As our Security Risk Specialist, you will design, develop and operate an effective and efficient Security RiskManagement system serving all YTL Utilities UK and Wessex Water businesses and operations, integrated with the RiskManagement systems of those companies. What you'll do You are responsible for developing and running a Security RiskManagement system to identify, triage and manage security risk across all group companies and operations. The desired outcome is that YTL Utilities UK and Wessex Water companies are exemplars of risk-informed security management. As the Security Risk Specialist, you will be responsible for: Devising and implementing a strategy for Security RiskManagement across our … OT, IT and Digital estates, meeting multiple standards for compliance (including NIS-R, ISO 27001 and SEMD) and incorporating cyber, physical and personnel security risks. Developing and implementing a RiskManagement framework/model and guiding the selection of appropriate GRC tools. Planning and delivering a regular Security RiskManagement Group (SRMG) function. Developing a framework More ❯
gloucestershire, south west england, united kingdom
YTL Group
As our Security Risk Specialist, you will design, develop and operate an effective and efficient Security RiskManagement system serving all YTL Utilities UK and Wessex Water businesses and operations, integrated with the RiskManagement systems of those companies. What you'll do You are responsible for developing and running a Security RiskManagement system to identify, triage and manage security risk across all group companies and operations. The desired outcome is that YTL Utilities UK and Wessex Water companies are exemplars of risk-informed security management. As the Security Risk Specialist, you will be responsible for: Devising and implementing a strategy for Security RiskManagement across our … OT, IT and Digital estates, meeting multiple standards for compliance (including NIS-R, ISO 27001 and SEMD) and incorporating cyber, physical and personnel security risks. Developing and implementing a RiskManagement framework/model and guiding the selection of appropriate GRC tools. Planning and delivering a regular Security RiskManagement Group (SRMG) function. Developing a framework More ❯
As our Security Risk Specialist, you will design, develop and operate an effective and efficient Security RiskManagement system serving all YTL Utilities UK and Wessex Water businesses and operations, integrated with the RiskManagement systems of those companies. What you'll do You are responsible for developing and running a Security RiskManagement system to identify, triage and manage security risk across all group companies and operations. The desired outcome is that YTL Utilities UK and Wessex Water companies are exemplars of risk-informed security management. As the Security Risk Specialist, you will be responsible for: Devising and implementing a strategy for Security RiskManagement across our … OT, IT and Digital estates, meeting multiple standards for compliance (including NIS-R, ISO 27001 and SEMD) and incorporating cyber, physical and personnel security risks. Developing and implementing a RiskManagement framework/model and guiding the selection of appropriate GRC tools. Planning and delivering a regular Security RiskManagement Group (SRMG) function. Developing a framework More ❯
As our Security Risk Specialist, you will design, develop and operate an effective and efficient Security RiskManagement system serving all YTL Utilities UK and Wessex Water businesses and operations, integrated with the RiskManagement systems of those companies. What you'll do You are responsible for developing and running a Security RiskManagement system to identify, triage and manage security risk across all group companies and operations. The desired outcome is that YTL Utilities UK and Wessex Water companies are exemplars of risk-informed security management. As the Security Risk Specialist, you will be responsible for: Devising and implementing a strategy for Security RiskManagement across our … OT, IT and Digital estates, meeting multiple standards for compliance (including NIS-R, ISO 27001 and SEMD) and incorporating cyber, physical and personnel security risks. Developing and implementing a RiskManagement framework/model and guiding the selection of appropriate GRC tools. Planning and delivering a regular Security RiskManagement Group (SRMG) function. Developing a framework More ❯
As our Security Risk Specialist, you will design, develop and operate an effective and efficient Security RiskManagement system serving all YTL Utilities UK and Wessex Water businesses and operations, integrated with the RiskManagement systems of those companies. What you'll do You are responsible for developing and running a Security RiskManagement system to identify, triage and manage security risk across all group companies and operations. The desired outcome is that YTL Utilities UK and Wessex Water companies are exemplars of risk-informed security management. As the Security Risk Specialist, you will be responsible for: Devising and implementing a strategy for Security RiskManagement across our … OT, IT and Digital estates, meeting multiple standards for compliance (including NIS-R, ISO 27001 and SEMD) and incorporating cyber, physical and personnel security risks. Developing and implementing a RiskManagement framework/model and guiding the selection of appropriate GRC tools. Planning and delivering a regular Security RiskManagement Group (SRMG) function. Developing a framework More ❯
Chippenham, England, United Kingdom Hybrid / WFH Options
