Information Security, Assistant Manager
Information Security, Assistant Manager

Information Security, Assistant Manager

Full-Time 42000 - 60000 £ / year (est.) Home office (partial)
Go Premium
I

At a Glance

  • Tasks: Protect the bank's data and systems from cyber threats while ensuring compliance with regulations.
  • Company: Join a leading bank committed to security and innovation.
  • Benefits: Enjoy 25 days leave, private medical insurance, and hybrid working options.
  • Why this job: Make a real impact in safeguarding vital information and enhancing security frameworks.
  • Qualifications: 3+ years in information security management and relevant certifications required.
  • Other info: Dynamic role with opportunities for continuous learning and career growth.

The predicted salary is between 42000 - 60000 £ per year.

The Assistant Manager Information Security will play a critical role in safeguarding the bank's information assets, infrastructure, and customer data against evolving cyber threats. This role is responsible for driving and managing information security operations, ensuring continuous monitoring, identification, and timely remediation of security vulnerabilities to uphold a resilient security posture, and provide management with up-to-date reports on the bank's security posture.

The role will proactively support the bank's compliance with UK regulatory requirements, industry standards, and best practices, while contributing to the development and enhancement of security frameworks, policies, and controls. Using strong analytical skills, deep knowledge of cyber security methodologies, and understanding of security infrastructure, including AWS cloud environments, the role will ensure the bank maintains cyber resilience, protects against financial and reputational risks, and fosters a culture of sound security across the organization.

Responsibilities

  • Strategic Responsibilities
  • Provide proactive security oversight and assurance for new initiatives and ongoing projects, ensuring that information security and regulatory requirements are embedded from design through implementation.
  • Collaborate with senior stakeholders, regulators, and external partners to align on security standards, communicate risks, and deliver solutions that balance business objectives with compliance obligations.
  • Actively participate in governance forums and internal committees, presenting emerging risks, security trends, and strategic recommendations to strengthen resilience and maintain the bank's security posture.
  • Advise on regulatory compliance requirements, data protection obligations, and breach notification processes, ensuring the bank meets FCA, PRA, PSR, and other applicable regulatory expectations.
  • Operational Responsibilities
    • Lead and conduct comprehensive information security risk assessments to identify, evaluate, and prioritize threats, ensuring effective controls are implemented and maintained.
    • Establish, document, and enforce security controls that safeguard information flows across internal systems, third parties, and public networks.
    • Develop, maintain, and execute incident response and crisis management procedures, ensuring swift and effective mitigation of security events while minimizing business disruption.
    • Monitor security operations to identify anomalies, investigate incidents, and coordinate timely remediation with internal teams and external providers.
    • Keep up-to-date with evolving threat intelligence, security breaches, and industry developments, recommending proactive remediation measures and best practices to protect the bank's systems and data.
  • Assurance & Compliance Responsibilities
    • Partner with auditors, regulators, and payment schemes by preparing evidence, delivering subject matter expertise, and supporting internal and external audits, certifications, and reviews.
    • Evaluate and enhance the effectiveness of the bank's information security policies, procedures, and controls, driving continuous improvement and compliance with internal standards and regulatory frameworks.
    • Support management reporting by providing timely, accurate, and risk-focused updates on security posture, incidents, and compliance activities.
  • General
    • Be the primary point of contact for all information security alerts and breaches within the Bank and coordinate responses via incident management protocols.
    • Daily administrative tasks, reporting, and communication with the relevant departments in the organization.
    • Maintain security records and documents of controls, security dashboards and reports.
    • Assist in conducting reviews and assessments to identify and report potential vulnerabilities, weaknesses and threats.
    • Implement, manage and monitor security controls to protect the bank's data, systems and network.
    • Ensure that the organization's data and infrastructure are protected by enabling the appropriate security controls.

    Conduct Rules

    • CONDUCT RULE 1: You must act with integrity.
    • CONDUCT RULE 2: You must act with due skill, care and diligence.
    • CONDUCT RULE 3: You must be open and cooperative with the FCA, the PRA and other regulators.
    • CONDUCT RULE 4: You must pay due regard to the interests of customers and treat them fairly.
    • CONDUCT RULE 5: You must observe proper standards of market conduct.

    Key Relationships

    • Internal Relationships
    • Information Technology
    • Risk and Compliance
    • Business departments
    • Internal forums, groups and committees
  • External Relationships / Contacts
    • Suppliers and Vendors
    • Regulators
    • Authorities and focused groups

    Confidential Information

    The holder of this job must sign a Data Confidentiality agreement. He/she shall not disclose, allow access to, transmit or transfer confidential information to a third party without prior written consent. He/she may only disclose confidential information to employees on a "need to know" basis. Prior to disclosing, issue appropriate written instructions to such employees to satisfy obligations herein and to receive and use confidential information on a confidential basis on the same conditions as contained in the agreement.

    Working Conditions

    This is an office-based role, hours are 37.5 hours per week Monday to Friday with an unpaid 60-minute break each day. The standard working pattern is 9.00am to 5.30pm.

    Mental Demands & Job Complexity

    The job holder is required to plan and organise related activities, reports and ad hoc requests, so as to accomplish the assigned task in a timely efficient manner. Planning and prioritising are the key factors in this role.

