Cyber and Technology Risk Manager - Nottingham City
Cyber and Technology Risk Manager - Nottingham City

Cyber and Technology Risk Manager - Nottingham City

Nottingham Full-Time 36000 - 60000 £ / year (est.) No home office possible
Go Premium
Nottingham Building Society

At a Glance

  • Tasks: Oversee cyber and technology risks while supporting digital transformation initiatives.
  • Company: Join Nottingham Building Society, a values-led mutual organisation.
  • Benefits: Enjoy competitive pay, 29 days holiday, and health support.
  • Why this job: Make a real impact on security and technology in a collaborative environment.
  • Qualifications: 5+ years in cyber risk; strong communication and decision-making skills required.
  • Other info: Flexible working, career growth opportunities, and a commitment to diversity.

The predicted salary is between 36000 - 60000 £ per year.

All potential applicants are encouraged to scroll through and read the complete job description before applying.

Contract type: Permanent

Hours: Full-time, 35 hours

Location: Head Office, Nottingham (Hybrid working, minimum 2 days per week)

Application process: Please apply via the application button which will direct you to our careers site. If you require any adjustments to assist you in applying, please contact Nottingham Building Society. Our talent acquisition approach is rooted in openness and inclusive hiring, so even if you don't feel you tick every box, we'd still genuinely love to hear from you.

As a Cyber and Technology Risk Manager, you'll operate as part of our second line of defence, providing expert oversight across our digital and technology transformation journey. You'll play a pivotal role in ensuring the organisation remains secure as we modernise, offering robust risk assurance across information security, technology initiatives, major transformation programmes and change portfolios. You'll build strong relationships across the business and act as a trusted, influential voice on cyber and technology risk at all levels. With a focus on embedding smart technology solutions, you'll help drive our strategic agenda while continuously enhancing our risk management frameworks and processes to protect the organisation now and in the future.

Here's a taste of what you will be doing as a Cyber and Technology Risk Manager at Nottingham Building Society:

  • Independent Risk Oversight: Deliver objective assurance over cyber and technology risks, using strong technical knowledge to assess controls, challenge effectively, and guide stakeholders.
  • Strategic Transformation Support: Align with the digital strategy and roadmap to provide proactive risk insight, building trusted relationships across Technology & Transformation.
  • Change Risk Management: Ensure risks are properly identified and managed throughout change initiatives by reviewing assessments and monitoring supporting controls.
  • Incident Monitoring & Assurance: Oversee robust processes for tracking cyber and technology incidents, ensuring clear visibility of themes, actions and residual risks.
  • Insightful Reporting: Develop forward-looking MI and produce clear, high-quality reports for the CRO, Director of Risk, and risk committees.
  • Second Line Challenge: Provide an independent perspective on incidents and risk matters at the Operational Risk Committee, ensuring strong governance and accountability.
  • Continuous Improvement: Identify opportunities to strengthen frameworks, processes and controls to stay ahead of emerging cyber and technology threats.
  • Stakeholder Influence: Act as a trusted partner across the business, offering credible challenge and expert guidance to drive effective risk management behaviours.

About you:

  • Cyber Security Expertise: Strong, transferable experience in cyber security with a solid understanding of threat vectors, security controls and modern IT architectures.
  • Risk Framework Knowledge: Practical experience using recognised information security and risk management methodologies such as NIST, COBIT and ISO27001.
  • Broader Risk Awareness: Understanding of wider risk management systems and methodologies beyond cyber and technology.
  • Insightful Reporting: Ability to design and produce clear, meaningful MI and committee‐level risk reporting.
  • Proven Industry Experience: 5+ years in cyber/technology risk, internal audit or change assurance within regulated financial services; 2nd line experience desirable.
  • Strong Decision-Making: Able to use initiative, make sound judgements and respond confidently to complex issues.
  • Collaborative Influencer: Skilled at building strong stakeholder relationships, offering credible challenge and communicating clearly at all levels.
  • Qualified & Knowledgeable: Degree-level education preferred; CISSP or CISM qualifications advantageous but not essential.

Reward & Benefits:

  • Competitive Package: Fair salary benchmarked against market data, annual discretionary bonus, and 29 days holiday plus bank holidays.
  • Health & Wellbeing: Access to Medicash healthcare, mental health first aiders, and a suite of wellbeing resources to support you inside and outside of work.
  • Work-Life Balance: 35-hour working week for full-time roles, with flexibility to help you perform at your best.
  • Career Growth: Ongoing personal and professional development, we'll support your ambitions and help you grow your potential.
  • Inclusive Culture: Be part of a friendly, values-led team that genuinely cares about doing the right thing for colleagues and customers.
  • Giving Back: Use two paid volunteering days each year to support causes close to your heart, through our Samuel Fox Foundation.
  • Sustainability Focus: Join a business committed to reducing its carbon footprint and making a positive impact on the environment.
  • Free access to Octopus Money: Financial coaching & tools that help you plan, manage, and make the most of your money.