Logiq
Dependent on Experience , plus car allowance, plus up to 10% performance bonus*, plus excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber RiskManagement? Cyber riskmanagement ensures that organisations can anticipate, withstand, and recover from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and … context. As leading players in MOD’s cyber security transformation to Secure by Design (SbD), we are looking for team members and leaders who share our vision that cyber riskmanagement is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work More ❯
swindon, wiltshire, south west england, united kingdom Hybrid / WFH Options
Logiq
Dependent on Experience , plus car allowance, plus up to 10% performance bonus*, plus excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber RiskManagement? Cyber riskmanagement ensures that organisations can anticipate, withstand, and recover from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and … context. As leading players in MOD’s cyber security transformation to Secure by Design (SbD), we are looking for team members and leaders who share our vision that cyber riskmanagement is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work More ❯
Corsham, Wiltshire, United Kingdom Hybrid / WFH Options
Alexander Mann Solutions - Public Sector Resourcing
On behalf of the MOD we are looking for a Cyber Security Risk Manager (Inside IR35) for a 6 month contract. Hybrid working based in Corsham. The Ministry of Defence (MOD) is a central government department with a mission to protect our country and provide the ultimate guarantee of its security and independence, as well as helping to protect … quality of services they provide, in many locations across the UK. We support teams working in HR, Primary Health Care, Corporate Services, and many others. As a Cyber Security Risk Manager your main responsibilities will be to: . Work within established security and riskmanagement governance structures, usually under supervision to support, review and undertake straightforward riskmanagement activities such as: . Helping with the analysis and derivation of business-supporting security needs . Undertaking Cyber Security related risk assessments, basic threat assessments and other riskmanagement activities . Provide advice to address identified Cyber Security related risks by applying of a variety of security capabilities, which may include using published guidance More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
team, then this could be the role for you. As a Senior Consultant within the team, you will be a key member of controls advisory team. Combining your Oracle risk and controls expertise with your stakeholder and project management skills and experience, this role will provide you with opportunities to work as part of multi-disciplinary teams leveraging … your knowledge of risk, controls and Oracle to assess, design and implement Oracle controls for a wide range of clients across multiple industries. This includes applying knowledge of Oracle Cloud emerging technology such as AI Agents and leveraging Oracle RiskManagement & Compliance GRC modules to drive improvements throughout the control lifecycle from assessing risks to implementing, monitoring … HR Transformation programme; Assessing, designing and implementing Oracle controls across areas including: business process controls, application security/role based access controls, segregation of duties, IT general controls, programme management controls, etc; Assessing, designing and implementing Oracle RiskManagement and Compliance (RMC) modules; Applying your risk and controls experience to support clients in meeting specific requirements More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
advisory team, then this could be the role for you. As a Manager within the team, you will be a key member of controls advisory team. Combining your Oracle risk and controls expertise with your stakeholder and project management skills and experience, this role will provide you with opportunities to lead multi-disciplinary teams leveraging your knowledge of … risk, controls and Oracle to assess, design and implement Oracle controls for a wide range of clients across multiple industries. This includes applying knowledge of Oracle Cloud emerging technology such as AI Agents and leveraging Oracle RiskManagement & Compliance GRC modules to drive improvements throughout the control lifecycle from assessing risks to implementing, monitoring and assessing controls. … HR Transformation programme; Assessing, designing and implementing Oracle controls across areas including: business process controls, application security/role based access controls, segregation of duties, IT general controls, programme management controls, etc; Assessing, designing and implementing Oracle RiskManagement and Compliance (RMC) modules; Applying your risk and controls experience to support clients in meeting specific requirements More ❯
