
Senior Manager, TPRM, Cyber Security, Financial Services
- London
- Permanent
- Full-time
- Managing a portfolio of TPRM engagements with our clients, responsible for the day-to-day running of the engagements including meeting quality, time and budget targets
- Working with prospective clients to agree, scope and plan the delivery phase of engagements
- Drive go-to-market strategy for TPRM services, including thought leadership, solution development, and alliance partnerships.
- Champion the use of emerging technologies (e.g., AI, automation, continuous monitoring platforms) to enhance TPRM capabilities.
- Oversee the design and implementation of scalable TPRM operating models and tooling (e.g., ServiceNow VRM, Archer, ProcessUnity).
- Lead the development of next-generation TPRM capabilities, including continuous monitoring, ESG risk integration, and AI-driven risk intelligence.
- Provide subject matter guidance on evolving regulatory frameworks (e.g., DORA, EBA Outsourcing, PRA SS2/21) and their impact on third-party ecosystems.
- Lead regulatory response programmes and remediation efforts for clients.
- Mentor and develop future leaders within the Cyber & Resilience practice.
- Contribute to practice growth through recruitment, capability building, and internal training initiatives.
- Creating thought leadership and market materials for selling and promoting EY Cyber and TPRM offerings
- Oversee financial aspects of engagements by organising staffing, tracking fees and communicating issues to engagement partners
- Develop people through effectively supervising, coaching, and mentoring staff
- Conduct performance reviews and contribute to performance feedback for staff
- Contribute to people initiatives including recruiting, retaining, and training Cyber and TPRM professionals
- Recognise the value of teamwork, facilitating and encouraging collaboration amongst team members and motivate teams to maximise performance
- Lead internal communities of practice focused on innovation, regulatory change, or sector-specific TPRM challenges.
- Project experience and client knowledge gained from professional practice across a number of TPRM engagements, including aspects of Compliance, IT Risk Management, Cyber, Resilience, and Privacy.
- Team leadership and management experience, including the coaching and mentoring of more junior staff and direct reports
- Strong academic record, ideally to a bachelor's degree-level or equivalent industry experience
- Awareness and understanding of National and International Security Standards (e.g., NIST, ISO27001), reporting standards (e.g., SOC/ISAE), and privacy or TPRM regulations, such as UK Data Protection Act, GDPR, DORA, etc.
- Willingness to travel
- Creative and independent with good problem-solving skills
- Excellent written and verbal communication skills for report writing, client presentations, and project management
- At least 8 years of relevant experience (desirably within resilience, cyber, or TPRM). Preferably with experience in a consulting role in a leading consultancy firm.
- Proven track record of delivering complex, multi-stakeholder programmes in regulated industries
- Strong commercial acumen and experience managing large client accounts or portfolios.
- Experience in Financial Services, Government Organisations, or the Military
- Industry related certification preferred (e.g., CISSP, CISA, CISM, CRISC, ISO27001 Lead Implementer/Auditor)
- Solution related experience, such as the use of platforms like ProcessUnity, ServiceNow, and Azure