Opportunity Overview sitemap_outline CORPORATE TITLE Associate language OFFICE LOCATION(S) London assignment JOB FUNCTION Liquidity Risk account_balance DIVISION Risk Division RISK Our Risk division develops comprehensive processes to monitor, assess, and manage the risk of expected and unexpected events that may have an adverse impact on the firm. Risk professionals execute critical … day-to-day risk management activities, lead projects and contribute to the ongoing advancement of a robust risk management program. FINANCE RISK (FR) Finance Risk is the independent risk management function responsible for overseeing the firm's accrual rates and liquidity risk. We work closely with Global Banking and Markets, Asset and Wealth Management and … Platform Solutions, as well as the broader Risk organization to provide independent riskassessment and oversight of the firm's risk taking. Key functions include: Risk Oversight: Monitor, govern, and challenge Corporate Treasury execution activities, including accrual rates risk management, liability management, cash & collateral management, funds transfer pricing, balance sheet usage, liquidity and funding More ❯
Position: Servicenow IRM Senior Solution Architect Location: Chicago, IL (Day 1 Onsite) Duration: Long Term Job description: Lead the design, architecture, and implementation of complex ServiceNow Integrated Risk Management (IRM) and Governance, Risk, and Compliance (GRC) solutions. Provide subject matter expertise on risk-related capabilities, including risk identification, assessment, mitigation, and monitoring. Translate business objectives … architectural standards and best practices. Experience Level 5+ years of hands-on experience with the ServiceNow IRM including extensive work focused GRC processes. 10+ years of professional experience in risk management, GRC, or a related field, demonstrating a deep understanding of risk-related processes. Proven track record of success in architecting and delivering significant ServiceNow IRM implementations for … large enterprises. Expertise in core IRM capabilities such as Issue Management, Incident Management, Loss Events, Controls Testing, Risk Identification, Risk and Control Self-Assessments (RCSA), and Emerging Risk programs. Qualifications: Deep functional and technical understanding of the ServiceNow IRM suite, including Risk capabilities such as Issue/Incident Management, Loss Events, etc. In-depth knowledge of More ❯
Cyber Security Standards. Amend existing procedures based on OT security review findings, embedding improvements in the global CSMS. Collaborate with site Information Security Managers to integrate changes and support riskassessment refreshes. Coordinate and prioritise risk treatment activities in line with updated procedures. Support the OT Security Programme Manager in delivering control uplifts, including documentation updates. Performance … security strategy with programme objectives. Adoption and integration of policies, standards, and procedures across sites. Reduction in identified OT security risks. Clear documentation of technical and business requirements for risk mitigation. 2. Gap Analysis & RiskAssessment Lead gap assessments against the OT cyber security standard and global OT risk framework. Define risk mitigation requirements in … in the project lifecycle. Support assurance reviews for new and existing projects to confirm compliance with reference architectures and security standards. Liaise with project teams and vendors to ensure risk considerations are embedded from design to deployment. Performance Indicators Percentage of projects evaluated and approved on time. Successful incorporation of Security by Design principles. Time to resolve deviations from More ❯
Salford, Lancashire, England, United Kingdom Hybrid/Remote Options
AJ Bell
Job Description An exciting opportunity has arisen for an experienced risk professional to join our high performing Risk Team at our award winning investment platform. This role is ideal for someone who enjoys working closely with Technology functions and wants to make a real impact on how enterprise risk is understood, managed and embedded across a growing … FTSE 250 business. As the primary Risk Team business partner for our Technology Services division, you will play a key role in supporting the delivery of our enterprise wide risk management framework. You will help ensure risks are identified, assessed and managed effectively, and contribute to a strong risk culture across the organisation. What the role involves … Partner with Technology Services to embed the Group Risk Management Framework. Support the ongoing development of the framework across AJ Bell. Promote a positive risk culture and provide education and guidance on risk processes. Participate in risk forums to help strengthen first line risk maturity. Support and challenge risk owners on risk and More ❯
At Smart, our mission is to transform retirement, savings and financial wellbeing, across all generations, around the world. THE ROLE The Risk & Assurance Business Partner plays a pivotal role in overseeing and managing Smart's risk, compliance, and assurance activities across the organisation. This role combines strategic oversight of the Risk & Assurance function, corporate insurance programmes, and … with operational and governance responsibilities. The successful candidate will act as a trusted partner to the business, supporting decision-making through insightful analysis, ensuring regulatory and audit compliance, managing risk exposures, and maintaining clear and transparent communication with internal stakeholders, the Board, and external clients. Key responsibilities: Risk & Assurance Manage the Risk & Assurance budget, including planning, forecasting … and monitoring to ensure efficient resource allocation and alignment with priorities Serve as Secretary to the Group Risk and Governance Committee (GRCC), ensuring timely preparation and distribution of papers, accurate minutes, and prompt action follow-up Prepare clear, concise, and well-structured papers and presentations for the Audit & Risk Committee and Board, translating complex technical and compliance information More ❯