EAR Part-IS, CAA requirements, and emerging aviation security standards. This position requires deep expertise in cybersecurity frameworks, aviation security requirements, and the ability to balance innovation with robust riskmanagement in our fast-paced, cutting-edge environment. Essential Experience: Minimum 8 years of information security experience, with at least 3 years in aerospace, aviation, or highly regulated … of aviation cybersecurity regulations, including EASA requirements, CAA frameworks, or similar aviation security standards Experience with industrial control systems security, particularly in safety-critical environments Demonstrated expertise in cybersecurity risk assessment and management methodologies specific to engineering and manufacturing environments Technical Expertise: Strong knowledge of cybersecurity frameworks (NIST, ISO 27001, aviation-specific standards) Experience with security architecture design … for complex technical systems Understanding of aviation safety management systems and their integration with cybersecurity programmes Familiarity with certification processes and regulatory compliance in aerospace or similar sectors Knowledge of threat detection, incident response, and security monitoring technologies Leadership & Communication: Proven ability to lead security programmes in fast-paced, innovative technology companies Excellent stakeholder management skills, with ability More ❯
the either the Vitality Bournemouth or London office. Full time, 35 hours per week. We are happy to discuss flexible working! Top 3 skills needed for this role: IT risk & compliance expertise – strong knowledge of controls and regulatory frameworks Capacity planning & performance monitoring – forecasting, optimisation, and tool usage Stakeholder communication – translating technical risks and influencing decisions What this role … is all about: As our IT Capacity and Risk Manager, you’ll play a pivotal role in ensuring our technology environment remains robust, compliant, and future-ready. Lead cross-team efforts to embed riskmanagement and capacity planning, advancing IT operations and strategic goals with excellence and compliance.This is a high-impact role where you’ll translate … Technology, Compliance, and Governance teams. You’ll also ensure infrastructure capacity is aligned with business growth, enabling proactive planning and decision-making. Key Actions Capacity Planning & Performance Conduct capacity management activities across infrastructure and applications Forecast resource needs based on business growth and usage trends Ensure systems meet SLAs without over-provisioning Identify performance bottlenecks and underutilised resources Governance More ❯
Somerset, England, United Kingdom Hybrid / WFH Options
Maxwell Bond
Must hold or be eligible for DV clearance Overview We’re representing a highly accredited UK cybersecurity consultancy that is seeking a GRC Analyst to join its growing governance, risk, and compliance team. This role offers the opportunity to work across a diverse portfolio of clients, helping to strengthen their security posture, ensure compliance with regulatory and contractual obligations … and contribute to the ongoing development of robust risk and assurance frameworks. Ideal for someone with experience in GRC, assurance, or information security , this position provides exposure to high-impact projects within a collaborative, forward-thinking environment. Key Responsibilities Governance & Compliance: Support and maintain compliance frameworks, including ISO 27001, CAF, and other relevant standards. RiskManagement: Identify … and external audits, tracking findings and follow-up actions to closure. Policy & Control Development: Assist in developing, reviewing, and improving security policies, procedures, and control documentation. Supplier & Third-Party Risk: Support assurance activities with suppliers, partners, and service providers to maintain a consistent security baseline. Information Governance: Contribute to compliance with data protection regulations such as GDPR and the More ❯
bath, south west england, united kingdom Hybrid / WFH Options
Maxwell Bond
Must hold or be eligible for DV clearance Overview We’re representing a highly accredited UK cybersecurity consultancy that is seeking a GRC Analyst to join its growing governance, risk, and compliance team. This role offers the opportunity to work across a diverse portfolio of clients, helping to strengthen their security posture, ensure compliance with regulatory and contractual obligations … and contribute to the ongoing development of robust risk and assurance frameworks. Ideal for someone with experience in GRC, assurance, or information security , this position provides exposure to high-impact projects within a collaborative, forward-thinking environment. Key Responsibilities Governance & Compliance: Support and maintain compliance frameworks, including ISO 27001, CAF, and other relevant standards. RiskManagement: Identify … and external audits, tracking findings and follow-up actions to closure. Policy & Control Development: Assist in developing, reviewing, and improving security policies, procedures, and control documentation. Supplier & Third-Party Risk: Support assurance activities with suppliers, partners, and service providers to maintain a consistent security baseline. Information Governance: Contribute to compliance with data protection regulations such as GDPR and the More ❯
Stratford-Upon-Avon, Warwickshire, West Midlands, United Kingdom
NFU Mutual
Start date September 2026 Scheme length 3 years Location Stratford-upon-Avon Criteria minimum degree classification of 2:2. About the scheme The Risk Division at NFU Mutual is undergoing an exciting transformation. Operational risk is now evolving into two distinct disciplines - enterprise risk and operational risk - creating broader opportunities for you to explore a variety … of specialisms. Whether it's information security, business continuity, or strategic riskmanagement, you'll be part of a team thats shaping the future of risk in a dynamic and forward-thinking environment. Join our Risk graduate scheme and become an integral part of our mission to manage risk across NFU Mutual. Our dedicated Risk teams support business objectives by helping to deliver customer benefits through a comprehensive understanding of regulatory rules, enabling informed, risk-based decisions. In this role, you'll contribute to our success by safeguarding NFU Mutual against a wide range of risks, including strategic, financial, and operational threats. What you can expect Expect a hands-on experience that immerses More ❯
