Assistant Manager Information Security
The Assistant Manager Information Security will play a critical role in safeguarding the bank’s information assets, infrastructure, and customer data against evolving cyber threats. The role focuses on driving and managing information security operations, ensuring continuous monitoring, identifying and remediating vulnerabilities, and providing management with up-to-date reports on security posture.
Responsibilities
- Provide proactive security oversight for new initiatives and projects, embedding security and regulatory requirements from design through implementation.
- Collaborate with senior stakeholders, regulators, and external partners to align on security standards and deliver solutions that balance business objectives with compliance obligations.
- Participate in governance forums and internal committees, presenting emerging risks, security trends, and strategic recommendations.
- Advise on regulatory compliance, data protection, and breach notification processes to meet FCA, PRA, PSR and other expectations.
- Lead and conduct comprehensive information security risk assessments to identify, evaluate, and prioritize threats.
- Establish, document, and enforce security controls across internal systems, third parties, and public networks.
- Develop, maintain, and execute incident response and crisis management procedures.
- Monitor security operations to identify anomalies, investigate incidents, and coordinate remediation with internal teams and external providers.
- Keep abreast of threat intelligence and recommend proactive remediation measures.
- Partner with auditors, regulators, and payment schemes, delivering evidence and supporting audits, certifications, and reviews.
- Evaluate and enhance the bank’s information security policies, procedures, and controls.
- Support management reporting with timely, accurate, risk‑focused updates on security posture, incidents, and compliance activities.
- Serve as the primary point of contact for all information security alerts and breaches and coordinate responses via incident‑management protocols.
- Maintain security records, dashboards, and reports; assist in reviews to identify vulnerabilities.
Qualifications
- Bachelor’s degree in Information or Cyber Security; equivalent professional experience may be considered.
- 3+ years of proven experience in information security management, covering risk management, incident response, threat intelligence, and cyber security solutions.
- Strong knowledge of security technologies and controls, including firewalls/WAF, SIEM, anti‑malware, mobile application security, IAM/PAM and cloud security (AWS).
- Experience conducting vulnerability assessments, penetration testing, and security evaluations.
- Solid understanding of cybersecurity frameworks such as ISO27001, NIST CSF, PCI‑DSS and others.
- Excellent analytical, communication, and stakeholder engagement skills.
- Committed to continuous learning and keeping up-to-date with evolving threats, technologies, and regulatory requirements.
Benefits
- 25 days annual leave plus 8 bank holidays
- Pension scheme with 4% employer contribution
- Private Medical Insurance
- 60‑40 hybrid working after probation
- Training and development
- Free gym access in the building
Working Conditions
This office‑based role requires 37.5 hours per week, Monday to Friday, with an unpaid 60‑minute break each day. Standard pattern is 9.00 am to 5.30 pm.
Additional Information
The holder must sign a data confidentiality agreement and may disclose confidential information only to employees on a “need to know” basis.
Conduct Rules
- Act with integrity.
- Act with due skill, care and diligence.
- Be open and cooperative with the FCA, the PRA and other regulators.
- Pay due regard to the interests of customers and treat them fairly.
- Observe proper standards of market conduct.
Key Relationships
- Internal: Information Technology, Risk and Compliance, Business departments, Internal forums and committees.
- External: Suppliers and Vendors, Regulators, Authorities and focused groups.
#J-18808-Ljbffr…