Embracing Diversity Together: We proudly embrace and celebrate diversity as a fundamental cornerstone of our values. We believe that a diverse and inclusive workplace is not just essential for our success but is also a reflection of the vibrant communities we serve. Our commitment to diversity extends beyond our internal culture to the way we approach advertising and engage with our customers. Our commitment means actively working to eliminate barriers and biases that may hinder equal opportunities within our organisation. We strive to ensure that all individuals, regardless of background, have an equal chance to thrive and advance in their careers. We acknowledge that diversity is not just a goal to be achieved but a continuous journey toward creating an environment that embraces differences and promotes equal opportunities for all. We are committed to creating an inclusive culture that encourages collaboration, creativity, and a sense of belonging for every member of our community.

About Us: We are a mutual, which means we don't have shareholders. Instead, we're owned by our members and use our money to do good, investing in our community, responsible causes, and – well, you. So, we're always striving to do the right thing for our team, communities and members. Although our history spans over 170 years, our purpose of helping our members save, plan for and protect their financial futures is enduring. At The Nottingham Building Society, we are dedicated to overcoming obstacles and turning challenges into opportunities.

Cyber and Technology Risk Manager - Nottingham City employer: Nottingham Building Society

Nottingham Building Society is an exceptional employer, offering a supportive and inclusive work culture that prioritises employee wellbeing and professional growth. With a competitive salary package, flexible working arrangements, and a commitment to sustainability, employees are empowered to thrive both personally and professionally while contributing to meaningful community initiatives.
Nottingham Building Society

Contact Detail:

Nottingham Building Society Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber and Technology Risk Manager - Nottingham City

Tip Number 1

Network like a pro! Reach out to current employees on LinkedIn or attend industry events. Building connections can give you insider info and might even lead to a referral.

Tip Number 2

Prepare for the interview by researching the company culture and values. Show how your skills align with their mission, especially in cyber security and risk management.

Tip Number 3

Practice common interview questions related to cyber and technology risk. Be ready to discuss your experience with frameworks like NIST and ISO27001, and how you've tackled challenges in the past.

Tip Number 4

Don’t forget to follow up after your interview! A quick thank-you email can keep you top of mind and show your enthusiasm for the role. And remember, apply through our website for the best chance!

We think you need these skills to ace Cyber and Technology Risk Manager - Nottingham City

Cyber Security Expertise
Risk Framework Knowledge
NIST
COBIT
ISO27001
Incident Monitoring
Stakeholder Management
Decision-Making Skills
Change Risk Management
Analytical Skills
Communication Skills
Reporting Skills
Collaboration Skills
Technical Knowledge

Some tips for your application 🫡

Read the Job Description Thoroughly: Before you dive into your application, take a good look at the job description. It’s packed with info about what we’re looking for and can help you tailor your application to show us why you’re the perfect fit!

Show Off Your Skills: When writing your application, make sure to highlight your relevant experience and skills. We want to see how your background aligns with the role of Cyber and Technology Risk Manager, so don’t hold back on showcasing your expertise!

Be Yourself: We love authenticity! Let your personality shine through in your application. Share your passion for cyber security and technology risk management, and don’t be afraid to express what makes you unique.

Apply Through Our Website: Make sure to apply via our careers site using the application button. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it’s super easy!

How to prepare for a job interview at Nottingham Building Society

Know Your Cyber Security Stuff

Make sure you brush up on your knowledge of cyber security, especially around threat vectors and security controls. Be ready to discuss how you've applied this knowledge in previous roles, as it will show you're not just familiar with the theory but can also put it into practice.

Understand Risk Frameworks

Familiarise yourself with recognised risk management methodologies like NIST, COBIT, and ISO27001. During the interview, be prepared to explain how you've used these frameworks in your past work and how they can be applied to the role at Nottingham Building Society.

Build Relationships

Since this role involves a lot of stakeholder engagement, think about examples where you've successfully built relationships in previous positions. Highlight your collaborative skills and how you've influenced decision-making processes, as this will resonate well with the interviewers.

Prepare Insightful Reporting Examples

Be ready to showcase your ability to produce clear and meaningful management information (MI) reports. Bring examples of reports you've created in the past and discuss how they helped inform decisions or improve risk management practices.

Cyber and Technology Risk Manager - Nottingham City
Nottingham Building Society
Location: Nottingham
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>