IT Risk Manager in London

IT Risk Manager in London

London Full-Time 48000 - 84000 Β£ / year (est.) No home office possible
C

At a Glance

  • Tasks: Manage IT and data risks while ensuring compliance with industry standards.
  • Company: Join Collinson, a global leader in travel experiences and customer engagement.
  • Benefits: Enjoy competitive salary, flexible working, and opportunities for personal growth.
  • Why this job: Make a real impact in a fast-paced environment focused on innovation and customer satisfaction.
  • Qualifications: Experience in IT risk management and strong communication skills are essential.
  • Other info: Be part of a diverse team dedicated to doing good beyond profit.

The predicted salary is between 48000 - 84000 Β£ per year.

We use our expertise and products to craft customer experiences. Our range of services helps global brands acquire, engage and retain choice-rich customers. Collinson is the global, privately-owned company dedicated to helping the world to travel with ease and confidence. The group offers a unique blend of industry and sector specialists who together provide market-leading airport experiences, loyalty and customer engagement, and insurance solutions for over 400 million consumers. Collinson is the operator of Priority Pass, the world’s original and leading airport experiences programme. Travellers can access a network of 1,500+ lounges and travel experiences, including dining, retail, sleep and spa, in over 650 airports in 148 countries, helping to elevate the journey into something special.

Purpose of the job: This role is a key part of the First Line of Defence (FLOD) for Collinson Insurance. Its purpose is to ensure IT and data risks are assessed, managed, and mitigated in line with regulatory requirements and best practice.

  • Key Responsibilities:
  • FLOD Accountability: Own all FLOD activities, processes, and improvements for technology and data assets, collaborating with relevant stakeholders.
  • Control Design & Assurance: Ensure internal controls for IT and data risks are designed, implemented, and maintained. Provide assurance of control effectiveness through indicators and reviews.
  • Reporting: Deliver regular updates on IT and data control health to committees, boards, and relevant third parties.
  • Education & Consultation: Advise on best practice control design and risk management across technology, product, and service teams.
  • Risk Assessment: Conduct focused risk assessments for new and existing services and technologies.
  • Agile Engagement: Participate in planning and design sessions, helping prioritise IT, security, and data risk items.
  • Policy & Control Implementation: Identify and implement appropriate controls, maintain draft policies, and improve risk posture through remediation and mitigation strategies.
  • Collaboration: Work closely with Group CISO, Insurance and Group Risk & Compliance, and Internal Audit teams.
  • Continuous Improvement: Stay updated on regulatory and industry changes, mature the IT and data risk framework, and pursue recognised accreditations.
  • Incident Management: Ensure robust security and data incident practices, lead resolution of priority incidents (P1/P2), and coordinate with internal and external stakeholders.

Knowledge, skills and experience required:

  • Strong practical knowledge of IT security technologies and business solutions, including firewalls, IDS/IPS, identity and access management, SIEM, remote working, and cloud technologies (AWS and Azure).
  • Solid understanding of application security threats, current and emerging information security risks, and organisational challenges in addressing them.
  • In-depth knowledge of IT risk frameworks and experience deploying them for business advancement, regulatory compliance, and security management (e.g., ISO 27000, COBIT, NIST 800).
  • Familiarity with legislation and regulations impacting information security, such as GDPR.
  • Ability to work within and leverage a security framework for continuous improvement.
  • Demonstrable experience in a First Line of Defence (FLOD) role, ideally as an IT Risk Analyst or Manager in a regulated industry (preferably Insurance).
  • Proven track record of delivering continuous improvements in IT and Data Risk areas.
  • Comfortable operating in a fast-paced, commercially focused environment.
  • Strong communication skills to explain security and risk concepts to both technical and non-technical audiences.
  • Ability to build relationships, influence decisions, and overcome organisational barriers to achieve goals.
  • Excellent analytical skills, with the ability to challenge norms and take a pragmatic approach, balancing commercial needs with security and data protection requirements.
  • Ability to identify, assess, and communicate risks, driving objective, fact-based decisions that optimise risk mitigation and business performance.
  • Professional certifications such as CISSP, CISM, and/or CISA are desirable.

