1 to 25 of 3,906 Risk Management Jobs in the UK

Information Assurance Analyst

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£540 - £590 per day
across a portfolio of government-facing projects delivered by a leading consultancy. This role is ideal for professionals with experience in Information Assurance, Governance, Risk, Compliance, Quality Assurance, or Operational Resilience who are passionate about maintaining high standards of security, compliance, quality, and resilience within complex and regulated environments. … supporting assurance programmes, monitoring compliance with policies and standards, maintaining governance controls, and driving continuous improvement initiatives. Working closely with delivery, security, operations, risk, and quality teams, you will help ensure services remain compliant, resilient, and aligned to client and organisational objectives. The successful candidate will be expected ...

Security Architect (Zero Trust) - DV Cleared

Hiring Organisation
Sanderson Government and Defence
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
network, cloud, endpoint and application layers Lead security architecture reviews and technical security assessments Develop security standards, reference architectures and design patterns Identity & Access Management Architect and implement enterprise IAM, MFA and Single Sign-On solutions Design Conditional Access and Privileged Access Management (PAM) capabilities Lead identity governance … administration initiatives Develop secure authentication and authorisation frameworks Ensure access management aligns with Zero Trust and least privilege principles Cyber Threat & Risk Management Assess cyber threat landscapes and design threat-informed security architectures Lead security risk assessments and vulnerability management programmes Design incident response, threat ...

EMEA Enterprise Technology Risk Management, Vice President

Hiring Organisation
State Street Bank
Location
London, UK
Employment Type
Full-time
areEnterprise Technology Risk Management (ETRM) organization is part of Enterprise Risk Management organization in State Street Corporation (SSC). ETRM as Second Line of Defence (SLOD) is responsible for thought leadership, oversight, monitoring, and advisement around the discovery and remediation of Technology Risk and Cybersecurity … Risk. Who we are looking forWe seek a seasoned Technology and Cyber Risk Management Leader with over 10 years of experience in the financial services or technology sectors. The role will report to the EMEA Head of Enterprise Technology Risk Management. The ideal candidate will excel ...

Global Risk Manager

Location
Greater London, England, United Kingdom
diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout … levels of the client organization, generating results that allow our clients to thrive. What You'll Do As the Global Digital Enterprise Risk Manager, you will help strengthen BCG's Enterprise Risk Management (ERM) program with a primary focus on IT Services & Cyber Risk and Data ...

Global Head of Technology Controls Assurance

Location
City Of London, England, United Kingdom
cyber controls are consistently designed, implemented, and operating effectively across all regions, legal entities, and technology platforms. Working closely with the Group CISO, Technology, Risk, Compliance, cyber and IT service areas and Audit functions, this role provides assurance that Apex’s technology control environment meets regulatory expectations, supports operational … entities, internal and external. Key Responsibilities Technology Control Framework & Strategy Define and maintain Apex’s global technology control framework, aligned to the Group’s risk appetite, cyber strategy, Apex Gold Standard and regulatory obligations. Establish clear control standards, policies, and minimum requirements covering infrastructure, applications, cloud, identity, data ...

Security Architect - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£545 - £590 per day
Support governance activities through architectural assurance and security guidance. Conduct design reviews and provide recommendations relating to security risks and control effectiveness. Security Controls & Risk Management Define, document, and oversee the implementation of cloud security controls. Identify security risks within cloud environments and recommend mitigation strategies. Conduct security … assessments and architecture reviews to validate security and compliance requirements. Support threat modelling activities and risk assessments for new and existing services. Cloud Security Operations Support the transition of cloud solutions into operational security environments. Ensure operational teams have the controls, monitoring capabilities, and processes required to manage secure ...

Senior Security Consultant

Location
City Of London, England, United Kingdom
technological partner for the core business operations of its clients worldwide. It stands at the forefront of key sectors including Transport, Defence, Air Traffic Management and Space, alongside advanced Information Technology services delivered through Minsait, and cutting-edge capabilities in Sovereign AI, Cybersecurity, and Cyberdefence via IndraMind. The company … global benchmark in innovative transportation and mobility solutions. It is recognised as one of the world's top three companies in public transportation management systems. Indra's technology supports the daily journeys of over 78 million people, helping to reduce more than 10 million tonnes of CO2 emissions annually ...

