Business Unit: Technology Operations & Cyber Security
Salary range: £39,200 to £49,000 Per Annum DOE
Location: Hybrid – Occasional Travel to a UK Virgin Money Hub when required
Contract type: Permanent – Full Time
Our Team
The overarching ambition for COO remains – leverage the power of technology to deliver superb products and services for our customers. Technology Operations & Cyber Security (TOCS) plays a critical role in that pursuit, specifically, protecting our organisation and its critical data from cyber criminals as well as managing all technical services used by colleagues and customers alike.
Business Management and Control (BM&C) ensures TOCS is effective and fit for purpose in this ambition by leading the way in Financial Planning & Management, Third Party Management, Risk & Control, People & Engagement and Insights & Reporting.
We are seeking a highly skilled and motivated Technology Control Specialist to join our team, reporting directly to the Technology Control Manager. In this role, you will support the Technology Control Manager in maintaining the technology operations and cyber security risk and control profile. You will be responsible for ensuring robust risk and control governance, managing currency and resilience risk, and conducting comprehensive risk and control assessments. Your insights and analysis will be crucial in driving our risk management strategy.
What you’ll be doing:
- Supporting the Technology Control Manager and Lead in maintaining the TOCS risk and control profile within the Integrated Risk Management system and in line with VM Risk Management Framework.
- Assist with risk and control governance, monitoring compliance with relevant standards and regulations.
- Monitor currency and resilience risk to ensure the stability and reliability of our technology infrastructure.
- Assist with thorough risk and control assessments, providing detailed insights and analysis.
- Assist with independent control testing and validation to ensure the effectiveness of risk controls.
- Manage and validate risk issues, ensuring timely resolution and mitigation.
- Monitor risk event management, including identification, assessment, and response.
- Assist with the development and delivery of risk education and awareness programs to enhance the risk culture within the organization.
- Collaborate with all lines of defence and key stakeholders to ensure a cohesive and comprehensive approach to risk management.
This role requires a unique blend of technical skills and experience. You’ll need to have:
- Proven experience in technology risk management and control.
- Strong understanding of cyber security principles and practices.
- Excellent analytical and problem-solving skills.
- Ability to work collaboratively with cross-functional teams and stakeholders.
- Strong communication and presentation skills.
- Relevant certifications (e.g., CISA, CISSP, CRISC) are a plus.
It’s a bonus if you have but not essential
- Experience as a Cyber Security Engineer, Cyber Security Analyst with an interest in becoming a Cyber Security Engineer.
- Experience with Terraform, Python, Javascript/Node.js, PowerShell or Bash
- Knowledge of infrastructure and application monitoring, such as Icinga, Elastic Stack or Dynatrace.
- Endpoint Security certifications (especially Microsoft centric) would be advantageous.
- Proven ability to design and deploy endpoint/server security solutions.
Red Hot Rewards
- Generous holidays - 38.5 days annual leave (including bank holidays and prorated if part-time) plus the option to buy more.
- Up to five extra paid well-being days per year.
- 20 weeks paid, gender-neutral family leave (52 weeks in total) for expectant parents and those looking to adopt.
- Market-leading pension.
- Free private medical cover, income protection and life assurance.
- Flexible benefits include Cycle to Work, wellness and health assessments, and critical illness.
And there's no waiting around, you'll enjoy these benefits from day one.
If we’re lucky to receive a lot of interest, we may close the advert early, please ensure to submit your applications as soon as possible.
We're all about helping you Live a Life More Virgin, so happy to talk flexible working with you.
Say hello to Virgin Money
Virgin Money is so much more than just a bank. As part of the Nationwide group, together we're the UK's first full-service mutual bank serving millions of retail and business customers and all driven by our purpose; Banking but fairer, more rewarding and for the good of society. With us, you’ll be part of an organisation uniquely positioned to make a difference to the lives of customers, communities and broader society and embark on a collaborative, customer obsessed, and fun-filled career journey. Embrace the weekdays, enjoy fantastic perks, and make a meaningful positive difference. Time to discover what it means to be part of the first mutual full-service banking provider.
Be yourself at Virgin Money
At Virgin Money, we celebrate everyone. We have fun, think big, and relentlessly include each other, all in pursuit of our purpose: Banking – but fairer, more rewarding, and for the good of society. We’re committed to creating an inclusive culture where colleagues feel safe and inspired to contribute, speak up and be heard.
As a Disability Confident Leader, we're committed to removing any obstacles to inclusion. If you need any reasonable adjustments or support making your application, contact our Talent Acquisition team careers@virginmoney.com
It’s important to note that there may be occasions where it’s not possible to interview all candidates declaring a disability who meet the essential criteria for the job. In certain recruitment situations such as receiving a high-volume of applications, we may need to limit the overall numbers of interviews offered to both disabled and non-disabled applicants.
Now the legal bit
Although some of our roles allow you to be based anywhere in the UK, we'll need you to confirm you have the right to work in the UK.
If you're successful in securing a role with us, there are some checks you need to complete before starting. These include credit and criminal record checks and three years' worth of satisfactory references. If the role is part of the Senior Manager Regime and Certification Regime, it requires enhanced pre-employment checks – we'll ask for six years of regulatory references, and once in the role, you'll be subject to periodic employment checks.