Information Security GRC Manager
My client, a FinTech organisation, based in London, are looking to recruit an Information Security GRC Manager to join their growing team. No sponsoprship.
About the Information Security GRC Manager Role:
My client is recruiting an Information Security GRC Manager to support the Senior Manager and Chief Information Security Officer in managing and reporting the Information Security Risks faced by Technology Services and Business teams in delivering my client's systems and services.
The Information Security GRC Manager, will work with the business and the wider information security team to ensure the appropriate controls, policies and procedures are in place to protect my client in-line with industry best practice and regulatory legislation.
In addition, this role will support the coordination and response to activities affiliated with external/internal IT audits as well as due diligence exercises requested by our external business partners and those we perform on our suppliers.
The key responsibilities of the role are:
- Development and delivery of information security policy aligned to industry recognised frameworks (typically ISO27001/2)
- Exception to policy process management and reporting
- Management reporting on the status of Information Security and the security change programme.
- Partner with Business and Technology teams, to develop and track remediation plans for identified risks and issues.
- Supporting and developing the evaluation of the security posture for key Third Parties, to ensure that they are in line with the desired security posture required by my client
- Undertaking risk profiling of my client's information and technology assets
- Ensure that all duties are carried out with the aim of protecting customers and improving customer experience.
- Supporting and enabling the business to achieve its regulatory requirements, including consumer duty.
Technical skills
- Strong understanding and knowledge of Information Security risk management tools and techniques
- Experience of Information Security standards and frameworks
- Awareness and understanding of the Information Security threat landscape
- Awareness of Information Security solutions e.g. email / web gateways, SIEM, Endpoint protection etc.
- Strong understanding of IT General Controls frameworks
- Awareness of Operational Risk Management and Risk & Control Self-Assessment (RCSA) processes
Competence, knowledge and skills
- Experience working within recognised Information Security frameworks and best practices such as ISO27001, NIST etc.
- Minimum 5 years’ experience in an Information Security role gained in a financial services environment is preferred
- Self-motivated, professional, tenacious and enthusiastic
- Strong ownership of tasks, attention to detail and following through to conclusion
- Ability to challenge approach, strategy and implementation to ensure Information Security is consistently considered and improved
- Ability to work under own initiative to plan and communicate effectively with colleagues and customers
- Structured, self-starting, flexible and enjoy working in fast-paced environments
- Effective communication skills, both written and verbal
- Ability to plan, organise and follow through on assigned tasks and complete with little or no prompting from management
- Ability to learn and develop new skills and take on new challenges
- Excellent attention to detail
- Attained or working towards CISM certification
If the above is of interest please apply to this ad or send me your CV via darius.goodarzi@robertwalters.com. Alternatively you can call me on 0207 509 8040 to find out more about this role.
Robert Walters Operations Limited is an employment business and employment agency and welcomes applications from all candidates
About the job
Contract Type: Permanent
Specialism: Technology & Digital
Focus: Information Security
Industry: Banking
Salary: £70,000 - £75,000 per annum
Workplace Type: Hybrid
Experience Level: Senior Management
Location: London
FULL_TIMEJob Reference: 6LYM50-981B5C3B
Date posted: 18 March 2026
Consultant: Darius Goodarzi
london information-technology/information-security 2026-03-18 2026-05-17 banking London London GB GBP 70000 75000 75000 YEAR Robert Walters https://www.robertwalters.co.uk https://www.robertwalters.co.uk/content/dam/robert-walters/global/images/logos/web-logos/square-logo.png true