At a Glance
- Tasks: Lead risk management initiatives and advise senior leaders on security risks.
- Company: Join Lloyds Banking Group, dedicated to helping Britain prosper and fostering an inclusive culture.
- Benefits: Enjoy a generous pension, performance bonuses, flexible benefits, and up to 30 days holiday.
- Why this job: Be part of a transformative journey, making a real impact on customers and communities.
- Qualifications: Expertise in security risk management, with knowledge of frameworks like ISMS and MITRE ATT&CK required.
- Other info: Work in a diverse environment that values your ideas and encourages continuous learning.
The predicted salary is between 70000 - 85000 £ per year.
Salary: £83,411 – £98,130
Location: Bristol, Edinburgh, Leeds, Halifax, Manchester, Birmingham or Chester
Hours: Full time
Working Pattern: At least two days per week (or 40% of your time) at one of our offices listed above.
About this opportunity
We’re on an exciting journey and there couldn’t be a better time to join us. We’re putting in place a fresh operating model for non-financial risk management across the Group, empowering our people to take end-to-end accountability for managing the risks that they face! We’re looking for a Senior Security Risk Specialist to support the leading and development of its risk specialist centre of excellence, to support robust risk management in alignment with the Group’s Enterprise Risk Management Framework (ERMF). This will include giving our senior leaders and Risk Owners of the Group businesses advice on their risk decisions, safely, and at pace.
To assure our Group’s strategic transformation on this scale we need you to have a breadth and depth of knowledge in current tech, and we want you to be passionate about its application and how we manage its risk; prepare to disrupt the norm in the pursuit of the best possible customer and staff experience. You should have people at your heart; we strive for excellent customer experience but to achieve this we focus on our people – building a culture around continued learning and support so everyone can feel bold to share new ideas and solutions.
What you’ll need
- Detailed knowledge of the key security risks facing a financial services group, with a proven ability to assess and manage security risk and threats (e.g. using ISMS, MITRE ATT&CK, PASTA/STRIDE/DREAD frameworks and methodologies), set policy and manage compliance, design controls, provide assurance oversight and challenge, and offer advice balancing risk and reward.
- Experienced in the domains of information, cyber and physical security, with applied knowledge across key elements including identity and access management, data security, threat and vulnerability management, security architecture and design, security engineering and application development (inc. DevSecOps), cloud services and shared responsibility models (inc. native and microservices architecture), infrastructure security, people security, cryptography, security operations, and physical and environmental security.
- Demonstrable curiosity and understanding of the emerging technologies shaping the risk landscape (inc. AI, Digital Ledger Technology, Quantum).
- Considered a deep subject matter expert with a strong depth of understanding of the latest Operational Risk frameworks and technology being used across financial and non-financial services to enable them to lead a specialist risk centre of excellence.
- Demonstrates good and timely decision making that keeps the organisation moving forward and skilfully balances difficult trade-offs with the ability to understand business strategy and opportunity risks.
- Has examples where they have assimilated different sources of data and complex information to effectively problem solve and make relevant conclusions and recommendations.
- Demonstrates ability to interpret new operational risk regulation, emerging risks and technology innovations with forethinking to anticipate the impact of changes on the Group and act accordingly.
- Has acted as a Risk Specialist business partner, using strong communication skills to build partnerships and work collaboratively with others, including Risk Owner, Control Owner and Control Office to meet shared objectives.
- Able to work effectively with all other lines of defence and understands the different but complimentary roles.
- Seen as the primary Operational Risk specialist and expert across the Group to help deliver against aligned customer, business and strategic outcomes.
- Has examples of building effective, ongoing data-led Operational Risk control objectives working with others, including external regulators.
- Inspires others by gaining followership and commitment to future action through personal integrity and collaboration, demonstrating an inclusive approach.
- Coaches to go faster by demonstrating commitment to create an environment that builds teams with skills aligned to our Group Strategy and Purpose creating new and better ways for the organisation to change at pace.