Senior IT Delivery Manager

Location
Greater London, England, United Kingdom
technologies, Agile delivery methodologies, and enterprise-scale technology implementations. This role requires a commercially aware technology leader with strong programme governance experience, excellent stakeholder management skills, and the ability to build trusted relationships with clients while supporting the growth of the consultancy. Key Responsibilities Lead the delivery of multiple … cross-functional technical teams. Strong knowledge of Agile, Scrum, PRINCE2 and hybrid delivery methodologies. Experience managing project budgets, forecasting and financial reporting. Strong stakeholder management skills with the ability to influence senior executives. Strong programme and project management experience with expertise in governance, planning, budgeting, forecasting, resource management ...

Vendor Governance & Risk Management Officer

Location
Greater London, England, United Kingdom
manages a large and complex portfolio of third-party service providers, managed service arrangements, and intra-company service agreements. The Vendor Performance, Governance and Risk Management function is responsible for ensuring these relationships are governed effectively, aligned to business objectives, managed within risk appetite, and compliant with … internal policies, contractual obligations, and regulatory requirements. This role works closely with Technology Delivery teams, Global Procurement Services, Third Party Risk Management (TPRM), Risk, Compliance, Legal, Audit, Finance, and vendor partners. The Officer role provides operational, administrative, and governance support across risk management, outsourcing oversight ...

GRC Manager - 6 month FTC

Hiring Organisation
Trayport
Location
Greater London, England, United Kingdom
Manager is responsible for the overall execution of Trayport’s Information Security Governance, Risk and Compliance programme under the guidance of the Head of Information Security. The role will primarily entail managing policies & standards incl. Training & Awareness deliverables, performing risk assessments, tracking of security risks of the Information … Security Office and organisation as well as maintaining and managing the ISO27001 certification and ensuring there is appropriate governance & reporting on outputs and risk posture to stakeholder groups. Primary Responsibilities Execute the UK and EU GRC Strategy, ensuring compliance with GDPR, UK Data Protection Act 2018, and other regional ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
Cyber Security Specialist to support the protection of the organisation's information assets, systems, and services. The role will work across security operations, governance, risk management, compliance, incident response, and security awareness to help maintain a robust and resilient security posture. The successful candidate will collaborate with … business stakeholders, third-party suppliers, and senior management to identify and mitigate cyber risks while ensuring compliance with relevant standards and regulatory requirements. What you'll do: Security Operations Monitor security alerts and events from security monitoring platforms and managed SOC providers. Investigate and respond to security incidents, coordinating ...

Cyber Security Engineer

Location
City Of London, England, United Kingdom
Cyber Security Specialist to support the protection of the organisation's information assets, systems, and services. The role will work across security operations, governance, risk management, compliance, incident response, and security awareness to help maintain a robust and resilient security posture. What you'll do: Security Operations Monitor … events from security monitoring platforms and managed SOC providers. Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities. Support vulnerability management activities, including remediation tracking and reporting. Assist with threat intelligence gathering and analysis. Governance, Risk & Compliance Support the maintenance and continual improvement ...

Global Head of Technology Controls Assurance

Location
Greater London, England, United Kingdom
cyber controls are consistently designed, implemented, and operating effectively across all regions, legal entities, and technology platforms.Working closely with the Group CISO, Technology, Risk, Compliance, cyber and IT service areas and Audit functions, this role provides assurance that Apex’s technology control environment meets regulatory expectations, supports operational resilience … entities, internal and external.**Key Responsibilities****Technology Control Framework & Strategy*** Define and maintain Apex’s global technology control framework, aligned to the Group’s risk appetite, cyber strategy, Apex Gold Standard and regulatory obligations.* Establish clear control standards, policies, and minimum requirements covering infrastructure, applications, cloud, identity, data ...

GRC Manager - 6 month FTC

Location
Greater London, England, United Kingdom
Manager is responsible for the overall execution of Trayport's Information Security Governance, Risk and Compliance programme under the guidance of the Head of Information Security. The role will primarily entail managing policies & standards incl. Training & Awareness deliverables, performing risk assessments, tracking of security risks of the Information … Security Office and organisation as well as maintaining and managing the ISO27001 certification and ensuring there is appropriate governance & reporting on outputs and risk posture to stakeholder groups. Primary Responsibilities Execute the UK and EU GRC Strategy, ensuring compliance with GDPR, UK Data Protection Act 2018, and other regional ...

Technical Security Architect

Hiring Organisation
Hackajob Ltd
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
technologies, and ensure alignment with industry frameworks such as NIST 800-207. The role requires extensive experience in security architecture, cloud security, identity management, and enterprise risk management, combined with strong stakeholder engagement and leadership skills to drive security transformation programmes across the organisation. Qualification … Certified Information, Systems Security Professional (CISSP), and/or Information Systems Security Architecture Professional (ISSAP) CESG Certified Cyber Professional (CCP) in Security Architecture or Risk Management Additional cloud security qualifications such as Microsoft Azure, AWS, GoogleAdvanced degree in a relevant field is a plus, CISSP, CISM, CISA ...

Technical Security Architect

Location
United Kingdom
technologies, and ensure alignment with industry frameworks such as NIST 800-207. The role requires extensive experience in security architecture, cloud security, identity management, and enterprise risk management, combined with strong stakeholder engagement and leadership skills to drive security transformation programmes across the organisation. Qualification … Certified Information, Systems Security Professional (CISSP), and/or Information Systems Security Architecture Professional (ISSAP) CESG Certified Cyber Professional (CCP) in Security Architecture or Risk Management Additional cloud security qualifications such as Microsoft Azure, AWS, GoogleAdvanced degree in a relevant field is a plus, CISSP, CISM, CISA ...

Digital Trust - Senior Consultant

Location
United Kingdom
Trust** (DT) practice focuses on ensuring secure business outcomes for our clients, providing Cybersecurity advisory and transformation consulting in areas such as security strategy, risk management, human risk management, data and identity security, secure intelligent industry, Gen-AI risk, and security operations modernisation.##Our security specialists … Essentials to clients, ensuring their systems and processes meet industry standards and are resilient to threats and tailoring it to our client’s environment, risk profile, and regulatory requirements.* **Security Architecture** – Improving the security posture of the Enterprise and/or applications through the assessment, design or implementation ...

Enterprise Architect - Energy & Utilities

Hiring Organisation
NTT DATA
Location
London, UK
Employment Type
Full-time
modernization blueprints, and technology standards. Ensure alignment between business capabilities, operating models, and technology platforms. Guide large-scale modernization initiatives including ERP, CRM, asset management, and operational platforms. Drive interoperability between IT and OT environments. Enterprise Applications TransformationLead modernization strategies across enterprise platforms including: SAP (S/4HANA … Oracle Utilities,SalesforceMicrosoft DynamicsServiceNow Work & Asset Management platformsCustomer Information Systems (CIS)Enterprise Asset Management (EAM)Grid & Operations platformsDrive application rationalization and modernization initiatives. Establish API-first and event-driven integration strategies. Promote composable architecture and platform engineering practices. Cloud Native & Platform EngineeringDefine cloud transformation strategies leveraging AWS, Microsoft ...

Global Cybersecurity Senior Manager - Program Management

Hiring Organisation
Boston Consulting Group
Location
London, UK
diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout … member of BCG’s Information Security team, you will lead strategic initiatives that strengthen the firm’s Information Security Risk Management (ISRM) program. You will oversee a portfolio of operational and transformational work, driving governance, execution, and continuous improvement while ensuring programs deliver measurable business value across ...

