At a Glance
- Tasks: Manage Cyber & Information Security risks to safeguard financial stability and growth.
- Company: Join Citi, a global leader in financial services with a mission to enable economic progress.
- Benefits: Enjoy competitive salary, generous holidays, private medical insurance, and hybrid working model.
- Other info: Be part of a supportive workplace that values diversity and personal growth.
- Why this job: Make a real impact in a dynamic environment while leading innovative security initiatives.
- Qualifications: Experience in Cyber Security Risk Management and strong communication skills required.
The predicted salary is between 80000 - 100000 £ per year.
Are you looking for a career move that will put you at the heart of a global financial institution? Then bring your skills in risk identification, project management and communication to Citi’s Business Disruption Risk Team.
By Joining Citi, you will become part of a global organisation whose mission is to serve as a trusted partner to our clients by responsibly providing financial services that enable growth and economic progress.
Team/Role OverviewThis role is critical for safeguarding the bank's financial stability and sustained growth by expertly managing Cyber & Information Security risks. The position involves identifying, assessing, measuring, monitoring, and reporting on these risks, ensuring all operations align with the Markets defined risk appetite. This professional provides a comprehensive view of the cyber threat landscape, enabling proactive anticipation, assessment, and mitigation of potential security risks across the Markets Business.
What you’ll do- Proactively identify and assess evolving Cyber & Information Security risks across the business and technology landscape.
- Design and lead strategic initiatives to enhance cyber and information security controls and processes, ensuring alignment with risk appetite.
- Collaborate effectively with business unit leaders and diverse stakeholders to embed robust cyber risk management practices into business operations.
- Partner with 2nd line functions (e.g., Information Security Compliance, Operational Risk Management) to interpret and apply cyber risk requirements and policies accurately.
- Engage with 3rd line functions (e.g., Internal Audit, Compliance Assurance) to facilitate independent assessments, address findings, and drive resolution of cyber and information security issues.
- Maintain comprehensive oversight of cyber risk posture through continuous monitoring of metrics, activity, and corrective action plan execution.
- Prepare and present clear, concise updates on emerging cyber risks, control effectiveness, and strategic enhancements to senior management and governance committees.
- Ensure rigorous adherence to information security policies and regulatory requirements, including maintaining a robust Manager’s Control Assessment (MCA) for Cyber & Information Security.
- Serve as a primary liaison for all internal and external audit engagements related to Cyber & Information Security.
- Lead and mentor a team focused on cyber risk assessment, regulatory compliance, and efficient reporting and resolution of security-related matters.
- Significant progressive experience in Cyber & Information Security Risk Management, IT Risk, Security Compliance, or IT Audit, with significant experience in a financial services environment.
- Demonstrated expertise in identifying, assessing, measuring, monitoring, and reporting on complex cyber and information security risks.
- Proven track record of designing and leading initiatives to enhance security controls and processes.
- Extensive experience collaborating with and managing expectations of diverse stakeholders, including business unit leaders, technical teams, and 2nd and 3rd line functions (e.g., Information Security Compliance, Operational Risk, Internal Audit, Regulators).
- Strong understanding of evolving cyber threat landscapes, regulatory requirements (e.g., NIST, ISO 27001, GLBA), and industry best practices.
- Proficient in maintaining risk and control frameworks, including Manager’s Control Assessment (MCA), specifically for Cyber & Information Security risks.
- Exceptional communication and presentation skills, with the ability to articulate complex cyber risk concepts and their business impact to senior management and governance committees.
- Ability to act as a primary liaison for all audit and regulatory engagements pertaining to Cyber & Information Security.
- Strong leadership capabilities with experience in leading and mentoring risk management professionals.
- Bachelor's degree required; Master's degree or relevant professional certifications (e.g., CISSP, CISM, CRISC) preferred.
We work hard to have a positive financial and social impact on the communities we serve. In turn, we put our employees first and provide the best-in-class benefits they need to be well, live well and save well.