Job Title: Cyber Risk Specialist-RCSA Job Location: Farmington Hills, MI 48331 Onsite Requirements: 3+ years of Cyber Risk 3+ years of RCSA Job Description: Risk Control Self-Assessment Second Line of Defense Execution - Cyber Security Domain Responsibilities: NIST Cybersecurity Framework & FFIEC Information Security Handbook Alignment Program Objective - Execution of comprehensive Risk Control Self-Assessment (RCSA) programs that align organizational cybersecurity controls with NIST Cybersecurity Framework (CSF) requirements and FFIEC Information Security Handbook guidelines, ensuring regulatory compliance and effective risk mitigation across financial services environments. Challenge and Enhance Framework Integration to NIST CSF and FFIEC Information Security Handbook Challenge and Support Enhancements to Control Framework development Control Design Documentation Remediation Planning: Develop actionable … plans for control enhancement and gap closure Stakeholder Engagement & Communication Risk and Governance Reporting: Develop risk reporting and governance frameworks Cross-Functional Collaboration: Facilitate coordination between IT, Risk, Compliance, and Business units Training and Awareness: Conduct educational sessions on riskassessment processes and regulatory requirements Ongoing Administrative Tasks Risk Register Maintenance: Establish centralized riskMore ❯
digital estate, encompassing enterprise IT, operational technology (OT), and research platforms. This role sits within the Information & Cyber Security Group and provides subject matter expertise in security architecture, cyber risk governance, and assurance frameworks. This is a cross-functional role with both advisory and hands-on responsibilities, focusing on security assurance, risk management and supporting architecture reviews, vulnerability … management, risk assessments, cyber defence posture, driving technical assurance, and embedding risk-aligned security controls across IT and OT systems and secure-by-design practices. You will work across hybrid environments including cloud, infrastructure, applications, and OT systems. You will be responsible for designing and advising on security architecture patterns, reviewing and maintaining risk registers, leading assurance … Cyber Essentials (CE and CE+) while supporting the secure operation of core services. The role requires strong stakeholder engagement, technical depth, and a sound understanding of UK-specific cyber risk frameworks. You will help shape and maintain a secure posture across UKAEA. A degree in Cybersecurity, Information Technology, or a STEM subject (or equivalent experience). Essential o Security More ❯
Information Security Compliance & Risk Specialist Maritime and Coastguard Agency Apply before 11:55pm on Friday 30th November 2025 Reference number (phone number removed) Salary £44,241 This role is part of the Government Digital and Data Profession, and the role attracts a Digital and Data allowance of up to £14,756, subject to an assessment of your skills … Pension with an employer contribution of 28.97% Job grade Senior Executive Officer Contract type Permanent Business area MCA - Information Technology Type of role Information Technology Knowledge and Information Management Risk Management Security Working pattern Flexible working, Full-time, Job share, Part-time Number of jobs available 1 Contents Location About the job Benefits Things you need to know Apply … and further information Location Southampton About the job Job description The Information Security Compliance and Risk Specialist will: Develop & maintain the MCA's Information Security Management System (ISMS) and all underpinning documentation, including stakeholder engagement & compliance checks. Be responsible for the delivery of information security risk management processes, across all asset types, providing risk-based advice & guidance More ❯
quantify, and govern AI agents operating with autonomy in production environments. If you've been following the trajectory from static models to agentic systems—and the corresponding explosion in risk surface area—you know why this matters now. About governr governr is the AI risk platform for regulated enterprises. We provide complete AI visibility, real-time risk eval and quantification, and audit-ready compliance docs for enterprises deploying agentic AI. We've built the industry's most comprehensive AI riskassessment framework: We're currently in active discussions with tier-1 financial institutions and have secured design partners with leading firms navigating the shift from analytical AI to agentic systems. The market timing is … critical: enterprises are deploying agents at scale, regulators are demanding governance frameworks, and existing Third-Party Risk Management (TPRM) platforms have near-zero AI-risk depth. We have an estimated 18-24 month competitive window before large incumbents build comparable capabilities to stay relevant. The Role As an Agentic Developer at governr, you'll build the core systems More ❯
