Rodeo
Get started

Ergo UK Specialty Limited

Information Security Officer

City of London
Posted about 16 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Job Title: Information Security Officer

Department: Compliance

Location: London/Birmingham (Hybrid) - 2 days in the office

No Visa Sponsorship for this role


Role Purpose:

We are looking for an Information Security Officer to support the ongoing development, implementation and maintenance of our information security strategy, policies, controls and risk management processes. The successful candidate will play a central role in protecting information assets, embedding security best practice and supporting compliance with regulatory, Group and business requirements.


Responsibility:

  • Developing and maintaining information security policies, procedures, frameworks and controls.
  • Conducting information security risk assessments, identifying vulnerabilities and supporting proportionate mitigation plans.
  • Supporting incident response, investigation, reporting and follow-up activity for security incidents and breaches.
  • Working with IT, Legal, Compliance, Group and senior stakeholders to strengthen security governance and regulatory alignment.
  • Preparing clear reports, dashboards and updates for governance forums, senior management and executive stakeholders.
  • Delivering security awareness, training and incident response exercises to promote a strong security culture.
  • Supporting audits, third-party reviews and remediation activity linked to information security and IT risk.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.


What you will bring:

  • Strong knowledge of information security, cyber risk, governance, compliance and incident management.
  • Comfortable working across teams, translating technical risks into clear business recommendations, and supporting a regulated environment where integrity, diligence, customer outcomes and effective risk management are essential.

What we are looking for:

  • Experience in information security, cyber security, IT risk or governance, risk and compliance.
  • Knowledge of security frameworks, policies, standards and regulatory expectations relevant to a regulated financial services or insurance environment.
  • Experience supporting risk assessments, incident response, audit activity and security reporting.
  • Strong stakeholder management, communication and advisory skills.
  • A proactive, analytical and collaborative approach, with strong attention to detail and a commitment to continuous improvement.

Key skills:

  • Information security governance, risk and compliance management.
  • Cyber security risk assessment, vulnerability review and risk mitigation planning.
  • Development and maintenance of security policies, standards, procedures and controls.
  • Incident response coordination, investigation, reporting and lessons-learned activity.
  • Knowledge of regulatory requirements and security frameworks relevant to financial services or insurance.
  • Audit support, control monitoring, remediation tracking and management reporting.
  • Security awareness training, phishing simulation reporting and incident response exercises.
  • Stakeholder management, including engagement with IT, Legal, Compliance, Group teams and senior leadership.
  • Clear written and verbal communication, with the ability to translate technical risks into practical business recommendations.
  • Strong analytical thinking, attention to detail, prioritization and continuous improvement mindset.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Why ERGO?

ERGO UK Specialty is a well-established specialist insurer with a strong market reputation. We are focused on profitable, sustainable growth, operational excellence and delivering consistent value to clients and partners.


Equal opportunities

We are an equal opportunities employer and welcome applications from all suitably qualified candidates. We are committed to a fair, inclusive and accessible recruitment process.


If you’re ready to take on this role, we’d love to hear from you.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Information security governance
Risk and compliance management
Cyber security risk assessment
Vulnerability review
Risk mitigation planning
Security policies
Incident response coordination
Regulatory requirements
Audit support
Control monitoring
Remediation tracking
Management reporting
Security awareness training
Phishing simulation
Stakeholder management
Analytical thinking

Location

City of London, England, United Kingdom

Sign up to applySee more jobs like this