Information Security Manager

Information Security Manager

London Full-Time 60000 - 84000 £ / year (est.) No home office possible
B

At a Glance

  • Tasks: Lead the Bank's cyber security efforts and ensure compliance with security policies.
  • Company: BACB is a UK bank specializing in trade finance and investment in Africa and the Middle East.
  • Benefits: Enjoy hybrid working with 3 days onsite and 2 days from home.
  • Why this job: Join a dynamic team focused on innovative cyber security solutions and protecting vital financial operations.
  • Qualifications: Degree level education and at least one security accreditation required; experience in cyber security management preferred.
  • Other info: Opportunity to work in a regulated market with a focus on real-world impact.

The predicted salary is between 60000 - 84000 £ per year.

BACB is a UK bank that offers trade finance and investment expertise to clients in specialist markets, especially Africa and the Middle East.

We have been helping businesses with trade finance and complementary products for over half a century, focusing on trade flows to and from Africa and the Middle East as well as real estate in the UK.

Our in-depth knowledge of the countries and practices where our clients operate ensures that we put them first.

Additional Info

  • Hybrid Working: 3 days onsite, 2 from home
  • Location: City of London
  • Contract Type: Fixed Term Contract

Job Summary

Reporting to the Head of Operational Risk and working closely with the Head of Information Security, the role will support in managing the Bank’s Second line of Defence (2LOD) for cyber security, assuring compliance with the Bank’s Information Security Policies and Standards and overseeing the effective implementation of security controls through engagement with the Bank’s cyber security operations team (1LOD).

Key Work Outputs and Accountabilities

  • Supporting the management of the Bank’s Cyber Security function maintaining compliance with our NIST based cyber security framework.
  • Responsible to Head of Operational Risk for Information Security RCSA framework, in particular regulatory compliance, and tolerated risk exposure.
  • Act as Cyber Security expert within the Second Line of Defence (2LOD), providing advice and guidance to 1LOD on best practice cyber security and to business driven change activity.
  • Working with the Bank’s Enterprise Architect to ensure solutions are delivered in accordance with BACB’s IT Security policies and Standards
  • Ensure the Bank can effectively respond and recover from Cyber Security Incidents.
  • Working with the Head of Information Security on ways to defend the Bank from current cyber threat landscape, identifying emergent threats and recommending innovative controls and mitigations.
  • Work together with the 1LOD and provide evidence that IT Security operations are within risk tolerances (e.g., Evergreen IT, Patching, Vulnerability scanning and Pen Testing) (supported by a 2nd member of the 2LOD team)
  • Oversee compliance with the Bank’s cyber security standards and policies liaising with CIO (1LOD) where responsibility spans Lines of Defence.
  • Maintain security performance metrics/ KPIs, recommending improvements where appropriate.
  • Effective use of specialist tools and logging to review the Bank’s cyber status and perform requested “deep dives” as necessary as well as define automated alerting mechanisms, ensuring that these alerts can be assessed and investigates independently by 1LOD and 2LOD.
  • Engaging with the CIO and the Head of Information Security to ensure that sufficient/ effective cyber defences are implemented, giving the Bank value for money for any procured Cyber Security solutions, including Cyber Risk Insurance.
  • Responsibility for the effective bank-wide cyber security training and awareness.

Required Qualifications and Experience

  • Educated to degree level (or equivalent), possessing at least one security accreditation (e.g., CISM or CISSP)
  • Good working knowledge of cyber security standards (i.e. NIST, ISO 27001, Cyber Essentials, GDPR).
  • Previous experience in the practical use and management of products such as Defender, Darktrace and Mimecast
  • IT security management knowledge, skills, and experience.
  • Familiarity of firewall rulesets and the requirements for effective cyber defence.
  • Familiar with the Microsoft stack from Desktop products to server products to Azure
  • Working in Financial Services or another regulated market, such as aviation or energy.
  • Managing the delivery of an organization-wide information security related strategy
  • Knowledgeable in common Data Leakage reasons and effective prevention.
  • Working with on premise, public and/or hybrid cloud environments
  • Conducting security-based investigations, the management of such inquiries and liaison with external BACB engaged investigation parties.

#J-18808-Ljbffr

Information Security Manager employer: British Arab Commercial Bank plc

At BACB, we pride ourselves on being an exceptional employer, offering a dynamic work environment in the heart of the City of London. Our hybrid working model promotes a healthy work-life balance, while our commitment to employee growth through continuous training and development ensures that you will thrive in your role as Information Security Manager. Join us to be part of a team that values innovation, collaboration, and a strong focus on compliance within the exciting field of cyber security.
B

Contact Detail:

British Arab Commercial Bank plc Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Manager

Tip Number 1

Familiarize yourself with the NIST cyber security framework, as this is crucial for the role. Understanding how to apply its principles in a banking context will set you apart from other candidates.

Tip Number 2

Highlight your experience with specific tools like Defender, Darktrace, and Mimecast during your discussions. Being able to demonstrate practical knowledge of these products will show that you're ready to hit the ground running.

Tip Number 3

Engage with current trends in cyber threats and defenses. Showing that you are proactive about understanding the evolving landscape will impress the hiring team and demonstrate your commitment to the role.

Tip Number 4

Network with professionals in the financial services sector who have experience in information security. Building connections can provide valuable insights and potentially lead to referrals within BACB.

We think you need these skills to ace Information Security Manager

Cyber Security Management
NIST Cyber Security Framework
ISO 27001 Compliance
Risk Assessment and Management
Incident Response Planning
Vulnerability Management
Security Awareness Training
Data Leakage Prevention
Firewall Configuration
Cloud Security (Hybrid, Public, On-Premise)
IT Security Tools (Defender, Darktrace, Mimecast)
Regulatory Compliance (GDPR, Cyber Essentials)
Communication Skills
Analytical Skills
Project Management

Some tips for your application 🫡

Understand the Role: Take the time to thoroughly read the job description for the Information Security Manager position. Understand the key responsibilities and required qualifications, especially the importance of compliance with NIST and other cyber security standards.

Tailor Your CV: Customize your CV to highlight relevant experience in cyber security management, particularly in financial services or regulated markets. Emphasize any security accreditations you hold, such as CISM or CISSP, and your familiarity with tools like Defender and Darktrace.

Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for cyber security and your understanding of the current threat landscape. Mention specific examples of how you've successfully managed security frameworks or responded to incidents in previous roles.

Highlight Relevant Skills: In your application, make sure to emphasize your knowledge of cyber security standards, firewall rulesets, and your experience with both on-premise and cloud environments. This will demonstrate your capability to manage the Bank’s Cyber Security function effectively.

How to prepare for a job interview at British Arab Commercial Bank plc

Show Your Cyber Security Expertise

Make sure to highlight your knowledge of cyber security standards like NIST and ISO 27001. Be prepared to discuss how you've applied these frameworks in previous roles, especially in a financial services context.

Demonstrate Problem-Solving Skills

Prepare examples of how you've identified and mitigated cyber threats in the past. Discuss specific incidents where you successfully implemented security controls or responded to security breaches.

Understand the Business Context

Familiarize yourself with BACB's operations, especially their focus on trade finance in Africa and the Middle East. Show how your cyber security strategies can align with their business goals and enhance their operational resilience.

Engage with the Interviewers

Be ready to ask insightful questions about the bank's current cyber security challenges and initiatives. This shows your genuine interest in the role and helps you understand how you can contribute effectively.

Information Security Manager
British Arab Commercial Bank plc
B
Similar positions in other companies
Europas größte Jobbörse für Gen-Z
discover-jobs-cta
Discover now
>