Mandarin Speaking Information Security Manager
Summary
An office-based Information Security Manager for a bank's Central London branch, owning the security governance framework, risk register, incident response, vendor security, and UK regulatory/operational-resilience compliance as a 1.5 Line of Defence. Requires fluent Mandarin and English plus banking-sector security experience.
Salary: £36,000 - 72,000 per year
Requirements:- We require fluent Mandarin and English, with excellent verbal and written communication and presentation skills in both languages.
- We require working experience in Information Security, Cyber Security, Network Security, or IT Risk Management, preferably within financial services.
- We require a Masters degree or above in Information Security, Computer Science, Information Technology, or a related discipline.
- We highly value professional certifications such as CCIE, HCIE, CISSP, CISM, CISA, or ISO27001 Lead Implementer.
- We prefer candidates with experience developing and implementing information security governance frameworks.
- We expect a strong understanding of information security standards and frameworks such as ISO 27001, NIST Cybersecurity Framework, or CIS Controls.
- We expect good knowledge of UK regulatory expectations related to cyber security, operational resilience, and outsourcing risk.
- We expect understanding of banking IT environments, including networks, applications, and infrastructure security.
- We value strong analytical and risk assessment skills.
- We need the ability to communicate effectively with technical teams and senior management.
- We need the ability to coordinate incident response and cross-departmental collaboration.
- We expect a high level of integrity, professionalism, risk awareness, and sense of responsibility.
- We need the ability to work effectively in a regulated banking environment.
- We establish, maintain, and improve our information security framework to protect the confidentiality, integrity, and availability of information assets, particularly for our London Branch.
- We develop and oversee security policies, strategies, and controls in line with internal governance, UK regulatory requirements, and industry best practices.
- We operate as a 1.5 Line of Defence within the IT function, providing independent security risk oversight and challenging the effectiveness of IT security controls.
- We support regulatory compliance and operational resilience.
- We upgrade and maintain our information security policies, standards, and procedures in line with Head Office policies and regulatory requirements.
- We maintain an effective information security governance framework within the Branch.
- We ensure information security policies and procedures are properly implemented and periodically reviewed.
- We identify, assess, and monitor information security risks affecting the Branch.
- We maintain the information security risk register and ensure appropriate mitigation measures are implemented.
- We provide information security risk reporting to senior management.
- We provide oversight and challenge to the implementation of information security controls performed by the IT team.
- We monitor the effectiveness of technical and procedural security controls across systems, infrastructure, and applications.
- We coordinate periodic security reviews and internal control assessments.
- We oversee cyber security measures including vulnerability management, access control, security monitoring, and incident detection.
- We ensure regular vulnerability assessments, security reviews, and penetration testing are conducted.
- We establish and maintain procedures for managing information security incidents.
- We coordinate investigation, response, and reporting of cyber security incidents.
- We support our operational resilience framework from an information security perspective.
- We participate in disaster recovery planning, cyber security exercises, and resilience testing.
- We assess information security risks associated with third-party service providers and outsourcing arrangements.
- We ensure information security requirements are incorporated into vendor management and outsourcing governance processes.
- We ensure compliance with applicable UK regulatory expectations relating to information security, cyber risk, and operational resilience.
- We support regulatory reviews, internal audit, and external audit activities.
- We promote information security awareness across the Branch.
- We organise information security training and awareness programmes for staff.
- We perform any other duties as required by the line manager or Senior Management.
- Support
- Network
- Security
More:
We are recruiting for a Mandarin speaking Information Security Manager for our Central London branch on a permanent, office-based basis. This is a competitive role depending on experience and sits within our banking environment. The position supports our London Branch with information security governance, cyber security oversight, risk management, regulatory compliance, and operational resilience. We are committed to diversity and an inclusive workplace culture, and we welcome applications from all qualified candidates who are eligible to work in the UK and can provide the required supporting documentation.
last updated 36 week of 2026