BA1, Bath, Bath and North East Somerset, Somerset, United Kingdom
YT Technologies
strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. RiskManagement: Lead the information security riskmanagement program, including the identification, assessment, mitigation, and monitoring of risks across all systems and operations. Policy and Governance: Support … creation and enforcement of security policies, standards, and procedures. Incident Response: Develop, implement, and manage the security incident response plan. Leadership: Provide strong leadership and mentorship to the governance, risk, and compliance team. Essential Requirements: Extensive security leadership: Proven experience (10+ years) in a senior information security role, with significant experience in a CISO or equivalent position within a … Technology Assessment Criteria (DTAC) and NCSC CAF. ISO 27001:2022 implementation & maintenance: Hands-on experience with the successful implementation, certification, and ongoing maintenance of an ISO 27001 Information Security Management System (ISMS), ideally to the 2022 standard. Security architecture & Secure by Design: Strong understanding and experience of secure software development lifecycles (SDLC) and embedding security by design into product More ❯
Key info: 1st line IT Risk Manager position Manchester location (3 days in office - 2 from home) 75k-80k + bonus The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations’ IT & Ops RiskManagement Programme. The individual will act as first line of defence providing RCG risk assessments … and other riskmanagement activities including risk identification, profiling, assessment, response, evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the riskmanagement activities in alignment with the Risk and Controls Governance framework. To be successful you will need to be able to demonstrate the following … capabilities and experience: Person requirements: Excellent understanding and experience of technology risk & controls, including working with and creating risk frameworks. Broad knowledge of technology including emerging risks, (e.g. understanding of ITIL service management processes, cloud/AI) Understanding of principle technology related regulations e.g. Ops Res, GDPR, DORA, SOx etc Demonstrate experience of technology risk profiling More ❯
warrington, cheshire, north west england, united kingdom
JSS Search
Key info: 1st line IT Risk Manager position Manchester location (3 days in office - 2 from home) 75k-80k + bonus The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations’ IT & Ops RiskManagement Programme. The individual will act as first line of defence providing RCG risk assessments … and other riskmanagement activities including risk identification, profiling, assessment, response, evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the riskmanagement activities in alignment with the Risk and Controls Governance framework. To be successful you will need to be able to demonstrate the following … capabilities and experience: Person requirements: Excellent understanding and experience of technology risk & controls, including working with and creating risk frameworks. Broad knowledge of technology including emerging risks, (e.g. understanding of ITIL service management processes, cloud/AI) Understanding of principle technology related regulations e.g. Ops Res, GDPR, DORA, SOx etc Demonstrate experience of technology risk profiling More ❯
bolton, greater manchester, north west england, united kingdom
JSS Search
Key info: 1st line IT Risk Manager position Manchester location (3 days in office - 2 from home) 75k-80k + bonus The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations’ IT & Ops RiskManagement Programme. The individual will act as first line of defence providing RCG risk assessments … and other riskmanagement activities including risk identification, profiling, assessment, response, evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the riskmanagement activities in alignment with the Risk and Controls Governance framework. To be successful you will need to be able to demonstrate the following … capabilities and experience: Person requirements: Excellent understanding and experience of technology risk & controls, including working with and creating risk frameworks. Broad knowledge of technology including emerging risks, (e.g. understanding of ITIL service management processes, cloud/AI) Understanding of principle technology related regulations e.g. Ops Res, GDPR, DORA, SOx etc Demonstrate experience of technology risk profiling More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
