CSF and NIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain risk register in RSA Archer. Identify assess and prioritize security risk across the organisation’s information assets and environments. Understanding security gaps and provide evaluation and treatment options, consultation on remediation approaches to … risk management and taxonomy principles, to reduce risk to an acceptable level. Knowledge of vulnerability management and incident management practices. Ability to learn GRC tools and best practices. RSAArcher is preferred. Financial and/or Banking industry experience preferred. Professional qualifications/certifications Ideally qualified in MSc Information Security, CICA, CRISC, CISM and/or More ❯
CSF and NIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain risk register in RSA Archer. Identify assess and prioritize security risk across the organisation’s information assets and environments. Understanding security gaps and provide evaluation and treatment options, consultation on remediation approaches to … risk management and taxonomy principles, to reduce risk to an acceptable level. Knowledge of vulnerability management and incident management practices. Ability to learn GRC tools and best practices. RSAArcher is preferred. Financial and/or Banking industry experience preferred. Professional qualifications/certifications Ideally qualified in MSc Information Security, CICA, CRISC, CISM and/or More ❯
applies their expertise to recommend corrective actions, improvements to security controls and runs lessons learned forums. You will also conduct regular risk assessments and maintain risk register in RSA Archer. The company operate a hybrid work policy and therefore you must be willing to commit to 2 days per week and must be within commutable distance of their … with security industry standards such as NIST CSF and NIST 800-53. Hands on testing of Security controls Conduct regular risk assessments and maintain risk register in RSA Archer. Represent security on audits and assessments, ensuring compliance with internal and external requirements. Identify assess and prioritize security risk across the organisation's information assets and environments. Understanding … risk management and taxonomy principles, to reduce risk to an acceptable level. Knowledge of vulnerability management and incident management practices. Ability to learn GRC tools and best practices. RSAArcher is preferred (alternatives considered). Professional Certifications: Ideally qualified in MSc Information Security, CICA, CRISC, CISM and/or Data analysis beneficial but not essential if More ❯
City of London, Greater London, UK Hybrid / WFH Options
Spencer Rose
applies their expertise to recommend corrective actions, improvements to security controls and runs lessons learned forums. You will also conduct regular risk assessments and maintain risk register in RSA Archer. The company operate a hybrid work policy and therefore you must be willing to commit to 2 days per week and must be within commutable distance of their … with security industry standards such as NIST CSF and NIST 800-53. Hands on testing of Security controls Conduct regular risk assessments and maintain risk register in RSA Archer. Represent security on audits and assessments, ensuring compliance with internal and external requirements. Identify assess and prioritize security risk across the organisation's information assets and environments. Understanding … risk management and taxonomy principles, to reduce risk to an acceptable level. Knowledge of vulnerability management and incident management practices. Ability to learn GRC tools and best practices. RSAArcher is preferred (alternatives considered). Professional Certifications: Ideally qualified in MSc Information Security, CICA, CRISC, CISM and/or Data analysis beneficial but not essential if More ❯
Organisation, experience with planning, data reporting, information and updates Strong ability to work with others to drive forward security objectives. Meticulous attention to detail. Experience with GRC tools (RSAArcher preferred) Desired qualifications/certifications: Ideally a Master's Degree in Infromation Security, CICA/CRISC/CISM/Data Analysis NIST CSF, ISO27001, SOC More ❯
process. We want you to find your spark. Because that’s what drives you to be better, be more and ultimately, be more fulfilled. Role- Regional Lead – Governance, RiskandCompliance & Business Resiliency Location- UK, Edinburg Job Type- Full Onsite (5 days a week) Full time Employment - Permanent KEY RESPONSIBILITIES & JOB DESCRIPTION: Responsible for Business development of HCL Governance, Risk … delivery capabilities. • Manage 3rd party/sub-contractors as part of the GRC delivery engagement. • Manage local partners and develop partner sales channel Skills: Expertise in delivery of riskandcompliance advisory services (preferable candidates from Big4 organizations) • Should have proven capabilities of executing atleast 3-4 advisory/consulting engagements • Excellent technical capabilities around information security, business continuity and … well as long term engagements. PLATFORM/TOOL EXPERTISE Experience on the below mentioned tools is not mandated but candidates having exposure to these will be preferred: • MetricStream, Archer, ServiceNow GRC & SecOps, OneTrust QUALIFICATIONS B.E/B.Tech with MBA preferred. Candidates with following Certifications will be preferred: • CISA/CGEIT/CISM/CISSP/CIPP E • ISO More ❯