quantify, and govern AI agents operating with autonomy in production environments. If you've been following the trajectory from static models to agentic systems—and the corresponding explosion in risk surface area—you know why this matters now. About governr governr is the AI risk platform for regulated enterprises. We provide complete AI visibility, real-time risk eval and quantification, and audit-ready compliance docs for enterprises deploying agentic AI. We've built the industry's most comprehensive AI riskassessment framework: We're currently in active discussions with tier-1 financial institutions and have secured design partners with leading firms navigating the shift from analytical AI to agentic systems. The market timing is … critical: enterprises are deploying agents at scale, regulators are demanding governance frameworks, and existing Third-Party Risk Management (TPRM) platforms have near-zero AI-risk depth. We have an estimated 18-24 month competitive window before large incumbents build comparable capabilities to stay relevant. The Role As an Agentic Developer at governr, you'll build the core systems More ❯
Regional Risk and Quality Assurance Manager (f/m/d) Full or part time Empowering You - to feel our passion for technology As NTT DATA Business Solutions, we are more than just a company. We are a team of passionate people who drive innovation - from advisory and implementation to managed services and beyond. With SAP at our core … and initiatives to improve our consulting business aiming at increasing consulting quality, streamlining approaches across countries and developing consultants in their respective fields. Within GFC, the Global Quality and Risk Unit (GQR) is in charge of defining, implementing and enforcing Risk Management processes within all NTT DATA Business Solutions companies. The Risk and Quality Assurance team effectively … monitors risks throughout the various project phases in an operative manner. You as the Regional Risk and Quality Assurance Manager will directly manage Risk, Quality Assurance processes for selected projects, and you will directly engage with and coordinate FTEs. Implementation and execution of Risk and Quality Assurance Management for selected Consulting projects: Execution of risk assessments More ❯
Engagement Manager - 1 year FTC London, Poland, Germany, Spain, or France. About the Business: LexisNexis Risk Solutions is the essential partner in the assessment of risk. Within our Business Services vertical, we offer a multitude of solutions focused on helping businesses of all sizes drive higher revenue growth, maximize operational efficiencies, and improve customer experience. Our solutions help … our customers solve difficult problems in the areas of Anti-Money Laundering/Counter Terrorist Financing, Identity Authentication & Verification, Fraud and Credit Risk mitigation and Customer Data Management. You can learn more about LexisNexis Risk at the link below, risk.lexisnexis.com About our Team: Y ou’ll work within a collaborative and supportive environment to grow your personal and … protect billions in revenue. About the Role: You will work in collaboration with our customers and account managers to maximise the value delivered by the worlds largest email based riskassessment solution. Your results will lead to immediate real-world impact in the form of lower customer friction, reduced fraud losses and as a result, increased customer profitability. More ❯
Engagement Manager - 1 year FTC London, Poland, Germany, Spain, or France. About the Business: LexisNexis Risk Solutions is the essential partner in the assessment of risk. Within our Business Services vertical, we offer a multitude of solutions focused on helping businesses of all sizes drive higher revenue growth, maximize operational efficiencies, and improve customer experience. Our solutions help … our customers solve difficult problems in the areas of Anti-Money Laundering/Counter Terrorist Financing, Identity Authentication & Verification, Fraud and Credit Risk mitigation and Customer Data Management. You can learn more about LexisNexis Risk at the link below, risk.lexisnexis.com About our Team: Y ou’ll work within a collaborative and supportive environment to grow your personal and … protect billions in revenue. About the Role: You will work in collaboration with our customers and account managers to maximise the value delivered by the worlds largest email based riskassessment solution. Your results will lead to immediate real-world impact in the form of lower customer friction, reduced fraud losses and as a result, increased customer profitability. More ❯
related strategies and use prior experience to ensure certification plans stay on track. Working with external teams to align processes, you'll also oversee InfoSec/Cyber services, conduct risk assessments and recommend security improvements. Responsibilities: Ownership and maintenance of all security related policies and procedures, implementing Security by Design and driving a culture of cyber security awareness in … relation to Information Security Strategy and the creation, delivery and maintenance of a robust Cyber Security roadmap Handle varied and complex security challenges, from system reviews to high-level risk assessments Work closely with third-party suppliers in relation to audits, forensic analysis and pen testing Requirements: Experience with ISO 27001 is essential Strong background in cyber security management … Proven experience in identifying and mitigating security risks# Ability to make actionable recommendations for security improvements Experience with GDPR and data protection, together with knowledge of IS standards Security assessment frameworks (threat modelling, controls assessment, riskassessment) Relevant qualifications; CISSP, CISM or similar would be beneficial. Based in Central London, 4 days per week onsite initially More ❯