advisory team, then this could be the role for you. As a Manager within the team, you will be a key member of controls advisory team. Combining your Oracle risk and controls expertise with your stakeholder and project management skills and experience, this role will provide you with opportunities to lead multi-disciplinary teams leveraging your knowledge of … risk, controls and Oracle to assess, design and implement Oracle controls for a wide range of clients across multiple industries. This includes applying knowledge of Oracle Cloud emerging technology such as AI Agents and leveraging Oracle RiskManagement & Compliance GRC modules to drive improvements throughout the control lifecycle from assessing risks to implementing, monitoring and assessing controls. … HR Transformation programme; Assessing, designing and implementing Oracle controls across areas including: business process controls, application security/role based access controls, segregation of duties, IT general controls, programme management controls, etc; Assessing, designing and implementing Oracle RiskManagement and Compliance (RMC) modules; Applying your risk and controls experience to support clients in meeting specific requirements More ❯
Bradford, West Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
Yorkshire Water
Company description: Water Utility Company based in Yorkshire region of England. Job description: Security Governance Risk & Compliance Analyst Hello! Thanks for stopping by. Let us tell you about all the great reasons to join us here at Yorkshire Water: We offer a competitive salary, depending on experience (£36,538 45,673) Annual incentive related bonus (£1000 maximum bonus opportunity … for the performance year) Attractive pension scheme (up to 12% company contribution) Development opportunities in line with the Security Governance Risk & Compliance Analyst progression plan 25 days annual leave plus bank holidays plus an extra wellness day Life assurance cover of 4 times pensionable salary A great benefits package choose from health cash plan scheme, critical illness insurance, dental … days in the office a week Bradford) Work type: 12-month fixed term contract. 37 hours per week, Monday Friday. We have an exciting opportunity for a Security Governance Risk &Compliance Analyst to join the IT team at Yorkshire Water and be a part of helping Yorkshire Water to provide the best service to our customers. Could this be More ❯
North West London, London, United Kingdom Hybrid / WFH Options
SEFE MARKETING & TRADING LIMITED
workpapers for clarity and accuracy, and developing a deep understanding of business operations. Building and maintaining strong relationships with process owners is essential to gain valuable insights, support effective riskmanagement, and help enhance overall IT governance. Lead the end-to-end delivery of IT Audits across group entities, including but not limited to ITGCs, infrastructure, applications, cloud … team, review audit workpapers to ensure clarity and accuracy Build and maintain strong relationships with process owners, gaining insights into operations Offer expert guidance to the business on enhancing riskmanagement, internal controls and processesbased on the sound commercial knowledge and best practices Contribute to the development of the annual audit plan through risk assessments, business insights … and alignment with strategic objectives Profile description: Extensiveexperience in internal audit, riskmanagement, or consultancy focusing on technology controls (ITGC, applications, infrastructure) and an understanding of emerging technology (e.g., Data Analytics, Artificial Intelligence and Machine Learning) Proven track of leading audit engagements Professional certifications such asCIA, CISA, or equivalent Demonstrated ability to influence stakeholders and drive change We More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Softcat plc
have an impact and join a business where you can make the difference? Are you keen to work as part of an enthusiastic, passionate, and collaborative team? Join our Risk, Assurance & Process Improvement As Softcat's business continues to grow and evolve, so have the risks and the regulatory landscape. Softcat Plc has recognised the need to further strengthen … its RiskManagement and Internal Controls and has created a second line function to strengthen the overall three lines model and improve the way in which risks are identified, managed and communicated across the organisation including Board and Audit Committee. The function is led by the Head of Risk, Assurance and Process Improvement who reports to the … ve got even bigger plans for the future. So, if you share our drive and ambition, get ready to achieve more from your career. Strengthening Controls, Enhancing Processes, Managing Risk This senior role within the Risk, Assurance & Process Improvement team offers a unique opportunity to strengthen the control environment and improve end-to-end processes across Softcat Plc More ❯
