Technology Risk & Controls Manager

London, United Kingdom

LegalAndGeneral

Legal & General are a leading UK financial services provider, offering life insurance, pensions, retirement and investment services. Get a quote today.

View company page

Apply now Apply later

Company Description

Legal & General is one of Europe’s largest asset managers, providing clients and partners with complex, responsible investment solutions, across public and private markets. As a global investor, we are present where our clients most need us – from Hong Kong and Singapore, to Chicago and major European financial hubs.

Created by combining our investment management (LGIM) and asset origination (LGC) capabilities, our Asset Management division works with our Institutional Retirement and Retail divisions to benefit our clients and customers – which include individual savers, pension scheme members and global institutions – and deliver enhanced shareholder returns.

Joining us means becoming part of a market-leading team, with capabilities across the full spectrum of asset classes, with an enduring commitment to responsible investment and creating long-term, sustainable value for our clients and partners.

Job Description

We have a fantastic opportunity for a Technology Risk & Controls Manager to join us in London!

You’ll play a key role in developing and embedding our risk framework to ensure that our technology risk profile remains fully understood, whilst also co-ordinating assurance activities with external/internal audit, operational risk, and controls assurance functions.

If you’re looking for an exciting 1st line role with lots of opportunity to grow and develop then this could be the ideal next move for you!

What you'll be doing:

  • Acting as 1st line of defence technology controls officer ensuring compliance with IT controls through substantive testing and/or design assurance reviews
  • Constructively challenging control owners to strengthen the existing controls self-attestation process
  • Proactively identifying, logging and assessing technology risks and issues impacting the LGIM business. Producing regular reports for the LGIM technology risk committee articulating material risks, emerging issues and escalations
  • Defining and producing Key Risk Indicators (KRI) and Key Performance Indicators (KPI) to support the continuous risk monitoring process
  • Acting as engagement lead for external control assurance reviews performed as part of annual commitments including: AAF, SOC, CASS, Statutory External Audit
  • Overseeing the delivery of access provisioning, de-provisioning and modification requests operated by the Identity & Access Management Operations team
  • Operating the Risk & Controls Self-Assessment (RCSA) process by performing dedicated inherent and residual risk assessments
  • Supporting the delivery of internal audits, operational risk spotlight reviews and compliance assessments of the technology management process

Qualifications

Who we're looking for:

  • You’ll be adept in delivering, managing and quality assuring Information Security assurance activities
  • You’ll also have a good understanding of IT controls and IT risks to identify and evaluate control effectiveness and identify any potential gaps between IT risks and existing IT controls
  • An ability to manage complex stakeholder relationships
  • Information Security and/or Information Technology industry certification (CISA, CISSP, CISM or equivalent) would be a huge plus!
  • Perhaps you’re currently working in a consulting role and you’re looking for a move in-house?

Whatever your role, we reward performance and behaviour with a package that looks after all the things that are important to you. Here are some of the benefits we offer: 

  • The opportunity to participate in our annual, performance-related bonus plan and valuable share schemes  
  • Generous pension contribution  
  • Life assurance   
  • Private medical insurance (permanent employees only) 
  • At least 25 days holiday, plus public holidays, 26 days after 2 years’ service. There’s also the option to buy and sell holiday 
  • Competitive family leave 
  • Participate in our electric car scheme, which offers employees the option to hire a brand-new electric car through tax efficient salary sacrifice 
  • There are the many discounts we offer – both for our own products and at a range of high street stores and online   
  • In 2023, some of our workspaces were redesigned. Our offices are great spaces to connect and collaborate and have your wellbeing at the heart 

Additional Information

Legal & General is a leading financial services group and major global investor, named Britain’s Most Admired Company in 2023, for the second year running. Rated top in our sector and top for inspirational leadership, we have a strong heritage and an exciting future.

We aim to build a better society for the long term by investing our customers’ money in things that make life better for everyone.

If you join us, you’ll be part of a welcoming culture, with opportunities to collaborate with people of diverse backgrounds, views and experiences. Guided by leaders with integrity who care about your future and wellbeing. Empowered through initiatives which support people to develop their careers and excel.

We strive to be open, mindful and inclusive, so are always willing to discussing flexible working arrangements and reasonable accommodations for candidates with specific needs.

If you’re open to find out more, we'd love to hear from you.

Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  3  0  0

Tags: Audits CISA CISM CISSP Compliance Monitoring Risk assessment SOC

Perks/benefits: Competitive pay Flex hours Health care Medical leave Salary bonus

Region: Europe
Country: United Kingdom

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.