Provn
Senior Cyber Security Risk Manager

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Senior Cyber Security Risk Manager
Edinburgh | Hybrid
A well-established financial services organisation operating in the Investment Management world is looking for an experienced Senior Cyber Security Risk Manager to join its security function and take a leading role across cyber risk, assurance, and security governance.
Operating within a complex and regulated environment, the organisation continues to invest significantly in its technology and security capabilities. This is a broad position offering exposure across technical security, enterprise risk, security assurance, and the assessment of new technology.
You’ll work closely with security leadership, technology teams, and stakeholders across the wider organisation to identify and assess security risks, evaluate the effectiveness of controls, and help ensure technology is introduced and operated securely.
The role would suit an experienced cyber security professional who combines strong technical security knowledge with practical risk management and stakeholder engagement skills.
Responsibilities
- Identify and assess cyber and technology risks across a complex enterprise environment
- Review the effectiveness of security controls and recommend improvements
- Provide security input into new technology initiatives, projects, and solutions
- Assess security risks and exceptions, helping stakeholders make informed risk-based decisions
- Support the investigation and management of security incidents
- Assess security across areas including identity, endpoints, data protection, and cloud technologies
- Perform security assessments of external suppliers and technology partners
- Coordinate security testing and support remediation activity
- Maintain cyber risk assessments and contribute to wider risk management activities
- Support internal and external assurance, audit, and regulatory requirements
- Work with external security partners and specialist providers
- Contribute to security awareness and education across the organisation
- Provide guidance and support to other members of the security team
- Communicate security risks and recommendations to senior technical and business stakeholders
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Requirements
- Strong experience across cyber security risk, assurance, and security controls
- Good technical understanding of modern enterprise security environments
- Experience assessing security across identity, endpoint, data, and cloud technologies
- Experience providing security input into new technology or business solutions
- Understanding of security incident investigation and response
- Knowledge of information protection and data security controls
- Experience working with recognised security frameworks and risk management processes
- Experience operating within complex or regulated organisations
- Strong communication and stakeholder management skills
- Ability to independently manage security and risk initiatives


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Desirable
- CISSP, CISM, CRISC, or equivalent security certification
- Experience within financial services or another regulated industry
- Exposure to cloud and hybrid technology environments
- Experience coordinating security testing or assurance exercises
- Experience mentoring or supporting other security professionals
Previous experience within a specific financial services sector is not essential. The organisation is primarily interested in security professionals who can combine strong technical understanding with pragmatic risk assessment and sound judgement.
This is an opportunity to take significant ownership across cyber security risk and assurance while working closely with senior stakeholders in an organisation continuing to invest in its security capability.
The position offers a competitive base salary and benefits package.
Provn Talent Solutions Ltd is operating as an employment agency under the Conduct of Employment Agencies and Employment Businesses Regulations 2003. Your application will be handled in line with our Privacy Policy.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London