System across two the Trust sites, East Cheshire NHS Trust (ECT) and Mid Cheshire Hospital Foundation Trust (MCHFT).The role will be responsible for optimizing and maintaining the clinical riskmanagement process in accordance with appropriate national standards, including ensuring the digital infrastructure and staff skills meet the requirements of DCB 0160 - the Deployment and Use of Health … they develop and assess the impact on clinical areas in support of clinical safety. The assessment will include testing functionality, manipulation of data and produce clinical safety case reports, risk and hazards logs that detail recommendations for improvement as appropriate. Main duties of the job The CSO will also be responsible for leading Clinical Governance within the DCS Business … responsible for developing, maintaining and refining robust systemsand processes for identifying and addressing patient safety risks associated with the DCS andits wider environment.The role will optimise and maintain Clinical RiskManagement (CRM) processes withappropriate national standards i.e. DCB 0160, Health and Social Care Act 2012.Ensure Clinical Safety is considered throughout the lifetime of the DCS, identifying, and mitigating More ❯
Manchester, Lancashire, England, United Kingdom Hybrid / WFH Options
PIB Group
Fully Remote Are you a driven sales professional with a passion for SaaS and business growth? Join PIB RiskManagement’s award-winning XCenta Software Training team and take the lead in shaping the future of Health, Safety, and RiskManagement solutions for medium to large organisations. Why XCenta? XCenta is a cutting-edge, cloud-based … opportunities Volunteering and charity support days If you’re ready to accelerate your sales career and make a real impact, apply now to join the XCenta team at PIB RiskManagement! Inclusion & Accessibility We are an equal opportunities employer, committed to hiring a diverse and inclusive workforce. We do not discriminate on the basis of race, colour, gender More ❯
City, Manchester, United Kingdom Hybrid / WFH Options
PIB Group
Fully Remote Are you a driven sales professional with a passion for SaaS and business growth? Join PIB RiskManagement s award-winning XCenta Software Training team and take the lead in shaping the future of Health, Safety, and RiskManagement solutions for medium to large organisations. Why XCenta? XCenta is a cutting-edge, cloud-based … opportunities Volunteering and charity support days If you re ready to accelerate your sales career and make a real impact, apply now to join the XCenta team at PIB RiskManagement! Inclusion & Accessibility We are an equal opportunities employer, committed to hiring a diverse and inclusive workforce. We do not discriminate on the basis of race, colour, gender More ❯
clinical effectiveness and patient safety activity, in liaison with other multidisciplinary professionals and specialty leads within NHS England. Main duties of the job The role is responsible for the management of quality, risk and patient safety across digital clinical informatics products, platforms and services within NHS England. This encompasses clinical effectiveness, risk and incident management, learning … methodologies and compliance with safety standards. Lead the continual development of the clinical governance strategy, ensuring that NHS England programmes and services continue to advance their clinical governance and riskmanagement development plans and develop systems. As the organisation's 'clinical safety voice', able to network and consult with wider NHS and social care colleagues in support of … community delivery of relevant safety standards. Able to be accountable for the Clinical Safety principle framework across all areas of NHS England, applied through: Expert understanding and knowledge of riskmanagement methodology and its application in the clinical domain; Expert understanding and application of the standards DCB 0129 and DCB0160 within identified areas of responsibility About us The More ❯
Newcastle Upon Tyne, United Kingdom Hybrid / WFH Options
NHS Business Services Authority
and lead a Cloud Centre of Excellence to drive innovation and consistency. Oversee cloud governance, architecture, and security, ensuring compliance with NHS and UK Government standards. Lead cloud financial management using FinOps principles to optimise spend and improve transparency. Support the migration from on-premise systems to cloud, enabling scalable and secure solutions. Collaborate with senior leaders, architects, and … will ensure that the organisation has a robust and capably skilled CCoE which meets the demands of our customers. Define governance frameworks for cloud technology adoption, decision-making, and riskmanagement, working across the organisation with Enterprise Architects, Developers and other key stakeholders. Establish and run cloud steering and governance committees with key stakeholders that will accelerate delivery … cloud architecture that supports multi-cloud (hyperscaler) environments Build and lead a skilled cloud services team, fostering professional development and innovation Define standards for cloud service design, deployment, and management Develop comprehensive shared responsibility models across cloud platforms Establish technical decision-making processes and evaluation criteria for cloud technologies Financial and Third-Party Management Implement cloud financial managementMore ❯
Newcastle Upon Tyne, England, United Kingdom Hybrid / WFH Options
Lutine Bell
