record of delivering digital transformation programmes and managing remote IT operations In-depth knowledge of IT infrastructure, cloud platforms, cybersecurity, and enterprise architecture Experience with governance frameworks (e.g., ITIL, COBIT) and relevant certifications such as CISM, CISSP, TOGAF, Agile, or PRINCE2 Excellent leadership, strategic thinking, and communication skills Disclosure and Barring Service Check This post is subject to the Rehabilitation More ❯
Act) and industry-specific regulations Experience implementing compliance andcontrol frameworks Proficiency in IT governance and quality standards Knowledge of security management frameworks like ISO/IEC 27001, ITIL, COBIT, NIST standards Strong stakeholder management skills High integrity and professionalism in handling confidential matters Familiarity with risk management tools like OneTrust or similar is preferred Benefits: At Sword, we value More ❯
standards, such as NIST, ISO 27001, or similar. General understanding of operational risk and risk-relatedcontrol frameworks and practices such (ISO 27001, NIST SP 800-53, NIST CSF, COBIT, ITIL, etc.). Experience with IAM tools and technologies, such as Microsoft Entra ID (formerly Azure Active Directory), SailPoint, or similar. Experience with CyberArk for user and service account privileged More ❯
Staines-upon-Thames, Middlesex, England, United Kingdom
Bupa UK
of third party assurance activities, either for supplier or customer assurance. Extensive knowledge of IT risk management within GRC function, preferably processes, concepts, terminology andcontrol frameworks e.g. ISACA, COBIT, ITIL. Certified in CISA or relevant certifications with one of the following: CISM, CISSP, equivalent experience. Strong knowledge of relevant laws, regulations, and industry standards e.g. UK GDPR, ISO More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
one end to end programme process including the use of ServiceNow Integrated Risk Management module to support integrated IT risk Management processes. An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001, SOC2. Cybersecurity or IT Risk Management experience which should include either control testing or compliance assessment experience. A strong understanding of system development life cycles approaches More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
one end to end programme process including the use of ServiceNow Integrated Risk Management module to support integrated IT risk Management processes. An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001, SOC2. Cybersecurity or IT Risk Management experience which should include either control testing or compliance assessment experience. A strong understanding of system development life cycles approaches More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
one end to end programme process including the use of ServiceNow Integrated Risk Management module to support integrated IT risk Management processes. An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001, SOC2. Cybersecurity or IT Risk Management experience which should include either control testing or compliance assessment experience. A strong understanding of system development life cycles approaches More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
one end to end programme process including the use of ServiceNow Integrated Risk Management module to support integrated IT risk Management processes. An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001, SOC2. Cybersecurity or IT Risk Management experience which should include either control testing or compliance assessment experience. A strong understanding of system development life cycles approaches More ❯
higher) in Computer Science, Information Systems, Engineering, or related field. • MBA or postgraduate qualification (desirable). • ITIL v4 Managing Professional or ITIL Expert (mandatory). • Certifications in ISO 27001, COBIT, Microsoft Azure, Lean Six Sigma, Prince2, or SAFe Agilist. Leadership & Communication • Gravitas to influence regulators and auditors. • Exceptional stakeholder management and communication skills. • Commercial acumen for budgeting, vendor negotiation, andMore ❯
higher) in Computer Science, Information Systems, Engineering, or related field. • MBA or postgraduate qualification (desirable). • ITIL v4 Managing Professional or ITIL Expert (mandatory). • Certifications in ISO 27001, COBIT, Microsoft Azure, Lean Six Sigma, Prince2, or SAFe Agilist. Leadership & Communication • Gravitas to influence regulators and auditors. • Exceptional stakeholder management and communication skills. • Commercial acumen for budgeting, vendor negotiation, andMore ❯
government clients is highly desirable.* Must be a British National and SC cleared or eligible.Desirable:* Experience working in regulated or high-security environments.* Knowledge of additional frameworks such as COBIT, ITIL, or GDPR.* Project management experience or qualifications (e.g., PRINCE2, Agile).Disclaimer:Adecco are operating as an Employment Agency. Adecco are an equal opportunities employer and we are on the More ❯
clients is highly desirable. * Must be a British National and SC cleared or eligible. Desirable: * Experience working in regulated or high-security environments. * Knowledge of additional frameworks such as COBIT, ITIL, or GDPR. * Project management experience or qualifications (e.g., PRINCE2, Agile). Disclaimer: Adecco are operating as an Employment Agency. Adecco are an equal opportunities employer and we are on More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
Experis
Lead the design and implementation of security management processes for a new service offering. Develop and maintain a unified ISMS aligned with ISO/IEC 27001, NIST, PRISMA, andCoBIT frameworks. Conduct gap analyses and risk assessments to ensure compliance with relevant security standards and regulatory requirements. Collaborate with stakeholders across technical and business teams to embed security best practices … are in place and effective. Essential Skills & Experience: Proven experience in information assurance, cyber security, or risk management roles. Strong knowledge and practical experience with ISO27001, NIST, PRISMA, andCoBIT frameworks. Demonstrated ability to design and implement ISMS in complex, multi-stakeholder environments. Excellent communication and stakeholder engagement skills. Relevant certifications such as CISSP, CISM, ISO27001 Lead Implementer/Auditor More ❯
As a Lead Security Control Assessor, you will be responsible for leading the assessment and evaluation of security controls across systems and processes both on-premise and in the cloud, to ensure they effectively mitigate risks and comply with regulatory More ❯