related strategies and use prior experience to ensure certification plans stay on track. Working with external teams to align processes, you'll also oversee InfoSec/Cyber services, conduct risk assessments and recommend security improvements. Responsibilities: Ownership and maintenance of all security related policies and procedures, implementing Security by Design and driving a culture of cyber security awareness in … relation to Information Security Strategy and the creation, delivery and maintenance of a robust Cyber Security roadmap Handle varied and complex security challenges, from system reviews to high-level risk assessments Work closely with third-party suppliers in relation to audits, forensic analysis and pen testing Requirements: Experience with ISO 27001 is essential Strong background in cyber security management … Proven experience in identifying and mitigating security risks# Ability to make actionable recommendations for security improvements Experience with GDPR and data protection, together with knowledge of IS standards Security assessment frameworks (threat modelling, controls assessment, riskassessment) Relevant qualifications; CISSP, CISM or similar would be beneficial. Based in Central London, 4 days per week onsite initially More ❯
will create solutions that underpin NEC’s cyber security programme, ensuring compliance with architecture principles and security standards to deliver secure, scalable, and resilient services. Responsibilities include threat modelling, riskassessment, developing security standards that guide consistent practices across the business, and producing security assurance documentation to support formal accreditation. Collaboration is essential. You will work closely with … security queries and assessing the impact of emerging vulnerabilities and CVEs to ensure remediation actions are appropriate. Inspire trust by supporting application development and product teams with threat and risk assessments, offering advice and guidance to enhance security and privacy in every application or service. Be involved and proactive in supporting bid and sales teams, delivering security architecture expertise … of security ensuring that technical designs provide sufficient protection for workloads Working knowledge of threat modelling methodologies to conduct threat modelling against new applications and services Experience assessing the risk profile of software solutions through formal riskassessment methodologies Familiarity with compliance and security standards across the enterprise IT landscape such as ISO 27001 and NCSC Cyber More ❯
providing strategic guidance on delivery timelines and client priorities. Expert Advisory & Consulting Post-Adaptation Strategy: Deliver high-level consulting and advice on post-adaptation strategies, helping clients transition from riskassessment to actionable, long-term resilience plans. Regulatory Guidance: Serve as an expert on emerging sustainability regulations, including TCFD, CSRD, and IFRS S2, guiding clients through compliance related … to physical risk. Physical RiskAssessment: Oversee or conduct high-level physical risk assessments, scenario modeling, and vulnerability analysis for clients. Product Co-Development Product Input: Leverage deep client needs and market expertise to co-develop the next generation of our SaaS product. Translating Expertise: Translate client challenges and emerging market needs into clear, functional requirements for More ❯
think innovatively, and listen to each other and customers in meaningful ways. Moody's is transforming how the world sees risk. As a global leader in ratings and integrated riskassessment, we're advancing AI to move from insight to action-enabling intelligence that not only understands complexity but responds to it. We decode risk to unlock … into actions, and uphold trust through integrity. The Director, Tech Advisory is a senior leader within Moody's Insurance Business Unit, responsible for shaping the future of insurance analytics, risk management, and workflow transformation. You will lead a high performing team of technical architects, specialists, and developers, delivering innovative solutions that redefine client risk workflows and unlock new … and market innovators - you will design and demonstrate cutting edge architectures, proof of concept analytics, and migration strategies that help clients realize the full potential of Moody's Intelligent Risk Platform (IRP) and broader risk and data offerings. This is both a strategic and hands on role: you will champion best practices, enforce technical and architectural standards, and More ❯
Farnborough, Hampshire, South East, United Kingdom
Sanderson Government and Defence
Status: Inside Rate: £500 - £600 Lenghth: Initial 6 months, scope for extension Must have Active MOD DV Clearance In this role, you'll be: Providing the Secure by Design risk and security assurance function within MOD as part of a managed service. Have an excellent understanding of risk management and assessment principles and frameworks, such as ISO27005 … and the NIST Cyber Security Framework. Produce informative and succinct reporting that clearly articulates any identified vulnerabilities, associated risks, controls and risk treatment activity. Facilitate security and risk workshops with the various Authority departments, to align with wider customer transformational Security and risk management outcomes. Provide accurate and pragmatic remediation/risk management guidance/advice … in balance with Business objectives and risk appetites. Have an understanding of riskassessment in an agile delivery environment. Exceptional team working ethic and interpersonal skills. Have a good understanding of modern IT technologies and services, such as Cloud Computing, AI (ISO42001), Mobile Computing, IT Security, Infrastructure technologies, Zero Trust, Data at Rest/In Transit Cryptography More ❯
