Farnborough, Hampshire, South East, United Kingdom
Damia Group Ltd
IT Risk Specialist - 5 days onsite in Farnborough - SC cleared preferred - £60-65k base plus benefits Our client who specialises in defence and national security is seeking a dedicated Risk Specialist to join their IT business. If you do not currently hold an SC clearance you will need to have resided in the UK for the last … years with no more than 1 month out of the country at a time. In this role, you will be responsible for creating and implementing a comprehensive riskmanagement process. Your mission will be to develop robust riskmanagement policies, establish effective ways of working, and drive training initiatives across the organisation. You will play a … pivotal role in safeguarding their IT operations by identifying, assessing, and mitigating risks in a rapidly evolving technological environment. Key Responsibilities: RiskManagement Framework: Design and implement a comprehensive riskmanagement framework tailored to their operations. This includes developing risk assessment methodologies, defining key risk indicators, and establishing reporting mechanisms. Policy Development: Draft, refine More ❯
Delivery Risk Lead 1284CW Hinkley Point C PAYE £510 or Umbrella £690 Principal Accountabilities (include, whilst not limited to) • Implementation of the RiskManagement Framework through the project organisation including the Portfolio and adherence with the RiskManagement processes and governance cycle within the project delivery organisation. • Act as a Risk Lead and provide … riskmanagement support to the Area, Programme and Functional Directors and teams to ensure project portfolio and delivery risks are adequately identified, assessed, controlled, actioned, and reported to the Project. • Alignment and linkage of delivery risks to portfolio risks to ensure there is a comprehensive coverage of risk across the project and to support Executive reporting on … risk exposure and support linkage to the strategic risk register. • Continuous review and improvement of delivery riskmanagement work instruction, supporting training and ARM RiskManagement Software. • Accountable for the timely production, assurance and focussed Risk and Opportunity reporting for the Project at all levels, including Project Review, Portfolio Risk Review, and More ❯
.NET Framework and .NET Core (C#) Experience in API (REST, GraphQL) design and development Experience in relational database design and optimization (MSSQL, MySQL, etc.) Experience in the deployment and management of cloud (AWS, Azure, etc.) assets Appreciation of the full SDLC, proactive involvement in shaping the delivery prior and during development, through QA phase, and post-release support Be … as representing specific groups, TP ICAP Accord helps increase awareness, collaboration, shares best practice, and holds our firm to account for driving continuous cultural improvement. All staff have defined riskmanagement responsibilities. The Group imposes additional responsibilities on line-managers and senior managers. It is critical that all staff discharge their riskmanagement responsibilities when undertaking … their role. Specific responsibilities are incorporated into employee objectives, and your performance against these objectives will be assessed as part of the firm's performance management process. You will also be required to confirm that you have discharged your riskmanagement responsibilities through the annual riskmanagement attestation process. Maintenance The job description will be More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Morson Talent
home Status: Inside IR35 Type: Contract with approval until 31dec25 with HIGH probability of further renewal(s) Morson Talent are delighted to present an opportunity for a suitably experienced Risk professional to join our client's established team for work associated with a Nuclear New Build mega-Project in Somerset. This role presents a unique chance to be part … apply – typically 3 days per week office attendance and 2 days per week working remotely. Job Purpose/Overview To lead the definition of Policy and Strategy for Delivery Risk for the Project, including responsibility for and oversight of Risks, staffing and the implementation of required Delivery Risk standards and processes. Principal Accountabilities (include, whilst not limited to … ... Implementation of the RiskManagement Framework through the project organisation including the Portfolio and adherence with the RiskManagement processes and governance cycle within the project delivery organisation. Act as a Risk Lead and provide riskmanagement support to the Area, Programme and Functional Directors and teams to ensure project portfolio and More ❯
About the Role: We are seeking an experienced Cyber RiskManagement Specialist with a strong background in in evaluating and quantifying potential risks to the organisation's cyber security posture. This role involves assessing vulnerabilities, identifying threats, quantifying business impacts and developing strategies for risk mitigation. Reporting to the Cyber RiskManagement Manager this role … will ensure that the business maintains a proactive and effective approach to managing its cyber risks and meeting strict regulatory requirements for risk management. Key Responsibilities: (not limited to) Conduct comprehensive, structured cyber risk assessments to identify potential threats, vulnerabilities and impacts to information and operational systems. Collaborate with colleagues across the business to gather detailed information on … applications, systems and business processes. Employ appropriate tools and methodologies to identify, assess and prioritise cyber risks across the IT and OT estate. Collaborate with stakeholders to assign appropriate risk levels and priorities for remediation. Work closely with internal colleagues and external teams to understand and assess the effectiveness of existing security controls. Provide recommendations for improving security measures More ❯
