Information Security Consultant

Information Security Consultant

European Bank for Reconstruction and Development (EBRD)

September 12, 2025October 27, 2025LondonUnited Kingdom
Job Description
Job Posting Organization:
The European Bank for Reconstruction and Development (EBRD) is a prominent international financial institution established to foster the transition towards open market-oriented economies and promote private and entrepreneurial initiatives in countries across Europe, Central Asia, and beyond. Founded in 1991, the EBRD operates in over 30 countries and employs a diverse workforce of thousands of professionals. The bank's mission is to support the development of the private sector and to promote sustainable and inclusive economic growth. The EBRD is known for its commitment to environmental sustainability, social inclusion, and good governance, making it a leader in responsible investment practices.

Job Overview:
As an security" style="border-bottom: 1px dotted #007bff !important;">security" style="border-bottom: 1px dotted #007bff !important;">Information Security Consultant within the Operational Risk Management (ORM) team at the EBRD, you will play a crucial role in safeguarding the bank's information assets and IT facilities. This position is designed for a highly skilled individual who will support the Head of Information Security in managing Information Security (IS) risks across the organization. Your responsibilities will include providing technical security consultancy, managing risk assessments, and ensuring compliance with regulatory standards. You will also be involved in identifying and assessing risks related to artificial intelligence (AI) and developing remediation programs to address these risks. The role requires collaboration with various departments, particularly the IT Department, to ensure that security measures are effectively implemented and maintained. You will also be expected to contribute to key projects focused on cybersecurity and data protection, making this a dynamic and impactful position within the bank.

Duties and Responsibilities:
The duties and responsibilities of the Information Security Consultant include conducting comprehensive Information Security and Cybersecurity assessments, performing technical risk evaluations, and designing remediation projects specifically targeting Data Leakage, Supplier Security Assurance, and AI-related risks. You will liaise with IT and Managed Security Service Provider (MSSP) teams to identify and remediate security risks and incidents. Additionally, you will draft reports, update risk registers, and maintain documentation that aligns with best practices such as ISO 27001 and NIST Cybersecurity Framework (CSF). Tracking industry security trends and their implications will also be part of your role, as will contributing to social engineering assessments and business-as-usual (BAU) risk mitigation efforts. You will influence and support organizational change by aligning policy updates with new regulations and evolving business needs.

Required Qualifications:
To qualify for this position, candidates must possess a Bachelor’s or Master’s degree, preferably in IT, Security, or Risk Management. Additionally, at least one recognized Information Security qualification is required, such as CISM, CISA, CISSP, ISO 27001 Lead Auditor/Implementer, or CIPP/E. Proven experience in delivering project and supplier assurance activities within the Information Security domain is essential. Strong written and verbal communication skills are necessary, particularly the ability to convey technical information in a manner that is accessible to non-technical stakeholders. Effective project management skills and the ability to engage with various stakeholders are also critical for success in this role.

Educational Background:
Candidates should have a solid educational background, ideally holding a Bachelor’s or Master’s degree in a relevant field such as Information Technology, Cybersecurity, or Risk Management. This educational foundation will provide the necessary knowledge and skills to effectively manage information security risks and contribute to the bank's overall security posture.

Experience:
The position requires candidates to have substantial experience in the field of Information Security, particularly in delivering project and supplier assurance activities. This experience should include a demonstrated ability to manage risk assessments and implement security measures effectively. Candidates should also have experience working in a collaborative environment, managing multiple priorities, and maintaining a high level of attention to detail.

Languages:
While proficiency in English is mandatory for this position, knowledge of additional languages may be considered an asset. Strong communication skills in English, both written and verbal, are essential for effectively interacting with diverse stakeholders and conveying complex information clearly.

Additional Notes:
This position is offered on a short-term contract basis, with a duration of 12 months. The EBRD promotes a flexible working environment, expecting employees to work in the office approximately 50% of the time. The bank values diversity and encourages applications from qualified candidates regardless of their background, ensuring an inclusive workplace. Compensation and benefits details are typically provided during the interview process.
Similar Jobs