team and work on client and internal projects. Key Skills and Experience: 7+ years in Cyber Security roles Defence Experience: A solid background in working on defence-related projects. RiskAssessment and Architecture: Proven experience in creating riskassessment and architecture documentation. Penetration Testing Processes: A comprehensive understanding of pen testing procedures, including reporting, triaging, and More ❯
In this role, you'll be: Providing the Secure by Design risk and security assurance function within MOD or Public Sector as part of a managed service. Have an excellent understanding of risk management and assessment principles and frameworks, such as ISO27005 and the NIST Cyber Security Framework. Work with multi-disciplinary teams, helping to ensure that … products are delivered in a secure manner that is aligned with the wider business risk appetite. Produce informative and succinct reporting that clearly articulates any identified vulnerabilities, associated risks, controls and risk treatment activity. Facilitate security and risk workshops with the various Authority departments, to align with wider customer transformational Security and risk management outcomes. Provide … accurate and pragmatic remediation/risk management guidance/advice in balance with Business objectives and risk appetites. Have an understanding of riskassessment in an agile delivery environment. Exceptional team working ethic and interpersonal skills. Good level of knowledge of the cyber security industry in public and private sector. Have a good understanding of modern More ❯
Belfast, County Antrim, United Kingdom Hybrid/Remote Options
Adecco
this role could be perfect for you. Key Responsibilities: Policy Simplification Review: Engage in the review and revision of Markets Owned Documents to ensure clarity and compliance. Content Review & RiskAssessment: Support the evaluation of non-hierarchy documents, identifying potential risks and escalating them for further review. Document Oversight: Manage the Markets Document Repository, ensuring all non-hierarchy … documents are properly tracked and maintained. Risk Identification: Proactively identify potential risks associated with documentation and escalate as necessary. Report Maintenance: Create and maintain reports for control, tracking, and analysis purposes, ensuring secure retention of all documents. centralised Authoring Support: Provide assistance for the centralised Authoring process for Inventory Documents, as required. Policy Playbook Updates: Execute updates to the … looking for candidates who possess strong attention to detail, excellent organisational skills, and the ability to manage multiple projects simultaneously. The ideal candidate will have experience in document management, riskassessment, and policy development. If you are ready to take on this exciting challenge and make a difference within a leading organisation, we encourage you to apply today. More ❯
Horley, Surrey, United Kingdom Hybrid/Remote Options
X4 Group Ltd
Are you a cybersecurity professional with expertise in Cybersecurity RiskAssessment (CRA)? We have an initial 6-month OUTSIDE IR35 contract supporting a leading multinational Sensor technology client focused on securing their business and supply chain. The client are looking for the consultant to start on the 5th January 2025 hybrid working, both remote and from Crawley. The … and development process implementing 4-1 for CRA. Key Responsibilities: Lead and support secure supply chain management initiatives Drive compliance efforts across the wider organization Deliver a comprehensive Cybersecurity RiskAssessment (CRA) involving: Integration of Security Design (SD) elements Development and detailed analysis of threat models Ensuring strict adherence to critical industry standards including: IEC (phone number removed More ❯
Gatwick, West Sussex, England, United Kingdom Hybrid/Remote Options
X4 Group
Are you a cybersecurity professional with expertise in Cybersecurity RiskAssessment (CRA)? We have an initial 6-month OUTSIDE IR35 contract supporting a leading multinational Sensor technology client focused on securing their business and supply chain. The client are looking for the consultant to start on the 5th January 2025 hybrid working, both remote and from Crawley. The … and development process implementing 4-1 for CRA. Key Responsibilities: Lead and support secure supply chain management initiatives Drive compliance efforts across the wider organization Deliver a comprehensive Cybersecurity RiskAssessment (CRA) involving: Integration of Security Design (SD) elements Development and detailed analysis of threat models Ensuring strict adherence to critical industry standards including: IEC More ❯
Gatwick, Horley, Surrey, United Kingdom Hybrid/Remote Options
X4 Group Ltd
Are you a cybersecurity professional with expertise in Cybersecurity RiskAssessment (CRA)? We have an initial 6-month OUTSIDE IR35 contract supporting a leading multinational Sensor technology client focused on securing their business and supply chain. The client are looking for the consultant to start on the 5th January 2025 hybrid working, both remote and from Crawley. The … and development process implementing 4-1 for CRA. Key Responsibilities: Lead and support secure supply chain management initiatives Drive compliance efforts across the wider organization Deliver a comprehensive Cybersecurity RiskAssessment (CRA) involving: Integration of Security Design (SD) elements Development and detailed analysis of threat models Ensuring strict adherence to critical industry standards including: IEC (phone number removed More ❯