+ Benefits Are you an experienced Security Consultant looking for your next challenge? We are seeking passionate cyber security professionals with strong expertise in governance, risk and compliance (GRC), who can deliver complex projects and build trusted client relationships. As a Security Consultant , you will work on a variety of Defence and Public Sector assignments, requiring current SC clearance. … Projects will range from risk assessments and ISO 27001 implementations to developing full ISMS frameworks and supporting clients through accreditation. You'll provide expert guidance across standards such as NIST, CAF, and Secure by Design. Security Consultant role is highly client-facing, requiring excellent communication skills and the ability to collaborate with technical teams. You'll stay ahead of … industry developments, contribute to tender responses, and help shape innovative solutions. We are looking for a Security Consultant with experience in security assurance, accreditation, secure by design, and riskmanagement, alongside recognised qualifications such as CISSP, CISM, or ISO 27001 Lead Implementer. Ideally you will be familiar with GRC practices in similar environments also. In return, you'll More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Artis Recruitment
a 12 month FTC with the possibility of extension or going permanent. Our client offer hybrid working with 2 days a week onsite. You will join an experienced Project Management Team and will play a pivotal role in ensuring the successful delivery of a wide range of business initiatives. Responsible for planning, executing, and delivering projects on time, within … scope and budget, the team provides expert guidance on project methodologies, riskmanagement, and resource allocation. Key Responsibilities Include: Plan, co-ordinate, and manage business-focused projects, ensuring delivery within agreed scope, schedule, budget, and quality standards. Produce accurate resource forecasts and secure required resources to meet project timelines. Identify, monitor, and manage risks, issues, dependencies, and change … oriented approach with strong decision-making ability. Ability to manage competing priorities and time-critical schedules effectively. Confident, credible, and able to influence stakeholders at all levels. Skilled at riskmanagement, problem-solving, and achieving results in complex environments. Strong interpersonal, communication, negotiation, and presentation skills. Experience with both agile and waterfall project management methodologies. Desirable: Experience More ❯
Bristol, Avon, England, United Kingdom Hybrid / WFH Options
Artis Recruitment
a 12 month FTC with the possibility of extension or going permanent. Our client offer hybrid working with 2 days a week onsite. You will join an experienced Project Management Team and will play a pivotal role in ensuring the successful delivery of a wide range of business initiatives. Responsible for planning, executing, and delivering projects on time, within … scope and budget, the team provides expert guidance on project methodologies, riskmanagement, and resource allocation. Key Responsibilities Include: Plan, co-ordinate, and manage business-focused projects, ensuring delivery within agreed scope, schedule, budget, and quality standards. Produce accurate resource forecasts and secure required resources to meet project timelines. Identify, monitor, and manage risks, issues, dependencies, and change … oriented approach with strong decision-making ability. Ability to manage competing priorities and time-critical schedules effectively. Confident, credible, and able to influence stakeholders at all levels. Skilled at riskmanagement, problem-solving, and achieving results in complex environments. Strong interpersonal, communication, negotiation, and presentation skills. Experience with both agile and waterfall project management methodologies. Desirable: Experience More ❯
BS1, Bristol, City of Bristol, United Kingdom Hybrid / WFH Options
Artis Recruitment
a 12 month FTC with the possibility of extension or going permanent. Our client offer hybrid working with 2 days a week onsite. You will join an experienced Project Management Team and will play a pivotal role in ensuring the successful delivery of a wide range of business initiatives. Responsible for planning, executing, and delivering projects on time, within … scope and budget, the team provides expert guidance on project methodologies, riskmanagement, and resource allocation. Key Responsibilities Include: Plan, co-ordinate, and manage business-focused projects, ensuring delivery within agreed scope, schedule, budget, and quality standards. Produce accurate resource forecasts and secure required resources to meet project timelines. Identify, monitor, and manage risks, issues, dependencies, and change … oriented approach with strong decision-making ability. Ability to manage competing priorities and time-critical schedules effectively. Confident, credible, and able to influence stakeholders at all levels. Skilled at riskmanagement, problem-solving, and achieving results in complex environments. Strong interpersonal, communication, negotiation, and presentation skills. Experience with both agile and waterfall project management methodologies. Desirable: Experience More ❯
Bristol, Avon, England, United Kingdom Hybrid / WFH Options
Reed
leading, nationwide organisation delivering high-impact cyber advisory services across critical infrastructure and the built environment. This role is ideal for an experienced cyber professional who is passionate about riskmanagement, resilience, and embedding security into complex, real-world systems. You will work closely with internal teams and external clients to identify and manage cyber risks, applying industry … to embed security into the full project lifecycle. Engage with clients across sectors such as energy, water, transport, and smart infrastructure. Share knowledge and support internal awareness of cyber risk across the wider business. Required Skills & Qualifications: Proven experience in cyber riskmanagement and advisory, ideally within the built environment or critical infrastructure . Strong understanding of … cyber-physical systems , OT environments , and connected infrastructure . Experience applying assurance frameworks and technical standards (e.g. NIST, ISO27001, CAF). Background in governance, risk, and compliance (GRC) functions. Excellent communication and stakeholder engagement skills. Agile, analytical, and solutions-focused mindset. Experience in sectors such as energy/utilities, transport, or smart cities is highly desirable. Relevant certifications (e.g. More ❯
Cheltenham, England, United Kingdom Hybrid / WFH Options
Argo DevOps Solutions Ltd
partners, overseeing the full lifecycle of product components and systems—from initial conception to production and ongoing maintenance. Technical Engagement Contribute to technical discussions with teams and support delivery management and technical leads to align solutions with customer requirements. Assist in eliciting requirements from stakeholders to ensure technical solutions meet business objectives. Innovation & Prototyping Leverage technical investigation, rapid prototyping … of a high-performing team, employing modern development practices such as Agile or similar approaches. Foster a culture of continuous improvement, where knowledge sharing and experimentation are encouraged. Security & RiskManagement Work with security and policy stakeholders to ensure zero trust architectures and riskmanagement practices are integrated throughout the development process. Align solutions with security More ❯
gloucester, south west england, united kingdom Hybrid / WFH Options
Argo DevOps Solutions Ltd
partners, overseeing the full lifecycle of product components and systems—from initial conception to production and ongoing maintenance. Technical Engagement Contribute to technical discussions with teams and support delivery management and technical leads to align solutions with customer requirements. Assist in eliciting requirements from stakeholders to ensure technical solutions meet business objectives. Innovation & Prototyping Leverage technical investigation, rapid prototyping … of a high-performing team, employing modern development practices such as Agile or similar approaches. Foster a culture of continuous improvement, where knowledge sharing and experimentation are encouraged. Security & RiskManagement Work with security and policy stakeholders to ensure zero trust architectures and riskmanagement practices are integrated throughout the development process. Align solutions with security More ❯
company and industry! Some of what you will be involved in: Identify security requirements and ensure the integration of security controls during the product development lifecycle Develop and implement riskmanagement strategies Perform security threat modelling and risk assessments applying security controls to mitigate any threats identified Collaborate with the development teams to ensure the adoption of … of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST 800-30, NIST 800-53 or OWASP Working with riskmanagement frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST 800-30, NIST 800-53) If this all sounds like something you will be interested … is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically More ❯
company and industry! Some of what you will be involved in: Identify security requirements and ensure the integration of security controls during the product development lifecycle Develop and implement riskmanagement strategies Perform security threat modelling and risk assessments applying security controls to mitigate any threats identified Collaborate with the development teams to ensure the adoption of … of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST 800-30, NIST 800-53 or OWASP Working with riskmanagement frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST 800-30, NIST 800-53) If this all sounds like something you will be interested … is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically More ❯
company and industry! Some of what you will be involved in: Identify security requirements and ensure the integration of security controls during the product development lifecycle Develop and implement riskmanagement strategies Perform security threat modelling and risk assessments applying security controls to mitigate any threats identified Collaborate with the development teams to ensure the adoption of … of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST 800-30, NIST 800-53 or OWASP Working with riskmanagement frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST 800-30, NIST 800-53) If this all sounds like something you will be interested More ❯