK’s largest pensions insurance specialist, purpose-built to protect pension schemes and their members’ pensions. With over £70 billion of assets under management, we secure the pensions of more than one million people and pay out, on average, approximately £300 million in pension payments each month.
Rothesay is dedicated to providing excellence in customer service alongside prudent underwriting, a conservative investment strategy and the careful management of risk. We are trusted by the pension schemes of some of the UK’s best known companies to provide pension solutions, including Asda, British Airways, Cadbury, the Civil Aviation Authority, the Co-operative Bank, National Grid, Morrisons, the Post Office and telent.
At Rothesay, we are striving to transform our industry. We believe deeply in creating real security for the future and our leadership in finding new and better ways to do that is the key to our success. To do that, we need the very brightest original thinkers to bring creativity as well as rigour. Rothesay is a rewarding place to work, where quality people can thrive and prosper. We pride ourselves on the connections our people build, many of whom have been with us for over ten years
Job Title: Information Security Risk Manager – Controls
Contract: Permanent
Rothesay is investing heavily in a modern, secure, cloud-native technology stack, backed by executive sponsorship and a multi-year strategic transformation. As part of this journey, we’re expanding our Information Security team to embed security and good risk management into every component of the stack.
This is an opportunity to join a high-impact Information and Technology Risk Management team helping drive strong security practices in our business and with our strategic partners. If you are passionate about frameworks and controls, working with stakeholders to find practical ways to implement and measure controls, and want to be part of an innovative organisation who wants to be the best information security, we want to hear from you.
What you’ll do:
You’ll be a member of the Information and Technology Risk Management team, working with a team of experts to drive assurance and risk management activities across the firm.
Your primary focus will be managing our Controls practice. Your responsibilities will include:
The role is essential for ensuring implementation of the firmwide strategy within the Information Security team.
Other activities include project management, accurately and convincingly representing technical risk and security priorities, measuring key indicators, improving awareness of good security practices, and reporting.
What we’re looking for:
Required:
We’re not just looking for someone to implement controls — we’re looking for someone who wants to influencehow we build securely, empower vendor owners to have productive conversations about security, and help shift security left in a meaningful, pragmatic way.
Disclaimer This position description is intended to describe the duties most frequently performed by an individual in this position. It is not intended to be a complete list of assigned duties, but to describe a position level. The role shall be performed within a professional office environment. Rothesay has health and safety polices that are available for all workers upon request. There are no specific health risks associated with the role.
InclusionRothesay actively promotes diversity and inclusivity. We know that our success depends on our people and that by nurturing a culture that values difference, we create a stronger, more dynamic business. We welcome applications from all qualified candidates, regardless of race, colour, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability or age.
*
indicates a required field
First Name *
Last Name *
Preferred First Name
Email *
Phone
Resume/CV
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
LinkedIn Profile
Website
LinkedIn Profile
Website
Previous Bonus: *
Are you connected to any current employees of Rothesay? If yes, please confirm how you are connected. * Select...
Please provide the name and team of your referrer. if you haven't been referred please select n/a *
Please confirm your current employer
Please select your current sector * Select...
We invite applicants to share their demographic background. If you choose to complete this survey, your responses may be used to identify areas of improvement in our hiring process.
What is your gender? Select...
What is your age? Select...
How would you best describe your ethnicity? Select...
What is your religion? Select...
How would you describe your sexual orientation? Select...
How would you describe your sexual identify? Select...
Are you a person living with a disability? According to the Equality Act, a person is disabled if they have a physical or mental impairment, and the impairment has a substantial and long-term adverse effect on their ability to carry out normal day-to-d Select...
What is the highest level of qualification you have achieved? Select...
What is the highest level of qualifications achieved by either of your parent(s) or guardian(s) by the time you were 18? Select...
What was the occupation of your main household earner when you were aged about 14? Select...