    Requirements

    • Education & Training
    • Bachelors degree in Information / Cyber Security; equivalent professional experience may be considered.
    • Relevant and specialized certifications in cybersecurity and information security. Technology-centric training and certification is an advantage.
  • Experience And Skills
    • 3+ years of proven experience in information security management, covering risk management, incident response, threat intelligence, and cyber security solutions.
    • Strong knowledge of security technologies and controls (e.g., firewalls/WAF, SIEM, anti-malware, mobile application security, IAM/PAM) with exposure to cloud security (AWS).
    • Experience conducting vulnerability assessments, penetration testing, and security evaluations, with the ability to analyse events and deliver effective remediation.
    • Solid understanding of the cyber threat landscape, incident/breach management, and industry frameworks such as ISO27001, NIST CSF, PCI-DSS and the likes.
    • Excellent analytical, communication, and stakeholder engagement skills, with the ability to influence decision-making across technical and non-technical teams.
    • Committed to continuous learning, keeping up-to-date with evolving threats, technologies, and regulatory requirements.

    Benefits

    • 25 days annual leave entitlement plus 8 bank holidays
    • Pension scheme, 4% employer contribution
    • Private Medical Insurance
    • 60-40 Hybrid working after successful probation period
    • Training and development
    • Free gym access in the building

    Information Security, Assistant Manager employer: iFAST Global Bank Limited

    As an employer, the bank offers a dynamic work environment that prioritises employee growth and development, particularly in the critical field of information security. With a strong commitment to compliance and innovation, employees benefit from a supportive culture that encourages continuous learning, alongside competitive perks such as a generous annual leave policy, private medical insurance, and hybrid working options. Located in a vibrant area, the bank fosters collaboration and engagement, making it an excellent choice for professionals seeking meaningful and rewarding careers in cybersecurity.
    I

    Contact Detail:

    iFAST Global Bank Limited Recruiting Team

    StudySmarter Expert Advice 🤫

    We think this is how you could land Information Security, Assistant Manager

    ✨Tip Number 1

    Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even local events. You never know who might have the inside scoop on job openings or can put in a good word for you.

    ✨Tip Number 2

    Don’t just apply and wait! Follow up on your applications. A quick email to check in shows your enthusiasm and keeps you on their radar. Plus, it’s a great way to ask if they need any more info from you.

    ✨Tip Number 3

    Prepare for interviews by researching the company’s security posture and recent news. Tailor your answers to show how your skills can help them tackle their specific challenges. We want to see you shine!

    ✨Tip Number 4

    Apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who take that extra step to engage with us directly.

    We think you need these skills to ace Information Security, Assistant Manager

    Information Security Management
    Risk Management
    Incident Response
    Threat Intelligence
    Cyber Security Solutions
    Security Technologies and Controls
    Vulnerability Assessments
    Penetration Testing
    Security Evaluations
    Cloud Security (AWS)
    Analytical Skills
    Communication Skills
    Stakeholder Engagement
    Regulatory Compliance
    Continuous Learning

    Some tips for your application 🫡

    Tailor Your CV: Make sure your CV is tailored to the Information Security role. Highlight your relevant experience, especially in risk management and incident response, and don’t forget to mention any certifications you have!

    Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how your skills align with our needs. Be specific about your achievements and how they relate to the job.

    Showcase Your Analytical Skills: Since this role requires strong analytical skills, make sure to include examples of how you've used these in past roles. Whether it's conducting vulnerability assessments or managing incidents, we want to see your problem-solving prowess!

    Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It’s the best way for us to receive your application and keep track of it, so don’t miss out on that opportunity!

    How to prepare for a job interview at iFAST Global Bank Limited

    ✨Know Your Stuff

    Make sure you brush up on your knowledge of information security methodologies and the latest cyber threats. Be ready to discuss specific technologies like firewalls, SIEM, and AWS cloud security, as well as frameworks like ISO27001 and NIST CSF. This will show that you're not just familiar with the basics but are genuinely engaged with the field.

    ✨Showcase Your Analytical Skills

    Prepare to demonstrate your analytical skills by discussing past experiences where you've conducted risk assessments or responded to incidents. Use specific examples to illustrate how you identified vulnerabilities and implemented effective controls. This will help the interviewers see your problem-solving abilities in action.

    ✨Engage with Stakeholders

    Since this role involves collaboration with various stakeholders, think about how you can communicate risks and solutions effectively. Prepare examples of how you've worked with different teams or external partners to align on security standards. This will highlight your ability to influence decision-making across both technical and non-technical groups.

    ✨Stay Current

    Keep yourself updated on the latest trends in cybersecurity and regulatory requirements. Mention any recent developments or news in the industry during your interview to show that you're proactive about continuous learning. This will demonstrate your commitment to maintaining a resilient security posture for the bank.

    Information Security, Assistant Manager
    iFAST Global Bank Limited
    Go Premium

    Land your dream job quicker with Premium

    You’re marked as a top applicant with our partner companies
    Individual CV and cover letter feedback including tailoring to specific job roles
    Be among the first applications for new jobs with our AI application
    1:1 support and career advice from our career coaches
    Go Premium

    Money-back if you don't land a job in 6-months

    I
    Similar positions in other companies
    UK’s top job board for Gen Z
    discover-jobs-cta
    Discover now
    >