Job Search and Career Advice Platform
566 postes de

It Security à United States

Cyber Risk Consultant

Cyber Risk Consultant
M&G
City of Edinburgh
GBP 90 000 - 120 000
Je veux recevoir les dernières offres d’emploi de It Security

IT Operations Manager

IT Operations Manager
Michael Page (UK)
City Of London
GBP 80 000 - 100 000

IBM Platform Security Analyst (Cross Training Opportunity)

IBM Platform Security Analyst (Cross Training Opportunity)
CRL Global
Greater London
GBP 40 000 - 60 000

IT Security Analyst

IT Security Analyst
Bidwells
Cambridge
GBP 40 000 - 60 000

Chief Information Security Officer

Chief Information Security Officer
Financial Ombudsman Service
Londres
GBP 106 000 - 118 000
Découvrez plus d’offres que n’importe où ailleurs.
Trouvez plus de postes maintenant

Chief Information Security Officer

Chief Information Security Officer
Financial Ombudsman Service
Manchester
GBP 98 000 - 109 000

(Japanese Speaking) Infrastructure Engineer

(Japanese Speaking) Infrastructure Engineer
JAC Recruitment (UK) Ltd.
Londres
GBP 45 000 - 55 000

Senior IT Risk Officer

Senior IT Risk Officer
AXA UK
Redhill
GBP 60 000 - 80 000
HeadhuntersEntrez en contact avec des chasseurs de têtes pour postuler à des offres similaires

Senior IT Risk Officer

Senior IT Risk Officer
AXA UK
North East
GBP 80 000 - 100 000

Technical Security Consultant

Technical Security Consultant
zyncgroup.io
Stockport
EUR 68 000 - 80 000

Head of Security Operations

Head of Security Operations
Bertelsmann
Londres
GBP 100 000

IT Security Manager

IT Security Manager
Avaya Corporation
Grande-Bretagne
À distance
GBP 59 000 - 80 000

Senior Security Engineer

Senior Security Engineer
Medirest Signature
Havant
GBP 58 000 - 88 000

Senior Security Engineer

Senior Security Engineer
Scottish and Southern Electricity Networks
Reading
GBP 58 000 - 88 000

Senior Product Security Engineer

Senior Product Security Engineer
Elekta
Crawley
GBP 55 000 - 80 000

IT Security Analyst

IT Security Analyst
Latcom plc
Londres
GBP 45 000 - 65 000

Senior Network Engineer

Senior Network Engineer
Starr Underwriting
Londres
GBP 65 000 - 85 000

IAM Analyst

IAM Analyst
JDEMEA
Bury
GBP 40 000 - 55 000

IT-Systemadministrator (m/w/d)

IT-Systemadministrator (m/w/d)
Efinio AG
Wales
EUR 63 000

Customer Success Manager (Enterprise) (Position located in Leeds or London, England)

Customer Success Manager (Enterprise) (Position located in Leeds or London, England)
KnowBe4
Leeds
GBP 35 000 - 50 000

Compliance Questionnaire Manager

Compliance Questionnaire Manager
Certara
Sheffield
GBP 50 000 - 70 000

Information Systems Project Manager (Programmes)

Information Systems Project Manager (Programmes)
MBDA UK Ltd
Stevenage
GBP 50 000 - 65 000

Senior Operational Security Analyst

Senior Operational Security Analyst
Skipton
Skipton
GBP 45 000

Proxy Specialist - Systems Integrator

Proxy Specialist - Systems Integrator
Hamilton Barnes Associates Limited
Greater London
GBP 100 000 - 125 000

CISO

CISO
Nominet
Oxford
GBP 90 000 - 120 000

Cyber Risk Consultant

M&G
City of Edinburgh
GBP 90 000 - 120 000
Description du poste

At M&G our purpose is to give everyone real confidence to put their money to work. As an international savings and investments business with roots stretching back more than 170 years, we offer a range of financial products and services through Asset Management, Life and Wealth. All three operating segments work together to deliver attractive financial outcomes for our clients, and superior shareholder returns.

Through our behaviours of telling it like it is, owning it now, and moving it forward together with care and integrity; we are creating an exceptional place to work for exceptional talent.

We will consider flexible working arrangements for any of our roles and also offer work place accommodations to ensure you have what you need to effectively deliver in your role.

