Jobs
>
London

    Cybersecurity Manager - London, United Kingdom - ICBC Standard Bank

    Default job background
    Permanent
    Description

    Summary

    The Information Technology Risk and Cyber Security team, which is part of the IT Department, supports over 100 different applications and a wide range of infrastructure operating systems and databases across London, NY and Asia and provides security support across the Firm.

    Job Purpose
    This London-based Cyber Security role is within the IT department of a Global Investment Bank. This dedicated Vulnerability Management role is to provide Vulnerability Management services globally. This hands-on role focusses on driving the vulnerability management programme end to end for the bank to reduce the bank's legacy vulnerabilities across the tech estate and drive the "Business As usual" vulnerability management process.

    Key Responsibilities
    Manage the Threat & Vulnerability Management process and drive risk-based vulnerability management programme across the bank through:

  • Enforce the Threat and Vulnerability Management Standards across the bank globally.
  • Review and develop the dynamic Threat Landscape for the bank.
  • Engage with Infrastructure and application teams in driving the vulnerability remediation across the Infrastructure; business applications and technology
    stack.
  • Drive the Threat and Vulnerability management forum for engagement across all areas of IT.
  • Keep up to date with new threats and vulnerabilities which might affect ICBCS.
  • Measure, evaluate, prioritise, and track threat and vulnerabilities, support the business on vulnerability remediation efforts.
  • Educate stakeholders on the real-world impact of threats and vulnerability exploitation on our environment.
  • Develop, document, and report business-level metrics for vulnerabilities and remediation progress.
  • Drive the end-to-end threat and vulnerability lifecycle, from discovery to closure.
  • Own and operate Threat Management for all technology across the bank.
  • Create meaningful vulnerability reporting and dashboards through usage of MS Excel, Power BI or MS ppt.
  • Liaising with 3rd parties for vulnerability assessments / penetration tests whilst reviewing the reports and creating remediation reports.
  • Ownership of major vulnerabilities, coordinating with other IT teams for emergency patching.
  • Working with Infrastructure and Application development teams to make sure all the applications technology stacks and are compliant to the security standards.
  • Preferred Qualifications and Experience

  • A minimum of 10+ years of experience with a mix of Cybersecurity, Systems, Infrastructure, Network, and Cloud experience.
  • Broad technical security skills in multiple technology areas such as applications deployments, endpoints, data, infrastructure, cloud, DNS, PKI, Email, OS (Windows, MAC, *NIX), SDN, encryption, forensics, authentication, firewalls, proxies, identity and access control, BC/DR, remote access, and cryptography.
  • Extensive experience in architecting and engineering complex security solutions utilizing and interpreting models to implement company policies, standards globally.
  • Familiarity with techniques/methodologies such as "Attack and Defensive" methods, Threat Hunting, Threat modeling, Reverse engineering, Vulnerability Management, Data modeling, Evaluation of security products/services, Metrics development, etc.
  • Proficiency and experience in automation and scripting using Python, Shell, Ansible, Jenkins, etc.
  • Demonstrated experience with utilizing and migrating to one or more cloud technologies such as Microsoft Azure, and AWS. Knowledge of Google Cloud Platform, Alibaba Cloud, and Microsoft Office 365 is a plus.
  • Information Security and/or Information Technology industry certification (CISSP, CISM, CISSP-ISSMP, CRISC, GIAC, Azure and AWS equivalent) preferred.
  • Ability to synthesize data, conceptualize and get to the root cause of processes that created the risk.
  • Experience working in a multi-vendor and outsourced IT environment.
  • Experience in Business Analysis.
  • Good understanding of COBIT and ITIL processes including change, incident and problem management.
  • Experience in Financial Services is a nice to have but not mandatory.
  • Personal attributes:

  • High level of integrity
  • Demonstrable technical credibility and subject matter expert
  • Ability to visualize, articulate and solve complex technical problems via sounds analytical and problem-solving skills
  • Proven global team management and coordination skills
  • Team player approachable, ability to share and consult others
  • Demonstrable ability to plan, prioritise and manage multiple activities
  • Results orientated
  • Proven influence at manager level with excellent facilitation, negotiation, challenge and conflict resolution skills


  • Eames Consulting London, United Kingdom

    A position has been created for an experienced and technically strong IT Audit leader, to join a 20 person internal audit function, leading a portfolio of cybersecurity and resilience audits and a small team of IT Audit professionals. · Working on a very flexible hybrid basis bet ...


  • Pfizer United Kingdom

    Manager, Perimeter Security Testing page is loaded Manager, Perimeter Security Testing · Bewerben locations United Kingdom - Sandwich United Kingdom - Walton Oaks time type Vollzeit posted on Gestern ausgeschrieben job requisition id Manager, Perimeter Security Testing · The Gl ...


  • CFGI London, United Kingdom

    About CFGI: · CFGI is a unique and highly specialized financial consulting firm that is strategically positioned to assist the office of the CFO through a range of routine and complex business scenarios. As an extension of your corporate finance team, CFGI works alongside your i ...