We’re supporting one of our clients in the fintech space in their search for a Technology and Data 1st Line of Defence (1LoD) Risk Contractor. About the Role As a Technology and Data 1LoD Risk Contractor, you will work closely with Technology and Data teams to drive risk maturity, improve visibility of inherent and residual risks … and ensure timely closure of audit and assurance actions. You will be instrumental in embedding robust risk ownership and accountability across IT delivery and operations. Key Responsibilities: Identify, document and enhance understanding of inherent risks related to Technology and Data services and assets. Embed risk and control accountability within the 1LoD Technology and Data team. Enhance and manage … the Technology and Data risk and control frameworks and tools. Lead risk workshops and collaborate with service and control owners to identify and document risks across processes, platforms and change initiatives. Align risk documentation with second line of defence (2LoD) standards and enterprise risk taxonomy. Support the closure of open audit, assurance and risk findings More ❯
sunderland, tyne and wear, north east england, united kingdom Hybrid / WFH Options
Lutine Bell
We’re supporting one of our clients in the fintech space in their search for a Technology and Data 1st Line of Defence (1LoD) Risk Contractor. About the Role As a Technology and Data 1LoD Risk Contractor, you will work closely with Technology and Data teams to drive risk maturity, improve visibility of inherent and residual risks … and ensure timely closure of audit and assurance actions. You will be instrumental in embedding robust risk ownership and accountability across IT delivery and operations. Key Responsibilities: Identify, document and enhance understanding of inherent risks related to Technology and Data services and assets. Embed risk and control accountability within the 1LoD Technology and Data team. Enhance and manage … the Technology and Data risk and control frameworks and tools. Lead risk workshops and collaborate with service and control owners to identify and document risks across processes, platforms and change initiatives. Align risk documentation with second line of defence (2LoD) standards and enterprise risk taxonomy. Support the closure of open audit, assurance and risk findings More ❯
The IT Security Risk & Compliance Lead plays a central role across Cyber and Information security. The primary purpose of this role is to manage and influence all aspects of security riskmanagement activity across the Group, but particularly in respect to IT and Information Security. You will also assist in the delivery of Security Policy, Data Classification … and Compliance Management in accordance with policy and regulatory requirements. You will help develop the compliance knowledge and skills through the rollout of tools, policies and procedures, formal training and coaching and mentoring, working with individual Project Teams and Asset Owners ensuring that they understand their security responsibilities. You will also deliver against the business strategy, the technical roadmap … working with IT Systems in a corporate environment. • Good knowledge of control frameworks such as ISO27001, ITIL (Information Technology Infrastructure Library), NIST, IEC 62443 and SABSA. • Good knowledge of RiskManagement Methodologies such as ISO27005, IRAM2 and IEC 62443 3-2. • Strong technical skills across IT. • Ability to interpret regulations and laws and communicate effectively to all More ❯
The IT Security Risk & Compliance Lead plays a central role across Cyber and Information security. The primary purpose of this role is to manage and influence all aspects of security riskmanagement activity across the Group, but particularly in respect to IT and Information Security. You will also assist in the delivery of Security Policy, Data Classification … and Compliance Management in accordance with policy and regulatory requirements. You will help develop the compliance knowledge and skills through the rollout of tools, policies and procedures, formal training and coaching and mentoring, working with individual Project Teams and Asset Owners ensuring that they understand their security responsibilities. You will also deliver against the business strategy, the technical roadmap … working with IT Systems in a corporate environment. • Good knowledge of control frameworks such as ISO27001, ITIL (Information Technology Infrastructure Library), NIST, IEC 62443 and SABSA. • Good knowledge of RiskManagement Methodologies such as ISO27005, IRAM2 and IEC (phone number removed)-2. • Strong technical skills across IT. • Ability to interpret regulations and laws and communicate effectively to More ❯
