Information Security and Compliance Risk Manager
We are seeking an Information Security and Compliance Risk Manager to lead the development, implementation and continual improvement of information security, compliance and enterprise risk management practices. This role will provide trusted advice to senior stakeholders, helping to identify, assess and manage technology, information and operational risks across the organisation. You will support a strong culture of security and accountability while ensuring that policies, controls and processes remain aligned with relevant legislation, regulatory expectations, industry standards and business objectives.
Key responsibilities will include maintaining the information security and compliance risk framework; managing risk assessments, control reviews, assurance activities and remediation plans; and monitoring the effectiveness of security and compliance controls. You will coordinate internal and external audits, prepare clear reports for governance forums, track actions through to completion and provide constructive challenge where risks or control weaknesses are identified. The role will also contribute to incident response, business continuity, third-party risk management, privacy and data protection activities, policy development, security awareness and ongoing regulatory change. You will work collaboratively with technology, legal, procurement, internal audit and operational teams to embed practical, proportionate and sustainable risk management practices.
The successful candidate will have substantial experience in information security, technology risk, compliance, governance or a related discipline, with a strong understanding of recognised frameworks such as ISO 27001, NIST, COBIT or equivalent. Experience of conducting risk assessments, managing audit programmes, interpreting regulatory requirements and presenting complex issues to senior audiences is essential. Relevant professional qualifications, such as CISA, CISM, CISSP, CRISC, ISO 27001 Lead Implementer or Auditor, are desirable. You will be analytical, organised and confident in influencing stakeholders at all levels, with excellent written and verbal communication skills. A pragmatic approach, sound judgement, strong attention to detail and the ability to manage competing priorities are key to success in this role.
Information Security and Compliance Risk Manager
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- Security Consultant
- IT Security Manager
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Cyber SOC Specialist - ESN
- End User Platform Vulnerabilit...
- Lead Security Engineer
- Member of Technical Staff (Sof...
- Cyber Security Consultant - As...
- Cyber Security Analyst - Enter...
- Technical Leader - Splunk Secu...
- Digital & Cyber Resilience – M...
- Data Protection Engineer
- Security Advisor
- Information Security Engineer
- Test Automation Engineer - Sec...
TOP SEARCHES
LOCATIONS
- Engineer
- Data Scientist
- Senior Data Scientist
- Head of Data Science
- Trainee Data Scientist
- Data Science Graduate
- Senior Financial Accountant
- Management Accountant
- Cost Accountant
- Civil Engineer
- Senior Civil Engineer
- Civil Design Engineer