Technology, Resilience and Security Risk Manager
Technology, Resilience and Security Risk Manager

Technology, Resilience and Security Risk Manager

Full-Time 36000 - 60000 £ / year (est.) No home office possible
C

At a Glance

  • Tasks: Analyse and enhance IT governance to protect clients and assets.
  • Company: Join a forward-thinking company focused on technology resilience and security.
  • Benefits: Competitive salary, flexible working options, and opportunities for professional growth.
  • Why this job: Make a real impact in safeguarding technology and shaping security strategies.
  • Qualifications: Experience in risk management and understanding of cyber security principles.
  • Other info: Collaborative environment with a focus on continuous improvement and diversity.

The predicted salary is between 36000 - 60000 £ per year.

This role will focus on analysing, developing and maturing TrinityBridge's IT Governance and alignment with industry-standard frameworks, ensuring our ability to resiliently safeguard our clients, our people, and their assets. The role contributes to the ongoing development and evolution of the enterprise-wide technology, resilience, and security governance strategy, ensuring alignment with business objectives and regulatory requirements. This colleague will be responsible for providing regular updates and recommendations to the C-suite on governance, risk, and compliance matters as required.

RESPONSIBILITIES

  • Governance
  • Analysing existing TrinityBridge Technology, Security and Resilience (TRS) Governance to identify and close gaps and improvement opportunities.
  • Ownership of the governance lifecycle of TrinityBridge's policy and standards relating to TRS.
  • Ownership of monthly risk reporting and KRIs/KPIs across TRS.
  • Ownership of Risk and Control Registers across TRS.
  • Reporting on risk items across all avenues in a timely and appropriate manner across governance forums, ensuring affected stakeholders are informed.
  • Developing and maintaining TRS risk appetite statements, MI, KPIs and KRIs in conjunction with the Operational Risk team, to ensure TrinityBridge report with clarity on operation within the agreed tolerance.
  • Produce full gap analysis reports on areas of improvement and risk, to support risk and cost reduction and strategy delivery, recommending thorough mitigation plans including justification for options considered.
  • Own, chair and shape the future of the Cyber and Resilience Risk committee (CRC) and sub-CRC - monthly forums presenting the TRS risk position, risk acceptances, approvals and actions to the CISO and COO and TRS leadership team.
  • Independent review of problem management, incident management and KRIs to provide proposals and recommendations on continuous improvement and optimal performance of the enterprise function.
  • Ownership of TRS risk assessment of third and fourth parties through the established third party management team.
  • Monitor emerging regulatory requirements and ensure governance frameworks are updated accordingly.
  • Define, review, and evolve key metrics (MI, KPIs, KRIs) to ensure they remain relevant and actionable.
  • Programme delivery
    • Working closely with the TRS leadership team to assure weekly project status reports, ensuring accuracy of TRS' business change governance across the enterprise.
    • Responsible for appropriate application of all business and technology change from a cyber and information security perspective.
    • Ensuring TRS Governance is adhered to throughout business as usual (BAU) operation and business change, utilising the mature operational processes already in place.
    • Act as an interface between business change and TRS leadership where deviations to process and risk acceptances may be necessary.
  • Communication, Reporting & Culture
    • Responsible for TrinityBridge's strong cyber and information security culture, acting as the 'de-facto' expert on cyber and information security for the business.
    • Independently able to produce comprehensive write ups of current risks and threats as they develop, producing expedient updates as situations change and span different threat vectors.
    • Proactively report upwards on emerging cyber and data risks and threats, providing a view through a business lens on potential impacts.
    • Responsible for monthly robust, traceable and risk-led MI on cyber and information security performance against governance frameworks and risk appetite.
  • People
    • Operate with respect, diversity and inclusion principles as a key tenet of your role.
    • Develop a culture of continuous improvement and appraisal as a foundation for excellent organisational performance, including operating within the firm's people policies and processes.
    • Build and develop relationships with organisation-wide peers.
  • Regulatory responsibilities
    • Ability to demonstrate an understanding of the regulatory framework relevant to the role, whilst practising effective risk management taking account of outcomes for clients.
    • Experience in working in risk management roles with sole responsibility for risk areas.
    • Whilst being hands-on technical is not required, a fundamental understanding of Cyber/Information Security, resilience and technical risk is required.
    • Pragmatic and able to work collaboratively to find solutions.
    • Excellent writing comprehension and ability, with a drive to improve existing documents and processes.
    • Excellent verbal communication skills, operating with empathy and psychological safety.
    • Able to clearly articulate how stakeholders comply with requirements/expectations set by regulators, auditors, organisational risk appetite, senior management and the board.
    • Experience in gathering, analysing and structuring data using Microsoft and AI tools.
    • Experience in the development and production of dashboards and reports, including MI, KPIs and KRIs.
    • Ability to work independently within a defined remit, managing schedule and multiple objectives.
    • Ability to collaborate effectively with colleagues at all organisational levels.
  • Desirable:
    • Working as a cyber security and technology risk manager at a financial services organization.
    • Possess a working understanding of industry standard frameworks and concepts such ISO27001, SOC Type I & II, ITIL, COBIT, Agile, NIST, CMMI.
    • CISM or business analysis certification or qualification.