By joining Citi London, you will not only be part of a business casual workplace with a hybrid working model (up to 2 days working at home per week), but also receive a competitive base salary (which is annually reviewed), and enjoy a whole host of additional benefits such as:
- Generous holiday allowance starting at 27 days plus bank holidays; increasing with tenure
- A discretional annual performance related bonus
- Private medical insurance packages to suit your personal circumstances
- Employee Assistance Program
- Pension Plan
- Paid Parental Leave
- Special discounts for employees, family, and friends
- Access to an array of learning and development resources
Alongside these benefits Citi is committed to ensuring our workplace is where everyone feels comfortable coming to work as their whole self every day. We want the best talent around the world to be energized to join us, motivated to stay, and empowered to thrive.
Sounds like Citi has everything you need? Then apply to discover the true extent of your capabilities.
Cyber and Information Security Risk Manager, Senior Vice President in London employer: Citibank (Switzerland) AG
Citi London is an exceptional employer that prioritises the well-being and growth of its employees, offering a hybrid working model and a competitive salary package. With generous holiday allowances, comprehensive medical insurance, and a commitment to professional development, Citi fosters a supportive work culture where individuals can thrive and contribute meaningfully to the financial sector. Join us to be part of a dynamic team dedicated to safeguarding financial stability while enjoying a workplace that values diversity and inclusion.
StudySmarter Expert Advice🤫
We think this is how you could land Cyber and Information Security Risk Manager, Senior Vice President in London
✨Tip Number 1
Network like a pro! Reach out to connections in the industry, attend relevant events, and engage on platforms like LinkedIn. The more people know you’re looking for a Cyber and Information Security Risk Manager role, the better your chances of landing that dream job.
✨Tip Number 2
Prepare for interviews by brushing up on your knowledge of current cyber threats and risk management strategies. Be ready to discuss how you've tackled similar challenges in the past. Show them you’re not just a candidate, but a solution provider!
✨Tip Number 3
Don’t underestimate the power of follow-ups! After an interview, send a thank-you email reiterating your interest in the position and highlighting key points from your conversation. It shows enthusiasm and keeps you top of mind.
✨Tip Number 4
Apply through our website for the best chance at getting noticed. Tailor your application to highlight your experience in Cyber & Information Security Risk Management, and make sure to showcase your leadership skills. We want to see how you can contribute to our team!
We think you need these skills to ace Cyber and Information Security Risk Manager, Senior Vice President in London
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the Cyber and Information Security Risk Manager role. Highlight your experience in risk management, project management, and communication skills that align with what we're looking for.
Craft a Compelling Cover Letter:Your cover letter should tell us why you're the perfect fit for this position. Share specific examples of how you've identified and managed cyber risks in the past, and how you can bring that expertise to our team.
Showcase Your Leadership Skills:Since this role involves leading a team, don’t forget to highlight your leadership experience. Talk about how you've mentored others and driven initiatives in previous roles to enhance security controls.
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way to ensure your application gets the attention it deserves, and you'll find all the details you need to complete your application there.
How to prepare for a job interview at Citibank (Switzerland) AG
✨Know Your Cyber Landscape
Before the interview, dive deep into the current cyber threat landscape. Familiarise yourself with recent incidents and trends in Cyber & Information Security, especially within financial services. This will not only show your expertise but also demonstrate your proactive approach to risk management.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your ability to identify and mitigate risks. Prepare specific examples from your past experience where you successfully managed cyber risks or led initiatives to enhance security controls. Use the STAR method (Situation, Task, Action, Result) to structure your responses.
✨Showcase Your Leadership Skills
As a Senior Vice President, leadership is key. Be ready to discuss how you've mentored teams and collaborated with diverse stakeholders. Highlight instances where your leadership made a significant impact on cyber risk management or compliance within your previous roles.
✨Communicate Clearly and Confidently
Strong communication skills are essential for this role. Practice articulating complex cyber risk concepts in simple terms. During the interview, ensure you present your ideas clearly and confidently, especially when discussing how you would report to senior management and governance committees.