Overall Job Purpose

  • The M&G plc Risk & Compliance function, within the second line of defence, is responsible for effectively advising and challenging key stakeholders, challenging risks effectively and proactively, and adding value through providing enhanced business insights to ensure that risk is managed in line with the expectations of clients, shareholders and regulators, and to support the delivery of customers’ long term needs.
  • The Cyber Risk Oversight VP reports to the Head of Technology Risk and Support Functions Oversight, M&G plc, and to the Director of Risk and Compliance, M&G Global.
  • This role is primarily responsible for providing oversight of cyber security risk across M&G plc, including delivering a second line evaluation of the strength of first line security measures and controls.
  • The role manages the planning and delivery of Red Team Cyber testing activities by qualified third parties, and provides effective end to end stakeholder engagement in relation to the findings made during these tests.
  • The role is also responsible for developing and operating a second line model for delivering oversight of M&G’s cyber threat intelligence capability and techniques.
  • The role works in close partnership with stakeholders across the business in Technology, Security, Non-Financial Risk, external suppliers and with programme leads to ensure effective oversight of cyber risk across M&G plc.
  • The role leads on facilitating the risk appetite statements relating to cyber security risks
  • The role also supports the delivery of wider Risk and Compliance projects, strategic and management activities, business development and digital initiatives.

Responsibilities

The key responsibilities of this role are to support the delivery of the Technology Risk team’s objectives to support the embedding of the technology risk framework across M&G plc in relation to cyber security risk, and to provide consolidated risk analysis and information for Senior Management as required. The role is required to:

  • Manage the planning, engagement and delivery of Red Team Cyber testing activities with appropriately qualified third party cyber specialists.
  • Oversee and guide cyber security risk mitigation programmes, projects and control improvement initiatives, including the use of AI in enhancing cyber security.
  • Assess first line processes and technical analysis of cyber security events and root cause, as well as remedial solutions, and provide a second line view on their effectiveness.
  • Provide advice and guidance on compliance with regulatory requirements that relate to cyber risk and contribute to regulatory enquiries.
  • Assess the effectiveness of processes and internal controls implemented by the first line, including the Security Operations Centre (SOC) and infrastructure functions, through a programme of a sampling to evaluate their quality and associated documentation, and provide feedback for action.
  • Work closely with existing IT, security and business functions as well as collaborating with third parties and business partners, both to receive input and to provide practical and actionable intelligence.
  • Nurture strong working relationships with stakeholders at functional levels.
  • Manage the risk appetite statements for technology and digital risks in relation to cyber and provide reporting of performance against these statements using sampling methods.
  • Develop and maintain high level Cyber Risk policy, embedding relevant Group, regulatory and industry good practice requirements.
  • Participate in cyber incident response planning, testing, and execution when required.
  • Participate in the annual programme of deep dive and thematic reviews, leading reviews where these relate to cyber across all business areas and outsourced service providers as may be required.
  • Oversee the identification, assessment, processing, analysis, and reporting of tactical and strategic threat intelligence to assist in decision making and actively thwart emergent and current threats targeting our organisation.
  • Contribute to the continuous improvement of the Technology Risk function.
  • Identify and lead digital initiatives that deliver efficiencies and improved ways of working commensurate with best practices of FTSE 100 digitally enabled business.
  • Ensure compliance to the people policies, Group Code of Conduct and embedding of desired behaviours, including completion of any mandatory training requirements.
  • Being personally accountable for supporting the identification, assessment, management and reporting risks within your area of responsibility, including supporting formal risk management activities e.g. Risk & Control Self Assessments and timely closure of Assurance actions.
  • Work flexibly in support of the wider Risk and Compliance agenda.
  • Line management of a Risk professional in the Technology Risk team.

Key Interfaces

Internal:

  • M&G plc Risk and Compliance
  • All M&G plc UK Business Areas and Senior Management Teams
  • Internal Audit

External:

  • M&G plc Risk and Compliance
  • All M&G plc UK Business Areas and Senior Management Teams
  • Internal Audit

