At a Glance
- Tasks: Lead the bank's information security efforts and protect vital data.
- Company: Dynamic banking institution in Central London with a focus on innovation.
- Benefits: Competitive salary, permanent position, and opportunities for professional growth.
- Other info: Join a diverse team committed to inclusivity and professional development.
- Why this job: Make a real impact in cybersecurity while working in a vibrant city.
- Qualifications: Fluent in Mandarin and English, with experience in information security.
The predicted salary is between 59400 - 72600 £ per year.
Competitive depending on experience
Location: Central London
Job Status: Permanent, office based
The Skills You'll Need:
- Fluent in Mandarin and English, with working experience in Information Security / Cyber Security / IT Risk Management
To be successful in this role our client has said it is essential that candidates:
- speak and write fluent Mandarin
- have working experience in Information Security / Cyber Security / IT Risk Management
Summary:
The Information Security Manager is responsible for establishing, maintaining and improving the bank’s information security framework to protect the confidentiality, integrity, and availability of information assets, particularly for the London Branch. The role develops and oversees security policies, strategies, and controls in line with internal governance, UK regulatory requirements, and industry best practices.
Operating as a “1.5 Line of Defence” within the IT function, the role provides independent security risk oversight, challenges the effectiveness of IT security controls, and supports regulatory compliance and operational resilience.
What You'll be Doing Each Day:
- Information Security Governance
- Upgrade and maintain the Branch’s information security policies, standards and procedures in line with Head Office policies and regulatory requirements.
- Upgrade and maintain an effective information security governance framework within the Branch.
- Ensure information security policies and procedures are properly implemented and periodically reviewed.
- Information Security Risk Management
- Identify, assess and monitor information security risks affecting the Branch.
- Maintain the information security risk register and ensure appropriate mitigation measures are implemented.
- Provide information security risk reporting to senior management.
- Security Oversight and Control Effectiveness
- Provide oversight and challenge to the implementation of information security controls performed by the IT team.
- Monitor the effectiveness of technical and procedural security controls across systems, infrastructure and applications.
- Coordinate periodic security reviews and internal control assessments.
- Cyber Security and Security Monitoring
- Oversee cyber security measures including vulnerability management, access control, security monitoring and incident detection.
- Ensure regular vulnerability assessments, security reviews and penetration testing are conducted.
- Incident Management
- Establish and maintain procedures for managing information security incidents.
- Coordinate investigation, response and reporting of cyber security incidents.
- Operational Resilience
- Support the Branch’s operational resilience framework from an information security perspective.
- Participate in disaster recovery planning, cyber security exercises and resilience testing.
- Third-Party and Outsourcing Risk
- Assess information security risks associated with third-party service providers and outsourcing arrangements.
- Ensure information security requirements are incorporated into vendor management and outsourcing governance processes.
- Regulatory Compliance
- Ensure compliance with applicable UK regulatory expectations relating to information security, cyber risk and operational resilience.
- Support regulatory reviews, internal audit and external audit activities.
- Security Awareness
- Promote information security awareness across the Branch.
- Organise information security training and awareness programmes for staff.
- Others
- Perform any other duties as required by the line manager or Senior Management.
The Skills You'll Need to Succeed:
- Excellent verbal and written communication and presentation skills in Mandarin and English.
- Master’s degree or above in Information Security, Computer Science, Information Technology or a related discipline.
- Professional certifications such as CCIE, HCIE, CISSP, CISM, CISA or ISO27001 Lead Implementer are highly desirable.
- Relevant experience in network, information security, cyber security or IT risk management, preferably within the financial services industry.
- Experience in developing and implementing information security governance frameworks.
- Strong understanding of information security standards and frameworks such as ISO 27001, NIST Cybersecurity Framework or CIS Controls.
- Good knowledge of UK regulatory expectations related to cyber security, operational resilience and outsourcing risk.
- Understanding of banking IT environments including networks, applications and infrastructure security.
- Strong analytical and risk assessment skills.
- Ability to communicate effectively with both technical teams and senior management.
- Ability to coordinate incident response and cross-departmental collaboration.
- High level of integrity and professionalism.
- Strong risk awareness and sense of responsibility.
- Ability to work effectively in a regulated banking environment.
Banking Job - Mandarin speaking Information Security Manager (Banking) - rj employer: People First Recruitment
As a growing global freight forwarder, we pride ourselves on fostering a dynamic and inclusive work culture that prioritises employee development and satisfaction. Our Tamworth location offers a supportive environment where you can thrive in your role as a UK Courier Sales Supervisor, with opportunities for uncapped commission and a company car or allowance. Join us to be part of a team that values innovation, collaboration, and the pursuit of excellence in the logistics industry.