cover image
Lawrence Harvey

Cyber & Information Security Risk Lead - £150k

Hybrid

London, United kingdom

£ 150,000 /year

Senior

Full Time

09-03-2026

Share this job:

Skills

Risk Management

Job Specifications

Role: Cyber & Information Security Risk Lead

Location: London 2 days p/w

Compensation: up to £150,000 total comp

Lawrence Harvey are partnered with a market leading Financial Services firm that are on the lookout for a Information Security Risk Review Lead to work within their CCO (Chief Controls Office). This is an excellent opportunity that offers strong oversight and influence over their Global Information Security capabilities.

You'll be working within an incredibly complex, global organisation that are investing heavily into their Security division in 2026 - an excellent time to join the business!

Key Responsibilities:

Partner with business owners to identify, assess and mitigate Information Security and non-financial risks
Provide subject matter expertise on Information Security risk and controls across the first line
Drive consistency and best practice in control standards across the organisation
Support the identification, assessment and documentation of Information Security risks and controls
Review self-identified issues and remediation plans to ensure risks are appropriately addressed
Review and support corrective actions for audit findings from a risk and control perspective
Validate remediation actions prior to closure and submission to Risk, Compliance and Audit
Monitor, track and report risk issues, remediation activities and control effectiveness
Support the assessment and recording of security-related operational risk events
Review KRIs, investigate breaches and support root cause analysis and remediation plans
Contribute to risk appetite discussions, emerging risk assessments and governance reporting

Key Requirements:

Strong experience working within Information Security, Data Management Risk Governance, Operations and Risk Management functions
Experience working in global, highly regulated and high volume environments.
Deep understanding of industry standards and frameworks such as ISO 27001/27002, NIST CSF, NIST 800-53, COBIT, CIS Critical Security Controls, and ITIL, including their application within enterprise control environments.
Familiarity with regulatory and compliance frameworks including GDPR, SOC 2, PCI DSS, SOX ITGC, and operational risk frameworks, ensuring alignment between security controls and regulatory expectations.

Apply using the link or send an updated resume to j.walsh@lawrenceharvey.com

About the Company

Lawrence Harvey, established in 2002, is an international recruitment business specializing in Technology recruitment. Our consultants are specialists in their specific fields of recruitment, therefore we have expert recruiters in Enterprise Applications, CRM, Data & Analytics, Security, Infrastructure & Development and Business Advisory & Strategy. We are part of a larger group business, LHi Group Ltd, which has multiple non-competing brands specializing in Life Sciences, Energy and The Built Environment. With multilingua... Know more