Experience and Skills

  • 12+ yrs of relevant experience in in a Risk/Audit function/Big4 within a financial institution, directly delivering cyber security and cyber threat intelligence activities.
  • Significant knowledge of Cybersecurity organization practices, risk management principles, architectural requirements, engineering threats and vulnerabilities, including incident response methodologies.
  • Excellent stakeholder management skills, with the ability to successfully navigate a complex organisation as well as build strong relationships and work collaboratively with teams across the business.
  • Knowledge of insurance / investment products, markets and competitors.
  • Experience within financial services companies or consulting/technology companies supporting. financial services clients in cyber security and Technology risk (2LOD) functions.
  • Experience in developing and embedding Cyber risk policies, setting Cyber risk appetite and embedding processes to assess performance against the same.
  • Experience in managing a team of cyber/security specialists.
  • Experience in leading reviews, where these relate to Cyber risk and understanding the lessons learnt.
  • Delivery of gap analysis against Cyber Security policy, standards and technology risk requirements.
  • Experience in developing, operating and maintaining a Cyber threat intelligence framework.
  • Strong understanding of cyber security products and technologies utilized in Enterprise environments.
  • Strong understanding of Cloud computing platforms, primarily Amazon AWS and Microsoft Azure.
  • Experience as part of a security operations or incident response organization would be beneficial.
  • Experience in investigating fraud and eCrime.
  • Keen understanding of national and international laws, regulations, policies and ethics related to financial industry cybersecurity.
  • Understanding of threat modelling techniques with some experience in developing threat models.
  • Significant experience of reporting and presenting cyber risks and controls information with the wider business, regulatory and industry context, in a simple and effective way.
  • Experience of authoring papers for Risk Committees and senior management teams.
  • Knowledge of industry best practice and good network / links with individuals and external bodies.
  • Curious and continually looking to seek out improvements and not just accepting the status quo.
  • Ability to work collaboratively across immediate team and broader technology function whilst also being to work independently under own initiative.
  • Strong drive and delivery, committed to achieving results and delivering on time.
  • Strong analytical thinking and a critical evaluator of information/issues.
  • Strong work ethic with the highest levels of professionalism, commitment and integrity.
  • Gravitas and ability to be pragmatic where appropriate.
  • Ability to operate remotely, in a diverse and multi-cultural environment with international work or consultancy exposure.

Education and Professional Qualifications

  • Graduate/Post-Graduate degree in Engineering, Information Technology or Computer Science
  • Relevant Certification in Cyber Security and cloud such as CISSP, CISA, CISM

Experience Level: Manager/Expert

Recruiter: Helen Simons

We have a diverse workforce and an inclusive culture at M&G plc, underpinned by our policies and our employee-led networks who provide networking opportunities, advice and support for the diverse communities our colleagues represent. Regardless of gender, ethnicity, age, sexual orientation, nationality, disability or long term condition, we are looking to attract, promote and retain exceptional people. We also welcome those who take part in military service and those returning from career breaks.

M&G is also proud to be a Disability Confident Leader , and we welcome applications from candidates with long-term health conditions, disabilities, or neuro-divergent conditions. Being a Disability Confident Leader means that candidates who meet the minimum criteria of a job, will be offered an interview if they 'opt in' to the scheme when applying.

Ifyou need assistanceor an alternative means of applying for a role due to a disability or additional need,pleaselet usknow by contacting us at: careers@mandg.com

  • Précédent
  • 1
  • ...
  • 7
  • 8
  • 9
  • ...
  • 23
  • Continuer

* Le salaire de référence se base sur les salaires cibles des leaders du marché dans leurs secteurs correspondants. Il vise à servir de guide pour aider les membres Premium à évaluer les postes vacants et contribuer aux négociations salariales. Le salaire de référence n’est pas fourni directement par l’entreprise et peut pourrait être beaucoup plus élevé ou plus bas.

Job Search and Career Advice Platform
Décrochez un poste
plus rapidement 
Suivez-nous
JobLeads Youtube ProfileJobLeads Linkedin ProfileJobLeads Instagram ProfileJobLeads Facebook ProfileJobLeads Twitter AccountJobLeads Xing Profile
Entreprise
  • Avis clients
  • Rejoignez-nous
  • Mentions légales
Services
  • Examen gratuit de votre CV
  • Recherche d’emploi
  • Mise en relation avec des chasseurs de têtes
  • Conseils de carrière
  • Masterclass JobLeads
  • Parcourir les offres
Ressources gratuites
  • Prévisions pour 2024
  • 5 étapes pour faire aboutir votre recherche d’emploi
  • 8 erreurs courantes dans la recherche d’emploi
  • Quelle doit être la longueur de mon CV ?
Assistance
  • Aide
  • Intégration de partenaire
  • Partenaires ATS
  • Protection des données
  • Conditions commerciales générales

© JobLeads 2007 - 2025 | Tous droits réservés