Information Security Risk Manager

Information Security Risk Manager

Full-Time No working from home possible
T

Check you match the skill requirements for this role, as well as associated experience, then apply with your CV below.
Information Security Risk ManagerWe are partnering with leading commodities firm, hiring an Information Security Risk Manager to take ownership of a critical second line security risk remit in a highly regulated trading environment. This is not a hands-on engineering role. It suits a seasoned GRC / second line security professional who can operate with autonomy, engage senior stakeholders credibly, and translate technical issues into clear business risk decisions.

The Role:

Youll own a broad information security risk area, working with senior stakeholders and business owners across the company to ensure risk is understood, assessed, and managed proportionately.

Youll be expected to:

  • Lead from a second line / GRC perspective, focusing on risk, policy, control effectiveness, governance, and regulatory alignment
  • Assess security issues in terms of business impact, risk appetite, and resilience, not just technical severity
  • Work directly with heads of department, relationship owners, infrastructure leads, and senior leadership
  • Translate technical incidents, vendor alerts, and security concerns into clear, calm, commercially grounded recommendations
  • Support risk assessments, audits, policy and procedure development, and broader operational resilience activity
  • Contribute to a small but visible team with exposure to board, risk committee, and executive discussions

Were looking for someone who brings:

  • Strong experience in information security risk, GRC, or second line security
  • The credibility and gravitas xgikmsk to manage senior stakeholders and challenge constructively where needed
  • A calm, measured approach, someone who can cut through noise rather than escalate drama
  • Confidence working autonomously and taking ownership of an area without close management
  • Strong communication skills, with the ability to frame security in business risk language
  • Experience across areas such as risk, policy, audit, controls, governance, t Please click on the apply button to read the full job description

Information Security Risk Manager employer: Twenty Recruitment Group

As a leading Private Equity firm located in the heart of London, we pride ourselves on fostering a dynamic work culture that values collaboration and innovation. Our employees benefit from comprehensive growth opportunities, including access to cutting-edge tools like Power BI, and a commitment to data governance that empowers them to make impactful contributions. Join us to be part of a team that not only prioritises professional development but also champions a supportive environment where your insights can drive meaningful change.

T

Contact Details:

Twenty Recruitment Group Recruitment Team