Supplier Assurance Lead

Hiring Organisation
Morson Edge
Location
Greater Manchester, North West, United Kingdom
Employment Type
Contract
Supplier Assurance Lead/Cyber Security Risk Manager/Third Party Cyber Risk Lead £500 per day - Outside IR35 - North West Based - Hybrid My client is looking for an experienced Supplier Assurance Lead to join their Cyber Security team, taking a lead role in identifying, assessing and managing … beyond standard supplier due diligence exercises. Youll be expected to understand the underlying cyber security risks within the supply chain, provide risk-based recommendations, and work closely with procurement, commercial and security stakeholders to drive effective risk management throughout the supplier lifecycle. Security Clearance Eligibility ...

SC Cleared GRC Controls & Oversight Lead

Hiring Organisation
fortice
Location
Warwick, Warwickshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 450 Daily
stakeholders, and driving assurance activities to completion. Rather than acting as a technical security specialist, the role focuses on the practical application of governance, risk, and control management principles, ensuring that control frameworks are operating effectively and that identified gaps are tracked through to resolution. The role requires … gather evidence and validate compliance. Support internal and external audits by coordinating responses, evidence collection, and stakeholder engagement. Produce governance reporting, assurance metrics, and management updates for senior stakeholders. Ensure control activities remain aligned to organisational risk appetites, regulatory obligations, and industry good practice. Facilitate governance forums, risk ...

GRC Controls & Oversight Lead

Hiring Organisation
Experis
Location
Warwickshire, United Kingdom
Employment Type
Contract
Contract Rate
£400 - £460/day
stakeholders, and driving assurance activities to completion. Rather than acting as a technical security specialist, the role focuses on the practical application of governance, risk, and control management principles, ensuring that control frameworks are operating effectively and that identified gaps are tracked through to resolution. The role requires … gather evidence and validate compliance. Support internal and external audits by coordinating responses, evidence collection, and stakeholder engagement. Produce governance reporting, assurance metrics, and management updates for senior stakeholders. Ensure control activities remain aligned to organisational risk appetites, regulatory obligations, and industry good practice. Facilitate governance forums, risk ...

GRC Controls & Oversight Lead-Active SC Clearance

Hiring Organisation
eTeam Workforce Limited
Location
Warwick, Warwickshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP Daily
stakeholders, and driving assurance activities to completion. Rather than acting as a technical security specialist, the role focuses on the practical application of governance, risk, and control management principles, ensuring that control frameworks are operating effectively and that identified gaps are tracked through to resolution. The role requires … gather evidence and validate compliance. Support internal and external audits by coordinating responses, evidence collection, and stakeholder engagement. Produce governance reporting, assurance metrics, and management updates for senior stakeholders. Ensure control activities remain aligned to organisational risk appetites, regulatory obligations, and industry good practice. Facilitate governance forums, risk ...

Information Security Engineer

Location
Ampthill, England, United Kingdom
system development and operational lifecycle, ensuring security requirements are identified and implemented from concept through disposal. Conduct security architecture reviews, threat assessments, and technical risk analysis for classified environments. Support the development and maintenance of system security documentation, security architectures, and security operating procedures. Lead and coordinate system accreditation … activities for classified and sensitive systems. Develop and maintain accreditation artefacts including Risk Management and Accreditation Documentation Sets (RMADS), Security Cases, Security Management Plans, and supporting evidence. Work with Accreditors, Security Controllers, and customer security representatives to obtain and maintain Authority to Operate (ATO) approvals. Ensure continued ...

Third Party Security Due Diligence Lead

Location
Greater London, England, United Kingdom
party suppliers, technology providers, cloud services, and strategic partners are assessed, onboarded, and monitored in line with SWIFT's security, resilience, regulatory, and operational risk requirements. The role is responsible for managing the end-to-end security due diligence lifecycle, providing expert risk-based assessments of third parties … activities, and supporting compliance with applicable regulatory frameworks including DORA, NIS2, ISO 27001, and SWIFT's internal security standards. Key Responsibilities Security Due Diligence & Risk Assessment Lead the end-to-end third-party security due diligence process, from supplier onboarding through ongoing assurance, reassessment, and offboarding. Perform comprehensive security ...