We are looking for a highly organised and proactive Change & Project Coordinator to join our Project Management Office (PMO) . This pivotal role is responsible for overseeing the end-to-end management of change requests, ensuring smooth transitions from change assessment to project delivery, and providing operational support to Project Managers across a variety of initiatives. Acting as … support project resourcing and scheduling, monitor risks, and contribute to continuous improvement through post-project evaluation and reporting. Your work will play a key role in maintaining operational efficiency, risk mitigation, and organisational responsiveness to change. Key Responsibilities Change Governance and Lifecycle Management Change Advisory Board (CAB) Facilitation Change-to-Project Transition Project Manager Workload Oversight Pipeline Management and Project Readiness Risk Coordination and Escalation Operational Support for Project Managers Project Completion and QA Feedback Loop Reporting and Record Management Process Development and Continuous Improvement Required Skills & Experience Change Management : Strong understanding of formal change management practices, lifecycle models, and control frameworks. Familiarity with CAB structures is essential. Project Coordination : Demonstrable experience supporting More ❯
Sheffield, South Yorkshire, Yorkshire, United Kingdom
Grayce
Project Manager (PM): This role supports the planning, execution and monitoring of projects to ensure they are delivered on time and within budget. They assist in task delegation, resource management, risk mitigation, stakeholder communication and process improvement while gaining experience in project lifecycle management. Project Management Officer (PMO): This role establishes and maintains project management standards … ensuring timely delivery, scope/quality adherence and budget control while minimising risks. PMOs are responsible for overseeing governance, methodology, planning, stakeholder engagement, benefits tracking and riskmanagement, often providing project performance insights to senior management. Product Manager: A product manager plays a pivotal role in orchestrating the development, launch and ongoing success of a product. They are … skills and their application. Soft Skills: From effective communication styles to planning, organisation and a learning development mindset, Grayce is committed to building core consultancy skills. Stakeholder and time management are core skills we utilise every day and we look for examples of those through our interview process. Why work for us? Competitive Salary: Starting at £25,000 with More ❯
documentation is up-to-date. Construct a release schedule and manage release, including providing release notes to the client. Requirements Strong communication and collaboration skills. Excellent organisational and time management skills. Ability to work under pressure and meet tight deadlines. Proven experience managing budgets and schedules. Good understanding of agile development. Knowledge of gaming industry standards. Excellent understanding of … the full game development lifecycle. Required Skills Solid knowledge of project management methodologies, tools and all stages of the project lifecycle. Experience in managing, guiding, and leading teams towards delivering high-quality products on time and within budget. Strong knowledge and experience with Agile methodologies. Experience with the Atlassian suite project management tool. Knowledge of riskmanagement, contract management and change management processes. Experience in delivering and managing projects for external clients. Certification in Project Management (such as PMP, PRINCE2, CPO, CSM) Preferred Skills Proven experience in project management within the gaming industry, including but not limited to the Roblox Platform. Knowledgeable in the gaming industry standards and trends. A bachelor's More ❯
bradford, yorkshire and the humber, united kingdom
Dubit
documentation is up-to-date. Construct a release schedule and manage release, including providing release notes to the client. Requirements Strong communication and collaboration skills. Excellent organisational and time management skills. Ability to work under pressure and meet tight deadlines. Proven experience managing budgets and schedules. Good understanding of agile development. Knowledge of gaming industry standards. Excellent understanding of … the full game development lifecycle. Required Skills Solid knowledge of project management methodologies, tools and all stages of the project lifecycle. Experience in managing, guiding, and leading teams towards delivering high-quality products on time and within budget. Strong knowledge and experience with Agile methodologies. Experience with the Atlassian suite project management tool. Knowledge of riskmanagement, contract management and change management processes. Experience in delivering and managing projects for external clients. Certification in Project Management (such as PMP, PRINCE2, CPO, CSM) Preferred Skills Proven experience in project management within the gaming industry, including but not limited to the Roblox Platform. Knowledgeable in the gaming industry standards and trends. A bachelor's More ❯