eFront, Yardi, Viewpoint, Fenergo) is a plus but not essential. Strong understanding of data management, integration patterns (e.g., ETL, API), and security frameworks Design experience or qualifications i.e. TOGAF, COBIT, Zachman, AWS/Azure Solutions Architect etc. an advantage ERP, Financial Services Systems and associated architectures experience along with relevant platform certifications (e.g., SAP, Oracle, Workday) highly desirable Design experience More ❯
Client stakeholders. Review the outcomes of the transition projects to capture learnings & disseminate across organization Technical Skills – Basic Knowledge on security models such as ITIL, ISO27002, PCI DSS andCobit 5 Experience on Security tools & Technologies Integration of testing mechanisms with industry best practices such as OWASP & NIST Good Understanding of IT security policy, procedure, design, and implementation. Behavioral Skills More ❯
data models and reporting frameworks. Ensure alignment of analytics and reporting outputs with enterprise risk management andcontrol frameworks. Strong knowledge of risk management frameworks (e.g., NIST, ISO 27001, COBIT) andcontrol environments. Deep understanding of IT general controls, cyber security principles, andtechnology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau More ❯
demonstrating compliance against internal security requirements and external commitments including certification and regulatory requirements. Provide subject matter expertise in the application of established standards including NIST, PCI-DSS, GDPR, COBIT, ISO 27001 and Cyber Essential compliance to any new or existing programme of work. Prepare and support internal and/or external compliance audit activities. Manage remediation of any audit … Maintain up-to-date knowledge of legal & regulatory requirements impacting Technologyand Operations and its Partners. Apply comprehensive knowledge of legal, regulatory obligations, and industry best practices (e.g., NIST, COBIT, ISO27001, PAS 555) to ensure compliance with technology standards. Schedule and review risk and compliance audits; direct issues to appropriate resources for investigation and resolution. Our people make us who … deliver for our customers. LI-KS1 Possess one of the Risk or security certifications (CISSP, CRISC, CISM). Have good knowledge and practical experience of NIST, PCI-DSS, GDPR, COBIT, ISO 27001, or Cyber Essentials. Previous experience in a similar role, with the ability to work in a dynamic and changing environment. Excellent team player who can influence, help, andMore ❯
london, south east england, united kingdom Hybrid / WFH Options
Harvey Nash Group
record of influencing executive stakeholders and delivering secure, compliant outcomes in a complex, regulated financial services environments. You will have a strong knowledge of ISO, NIST, PCI-DSS, SOX, COBIT, GDPR, andrelated frameworks, expertise in IT risk, audit, and regulatory compliance and professional certifications (CISSP, CISM, or CISA) or willingness to obtain. Experience working under FCA/SMCR andMore ❯
background or large multinational experience . Experienced in audit (external and internal) and familiar with Internal Audit standards. Technology Risk/Technology Audit/Technology Controls Certifications: CISA, ITIL, COBIT (CISSP, CISM, CRISC, Prince2 ISO27001 desirable) Able to make a high impact on management, to manage stakeholders and to communicate clearly. Display a passion for working in teams and help … drive personal development. IT process knowledge e.g. as defined in standards like ITIL, Cobit, ISO, or British Standards Possess IT knowledge on IT networks, operating systems, databases, and applications, ideally including the Microsoft stack, Cloud technologies and SAP. Well-versed in assessing business andtechnology risks and controls, be able to articulate the risks, and recommend business-focused solutions. Able More ❯
background or large multinational experience . Experienced in audit (external and internal) and familiar with Internal Audit standards. Technology Risk/Technology Audit/Technology Controls Certifications: CISA, ITIL, COBIT (CISSP, CISM, CRISC, Prince2 ISO27001 desirable) Able to make a high impact on management, to manage stakeholders and to communicate clearly. Display a passion for working in teams and help … drive personal development. IT process knowledge e.g. as defined in standards like ITIL, Cobit, ISO, or British Standards Possess IT knowledge on IT networks, operating systems, databases, and applications, ideally including the Microsoft stack, Cloud technologies and SAP. Well-versed in assessing business andtechnology risks and controls, be able to articulate the risks, and recommend business-focused solutions. Able More ❯
background or large multinational experience . Experienced in audit (external and internal) and familiar with Internal Audit standards. Technology Risk/Technology Audit/Technology Controls Certifications: CISA, ITIL, COBIT (CISSP, CISM, CRISC, Prince2 ISO27001 desirable) Able to make a high impact on management, to manage stakeholders and to communicate clearly. Display a passion for working in teams and help … drive personal development. IT process knowledge e.g. as defined in standards like ITIL, Cobit, ISO, or British Standards Possess IT knowledge on IT networks, operating systems, databases, and applications, ideally including the Microsoft stack, Cloud technologies and SAP. Well-versed in assessing business andtechnology risks and controls, be able to articulate the risks, and recommend business-focused solutions. Able More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
MN Climate Innovation Finance Authority (MNCIFA)
to stand your ground when challenged Undergraduate or equivalent degree in informationtechnology, computer science or a related discipline; and relevant professional certifications (e.g. CISA, CISSP, CCAK, CCSP, ITIL, COBIT) preferred Interest in coding, cyber security, data analytics, as well as emerging technologies relating to artificial intelligence, cloud and robotics is an advantage How we'll support you GA's More ❯
risk and controls processes. Good understanding of the retail industry and its needs towards technology risks and controls. Strong understanding with various control frameworks and regulatory requirements, such as COBIT, NIST-CSF, Sarbanes-Oxley (SOX), Privacy (CCPA, GDPR, etc.), and other leading practice frameworks. An ability to communicate complex and technical issues to diverse audiences, orally and in writing, in More ❯
Deep understanding of UK/EU regulatory drivers (e.g., FCA/PRA Operational Resilience Policy, DORA, SYSC 8, PS 21/3, CP4/24) and relevant industry frameworks (COBIT, ITIL, ISO 27001/22301, NIST CSF). Strong analytical skills with the ability to translate complex technical issues into clear, business-focused recommendations. Possession of strong team working andMore ❯