Ergo UK Specialty Limited
Information Security Officer

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Job Title: Information Security Officer
Department: Compliance
Location: London/Birmingham (Hybrid) - 2 days in the office
No Visa Sponsorship for this role
Role Purpose:
We are looking for an Information Security Officer to support the ongoing development, implementation and maintenance of our information security strategy, policies, controls and risk management processes. The successful candidate will play a central role in protecting information assets, embedding security best practice and supporting compliance with regulatory, Group and business requirements.
Responsibility:
- Developing and maintaining information security policies, procedures, frameworks and controls.
- Conducting information security risk assessments, identifying vulnerabilities and supporting proportionate mitigation plans.
- Supporting incident response, investigation, reporting and follow-up activity for security incidents and breaches.
- Working with IT, Legal, Compliance, Group and senior stakeholders to strengthen security governance and regulatory alignment.
- Preparing clear reports, dashboards and updates for governance forums, senior management and executive stakeholders.
- Delivering security awareness, training and incident response exercises to promote a strong security culture.
- Supporting audits, third-party reviews and remediation activity linked to information security and IT risk.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
What you will bring:
- Strong knowledge of information security, cyber risk, governance, compliance and incident management.
- Comfortable working across teams, translating technical risks into clear business recommendations, and supporting a regulated environment where integrity, diligence, customer outcomes and effective risk management are essential.
What we are looking for:
- Experience in information security, cyber security, IT risk or governance, risk and compliance.
- Knowledge of security frameworks, policies, standards and regulatory expectations relevant to a regulated financial services or insurance environment.
- Experience supporting risk assessments, incident response, audit activity and security reporting.
- Strong stakeholder management, communication and advisory skills.
- A proactive, analytical and collaborative approach, with strong attention to detail and a commitment to continuous improvement.
Key skills:
- Information security governance, risk and compliance management.
- Cyber security risk assessment, vulnerability review and risk mitigation planning.
- Development and maintenance of security policies, standards, procedures and controls.
- Incident response coordination, investigation, reporting and lessons-learned activity.
- Knowledge of regulatory requirements and security frameworks relevant to financial services or insurance.
- Audit support, control monitoring, remediation tracking and management reporting.
- Security awareness training, phishing simulation reporting and incident response exercises.
- Stakeholder management, including engagement with IT, Legal, Compliance, Group teams and senior leadership.
- Clear written and verbal communication, with the ability to translate technical risks into practical business recommendations.
- Strong analytical thinking, attention to detail, prioritization and continuous improvement mindset.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Why ERGO?
ERGO UK Specialty is a well-established specialist insurer with a strong market reputation. We are focused on profitable, sustainable growth, operational excellence and delivering consistent value to clients and partners.
Equal opportunities
We are an equal opportunities employer and welcome applications from all suitably qualified candidates. We are committed to a fair, inclusive and accessible recruitment process.
If you’re ready to take on this role, we’d love to hear from you.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills