At a Glance
- Tasks: Lead the development of cyber risk policies and controls for a major international bank.
- Company: Join a prestigious international bank based in London with a focus on innovation.
- Benefits: Competitive salary, career growth, and a dynamic work environment.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technology.
- Qualifications: Experience in cyber risk management and strong analytical skills required.
- Other info: Collaborative team culture with opportunities to supervise and mentor junior staff.
The predicted salary is between 72000 - 108000 £ per year.
My client, an International bank, based in London, are looking to hire a Cyber Risk Oversight VP to join their growing team. For this role you would have to attend their office in London 3 times per week. They are not solely looking for a GRC person.
MAIN PURPOSE OF THE ROLE: To assist with the development of the firm’s Second Line of Defence capabilities (policies, procedures, risks and controls) to manage Information Security and Cyber risk in London and further support across the EMEA region, in line with regulatory requirements, and to support the achievement of the Bank’s strategic objectives.
Key Responsibilities
- Assist with the continuous embedding of the Operational Risk framework for the Technology and Cyber risks and controls within the Technology function working in conjunction with the First Line teams and Head Office.
- Monitoring regulatory changes in approach to Technology and Cyber and recommend changes enhancements to the Control framework.
- Support the development and delivery of medium to long term objectives and actions within the framework, including greater oversight and additional testing of the Technology and Cyber Controls and RCSA’s.
- Participate actively in the delivery of changes, enhancements and projects in conjunction with the Cyber Security teams.
- Provide robust challenge to the First Line of Defence as they identify, assess, manage and report their risks and issues through various tools and activities including risk and control assessments, key indicators, issue and incident management, and control assurance.
- Deep dive on the Technology and Cyber KPI/KRI’s monitoring monthly trends and threats.
- Provide challenge on a SME level to the 1st line.
- Perform Second Line of Defence activities in the evaluation of risks for new products, systems and material change projects.
- Provide subject matter expertise, and monitor and communicate the risk environment to management, and other key stakeholders effectively.
- When required, supervise junior members of the team in second line oversight, business-as-usual (BAU) activities and change initiatives.
- Assist in the creation and maintenance of a good 3LoD model and work across the region to promote Technology and Cyber Awareness and 2nd line challenge.
Regulatory compliance, affairs and change
- Comply with and ensure that all staff under your responsibility (where applicable) comply with the entities’ policies and procedures as well as all rules, laws and regulatory requirements emanating from any of the regulatory authorities to which the entities are subject.
- Remain up to date with regulatory changes; ensure that changes are well understood and plans are developed for implementation as appropriate.
Work Experience
- Knowledge of banking and securities products and services.
- Excellent knowledge and experience of Information Security, Technology and Cyber risk management and their application within the financial services industry.
- Proven and demonstrable ability to understand, identify, analyse and communicate clearly an organisation’s Technology and Cyber risks.
- Proven experience in interpreting, understanding and applying legal/regulatory requirements to technology and cyber security.
- Solid technical and functional knowledge of external regulations, policies and developments for Information Security and Cyber Risk and ability to read across to understand organizational impact.
- Solid technical and functional knowledge of financial services internal rules and policies.
- Good understanding of the overall operational processes and technology challenges within the financial services industry.
- Ability to facilitate smooth communications between London, HO and EMEA offices.
Skills and Experience
- Cyber and Information Security best practice (including industry frameworks such as NIST and ISO 27001/2)
- Cyber Security Risk Assessment and Risk management experience with a focus on:
- Threat Modelling
- Vulnerability Risk
- Cloud Security Risk
- IAM Risk
- Network and System Risk
- Third Party Risk
Education / Qualifications
- Educated to degree level or equivalent industry experience
- CISSP, CISM, or equivalent Information Security certifications are desirable
Personal Requirements
- Strong team player with the ability to collaborate with business stakeholders.
- Clear and concise written and oral communication.
- Ability to translate technical requirements for a general audience
- Strong analytical skills to evaluate risk, understand and communicate underlying causes
- Excellent accuracy and attention to detail.
- Good time management and ability to prioritise.
- Strong problem-solving and critical thinking skills.
- Excellent Microsoft Office skills
- Japanese language ability advantageous
Cyber Risk Oversight VP (technical) employer: Robert Walters
Contact Detail:
Robert Walters Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Risk Oversight VP (technical)
✨Tip Number 1
Network like a pro! Attend industry events, webinars, and meetups to connect with professionals in the cyber risk field. You never know who might have a lead on your dream job!
✨Tip Number 2
Show off your expertise! Create a personal blog or LinkedIn posts discussing trends in cyber risk management. This not only showcases your knowledge but also gets you noticed by potential employers.
✨Tip Number 3
Prepare for interviews by practising common questions related to cyber risk oversight. Use the STAR method (Situation, Task, Action, Result) to structure your answers and highlight your experience effectively.
✨Tip Number 4
Don’t forget to apply through our website! We’ve got loads of resources to help you land that Cyber Risk Oversight VP role. Plus, it shows you’re serious about joining our team!
We think you need these skills to ace Cyber Risk Oversight VP (technical)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Risk Oversight VP role. Highlight your experience in Information Security and Cyber risk management, and don’t forget to mention any relevant certifications like CISSP or CISM. We want to see how your skills align with what we’re looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re the perfect fit for this role. Talk about your experience with regulatory compliance and how you’ve successfully managed risks in the past. Let us know what excites you about working with our team!
Showcase Your Communication Skills: Since clear communication is key in this role, make sure your application reflects that. Use concise language and structure your documents well. We want to see that you can translate complex technical concepts into something everyone can understand!
Apply Through Our Website: Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at StudySmarter!
How to prepare for a job interview at Robert Walters
✨Know Your Cyber Risk Stuff
Make sure you brush up on your knowledge of Cyber and Information Security best practices, especially frameworks like NIST and ISO 27001/2. Be ready to discuss how these apply to the banking sector and demonstrate your understanding of the specific risks involved.
✨Showcase Your Regulatory Savvy
Familiarise yourself with the latest regulatory changes affecting Technology and Cyber risk management. Be prepared to discuss how you've interpreted and applied these regulations in past roles, and how you would ensure compliance in this new position.
✨Communicate Clearly
Since you'll need to translate technical jargon for non-technical stakeholders, practice explaining complex concepts in simple terms. Use examples from your experience to illustrate your points and show that you can bridge the gap between technical and business teams.
✨Demonstrate Team Collaboration
Highlight your experience working with cross-functional teams, especially in a second line of defence capacity. Share specific examples of how you've collaborated with first line teams to manage risks and improve controls, showcasing your ability to be a strong team player.