Information Security and Compliance Risk Manager
We are seeking an Information Security and Compliance Risk Manager to lead the development, implementation and continual improvement of information security, compliance and enterprise risk management practices. This role will provide trusted advice to senior stakeholders, helping to identify, assess and manage technology, information and operational risks across the organisation. You will support a strong culture of security and accountability while ensuring that policies, controls and processes remain aligned with relevant legislation, regulatory expectations, industry standards and business objectives.
Key responsibilities will include maintaining the information security and compliance risk framework; managing risk assessments, control reviews, assurance activities and remediation plans; and monitoring the effectiveness of security and compliance controls. You will coordinate internal and external audits, prepare clear reports for governance forums, track actions through to completion and provide constructive challenge where risks or control weaknesses are identified. The role will also contribute to incident response, business continuity, third-party risk management, privacy and data protection activities, policy development, security awareness and ongoing regulatory change. You will work collaboratively with technology, legal, procurement, internal audit and operational teams to embed practical, proportionate and sustainable risk management practices.
The successful candidate will have substantial experience in information security, technology risk, compliance, governance or a related discipline, with a strong understanding of recognised frameworks such as ISO 27001, NIST, COBIT or equivalent. Experience of conducting risk assessments, managing audit programmes, interpreting regulatory requirements and presenting complex issues to senior audiences is essential. Relevant professional qualifications, such as CISA, CISM, CISSP, CRISC, ISO 27001 Lead Implementer or Auditor, are desirable. You will be analytical, organised and confident in influencing stakeholders at all levels, with excellent written and verbal communication skills. A pragmatic approach, sound judgement, strong attention to detail and the ability to manage competing priorities are key to success in this role.
Information Security and Compliance Risk Manager
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...