Job DescriptionInformation Security Manager will protect the confidentiality, integrity, and availability of our systems and data. You\âll support the secure delivery of projects, conduct risk assessments, oversee thirdâparty security engagements, and shape our evolving security posture. This is a handsâon role ideal for strategic thinking and rolling up sleeves.
Responsibilities
Advise and support project teams to embed security best practices throughout the project lifecycle.
Scope, manage, and track remediation of penetration testing and vulnerability assessments.
Maintain application security processes, standards and guidelines. Translate application security policies into security requirements.
Conduct and document security risk assessments on changes, threats, vulnerabilities, and new initiatives.
Perform thirdâparty vendor risk assessments and ongoing security reviews. Assist in identifying and assessing new security technologies and vendors.
Lead or support the response to security incidents, including investigation, containment, root cause analysis, and reporting.
Support compliance and alignment with ISO 27001, Cyber Essentials, SWIFT, NIST and other relevant frameworks.
Communicate effectively with stakeholders including engineers, product managers, operations team, senior management, and auditors about the information security posture, risks, and mitigation strategies.
Qualifications
Minimum 8 years\â experience in information security roles, ideally in the financial sector.
Bachelor\âs degree or higher in Computer Science or equivalent industry experience.
CISSP certification required; additional certifications (e.g. CEH, OSCP, AWS Security) are a plus.
Strong understanding of security in software development and application security (OWASP, SDLC, DevSecOps).
Inâdepth experience with threat analysis and incident response.
Experience with ISO 27001, Cyber Essentials, and preferably NIST CSF, SOC 2, or SWIFT frameworks.
Handsâon, pragmatic approach with the ability to operate in a lean, fastâpaced environment.
Excellent communication skills, engaging both technical and nonâtechnical stakeholders.
Innovative mindset with passion for staying current in the evolving cyber landscape.
Experience working in or with regulated financial institutions is desirable.
Why Join Us?
Be part of a small, agile, and collaborative team where impact is direct and visible.
Opportunity to work on cuttingâedge financial services and security projects.
Competitive salary and benefits, including training and development support.
Hybrid working arrangements and a culture that values innovation and initiative.
Benefits
Hybrid working
Contributory personal pension plan: Minimum 2% employee, 5% employee max, 7% employer match, 10% employer max.
Life Assurance â 4 times annual salary
Group Income Protection
Private Medical Insurance â cover for partner and/or children at company cost; includes Optical, Dental and Audiology
Discretionary Bonus
Competitive Annual Leave
2 Volunteering Days
Benefit Hub
#J-18808-Ljbffr
Information Security Manager employer: Crown Agents Bank
Contact Detail:
Crown Agents Bank Recruiting Team