JUMP TO CONTENT

Information Security Risk Lead - Group Technology Risk

  1. Cardiff
  2. Full-time
  3. IT & Change

__jobinformationwidget.freetext.ExternalReference__

3088_04703


Company Description

Legal & General is a leading UK financial services group and major global investor. We’ve been safeguarding people’s financial futures since 1836, aiming to build a better society for the long term by investing our customers’ money in things that make life better for everyone and create value for our shareholders.

Our Group Functions provide the services that all areas of the business need. This requires a talented and diverse team behind the scenes, who enable everyone at L&G to do what they do best. 

Joining us means helping to improve the lives of our customers and contributing to the success of the business every day.


Job Description

We’re looking for an Information Security Risk Lead to join us in either London, Hove or Cardiff!

You’ll play a key role in overseeing technology and Information Security risk across our Group CTO and Group CISO teams to ensure relevant risks are being identified, well understood, and managed within agreed risk appetite. In addition to this, you’ll also act as an SME to assess the adequacy of plans that are in place to address any identified gaps, ensuring that the appropriate Executive and Board focus is achieved.

    What you'll be doing:

    • Engaging with the Group CISO 1LoD Information Security teams to provide oversight, challenge, support and advice in relation to Cyber (Information Security) risk. Providing advice and support to the Group Head of Technology & Information Security and Group CTO Risk Partner to direct an overall Information Security Risk policy
    • Undertaking assurance of 1st line management actions to manage Information Security risk, working closely with Group CISO, and divisional Technology Risk Partners and Group Internal Audit, including supporting the delivery of the Technology and Information Security Risk and Control Self Assessments (RCSA), acting as centre of excellence for Information Security Risk where required
    • Supporting the development of policy and governance for the oversight and reporting of Information Security risk, including ensuring that the risk is appropriately covered and reported at relevant group oversight and governance committees
    • Providing Information Security opinions on the management of Cyber (Information Security) Risk as an SME area and working with 1LoD teams to oversee the effectiveness of the Cyber and Information Security Framework and Taxonomy
    • Providing input and leadership into the Group Technology & Data Risk Centre of Excellence supporting an aggregate view of Cyber (information security), working closely with the Group CISO, divisional Technology Risk Partners and divisional Information Security Managers to ensure that risk relating to Cyber (information security) risk is understood, managed and reported
    • Staying abreast of changes and challenges related to emerging technologies, including industry trends and standards, and championing the communication of key risk issues and educating the technology and risk communities on the industry landscape
    • Ensuring that the principles of Conduct Risk are always embedded into day-to-day operations to deliver good customer outcomes, ensuring that all business processes and internal controls within the role are designed and performed in a way that delivers good customer outcomes and demonstrates effective management of Conduct Risk
    • Ensuring that the appropriate process, systems, and controls are in place, and that relevant resilience risks and issues are identified and escalated in Group Risk

    Qualifications

    Who we're looking for:

    • Strong knowledge of Information/Cyber Security and IT
    • A broad knowledge of range of recognised information security standards and technical frameworks (e.g., ISO 27001, NIST CSF, SOC-2 attestation, PCI DSS, CoBIT)
    • A practical understanding of general security practices such as encryption, IAM, security information and event management etc. and supporting technologies
    • A good understanding of IT Information risks, including confidentiality, integrity, availability, availability, authenticity
    • You’ll also have experience of working in a regulated environment, including the 3 lines of defence risk management model
    • Strong interpersonal skills with the ability to collaborate with a variety of colleagues across different seniority levels

    Whatever your role, we reward performance and behaviour with a package that looks after all the things that are important to you. Here are some of the benefits we offer: 

    • The opportunity to participate in our annual, performance-related bonus plan and valuable share schemes  
    • Generous pension contribution  
    • Life assurance   
    • Private medical insurance (permanent employees only) 
    • At least 25 days holiday, plus public holidays, 26 days after 2 years’ service. There’s also the option to buy and sell holiday 
    • Competitive family leave 
    • Participate in our electric car scheme, which offers employees the option to hire a brand-new electric car through tax efficient salary sacrifice 
    • There are the many discounts we offer – both for our own products and at a range of high street stores and online   
    • In 2023, some of our workspaces were redesigned. Our offices are great spaces to connect and collaborate and have your wellbeing at the heart

    Additional Information

    Legal & General is a leading financial services group and major global investor, named Britain’s Most Admired Company in 2023, for the second year running. Rated top in our sector and top for inspirational leadership, we have a strong heritage and an exciting future.

    We aim to build a better society for the long term by investing our customers’ money in things that make life better for everyone.

    If you join us, you’ll be part of a welcoming culture, with opportunities to collaborate with people of diverse backgrounds, views and experiences. Guided by leaders with integrity who care about your future and wellbeing. Empowered through initiatives which support people to develop their careers and excel.

    We strive to be open, mindful and inclusive, so are always willing to discussing flexible working arrangements and reasonable accommodations for candidates with specific needs.

    If you’re open to find out more, we'd love to hear from you.

    Great news! We will let you know when a new job like this has been added!

    VideoUrl

    https://youtu.be/8ZYGBwImH08

    Similar roles

    List #1

    Our latest posts

    apprentices at L&G
    Why an apprenticeship at L&G could be your best career move

    Teaser

    Future Talent

    Content Type

    Blog

    Publish date

    02/13/2025

    Summary

    Apprenticeships at L&G Apprenticeships aren’t just an entry point into a career. They’re a way to continuously develop, explore new opportunities, and gain new skills needed for a successful future

    Teaser

    An apprenticeship at L&G (Legal & General) could be your best career move—whether you're looking to change careers, gain new skills, or build confidence in a supportive environment.

