Job Search and Career Advice Platform

Enable job alerts via email!

UK Information Security Risk Manager

PWC

Belfast

Hybrid

GBP 80,000 - 100,000

Full time

Yesterday
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading global consultancy firm in the UK is seeking an Information Security Risk Manager to drive risk management activities concerning information security. The role involves establishing a robust risk management framework, collaborating with stakeholders, and providing insights on emerging technologies. Ideal candidates will have a background in information security risk management, relevant certifications, and strong communication skills. This role includes various benefits like flexible working arrangements and private medical cover.

Benefits

Flexible working arrangements
Private medical cover
24/7 access to a qualified virtual GP
Six volunteering days a year

Qualifications

  • Previous management experience in an information security risk management role.
  • Extensive knowledge of risk assurance frameworks such as ISO 31000; NIST CSF; ISO 27001.
  • Broad understanding of technology and security in a large enterprise setting.

Responsibilities

  • Drive risk management activities to identify and reduce security risks.
  • Establish a robust information security risk management framework.
  • Collaborate with leadership and stakeholders to implement risk mitigation strategies.

Skills

Strong communication and influencing skills
Stakeholder management
Excellent time management skills
Data manipulation and visualisation skills

Education

Formal certifications/qualifications in Information Security (CISSP, CISM, CRISC, CompTIA Security+)

Tools

PowerBI
Alteryx
Excel
Job description
About the role:

PwC continues to invest in cyber security capabilities to protect our business and our clients. Within PwC’s Global Network Information Security (NIS) team, the UK CISO Governance, Risk & Compliance (GRC) team acts as a trusted risk advisor to the UK business. By providing guidance on cybersecurity-related risks and ensuring alignment with PwC’s global cybersecurity strategy, we help our UK stakeholders implement effective security measures to mitigate risks and protect the firm’s interests.

What your days will look like:

As the Information Security Risk Manager, your role is to drive risk management activities to help identify and reduce the risks related to information security associated with technology used within the firm.

  • Establish a robust information security risk management framework along with clear policies and procedures to provide visibility of aggregated risk at the enterprise/executive level through analysis and reporting.
  • Drive the implementation of risk mitigation strategies by collaborating closely with leadership, internal risk teams, and other stakeholders to ensure alignment with strategic objectives, fostering a culture of risk‑awareness, enhanced communication and informed decision‑making.
  • Prioritise activities by organisational risk and criticality to align risk management with business goals and enhance operational resilience. Focusing on high‑impact areas to ensure efficient resource allocation and providing leadership with a comprehensive risk perspective.
  • Collaborate with senior stakeholders for insights on existing and emerging technologies like GenAI, offering strategic updates and impact assessments for informed decision‑making.
This role is for you if:
  • Strong communication and influencing skills to assist, inform, and build relationships with stakeholders in both the business and support teams, to enable effective information security activities and processes aligned to the firm’s security strategy.
  • Bring high energy and thrive on helping people to solve problems, stakeholder management/customer service outlook - working with business teams to achieve positive outcomes.
  • Inquisitive nature and intuition regarding what questions to ask, when, and their relative significance.
  • Excellent time management skills, balancing working efficiently on your own and contributing as part of a wider team - prioritising and recognising when to escape to management.
  • An interest in PwC’s business model, service offerings, and business operating environment as it pertains to the firm’s threat landscape.
Ideal Experience "and" Qualifications:
  • Previous proven management experience in an information security risk management role.
  • Formal certifications/qualifications in Information Security (CISSP, CISM, CRISC, CompTIA Security+).
  • Extensive knowledge of risk assurance frameworks essential, such as ISO 31000; NIST CSF; ISO 27001.
  • Knowledge of technical security principles highly desirable.
  • Broad understanding of technology and how security is applied to technology in a large enterprise setting.
  • Experience at an enterprise, global company or big four firm is desirable.
  • Strong data manipulation and visualisation skills (PowerBI, Alteryx, Excel).
What you’ll receive from us:

No matter where you may be in your career or personal life, our benefits are designed to add value and support, recognising and rewarding you fairly for your contributions. We offer a range of benefits including empowered flexibility and a working week split between office, home and client site; private medical cover and 24/7 access to a qualified virtual GP; six volunteering days a year and much more.

We offer a range of benefits including empowered flexibility and a working week split between office, home and client site; private medical cover and 24/7 access to a qualified virtual GP; six volunteering days a year and much more.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.