Information Security Assurance Manager in Westminster
Information Security Assurance Manager

Information Security Assurance Manager in Westminster

Westminster Full-Time 48000 - 72000 £ / year (est.) No home office possible
M

At a Glance

  • Tasks: Lead information security audits and ensure compliance with regulations and standards.
  • Company: Join Modulr, a fintech innovator transforming embedded payments for businesses.
  • Benefits: Enjoy share options, flexible benefits, 33 days holiday, and wellbeing support.
  • Why this job: Make a real impact in a fast-paced environment while enhancing your career in security assurance.
  • Qualifications: Experience in information security assurance and strong communication skills required.
  • Other info: Dynamic team culture with ongoing learning opportunities and company-wide events.

The predicted salary is between 48000 - 72000 £ per year.

Responsibilities

  • Lead and complete information security assurance activities in support of internal audits, external audits, certifications, and regulatory reviews.
  • Act as the primary information security point of contact for internal audit, external auditors, and regulators.
  • Plan information security audit scope, timelines, and evidence requirements in collaboration with governance and delivery teams.
  • Coordinate and run information security control walkthroughs, interviews, and technical deep dives with engineering, platform, and operations teams.
  • Review, validate, and challenge information security control evidence to ensure it is accurate, complete, and auditable.
  • Independently assess the design and operating effectiveness of information security controls against governance owned policies, standards, and regulatory expectations.
  • Produce clear information security assurance findings and audit reports for technical, executive, and regulatory audiences.
  • Identify and communicate information security control observations and assurance outcomes to the security governance to inform governance led risk assessment and decision making.
  • Track information security audit findings through to closure, validating remediation implementation without owning delivery.
  • Identify recurring or systemic information security control observations and elevate them through agreed governance forums.
  • Act as a pragmatic but independent assurance partner, ensuring information security assurance activity enables compliant, well controlled delivery.

Qualifications

  • Significant experience in information security assurance, audit, or second line security roles within a regulated environment.
  • Proven experience leading internal and external information security audits end to end, including direct interaction with auditors and regulators.
  • Strong understanding of information security control design and operating effectiveness, particularly across cloud, SaaS, identity, and modern application environments.
  • Experience assessing security controls against regulatory requirements and recognised frameworks such as PCI-DSS, ISO 27001, SOC 2, or equivalent.
  • Ability to critically assess audit evidence, identify gaps or weaknesses, and challenge findings constructively using facts and documentation.
  • Clear understanding of the separation between assurance, governance, and delivery, and the discipline to maintain independence.
  • Strong written and verbal communication skills, with the ability to explain assurance findings clearly to both technical teams and senior stakeholders.
  • Confidence operating autonomously, managing multiple audits or assurance activities in parallel without loss of quality.

Nice to haves

  • Experience working in fintech, financial services, or similarly regulated environments.
  • Direct experience supporting regulatory reviews, supervisory visits, or thematic inspections.
  • Prior exposure to internal audit functions or working as a second line assurance partner to internal audit.
  • Familiarity with multiple security and risk frameworks and how auditors interpret them in practice.
  • Experience pushing back on auditors with evidence while maintaining constructive relationships.
  • Professional certifications in information security, assurance, or audit (e.g. CISM, CISSP, CISA), without being framework driven.
  • Experience operating in fast moving technology environments where assurance must be risk based and pragmatic, not checkbox led.

Company Overview

Our vision is a world where all businesses are powered by embedded payments. Modulr enables businesses, from SMEs to Enterprise, to grow their revenue, drive efficiencies and deliver fantastic customer experiences, by embedding payments into their products and operating systems. We do this by providing products and services which allow our clients to efficiently collect, reconcile and disburse funds instantly via a range of payment schemes, accounts, and card products, fully controllable via API.

