Information Security and Supplier Assurance Consultant
Information Security and Supplier Assurance Consultant

Information Security and Supplier Assurance Consultant

London Full-Time 43200 - 72000 £ / year (est.) No home office possible
M

At a Glance

  • Tasks: Support the Head of Information Security in managing IS risks and delivering key projects.
  • Company: Join EBRD, a diverse and inclusive employer focused on economic transition and sustainable growth.
  • Benefits: Enjoy flexible working, a vibrant culture, and the chance to make a real-world impact.
  • Why this job: Be at the forefront of cybersecurity in a dynamic international environment with a mission-driven team.
  • Qualifications: Bachelor’s or Master’s in IT/Security, plus recognised IS qualifications and relevant experience.
  • Other info: Work in a culture that celebrates diversity and promotes equal opportunities for all.

The predicted salary is between 43200 - 72000 £ per year.

We are looking for a highly skilled Information Security and Supplier Assurance Consultant to join our Operational Risk Management (ORM) team at the European Bank for Reconstruction and Development (EBRD). This is a unique opportunity to play a vital role in protecting the EBRD’s Information Assets and IT Facilities, supporting the delivery of critical projects, and shaping our security and risk governance across the Bank.

Your Role and Purpose

As an Information Security and Supplier Assurance Consultant, you will support the Head of Information Security in managing Information Security (IS) risks across the Bank. You will be responsible for:

  • Delivering key IS projects and driving supplier and project security assurance activities.
  • Reviewing and updating IS policies, procedures, and the broader Information Security Framework.
  • Providing technical security consultancy and managing risk assessments, including third-party and cybersecurity risks.
  • Ensuring regulatory compliance and supporting internal/external reviews.

Key Responsibilities

  • Act as the Bank’s IS technical consultant on Supplier and Project Assurance activities.
  • Oversee the administration of the SureCloud platform and baseline control set maintenance.
  • Lead security triaging and approvals of new projects and suppliers.
  • Conduct security assessments and technical risk evaluations.
  • Liaise with IT and MSSP teams to identify and remediate security risks/incidents.
  • Draft reports, risk register updates, and maintain documentation aligned with best practice (ISO 27001, NIST CSF).
  • Track and advise on industry security trends and their implications.
  • Contribute to social engineering assessments, BAU risk mitigation, and business process evaluations.
  • Influence and support change by aligning policy updates with new regulations and business needs.

What We’re Looking For

  • A Bachelor’s or Master’s degree (preferably in IT, Security, or Risk).
  • At least one recognised IS qualification (CISM, CISA, CISSM, ISO 27001 Lead Auditor/Implementer, CIPP/E).
  • Proven experience in delivering project and supplier assurance activities in the IS domain.
  • Strong written and verbal communication skills, especially the ability to translate technical details into business-friendly language.
  • Effective project management and stakeholder engagement abilities.
  • Ability to work independently, manage multiple priorities, and maintain high attention to detail.
  • A collaborative mindset with strong influencing and problem-solving capabilities.

Why Join EBRD?

Working with us means contributing to projects that promote economic transition and sustainable growth. You'll be part of a diverse, mission-driven team with a real-world impact across the EBRD’s regions. In this role, you’ll be at the heart of strengthening our cybersecurity and information resilience in a dynamic, international environment.

The EBRD Environment Provides You With

  • Varied, stimulating and engaging work that gives you an opportunity to interact with a wide range of experts in the financial, political, public and private sectors across the regions we invest in;
  • A working culture that embraces inclusion and celebrates diversity;
  • An environment that places sustainability, equality and digital transformation at the heart of what we do.

Diversity is one of the Bank’s core values which are at the heart of everything it does. A diverse workforce with the right knowledge and skills enables connection with our clients, brings pioneering ideas, energy and innovation. The EBRD staff is characterised by its rich diversity of nationalities, cultures and opinions and we aim to sustain and build on this strength. As such, the EBRD seeks to ensure that everyone is treated with respect and given equal opportunities and works in an inclusive environment. The EBRD encourages all qualified candidates who are nationals of the EBRD member countries to apply regardless of their racial, ethnic, religious and cultural background, gender, sexual orientation or disabilities. As an inclusive employer, we promote flexible working and expect our employees to attend the office 50% of their working time.

Information Security and Supplier Assurance Consultant employer: myGwork - LGBTQ+ Business Community

At EBRD, we pride ourselves on being an inclusive employer that champions diversity and sustainability. As an Information Security and Supplier Assurance Consultant in London, you will engage in meaningful work that not only enhances your professional growth but also contributes to impactful projects across the regions we serve. Our dynamic work culture fosters collaboration and innovation, ensuring that every team member has the opportunity to make a real difference while enjoying a flexible working environment.
M

Contact Detail:

myGwork - LGBTQ+ Business Community Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security and Supplier Assurance Consultant

✨Tip Number 1

Familiarise yourself with the latest trends in information security and supplier assurance. Being knowledgeable about current threats and best practices will not only help you in interviews but also demonstrate your commitment to the field.

✨Tip Number 2

Network with professionals in the information security sector, especially those who work at EBRD or similar organisations. Engaging in conversations can provide insights into the company culture and expectations, which can be invaluable during the interview process.

✨Tip Number 3

Prepare to discuss specific projects where you've successfully managed information security risks. Highlighting your hands-on experience with risk assessments and compliance will set you apart from other candidates.

✨Tip Number 4

Showcase your ability to communicate complex technical details in a business-friendly manner. This skill is crucial for the role, so practice explaining your past experiences in a way that non-technical stakeholders can easily understand.

We think you need these skills to ace Information Security and Supplier Assurance Consultant

Information Security Management
Supplier Assurance
Risk Assessment
Cybersecurity Risk Management
Regulatory Compliance
Technical Security Consultancy
Project Management
Stakeholder Engagement
ISO 27001
NIST Cybersecurity Framework
Strong Written and Verbal Communication
Attention to Detail
Problem-Solving Skills
Ability to Work Independently
Collaboration and Influencing Skills

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in information security and supplier assurance. Use keywords from the job description to demonstrate that you meet the specific requirements of the role.

Craft a Compelling Cover Letter: Write a cover letter that not only outlines your qualifications but also explains why you are passionate about working with EBRD. Mention how your skills align with their mission and values, particularly in promoting diversity and inclusion.

Showcase Your Qualifications: Clearly list your educational background and any relevant certifications (like CISM or ISO 27001) in your application. This will help the hiring team quickly see that you have the necessary credentials for the role.

Demonstrate Communication Skills: Since strong written communication is essential for this role, ensure your application is well-structured and free of errors. Use clear language to convey your technical expertise in a way that is accessible to non-technical stakeholders.

How to prepare for a job interview at myGwork - LGBTQ+ Business Community

✨Understand the Role

Make sure you thoroughly understand the responsibilities of an Information Security and Supplier Assurance Consultant. Familiarise yourself with key terms like risk assessments, cybersecurity, and supplier assurance to demonstrate your knowledge during the interview.

✨Showcase Relevant Experience

Prepare to discuss your previous experience in delivering project and supplier assurance activities. Be ready to provide specific examples that highlight your skills in managing information security risks and compliance with regulations.

✨Communicate Clearly

Since strong communication skills are essential for this role, practice explaining complex technical concepts in simple terms. This will help you connect with interviewers who may not have a technical background.

✨Stay Updated on Industry Trends

Research current trends in information security and be prepared to discuss how they might impact the EBRD. Showing that you are proactive about staying informed will demonstrate your commitment to the field.

Information Security and Supplier Assurance Consultant
myGwork - LGBTQ+ Business Community
M
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>