    Read more

    by

    Enrique Rodriguez

    by

    Enrique Rodriguez

    data analyst on a computer smiling
    The career path of a Data Analyst at L&G

    Teaser

    Technology, Digital & Data

    Content Type

    Blog

    Publish date

    01/24/2025

    Summary

    Data Analysts play a vital role in turning information into actionable insights, helping businesses make smarter decisions and drive progress.  At L&G (Legal & General), our Data Analysts are at

    Teaser

    Join us as we explore the career path of a Data Analyst, the skills and qualifications you’ll need, entry-level roles to get you started, and how you can build a fulfilling career with us.

    Read more

    by

    Enrique Rodriguez

    by

    Enrique Rodriguez

    executive leadership smiling and having a conversation
    Top 5 strategies for advancing your executive career

    Teaser

    Executive Leadership

    Content Type

    Blog

    Publish date

    01/24/2025

    Summary

    As a senior professional, advancing your executive career requires more than just hard work and technical expertise. It demands strategic thinking, continuous development, and the ability to pos

    Teaser

    Explore five essential strategies to help you unlock your potential, elevate your leadership presence, and set yourself up for sustained success at the highest levels.

    Read more

    by

    Enrique Rodriguez

    by

    Enrique Rodriguez

    image of investment team in a meeting
    Career paths in Private Markets

    Teaser

    Investments

    Content Type

    Blog

    Publish date

    01/24/2025

    Summary

    What are private markets?  Private markets refer to investments made in assets that are not traded on public exchanges, such as private equity, private debt, real estate, and infrastructure. The

    Teaser

    At Legal & General, we see private markets as a powerful force for driving meaningful economic and social impact.

    Read more

    by

    Enrique Rodriguez

    by

    Enrique Rodriguez

    pension professionals presenting a deck
    Pension careers at L&G: Opportunities in Institutional Retirement

    Teaser

    Investments

    Content Type

    Blog

    Publish date

    12/19/2024

    Summary

    What is a career in pensions?  A career in pensions at Legal & General offers the opportunity to play a pivotal role in securing the financial futures of individuals and businesses alike, encomp

    Teaser

    A career in pensions at Legal & General offers the opportunity to play a pivotal role in securing the financial futures of individuals and businesses alike. Learn more.

    Read more

    by

    Enrique Rodriguez

    by

    Enrique Rodriguez

    underwriting professionals in a meeting
    Why underwriting with L&G in Hove could be the career move for you

    Teaser

    Investments

    Content Type

    Blog

    Publish date

    12/19/2024

    Summary

    Looking for a career that challenges you, rewards your skills, and sets you up for long-term success? Underwriting with Legal & General in Hove could be the opportunity you’ve been searching for

    Teaser

    Based in the vibrant coastal town of Hove, our underwriting teams combine professional growth with the kind of work-life balance that’s hard to find elsewhere.

    Read more

    by

    Enrique Rodriguez

    by

    Enrique Rodriguez

    three professional women sitting on a bench and smiling - finance careers london
    Why now is the time to bring your finance career to London with L&G

    Teaser

    Finance & Actuary

    Content Type

    Blog

    Publish date

    12/19/2024

    Summary

    The finance industry has evolved significantly, embracing new technologies, data-driven decision-making, and a greater focus on sustainability and responsible investment, creating exciting oppor

    Teaser

    With our inclusive and collaborative culture, L&G is a great place to build a rewarding finance career. Explore our career opportunities in London today.

    Read more

    by

    Enrique Rodriguez

    by

    Enrique Rodriguez

    underwriting professionals smiling in a common area at the office
    Drive change in underwriting: senior roles at Legal & General in Cardiff

    Teaser

    Investments

    Content Type

    Blog

    Publish date

    12/19/2024

    Summary

    At Legal & General, we’ve been a leading name in the insurance industry for decades, helping millions of people secure their financial future.  With a strong presence in Cardiff, we’re proud to

    Teaser

    At L&G, we are looking for senior underwriting professionals who drive the success of our business.

    Read more

    by

    Enrique Rodriguez

    by

    Enrique Rodriguez

    employees from the IT and change department
    Careers in IT and Change at Legal &General

    Teaser

    Technology, Digital & Data

    Content Type

    Blog

    Publish date

    12/06/2024

    Summary

    What is a career in IT and Change?  A career in IT and Change is all about driving innovation and transformation within businesses by leveraging technology to improve processes and systems.  At L

    Teaser

    A career in IT and Change is all about driving innovation and transformation.

    Read more

    by

    Enrique Rodriguez

    by

    Enrique Rodriguez

    defined contribution person sitting at desk with laptop smiling
    How to progress your career in Defined Contribution

    Teaser

    Investments

    Content Type

    Blog

    Publish date

    11/07/2024

    Summary

    At Legal & General, we understand that the Defined Contribution (DC) industry is evolving rapidly, and so are the opportunities within it.  For mid to senior-level professionals, progressing to

    Teaser

    Advancing your career in Defined Contribution offers immense potential to make a meaningful impact on the financial futures of countless individuals.

    Read more

    by

    Enrique Rodriguez

    by

    Enrique Rodriguez

    View all

    Job search

    What we do?

    There’s so much more to us than meets the eye. We’re insurers, investors, builders, city-regenerators and green technology champions.

    And whatever the future holds, our people’s knowledge, skill and passion will mean we’re placed to make a real difference to society.

    Click here to join us
    Search for jobs