Newcastle upon Tyne, England, United Kingdom Hybrid / WFH Options
Leonardo
This is an exciting opportunity to be part of significant programmes, during which you will ensure that products meet the highest standards, in accordance with customer’s requirements and risk appetite. You will be supported in this role as part of a larger team of consultants, engineers and product domain specialists. Your work at Leonardo UK will see you … and detailed system and security designs as they pertain to the cyber domain. Decomposing cyber and security requirements down to the system control level. Conducting cyber and information security riskassessment activities including threat modelling, vulnerability analysis and analysis of mitigations. Scoping and managing security verification & validation activities and remedial action plans. Coordinating with product engineers, system architects More ❯
a Cyber Audit AVP where you will collaborate with cross-functional teams to provide independent and reliable Cyber Security audit assurance to executive management and the Board on governance, risk management, and control effectiveness. In this role, you will contribute to audit planning and execution, riskassessment, control evaluation, and issue resolution. You’ll deliver high-quality … audit observations and support the development of actionable recommendations to improve business processes. To be successful you should have experience with below: Risk and control assessment experience (within an audit or control function responsible for testing driven assurance) covering Cyber Security. Experience in developing and executing assurance testing approaches in some of the following areas: data security (including … cryptography), security configuration, network security, cyber incident response, vulnerability management, cyber threat management, information risk management, data leakage protection, identity & access management, cyber resilience. Knowledge of new and emerging technology, cyber security, and cyber resilience risks. Relevant professional qualifications (e.g. CISA, CISM, CISSP or other relevant technical qualification; and/or relevant graduate degree). Practical understanding of relevant More ❯
Role Purpose NCC Group provides Information Assurance consultancy to help companies protect critical systems and information. We do this by defining security strategies, developing policies, conducting security maturity and risk assessments and implementing security solutions. We also provide security staff augmentation to clients so that our consultants may occupy security roles within the client environment in the short, medium … or long term. Our core consulting and implementation services include: Strategy & transformation On-demand virtual roles Data discovery and mapping Risk advisory and assurance Continuity/Resilience Data privacy and GDPR ISO 27001 & NIST CSF Supplier assurance PCI, PA & P2PE Incident response planning Card production audits Cyber security review SOC advisory & implementation XDR consulting & implementation Alongside our core services … we have a range of bespoke services to help organisations protect their systems and information: Risk Assessments Security Architecture Review Information Security Awareness and Training Programmes Information Security Policy Development Security Transformation Programmes We have a fantastic new opportunity to join our Consulting & Implementation division for a Senior Consultant. The ideal candidate will have commercial experience within the information More ❯
Newcastle upon Tyne, England, United Kingdom Hybrid / WFH Options
Leonardo
from requirements to in-service support and maintenance. This is an exciting opportunity to be part of significant programmes, ensuring products meet high standards aligned with customer requirements and risk appetite. You will be supported by a team of consultants, engineers, and specialists. The role may involve a hybrid working model, combining remote work and on-site collaboration at … professional certification. Experience should include: 3+ years in a cyber/engineering role. Involvement in MOD accreditation and secure design processes. Knowledge of standards like NIST SP 800-series. Risk management in compliance with regulations. Experience with proprietary and open-source software, firmware, hardware. Design analysis and security design development. Cyber riskassessment, threat modeling, vulnerability analysis. More ❯
talents and contributions are welcome. Discover your opportunities at Yale! Salary Range $112,500.00 - $168,750.00 Overview Yale University's Information Security Office (ISO) coordinates response to cyber security risk, enabling Yale's mission of research, scholarship, education, preservation, and practice. The ISO performs a range of security functions including intrusion and vulnerability detection, incident response, policy development, training … and awareness, riskassessment, information system classification and analysis, enterprise identity and access management services, regulatory and compliance management, third-party risk management, and security consulting. Reporting to the Deputy Chief Information Security Officer, the Associate Director, Security Operations Center is responsible for critical security functions including incident triage, analysis, and response. The position is responsible for … Higher Education Referrals increase your chances of interviewing at Yale University by 2x Get notified about new Director Security Operations jobs in Manchester, England, United Kingdom . Senior Strategy Risk Manager , Worldwide Operations Security Manchester, England, United Kingdom 3 days ago Senior Project Manager (Defence & Security) Manchester, England, United Kingdom 2 weeks ago We’re unlocking community knowledge in More ❯
Newcastle upon Tyne, United Kingdom Hybrid / WFH Options
NHS Business Services Authority