    Technology, Resilience and Security Risk Manager employer: Close Brothers Group

    TrinityBridge is an exceptional employer that prioritises a culture of respect, diversity, and inclusion while fostering continuous improvement and professional growth. Located in a dynamic environment, we offer our employees the opportunity to engage with cutting-edge technology and governance frameworks, ensuring they are at the forefront of the industry. With a strong emphasis on employee development and a commitment to safeguarding our clients and their assets, TrinityBridge provides a meaningful and rewarding workplace for those looking to make a significant impact.
    C

    Contact Detail:

    Close Brothers Group Recruiting Team

    StudySmarter Expert Advice 🤫

    We think this is how you could land Technology, Resilience and Security Risk Manager

    ✨Tip Number 1

    Network like a pro! Get out there and connect with folks in the industry. Attend events, webinars, or even local meetups. The more people you know, the better your chances of landing that dream job.

    ✨Tip Number 2

    Show off your skills! Create a portfolio or a personal website showcasing your projects and achievements. This is a great way to demonstrate your expertise in technology, resilience, and security risk management.

    ✨Tip Number 3

    Prepare for interviews like it’s game day! Research the company, understand their values, and be ready to discuss how your experience aligns with their goals. Practice common interview questions to boost your confidence.

    ✨Tip Number 4

    Don’t forget to apply through our website! We’ve got loads of opportunities waiting for you. Plus, applying directly can sometimes give you an edge over other candidates.

    We think you need these skills to ace Technology, Resilience and Security Risk Manager

    IT Governance
    Risk Management
    Cyber Security
    Information Security
    Regulatory Compliance
    Data Analysis
    Communication Skills
    Project Management
    Stakeholder Engagement
    Gap Analysis
    KPI Development
    Report Writing
    Continuous Improvement
    Collaboration
    Understanding of ISO27001

    Some tips for your application 🫡

    Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in IT governance and risk management. Use keywords from the job description to show that you understand what we're looking for.

    Showcase Your Skills: Don’t just list your skills; provide examples of how you've applied them in previous roles. Whether it’s developing governance frameworks or managing risk reports, we want to see your practical experience.

    Be Clear and Concise: When writing your application, keep it straightforward. Use clear language and avoid jargon unless it's relevant. We appreciate a well-structured application that gets straight to the point.

    Apply Through Our Website: We encourage you to submit your application through our website. It’s the best way to ensure your application gets seen by the right people. Plus, it makes the process smoother for everyone involved!

    How to prepare for a job interview at Close Brothers Group

    ✨Know Your Frameworks

    Familiarise yourself with industry-standard frameworks like ISO27001, NIST, and COBIT. Be ready to discuss how these frameworks can be applied to enhance TrinityBridge's IT Governance and security strategies.

    ✨Showcase Your Analytical Skills

    Prepare to demonstrate your ability to analyse existing governance structures and identify gaps. Bring examples of past experiences where you successfully closed gaps or improved processes in risk management.

    ✨Communicate Clearly

    Practice articulating complex risk and compliance concepts in a straightforward manner. You’ll need to convey information effectively to the C-suite, so focus on clarity and conciseness in your responses.

    ✨Emphasise Collaboration

    Highlight your experience working with cross-functional teams. Discuss how you’ve built relationships across departments to ensure adherence to governance frameworks and foster a culture of continuous improvement.

    Technology, Resilience and Security Risk Manager
    Close Brothers Group

    Land your dream job quicker with Premium

    You’re marked as a top applicant with our partner companies
    Individual CV and cover letter feedback including tailoring to specific job roles
    Be among the first applications for new jobs with our AI application
    1:1 support and career advice from our career coaches
    Go Premium

    Money-back if you don't land a job in 6-months

    C
    Similar positions in other companies
    UK’s top job board for Gen Z
    discover-jobs-cta
    Discover now
    >