Service Integration and Ownership (SIO), which is part of Cyber Operational services. SIO is primarily external facing, managing a portfolio of Cyber Services to the NHS, to manage cyber risk and ultimately provide cyber resilience while underpinning the delivery of patient services and outcomes. You would be providing Security leadership to a subset of the services in our portfolio … assessing and reviewing security requirements, providing security consultancy, advising health and care organisations how to get the best out of the services Services we provide include Secure Boundary, Vulnerability management, Cyber security ratings service and the Data Security and Protection Toolkit. Consistent, efficient, proportionate security riskmanagement is best achieved by a blend of centralised advice, control … of working in a cyber environment providing expertise to both support strategic decisions and security requirements to the portfolio of cyber services managed centrally. This may include the full management and delivery of a subset of the portfolio and subsequent replacement/renewal of services manging this across the whole lifecycle from requirements gathering, transitioning and ownership As a More ❯
Wales, Yorkshire, United Kingdom Hybrid / WFH Options
IQUW Group
Overview Job Description Major Incident & Problem Manager Grade: 4 Reporting to: Head of IT Service Management Location: Swansea About us IQUW is a speciality (re)insurer at Lloyd's (Syndicate 1856) underwriting a diverse range of Property, Commercial and Speciality (re)insurance products from Cargo and Marine to Political Violence, Terror and War. We combine data, intelligent automation and … to meet their customer's needs. The role We are seeking a proactive and experienced Incident and Problem Manager to take ownership of our Incident, Major Incident and Problem Management processes. This role is critical in reducing operational disruption, improving service reliability, and driving continuous improvement across IT services. The ideal candidate will have a strong process ownership and … communication mindset, ensuring that incidents are managed effectively while also implementing problem management strategies to prevent recurrence. We currently operate a hybrid working model. This entails 3 days per week collaborating with colleagues in the office, and 2 days working from home. Key responsibilities Major Incident Management Own and manage the end-to-end Major Incident process, ensuring More ❯
Gateshead, Tyne and Wear, England, United Kingdom Hybrid / WFH Options
Proactive Appointments
000pa depending on experience Full time permanent role My client, based in Gateshead, are seeking a proactive and detail-oriented Change & Project Coordinator to oversee the organisation's change management processes. This role, situated within the Project Management Office (PMO), encompasses managing changes across software products, business processes, tools, and technologies. Key Responsibilities Comprehensive Change Management Oversight … Change Request Assessment Facilitate Change Approval Transition to Project Management Project Manager Workload Reporting Pipeline Project Coordination Risk Coordination and Escalation Project Manager Support Outcome Review and QA Integration Documentation and Reporting Process Improvement Skills & Experience Demonstrated experience in change management within a software delivery or IT environment. Experience coordinating projects and working within a PMO setting. … Experience using Microsoft DevOps Boards is desirable. Change Management Knowledge Analytical and Reporting Skills RiskManagement Expertise Organisational and Coordination Skills Problem-Solving Abilities Effective communication and interpersonal skills Familiarity with ITIL frameworks and Agile methodologies is a plus Preferred Qualifications ITIL Foundation Certification Certified Change Management Professional (CCMP) Project Management Professional (PMP) or PRINCE2 More ❯
about cyber security and thrive in dynamic, fast-paced environments. The successful candidate will join a high-performing cyber team that specialises in developing cyber strategies, managing complex cyber risk programmes, and leading enterprise-wide transformation initiatives. Driven by curiosity and innovation, the team supports clients across multiple sectors in addressing their most pressing cyber security challenges. They seek … at every level, from technical specialists and IT leaders to executive boards. Key Responsibilities: Design and deliver cyber security strategies and transformation programmes for large-scale organisations. Assess cyber risk and maturity, and develop practical mitigation plans aligned to clients' business objectives and risk appetite. Translate complex technical issues into clear insights for stakeholders, enabling informed decision-making … Lead or contribute to cyber engagements across various sectors, adapting to different organisational cultures and regulatory contexts. Core Cyber Security Skills: Strong expertise in areas such as cyber strategy, riskmanagement, cyber maturity assessments, security architecture, transformation programmes, and regulatory compliance. Familiarity with leading frameworks and standards including NIST CSF, ISO27001, NCSC CAF, GDPR, NIS2, and CRI2.0. Hands More ❯