the team as the primary resource for advice. Efficiently manage the workload of personnel, ensuring timely completion of tasks and continuous improvement. Ensure continued compliance with NCSC, DHSC Cyber Assessment Framework, and HM Government Cyber security strategy. Develop, maintain, and promote security procedures and standards in line with NHSBSA requirements. Implement, monitor, and report on agreed service levels, KPIs … 6. Ensure that all controls are in place to ensure continued compliance with the National Cyber Security Centre (NCSC) an the Department of Health and Social Care (DHSC) Cyber Assessment Framework (CAF)and continued adherence to HM Government Cyber security strategy and NCSC standards and best practice. 7. Supports the strategic direction of the Cyber security operation function by … 7.Hands on experience with the design of ICT security mitigation measures to meet Information Security work-based assessments. Desirable 1.Cloud Security & monitoring 2.Development of a security architecture design 3.Risk assessment and balancing security risks with business requirements. Qualifications Essential 1.A degree level qualification or equivalent experience in Cyber Security. 2.A Professional Certification or qualification in Information Security (CISA, CISMP More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
following: Shape the development of technology control management including scoping, development of and testing ServiceNow tools for ITRM processes in DT to allow for an effective, efficient and adaptable risk governance capability and contribute to its continuous improvement. Direct control development across DT, driving a consistent approach utilising the IRM capabilities within ServiceNow. Deliver the DT control library architecture … and control data management. Secure commitment from member firms and stakeholders in the global firm to participate in the Technology Standards and Maturity Assessment with the objective to assess the member firm's overall IT capability/maturity and to help them establish their own priorities. Keep abreast of new and emerging technologies being deployed and ensure riskassessment processes are appropriately applied and advise on decisions with technology risk impacts as new activities and other change management/transformational initiatives. Leverage available technical resources/tools to research; expand technology risk knowledge to enhance work product, to remain up to date on member firms and line of businesses hot topics while sharing the More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
following: Shape the development of technology control management including scoping, development of and testing ServiceNow tools for ITRM processes in DT to allow for an effective, efficient and adaptable risk governance capability and contribute to its continuous improvement. Direct control development across DT, driving a consistent approach utilising the IRM capabilities within ServiceNow. Deliver the DT control library architecture … and control data management. Secure commitment from member firms and stakeholders in the global firm to participate in the Technology Standards and Maturity Assessment with the objective to assess the member firm's overall IT capability/maturity and to help them establish their own priorities. Keep abreast of new and emerging technologies being deployed and ensure riskassessment processes are appropriately applied and advise on decisions with technology risk impacts as new activities and other change management/transformational initiatives. Leverage available technical resources/tools to research; expand technology risk knowledge to enhance work product, to remain up to date on member firms and line of businesses hot topics while sharing the More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
Deloitte LLP
following: Shape the development of technology control management including scoping, development of and testing ServiceNow tools for ITRM processes in DT to allow for an effective, efficient and adaptable risk governance capability and contribute to its continuous improvement. Direct control development across DT, driving a consistent approach utilising the IRM capabilities within ServiceNow. Deliver the DT control library architecture … and control data management. Secure commitment from member firms and stakeholders in the global firm to participate in the Technology Standards and Maturity Assessment with the objective to assess the member firm’s overall IT capability/maturity and to help them establish their own priorities. Keep abreast of new and emerging technologies being deployed and ensure riskassessment processes are appropriately applied and advise on decisions with technology risk impacts as new activities and other change management/transformational initiatives. Leverage available technical resources/tools to research; expand technology risk knowledge to enhance work product, to remain up to date on member firms and line of businesses hot topics while sharing the More ❯
Salford, England, United Kingdom Hybrid / WFH Options
Department for Business and Trade
Head of Cyber Governance, Risk and Compliance Join to apply for the Head of Cyber Governance, Risk and Compliance role at Department for Business and Trade Head of Cyber Governance, Risk and Compliance 1 day ago Be among the first 25 applicants Join to apply for the Head of Cyber Governance, Risk and Compliance role at … of the global economy! The Department for Business and Trade ("DBT") and Inspire People are partnering together to bring you an exciting opportunity for the Head of Cyber Governance, Risk and Compliance playing a pivotal role in shaping the success of the Cyber function and service. Salary between £71,738 to £93,864 (including allowances) plus excellent Civil Service … on location and technical skills as assessed at interview. Flexible, hybrid working from London, Cardiff, Darlington, Belfast, Birmingham, Salford and Edinburgh. About the role As Head of Cyber Governance, Risk and Compliance (GRC) you will be playing a pivotal role in shaping the success of the Cyber function and service by ensuring that cyber security risks are monitored and More ❯
