Who we’re looking for
We are looking for an experienced cyber and technology risk professional with strong technical skills combined with the ability to communicate with and influence both technical and non-technical senior management.
About Schroders
We’re a global investment manager. We help institutions, intermediaries and individuals around the world invest money to meet their goals, fulfil their ambitions, and prepare for the future.
We have around 6,000 people on six continents. And we’ve been around for over 200 years but keep adapting as society and technology changes. What doesn’t change is our commitment to helping our clients, and society, prosper.
The base
We moved into our new HQ in the City of London in 2018. We’re close to our clients, in the heart of the UK’s financial centre and we have everything we need to work flexibly.
Team Overview
The Non-Financial Risk function is comprised of several key teams:
Operational Risk
Cyber &Technology Risk
Operational Resilience & Business Continuity
The Cyber & Technology Risk team operates as part of the second line of defence, providing oversight across Schroders. This team develops and maintains the tools and frameworks necessary for overseeing cyber and technology risks. It collaborates closely with Global Technology, Information Security, and first-line business units to ensure such risks are clearly defined, assessed, managed, and reported.
Key responsibilities include:
Overseeing cyber risks via the Information Security Risk Oversight Committee and through review of KRIs and KCIs.
Collaborating with information security teams to ensure effective articulation, assessment, and management of cyber risks.
Providing oversight of technology risk through risk control assessments and engagement on strategic technology initiatives.
Monitoring cyber and technology-related risk events to ensure thorough root cause analysis and appropriate remediation.
Providing oversight of key cyber and technology initiatives
Undertaking targeted reviews of key areas of cyber risk.
What you'll do
Primary responsibilities include:
Provide technical 2nd line oversight of Cyber and Technology, ensuring risks are identified and escalated to appropriate senior stakeholders. Work with the 1st line to improve their controls and improve risk management.
Facilitate the ongoing effectiveness of the Information Security Risk Oversight Committee (ISROC) as the primary governance forum for overseeing the management of Cyber Risk across the Group by:
Using a risk based approach to help identify appropriate topics for inclusion on the agenda;
Ensuring high quality submissions are provided as requested;
Ensuring senior stakeholders are fully briefed on key topics prior to the committee; and
Providing direct challenge to first line senior management at the committee when required.
In response to requests from senior management or governance committees (including the Group Risk Committee and ISROC) undertake risk-based reviews of key cyber security and technology processes and controls. Ensuring that findings are appropriately risk assessed and management identify appropriate plans to mitigate the risk.
Develop strong and effective working relationships across all 3 lines of defence to facilitate effective identification, management and remediation of cyber and technology risks.
Review and interpret Red/ Purple Team test results identifying key messages and being able to articulate them to non-technical audiences via briefings.
Demonstrate strong understanding of what are effective response and recovery strategies for cyber incidents.
Apply insights from experience within leading financial services firms to drive enhancements across cyber and technology risk.
Draft entity board-level reports for senior leadership and governing bodies.
Present confidently at governance committee meetings, when required.
The knowledge, experience and qualifications you need
Degree-level education (or equivalent relevant experience).
Significant, demonstrable experience in technology and cyber risk within a control/risk environment (e.g., Internal Audit, 1st Line or 2nd Line Risk/Control).
Strong hands-on technical understanding of cyber risk, including key security domains, common control frameworks, and how to assess control effectiveness.
Experience within Financial Services, ideally asset or wealth management, with an understanding of regulatory expectations and risk governance.
Excellent written communication and attention to detail, with the ability to produce clear, accurate, audience-appropriate reporting (including senior and non-technical stakeholders).
Strong analytical and problem-solving skills, able to interpret complex information, identify root causes, and form sound risk-based judgements.
Strong stakeholder management and influencing skills, with a collaborative, team-oriented approach and confidence to provide robust challenge where needed.
The knowledge, experience and qualifications that’ll help
Professional certifications information security/technology risk (e.g., CISA, CISM, CISSP or equivalent).
Knowledge of asset or wealth management products, operating models and technology landscape.
Consulting/Big Four experience, including delivering risk assessments and presenting findings to senior stakeholders.
