At a Glance
- Tasks: Join our team to manage Information Security risks and deliver key projects.
- Company: Be part of the European Bank for Reconstruction and Development, driving economic growth.
- Benefits: Enjoy a diverse work culture, flexible hours, and impactful projects.
- Why this job: Make a real difference in cybersecurity while working in a dynamic international environment.
- Qualifications: Bachelor’s or Master’s in IT/Security, plus relevant IS qualifications and experience.
- Other info: We value diversity and encourage all qualified candidates to apply.
The predicted salary is between 36000 - 60000 £ per year.
We are looking for a highly skilled Information Security and Supplier Assurance Consultant to join our Operational Risk Management (ORM) team at the European Bank for Reconstruction and Development (EBRD). This is a unique opportunity to play a vital role in protecting the EBRD’s Information Assets and IT Facilities, supporting the delivery of critical projects, and shaping our security and risk governance across the Bank.
Your Role and Purpose
As an Information Security and Supplier Assurance Consultant, you will support the Head of Information Security in managing Information Security (IS) risks across the Bank. You will be responsible for:
- Delivering key IS projects and driving supplier and project security assurance activities.
- Reviewing and updating IS policies, procedures, and the broader Information Security Framework.
- Providing technical security consultancy and managing risk assessments, including third-party and cybersecurity risks.
- Ensuring regulatory compliance and supporting internal/external reviews.
Key Responsibilities
- Act as the Bank’s IS technical consultant on Supplier and Project Assurance activities.
- Oversee the administration of the SureCloud platform and baseline control set maintenance.
- Lead security triaging and approvals of new projects and suppliers.
- Conduct security assessments and technical risk evaluations.
- Liaise with IT and MSSP teams to identify and remediate security risks/incidents.
- Draft reports, risk register updates, and maintain documentation aligned with best practice (ISO 27001, NIST CSF).
- Track and advise on industry security trends and their implications.
- Contribute to social engineering assessments, BAU risk mitigation, and business process evaluations.
- Influence and support change by aligning policy updates with new regulations and business needs.
What We’re Looking For
- A Bachelor’s or Master’s degree (preferably in IT, Security, or Risk).
- At least one recognised IS qualification (CISM, CISA, CISSM, ISO 27001 Lead Auditor/Implementer, CIPP/E).
- Proven experience in delivering project and supplier assurance activities in the IS domain.
- Strong written and verbal communication skills, especially the ability to translate technical details into business-friendly language.
- Effective project management and stakeholder engagement abilities.
- Ability to work independently, manage multiple priorities, and maintain high attention to detail.
- A collaborative mindset with strong influencing and problem-solving capabilities.
Why Join EBRD?
Working with us means contributing to projects that promote economic transition and sustainable growth. You'll be part of a diverse, mission-driven team with a real-world impact across the EBRD’s regions. In this role, you’ll be at the heart of strengthening our cybersecurity and information resilience in a dynamic, international environment.
What is it like to work at the EBRD?
Our agile and innovative approach is what makes life at the EBRD a unique experience! You will be part of a pioneering and diverse international organisation, and use your talents to make a real difference to people's lives and help shape the future of the regions we invest in. The EBRD environment provides you with:
- Varied, stimulating and engaging work that gives you an opportunity to interact with a wide range of experts in the financial, political, public and private sectors across the regions we invest in;
- A working culture that embraces inclusion and celebrates diversity;
- An environment that places sustainability, equality and digital transformation at the heart of what we do.
Diversity is one of the Bank’s core values which are at the heart of everything it does. A diverse workforce with the right knowledge and skills enables connection with our clients, brings pioneering ideas, energy and innovation. The EBRD staff is characterised by its rich diversity of nationalities, cultures and opinions and we aim to sustain and build on this strength. As such, the EBRD seeks to ensure that everyone is treated with respect and given equal opportunities and works in an inclusive environment. The EBRD encourages all qualified candidates who are nationals of the EBRD member countries to apply regardless of their racial, ethnic, religious and cultural background, gender, sexual orientation or disabilities. As an inclusive employer, we promote flexible working and expect our employees to attend the office 50% of their working time.
Please note, that due to the high volume of applications received, we regret to inform you that we are unable to provide detailed feedback to candidates who have not been shortlisted.
Information Security and Supplier Assurance Consultant employer: European Bank for Reconstruction and Development
Contact Detail:
European Bank for Reconstruction and Development Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security and Supplier Assurance Consultant
✨Tip Number 1
Familiarise yourself with the latest trends in information security and supplier assurance. Being able to discuss current challenges and solutions in the field during your interview will demonstrate your expertise and passion for the role.
✨Tip Number 2
Network with professionals in the information security domain, especially those who have experience in project and supplier assurance. Engaging with industry experts can provide you with insights and potentially valuable connections that may help you stand out.
✨Tip Number 3
Prepare to showcase your project management skills by thinking of specific examples where you've successfully managed multiple priorities or led a team. This will highlight your ability to handle the responsibilities outlined in the job description.
✨Tip Number 4
Research the EBRD's mission and values thoroughly. Understanding their commitment to sustainability and diversity will allow you to align your answers with their organisational culture during the interview process.
We think you need these skills to ace Information Security and Supplier Assurance Consultant
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in information security and supplier assurance. Use keywords from the job description, such as 'risk assessments', 'technical consultancy', and 'project management' to demonstrate your fit for the role.
Craft a Compelling Cover Letter: In your cover letter, explain why you are passionate about information security and how your background aligns with the EBRD's mission. Mention specific projects or experiences that showcase your skills in managing IS risks and delivering assurance activities.
Showcase Your Qualifications: Clearly list your educational qualifications and any recognised IS certifications (like CISM or ISO 27001) in your application. This will help the hiring team quickly see that you meet the essential criteria for the position.
Demonstrate Communication Skills: Since strong written and verbal communication skills are crucial for this role, ensure your application is well-structured and free of jargon. Use clear language to convey your technical expertise and ability to translate complex information into business-friendly terms.
How to prepare for a job interview at European Bank for Reconstruction and Development
✨Understand the Role
Make sure you thoroughly understand the responsibilities of an Information Security and Supplier Assurance Consultant. Familiarise yourself with key terms like IS risks, supplier assurance, and regulatory compliance to demonstrate your knowledge during the interview.
✨Showcase Relevant Experience
Prepare to discuss your previous experience in delivering project and supplier assurance activities. Highlight specific examples where you managed risks or conducted security assessments, as this will show your practical understanding of the role.
✨Communicate Clearly
Since strong communication skills are essential for this position, practice explaining complex technical concepts in simple terms. This will help you connect with interviewers who may not have a technical background.
✨Stay Updated on Industry Trends
Research current trends in information security and cybersecurity. Being able to discuss recent developments or challenges in the field will demonstrate your commitment to staying informed and your ability to contribute to the organisation's goals.