Benefits

  • Share Options - We offer a Company Share Option Plan (CSOP), giving you the opportunity to benefit from any increase in share value in the event of a sale, merger, or flotation.
  • Bonus - Our annual discretionary bonus, paid in May for the previous year, is based on both company and individual performance.
  • Flexible benefits - £1000 to spend on benefits to suit you, including private medical insurance, gym membership, dental etc.
  • Wellbeing app - confidential, on-demand access to therapy, coaching, counselling, management training or mindfulness sessions with accredited professionals, with company-funded hours and top-up options available.
  • Holidays - 33 days annual leave (including bank holidays) plus your birthday off. In the UK, Christmas Day, Boxing Day, and New Year's Day are fixed holidays. You can choose the remaining days to suit your personal schedule.
  • Learning opportunities- Our two-day onboarding program, ModStart, helps equip you for success. Learning doesn't stop there; we'll continue to support your development through various channels.
  • Company-Wide Events - Participate in collaborative and engaging events with colleagues across the business.
  • Bike to work / E-bike scheme.

Information Security Assurance Manager in Westminster employer: Modulr

Modulr is an exceptional employer that prioritises employee well-being and professional growth, offering a generous benefits package including share options, flexible benefits, and 33 days of annual leave. Our collaborative work culture fosters innovation and engagement, while our commitment to continuous learning ensures that you will thrive in your role as an Information Security Assurance Manager. Join us in a dynamic environment where your contributions directly impact the future of embedded payments.
M

Contact Detail:

Modulr Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Assurance Manager in Westminster

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their values and how they align with your experience in information security assurance. This will help you tailor your responses and show you're a great fit!

✨Tip Number 3

Practice your communication skills! Be ready to explain complex security concepts in simple terms. This is crucial when talking to both technical teams and senior stakeholders during interviews.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are genuinely interested in joining our mission at Modulr.

We think you need these skills to ace Information Security Assurance Manager in Westminster

Information Security Assurance
Internal Audits
External Audits
Regulatory Reviews
Audit Scope Planning
Control Walkthroughs
Technical Deep Dives
Control Evidence Validation
Design and Operating Effectiveness Assessment
Regulatory Requirements Assessment
Communication Skills
Independence in Assurance Activities
Risk-Based Assurance
Professional Certifications (CISM, CISSP, CISA)
Experience in Regulated Environments

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in information security assurance. We want to see how your skills align with the responsibilities listed in the job description, so don’t hold back!

Showcase Your Achievements: When detailing your past roles, focus on specific achievements that demonstrate your ability to lead audits and manage security controls. Use metrics where possible to quantify your impact – it really helps us see your value!

Be Clear and Concise: We appreciate clarity! Ensure your written application is easy to read and free from jargon. Use straightforward language to explain your experience and findings, as this will resonate well with both technical and non-technical audiences.

Apply Through Our Website: Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it makes tracking your application a breeze!

How to prepare for a job interview at Modulr

✨Know Your Stuff

Make sure you brush up on your knowledge of information security frameworks like PCI-DSS, ISO 27001, and SOC 2. Be ready to discuss how you've applied these in past roles, especially in regulated environments. This will show that you’re not just familiar with the theory but can also put it into practice.

✨Prepare for Technical Deep Dives

Since the role involves coordinating technical walkthroughs and interviews, be prepared to dive deep into security controls. Think about specific examples from your experience where you assessed control effectiveness or identified gaps. This will demonstrate your hands-on expertise and ability to engage with technical teams.

✨Communicate Clearly

You’ll need to explain complex assurance findings to both technical and non-technical audiences. Practice articulating your thoughts clearly and concisely. Use examples to illustrate your points, and don’t shy away from discussing how you’ve communicated findings in previous audits.

✨Show Your Independence

The role requires a balance between being a partner and maintaining independence. Be ready to discuss how you’ve managed this in the past, especially when pushing back on auditors. Highlight instances where you’ve constructively challenged findings while keeping relationships intact.

Information Security Assurance Manager in Westminster
Modulr
Location: Westminster

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

M
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>