  • Kyndryl Inc. London, United Kingdom

    Manager, Cybersecurity Architecture page is loaded · Manager, Cybersecurity Architecture · Apply remote type Fully Remote locations On demand office - London time type Full time posted on Posted 29 Days Ago job requisition id R-16833 Who We Are · At Kyndryl, we design, build, ...


  • Kyndryl London, United Kingdom

    Kyndryl · At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. View company page · At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on ev ...


  • Wavestone London, United Kingdom

    Senior Cybersecurity Management Consultant – Cyber Governance, Risk and Compliance Wavestone · Discover Wavestone : we are a new consulting firm providing customized solutions designed to steer our clients in making their most strategic decisions. View company page · Wavestone ...


  • Cloudsecurityexpo United Kingdom

    As an experienced professional in our Cybersecurity & Technology Controls (CTC) organization, you won't just be watching over our data - you'll be finding innovative new ways to protect it in the future. To do that, you'll be part of a highly motivated team focused on analyzing, ...


  • MUFG London, United Kingdom

    Senior Cybersecurity Technical Delivery Manager · Do you want your voice heard and your actions to count? · Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), the 7th largest financial group in the world. Across the globe, we're 160,000 colleagues, striving to ...


  • MUFG London, United Kingdom Full time

    Do you want your voice heard and your actions to count? · Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), the 7th largest financial group in the world. Across the globe, we're 160,000 colleagues, striving to make a difference for every client, organization ...


  • Lynx Recruitment Ltd London, United Kingdom

    **Cybersecurity Engineer | London | Paying up to £70,000** · **Lynx recruitment have partnered with a Global IT consultancy that are looking for a qualified Cybersecurity Engineer to join the team.** · The Cybersecurity Engineer will pay an integral part in ensuring that all syst ...


  • Deerfoot IT Resources Ltd London, United Kingdom

    Do you have experience as a Cyber Security Technical Delivery Manager, and are you seeking a new contract job in London? Deerfoot IT Recruitment is looking for a full-time Cybersecurity Delivery Manager, and the hybrid role comes with an attractive contractrate. · In your first f ...

  • Proactive IT

    Cyber Security Sme

    1 day ago


    Proactive IT London, United Kingdom

    9611JF · £ per day · Cyber Security SME · Inside IR35 - 2 days a week onsite · Our client, a global banking organisation have a 6 month opportunity for a Cyber Security SME to join ASAP. The Cybersecurity Technical SME is responsible for design and implementation of large, strate ...

  • Proactive IT

    Cyber Security Sme

    6 hours ago


    Proactive IT London, United Kingdom

    9611DH · £ per day · Cyber Security SME · Inside IR35 - Hybrid/Remote options available · Our client, a global banking organisation have a 6 month opportunity for a Cyber Security SME to join ASAP. The Cybersecurity Technical SME is responsible for design and implementation of la ...


  • Method Resourcing London, United Kingdom

    **Security Engineer | Retail |Cybersecurity | Akamai | Bot Protection | London | £80,000 - £90,000** · Are you an experienced Security Analyst/ Engineer looking for an opportunity to help develop a growing company's cybersecurity measures? · Are you looking for an opportunity to ...


  • JPMorgan Chase Bank, N.A. London, United Kingdom

    You will serve as a key member of a global team focused on policy and partnerships related to cybersecurity and technology. In this role you will support activities that enable the firm to meet technology and cybersecurity expectations, as well as advance global public policy and ...


  • Zync Group London, United Kingdom

    **Vulnerability Management Specialist - £55,000 - Education Budget, Pension, Private Healthcare** · **Company**:A leading global cybersecurity company known for its expertise in providing comprehensive and innovative cybersecurity solutions. With its headquarters in London, UK, t ...


  • Oliver James London, United Kingdom

    Cyber Governance, Risk and Compliance Manager - FTC · Oliver James have been appointed to recruit a Cyber Governance, Risk and Compliance Manager for a specialty Insurance business. They are looking for the Cyber Governance, Risk and Compliance Manager to establish a control fram ...


  • Franklin Bates Limited London, United Kingdom Full time

    Do you have experience as a Linux Systems Administrator? Do you have fantastic interpersonal skills? Take on a key Linux Systems Administrator role with a game-changing cybersecurity company. · Work within an incredibly bright team DevOps and Systems Administration team who you w ...


  • EY London, United Kingdom

    Senior Consultant - Cyber Transformation · Cybersecurity and its related challenges are a rapidly growing field. As such, the opportunities for careers in cybersecurity are also growing. Physically and electronically securing an organisation infrastructure is one of the steps to ...


  • Sportradar London, United Kingdom

    **Company Description** · We're the world's leading sports technology company, at the intersection between sports, media, and betting. More than 1,700 sports federations, media outlets, betting operators, and consumer platforms across 120 countries rely on our know-how and techno ...