Experience in a 1st line technology or cyber security function, partnering closely with engineering/security teams.
Broader banking experience (investment or retail) in a 1st or 2nd line technology/cyber risk capacity.
We recognise potential, whoever you are
Our purpose is to provide excellent investment performance to clients through active management. Diversity of thought, facilitated by an inclusive culture, will allow us to make better decisions and better achieve our purpose. This is why inclusion and diversity are a strategic priority for us and why we are an equal opportunities employer. You are welcome here, regardless of your age, disability, gender identity, religious beliefs, sexual orientation, socio-economic background, or any other protected characteristic.
About UsSkills Required
- Degree-level education or equivalent relevant experience
- Significant, demonstrable experience in technology and cyber risk within a control/risk environment (Internal Audit, 1st or 2nd Line)
- Strong hands-on technical understanding of cyber risk including key security domains, common control frameworks, and assessing control effectiveness
- Experience within Financial Services, ideally asset or wealth management, with understanding of regulatory expectations and risk governance
- Excellent written communication and attention to detail, able to produce audience-appropriate reporting for senior/non-technical stakeholders
- Strong analytical and problem-solving skills, able to interpret complex information and form sound risk-based judgements
- Strong stakeholder management and influencing skills with confidence to provide robust challenge
- Professional certifications in information security/technology risk (e.g., CISA, CISM, CISSP)
- Knowledge of asset or wealth management products, operating models and technology landscape
- Consulting/Big Four experience delivering risk assessments and presenting findings to senior stakeholders
- Experience in a 1st line technology or cyber security function partnering with engineering/security teams
- Broader banking experience (investment or retail) in a 1st or 2nd line technology/cyber risk capacity
Schroders Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Schroders and has not been reviewed or approved by Schroders.
-
Retirement Support — Retirement plans are described as mature and competitive, with strong employer-supported schemes in the UK and a well-regarded 401(k) offering in the U.S. Pensions and retirement savings stand out as a distinctive strength within the total rewards package.
-
Leave & Time Off Breadth — Time off and flexibility are emphasized, with generous annual leave in some markets and volunteer days highlighted in the UK. Flexible/hybrid working is presented as standard, supporting practical use of time-off benefits.
-
Parental & Family Support — Parental leave is highlighted as a strength, including enhanced policies in the UK and an increased paid leave period in the U.S. Family-supportive provisions are positioned as part of a broader wellbeing focus.
Schroders Insights
What We Do
As a global investment manager, we help institutions, intermediaries and individuals across the planet meet their goals, fulfil their ambitions, and prepare for the future. But as the world changes, so do our clients’ needs. That’s why we have a long history of adapting to suit the times and keeping our focus on what matters most to our clients. Doing this takes experience and expertise. We bring together people and data to spot the trends that will shape the future. This provides a unique perspective which allows us to always invest with conviction. We are responsible for £773.7 billion (€912.6 billion/$978.1 billion)* of assets for our clients who trust us to deliver sustainable returns. We remain determined to build future prosperity for them, and for all of society. Today, we have 6,000+ people across six continents who focus on doing just this. We are a global business that’s managed locally. This allows us to always keep our clients’ needs at the heart of everything we do. For over two centuries and more than seven generations we’ve grown and developed our expertise in tandem with our clients’ needs and interests. Source: Schroders, all data as at 30 June 2024. Disclaimer: Investing in securities is subject to risk. The value of investments can go down as well as up and is not guaranteed. Schroders will not make direct contact with you, via any social media platform or direct messaging service, to sell our products. If you think you have been a victim of a scam or have received unsolicited contact using the Schroders name or any associated names, and have any concerns, then please contact our Financial Crime Team using the details below: Telephone: +44(0)20 7658 4004 Email: [email protected] Schroder Investment Management Limited (Head Office): 1 London Wall Place, London EC2Y 5AU Tel: +44 (0)20 7658 6000 Schroder Fund Advisors LLC, Member FINRA, SIPC (US): 875 Third Avenue, New York, NY, 10022 Tel: +1 (800) 730-2932
.png)