Personal Specification:

  • Ability to manage multiple tasks simultaneously, prioritise effectively, and break work into manageable parts.
  • Strong decision-making, problem-solving, and troubleshooting skills, with sound judgement and a sense of urgency.
  • Innovative thinker with the ability to generate original ideas and apply creative solutions.
  • Clear understanding of business needs and commitment to delivering high-quality, efficient service.
  • Skilled at influencing others, building positive relationships, and managing stakeholder engagement at all levels.
  • Excellent communication skills (written and spoken English), with the ability to present, guide, and bridge technical and business discussions.
  • Personable, enthusiastic, and adaptable, thriving in a fast-paced, changing environment.
  • Comfortable working independently, showing initiative, and taking on varied responsibilities.
  • Strong ethical standards, integrity, and commitment to compliance and business values.
  • Ability to collaborate effectively with teams, business units, and technology partners.

Collinson is an equal opportunity employer and welcomes differences in all their forms including: colour, race, ethnicity, gender identity, sexual orientation, neurodivergence, family status, age, individuals with disabilities and people from all backgrounds, cultures and experiences as we strongly believe this contributes to our on-going success.

We are focused on continually evolving our purpose driven, high performing culture, providing an environment where our people have the opportunity to achieve their full potential and do interesting and meaningful work. Our company values are: Take Action, Do the right thing, One team and Be insight led. These help guide everything we do internally in terms of how we think, act and interact, right through to how we deliver value to our customers and clients.

IT Risk Manager in London employer: Collinson

Collinson is an exceptional employer that prioritises innovation and employee growth, offering a dynamic work culture where diverse talents thrive. Located in the heart of London, our team enjoys access to a vibrant city while contributing to meaningful projects that enhance global travel experiences. With a commitment to professional development and a focus on doing good beyond profit, we empower our employees to achieve their full potential in a supportive and inclusive environment.
C

Contact Detail:

Collinson Recruiting Team

StudySmarter Expert Advice 🀫

We think this is how you could land IT Risk Manager in London

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their mission and values, especially how they align with your own. This will help you stand out and show that you're genuinely interested in being part of their team.

✨Tip Number 3

Practice common interview questions and scenarios related to IT risk management. Use the STAR method (Situation, Task, Action, Result) to structure your answers. This will help you articulate your experience clearly and confidently.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who take the initiative to engage directly with us.

We think you need these skills to ace IT Risk Manager in London

IT Security Technologies
Firewalls
IDS/IPS
Identity and Access Management
SIEM
Cloud Technologies (AWS and Azure)
Application Security Threats
IT Risk Frameworks (ISO 27000, COBIT, NIST 800)
GDPR Compliance
First Line of Defence (FLOD) Experience
Analytical Skills
Communication Skills
Problem-Solving Skills
Stakeholder Engagement
Professional Certifications (CISSP, CISM, CISA)

Some tips for your application 🫑

Tailor Your CV: Make sure your CV is tailored to the IT Risk Manager role. Highlight relevant experience and skills that match the job description, especially around IT security technologies and risk management frameworks.

Craft a Compelling Cover Letter: Your cover letter should tell us why you're the perfect fit for this role. Share specific examples of how you've managed IT risks in the past and how you can contribute to our mission at Collinson.

Showcase Your Communication Skills: Since you'll be explaining complex security concepts to both technical and non-technical audiences, make sure your application reflects your strong communication skills. Use clear and concise language throughout.

Apply Through Our Website: We encourage you to apply directly through our website. This way, your application will go straight to us, and we can review it promptly. Plus, it shows you're keen on joining our team!

How to prepare for a job interview at Collinson

✨Know Your Stuff

Make sure you brush up on your knowledge of IT security technologies and risk frameworks like ISO 27000 or NIST 800. Be ready to discuss how you've applied these in past roles, especially in a FLOD context.

✨Showcase Your Communication Skills

Since you'll need to explain complex security concepts to both technical and non-technical audiences, practice articulating your thoughts clearly. Use examples from your experience to demonstrate how you've successfully communicated risks and solutions.

✨Be Ready for Scenario Questions

Prepare for situational questions that assess your problem-solving skills. Think about past incidents you've managed and how you approached them, focusing on your decision-making process and the outcomes.

✨Align with Company Values

Familiarise yourself with Collinson's values: Take Action, Do the Right Thing, One Team, and Be Insight Led. Be prepared to share how your personal values align with theirs and how you can contribute to their mission of delivering superior customer experiences.

IT Risk Manager in London
Collinson
Location: London

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

C
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>