About working for us
Our focus is to ensure we’re inclusive every day, building an organisation that reflects modern society and celebrates diversity in all its forms. We want our people to feel that they belong and can be their best, regardless of background, identity, or culture.
We also offer a wide-ranging benefits package, which includes:
- A generous pension contribution of up to 15%
- An annual performance-related bonus
- Share schemes including free shares
- Benefits you can adapt to your lifestyle, such as discounted shopping
- Up to 30 days holiday, with bank holidays on top
- A range of wellbeing initiatives and generous parental leave policies.
Want to do amazing work, that’s interesting and makes a difference to millions of people? Join our journey.
At Lloyds Banking Group, we’re driven by a clear purpose; to help Britain prosper. Across the Group, our colleagues are focused on making a difference to customers, businesses and communities.
We keep your data safe. So, we’ll only ever ask you to provide confidential or sensitive information once you have formally been invited along to an interview or accepted a verbal offer to join us which is when we run our background checks.
We’re focused on creating a values-led culture and are committed to building a workforce which reflects the diversity of the customers and communities we serve. Together we’re building a truly inclusive workplace where all of our colleagues have the opportunity to make a real difference.
Senior Manager Security Risk Specialist employer: Cyber UK
Contact Detail:
Cyber UK Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Manager Security Risk Specialist
✨Tip Number 1
Familiarise yourself with the latest security frameworks and methodologies mentioned in the job description, such as ISMS and MITRE ATT&CK. Being able to discuss these frameworks confidently during your interview will demonstrate your expertise and alignment with our needs.
✨Tip Number 2
Showcase your understanding of emerging technologies like AI and Quantum that are shaping the risk landscape. Prepare examples of how you've applied this knowledge in previous roles to highlight your forward-thinking approach.
✨Tip Number 3
Emphasise your experience in building partnerships and collaborating with various stakeholders. Be ready to share specific instances where your communication skills helped achieve shared objectives, as this is crucial for the role.
✨Tip Number 4
Prepare to discuss how you've managed complex information and made data-driven decisions in past roles. Providing concrete examples will illustrate your problem-solving abilities and decision-making skills, which are key for this position.
We think you need these skills to ace Senior Manager Security Risk Specialist
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience and skills relevant to the role of Senior Manager Security Risk Specialist. Focus on your knowledge of security risks, frameworks like ISMS and MITRE ATT&CK, and any leadership roles you've held.
Craft a Compelling Cover Letter: In your cover letter, express your passion for risk management and how your background aligns with the company's goals. Mention specific examples of how you've successfully managed security risks and contributed to team success.
Showcase Relevant Experience: When detailing your work history, emphasise your experience in information, cyber, and physical security. Include any specific projects or initiatives where you demonstrated your ability to assess and manage security risks effectively.
Highlight Soft Skills: Don't forget to mention your communication and collaboration skills. The role requires working closely with various stakeholders, so provide examples of how you've built partnerships and inspired teams in previous positions.
How to prepare for a job interview at Cyber UK
✨Showcase Your Expertise
As a Senior Manager Security Risk Specialist, it's crucial to demonstrate your deep knowledge of security risks in financial services. Be prepared to discuss specific frameworks like ISMS and MITRE ATT&CK, and provide examples of how you've successfully managed security threats in the past.
✨Emphasise Collaboration Skills
This role requires strong communication and partnership skills. Highlight your experience working with various stakeholders, such as Risk Owners and Control Owners, and share examples of how you've built effective relationships to achieve shared objectives.
✨Demonstrate Problem-Solving Abilities
Prepare to discuss instances where you've assimilated complex data to solve problems effectively. Use specific examples to illustrate your decision-making process and how you balanced risk and reward in challenging situations.
✨Stay Current with Emerging Technologies
The interviewers will be interested in your understanding of emerging technologies like AI and Quantum. Be ready to discuss how these technologies impact the risk landscape and how you've adapted your strategies accordingly.