We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. What you'll be doing: Cyber Security riskassessment of systems and services Support the definition and design of secure solutions that meet business needs Assess Architectural designs and identify proportionate Cyber Security controls aligned with … business objectives Assessment of systems, services and Cyber Security controls, to provide an independent analysis of compliance with BAE Systems Security Policy, standards and external regulatory requirements. Lead Assessment of Cyber Security controls to ascertain effectiveness in reducing risk, including any vulnerability components Analysis, creation and compilation of relevant documentation determining the compliance level of systems and … services, technical security controls with applicable certification, accreditation, and internal policy requirements Manage the delivery of penetration tests and vulnerability analysis in support of risk mitigation strategies Support stakeholders in resolving Cyber Security issues and act as a subject matter expert regarding assurance activities for the wider organisation Your skills and experiences: Good knowledge of industry standard security policy More ❯
Document findings and work with various stakeholders, including senior management, to agree recommendations and implementation plans to address any compliance deficiencies. Lead the delivery of the Internal Controls Self-Assessment Programme. Develop and roll out new compliance policies, as required. Advise the COO and leadership team on regulatory developments and required actions. Oversee regulatory reporting, audit readiness, and interaction … knowledge of UK regulatory frameworks including FCA CONC, Consumer Credit Act, and GDPR. Experience with QA methodologies and performance monitoring tools, ideally within data-heavy contexts. Excellent problem-solving, riskassessment, and communication skills. Ability to manage multiple projects and stakeholders in a fast-paced, growing business. Professional certifications in compliance, risk, or quality (e.g. ICA, ISO More ❯
Health Research Authority is looking for an experienced Change and Release Manager who can set up, standardise and lead complex digital transformation changes through the programme governance, ensuring adequate riskassessment and scheduling of changes and releases for a stable and reliable technology service. The successful candidate will take a hands-on approach to ensure that technical changes More ❯
Newcastle Upon Tyne, United Kingdom Hybrid / WFH Options
Health Research Authority
Health Research Authority is looking for an experienced Change and Release Manager who can set up, standardise and lead complex digital transformation changes through the programme governance, ensuring adequate riskassessment and scheduling of changes and releases for a stable and reliable technology service. The successful candidate will take a hands-on approach to ensure that technical changes More ❯
Reporting/First Aid Procedures and the Company Near Hit/Close Call Reporting Procedures understand the RM safety rules and always adhere to them Understand the principle of riskassessment and to always follow safe methods of work and the control measures applicable to specific jobs Ensure earthing clips are fixed to all required ink and solvent More ❯
Penrith, England, United Kingdom Hybrid / WFH Options
Balfour Beatty plc
Provide daily site safety briefings to the survey team, SMSTS (Site Management Safety Training Scheme). Creating site safety briefings including the preparation of WPP (Work Package Plan), RA (RiskAssessment), and TBS (Task Briefing Sheets). Engineering Control Ensure checks on survey equipment are carried out in accordance with Company Standards And Requirements. Carry out survey QA More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Radar Healthcare
Technology - Rest assured, we'll have a laptop all set up and ready for you on your first day. Additionally, in your first week, we'll conduct a WFH riskassessment to ensure you have everything you need, including a second screen, keyboard, mouse, and any other goodies! Dog friendly office Socials - we get together as a full More ❯
Position Summary The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations' IT & Ops Risk Management Programme. The individual will act as first line of defense providing RCG risk assessments and other risk management activities including risk identification, profiling, assessment, response, evaluation and advising on issues and remediations … to support the overall IT & Ops organisation. This position supports the risk management activities in alignment with the Risk and Controls Governance framework. This position requires the applicant to have an intermediate or expert level of understanding of IT & Operational risks and the execution of first line IT risk management processes and governance within a large institution. … Responsibilities Performs a combination of the following duties according to departmental guidelines: Strategy and Transformation: • Align with Group RCG target state program based on the planned roadmap including governance, risk management methodologies, technology enablement and automation, metrics, and reporting. • Collaborate with the three lines of defense and other risk functions on behalf IT & Operations to support, enable and More ❯