environments such as AWS and Azure. Experience leveraging automation, data driven testing techniques and generative AI to gain efficiency in control assurance. Experience creating queries and reports using RSAArcherand Service-Now. Familiarity with Kanban boards and Jira. Desired Competencies: Big 4 accounting experience preferred. Strong knowledge of cybersecurity principles and organisational requirements relevant to More ❯
evaluation methodologies (e.g., calculating inherent vs. residual risk). Excellent technical writing and documentation skills. Experience communicating with both technical and non-technical stakeholders. Mandatory experience with NIST andRSAArcher platforms. Preferred Qualifications: Bachelor’s degree in Information Security, Cybersecurity, or related field. Professional certifications such as CISSP, CISA, CRISC, or CISM. Familiarity with other governance, risk, andcompliance (GRC) tools. More ❯
evaluation methodologies (e.g., calculating inherent vs. residual risk). Excellent technical writing and documentation skills. Experience communicating with both technical and non-technical stakeholders. Mandatory experience with NIST andRSAArcher platforms. Preferred Qualifications: Bachelor’s degree in Information Security, Cybersecurity, or related field. Professional certifications such as CISSP, CISA, CRISC, or CISM. Familiarity with other governance, risk, andcompliance (GRC) tools. More ❯
with 3+ years in IT Audit or security control testing Familiar with security frameworks such as NIST 800-53, ISO 27001, CIS Controls, COBIT Hands-on experience using RSAArcher, ServiceNow , and familiarity with automation and data-driven testing Working knowledge of cloud environments ( AWS, Azure ) and related security controls Relevant certifications: CISA, CISM, CISSP, ISO More ❯
ISO 27001, CIS, COBIT) Certifications: CISA, CISSP, CISM, or ISO 27001 Lead Auditor Excellent analytical, communication, and stakeholder engagement skills Nice to Have: Experience with Sailpoint, Rapid7, Wiz.io, RSAArcher, ServiceNow Familiarity with cloud security, automation, and agile methodologies Big 4 background and data analytics proficiency Be part of a team that values innovation, collaboration, andMore ❯
practices (e.g., NIST CSF, 800-53). Advise stakeholders on security best practices and support cybersecurity risk management strategies. Conduct and manage risk assessments, maintain the risk register (RSAArcher), and prioritize security risks across assets. Recommend and monitor remediation of security gaps, track improvements, and manage policy exceptions. Support audits, ensure compliance, and provide assurance … teams Excellent attention to detail with planning/reporting data Competent in stakeholder management and cross-functional team collaboration Advantageous if you: Have worked with GRC Tooling like RSAArcher Have worked in the Financial Services industry in a similar role We are currently reviewing CV's for this role and interviews are ongoing this week. More ❯
City of London, Greater London, UK Hybrid / WFH Options
Lawrence Harvey
practices (e.g., NIST CSF, 800-53). Advise stakeholders on security best practices and support cybersecurity risk management strategies. Conduct and manage risk assessments, maintain the risk register (RSAArcher), and prioritize security risks across assets. Recommend and monitor remediation of security gaps, track improvements, and manage policy exceptions. Support audits, ensure compliance, and provide assurance … teams Excellent attention to detail with planning/reporting data Competent in stakeholder management and cross-functional team collaboration Advantageous if you: Have worked with GRC Tooling like RSAArcher Have worked in the Financial Services industry in a similar role We are currently reviewing CV's for this role and interviews are ongoing this week. More ❯
Solution Architect - Governance, RiskandCompliance - 6 Months Contract – Inside IR35 - Midlands Office My large UK based client is looking for a Solution Architect with knowledge and experience in Governance, RiskandCompliance (GRC) tooling and Model Risk Management to assist in their Integration Portfolio. This position is integral to my client’s journey of consolidating their GRC platforms and … can be delivered in the required timescales. Technical skills required to be successful in this role: Previous experience of working as a Solution Architect Experience of GRC tooling - Archer/Resolver/ServiceNow Excellent written and verbal communication skills with experience in stakeholder management Excellent knowledge of integration and interoperability and how these GRC tools integrate with other More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Duel
a mission to make Brand Advocacy the industry standard playbook for building brilliant retail brands. It was founded by world record breaking adventurer and former brand ambassador Paul Archer, alongside viral games developer Naio Tsarouchis, and we exist to show there's a better way to build businesses, to build a better future, proving that caring for people More ❯