minimum of 3 years experience in a healthcare or governance administration related role, and knowledge of the relevant legislative and regulatory responsibilities of the hospice. Experience of incident and risk management reporting systems i.e Vantage and Datix. Experience in analysing clinical information and supporting the creation of written reports. Experience of working on your own or as a member … of a team. Experience in handling sensitive and confidential information. Knowledge of risk management and patient safety training. Professional standards and etiquette. Ability to proofread documents. Proficient IT skills with the ability to use Microsoft Office software. Due to the nature of this governance role, capturing feedback from patients, their families, customers in Cafe Retreat, and key stakeholders is … all audits are completed within their specified timeframes. Collate, and prepare data for relevant reports and governance related subcommittees/forums. Support with the management of incident reporting and riskassessment processes across the Hospice. Collate and submit clinical data on behalf of the Clinical Services Director. Carry out all administrative tasks to support any events relating to More ❯
the options for this particular role. Salary: Circa £47,500 depending on skills and experience What you'll be doing: To support the delivery of an intelligence led and risk-based through life assurance programme across Sectors, UK Business Groups and Service Providers to underpin HMG Secure by Design requirements Responsible for ensuring the security and resilience of applications … as we adopt a BAU process with ensuring all enterprise networks, systems, applications and services are meeting Secure by Design requirements throughout their life cycle Aid the delivery of riskassessment activities for applications, systems and services being used across Shared Services & Head Office Your skills and experiences: Essential: CISMP - Certificate in Information Security Management Principles To work … processes are as inclusive as possible. If you have a disability or health condition (for example dyslexia, autism, an anxiety disorder etc.) that may affect your performance in certain assessment types, please speak to your recruiter about potential reasonable adjustments. Please be aware that many roles at BAE Systems are subject to both security and export control restrictions. These More ❯
of the security operations service and security related projects. Work proactively to understand the threat landscape, how it could impact QA and introduce protective measures to reduce the business risk of a cyber-attack or internal threat. Creation and execution of operational security related strategies to enhance the security of IT systems both on-prem and cloud. Creation of … reports, dashboards, metrics for SOC operations and presentation to senior management. Oversight, planning and execution of vulnerability assessments, penetration tests, audits or related security assessment exercises (eg Red Team) to improve the security posture of the infrastructure, applications and services. Manage the remediation of identified vulnerabilities through to successful conclusion and to make recommendations to control any identified risks … computer networks and operating systems including firewalls, IDS/IPS, Active Directory, endpoint protection, Windows Server, networks and cloud services Comprehensive knowledge or experience of information security principles, including riskassessment, intrusion detection, Security Incident and Event Management (SIEM) tools, threat and vulnerability management Detailed knowledge or experience of application or network based penetration testing tools and methodologies More ❯
Wakefield, West Yorkshire, Yorkshire, United Kingdom
Gallagher
Introduction Indulge your passion for problem-solving and embrace the thrill of addressing risk head-on at Gallagher's global brokerage team. Join a family of diverse minds, united by a relentless pursuit of excellence. As part of our team, you'll be the architect of protection, safeguarding businesses and empowering their ambitions. Together, we'll build a legacy … of trust and triumph in the dynamic world of risk management. We believe that every candidate brings something special to the table, including you! So, even if you feel that youre close but not an exact match, we encourage you to apply. Overview Would you like to join our Cyber and Technology Practice Group? Our encouraging and ambitious team … responsible for servicing accounts in an efficient, flexible manner. Supporting your peers to meet client demands, achieve both renewal retention and growth rates in the Cyber Insurance and Cyber Risk Management specialisms. Youre driven, hardworking and business focused, whilst keeping our clients at the heart of your actions. How you'll make an impact Develop and implement regional strategies More ❯
Warrington, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
management, remediation workflows, and security validation. Experience in designing and managing security metrics, dashboards, and reports for technical and leadership audiences. Proven expertise in cloud architecture, security principles, and risk management frameworks. Hands-on experience integrating data from security tools. Ability to develop and implement security policies within cloud environments. Effective riskassessment and communication skills. Excellent More ❯
production sites, meeting country-specific and Group requirements. Managing network activities such as lifecycle management, software upgrades, and deployment. Providing specialized knowledge during operations, including incident management, change impact assessment, and participation in on-call support if required. Applying riskassessment, detailed work planning, centralized configuration, and continuous improvement, similar to modern DevOps practices. Establishing new production More ❯
responsible for network related activities such as lifecycle management, software upgrades, and deployment supporting the need for specialized knowledge during operations (e.g. incidents with significant business impact, change impact assessment, including participation in on-call team if required) working with riskassessment, detailed work planning, centralized configuration, and continuous improvement in a manner similar to modern DevOps More ❯