00421 CNA Insurance Company Limited, United Kingdom
Time left to apply: End Date: September 17, 2025 (28 days left to apply) Job Requisition ID: R-5598 Position Summary The IT Risk Manager role serves as a best practice/quality contributor supporting the organisation's IT & Ops RiskManagement Programme. The individual will act as the first line of defense, providing RCG risk assessments and other riskmanagement activities including risk identification, profiling, assessment, response, evaluation, and advising on issues and remediations to support the overall IT & Ops organization. This position supports riskmanagement activities in alignment with the Risk and Controls Governance framework. This position requires the applicant to have an intermediate or expert level … of understanding of IT & Operational risks and the execution of first-line IT riskmanagement processes and governance within a large institution. The applicant must also have good communication and management skills, and strong knowledge of industry best practices. Key Responsibilities Strategy and Transformation: Align with Group RCG target state program based on the planned roadmap including More ❯
unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. Our Digital Risk team is dedicated to providing innovative solutions that mitigate risks associated with digital transformation, cybersecurity, and regulatory compliance. The Digital Risk practice is growing rapidly, and we are … for Senior Managers to help drive success for our clients by helping them navigate the complexities of the digital landscape. The opportunity As a Senior Manager in our Digital Risk team, you will play a key role in guiding our diverse set of clients through IT risks and leading complex engagements. Our Digital Risk solutions include navigating IT … controls assessments and implementations, cybersecurity management, digital resilience and technological continuity, the need for trusted AI in a rapidly-evolving landscape, and more. This role requires strong IT technical and compliance expertise, an industry-leading understanding of relevant regulatory frameworks, and the ability to drive client conversations at an executive level. Your key responsibilities Lead and own the delivery More ❯
Description Drive Risk Awareness. Strengthen Supply Chain Security. We're looking for an experienced Information Security RiskManagement Specialist to help safeguard WTW's global operations by identifying and managing information security risks across our supply chain . In this key role, you'll be responsible for developing and implementing riskmanagement strategies, performing in … depth supplier security assessments , and ensuring compliance with industry standards, regulatory requirements, and internal WTW policies . You'll play a critical part in enhancing our third-party risk posture by working closely with internal teams and external partners to assess vulnerabilities, mitigate threats, and embed security best practices throughout the supply chain. If you have a strong background … in information security, riskmanagement, and a passion for making businesses more resilient-we'd love to hear from you. The Role This role will support the ongoing operations of WTW Technology and Cyber Risk and Controls & Regulatory engagement function in: Evaluate supplier information security practices, policies and systems or risk exposure. Enhance risk assessment More ❯
Description Drive Risk Awareness. Strengthen Supply Chain Security. We're looking for an experienced Information Security RiskManagement Specialist to help safeguard WTW's global operations by identifying and managing information security risks across our supply chain . In this key role, you'll be responsible for developing and implementing riskmanagement strategies, performing in … depth supplier security assessments , and ensuring compliance with industry standards, regulatory requirements, and internal WTW policies . You'll play a critical part in enhancing our third-party risk posture by working closely with internal teams and external partners to assess vulnerabilities, mitigate threats, and embed security best practices throughout the supply chain. If you have a strong background … in information security, riskmanagement, and a passion for making businesses more resilient-we'd love to hear from you. The Role This role will support the ongoing operations of WTW Technology and Cyber Risk and Controls & Regulatory engagement function in: Evaluate supplier information security practices, policies and systems or risk exposure. Enhance risk assessment More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Burns Sheehan
Director of Cyber Security - NIST CSF, RiskManagement, Incident Response - Dublin - £150,000 + 40% bonus A leading international gaming and entertainment company are searching for a Director of Cyber Security to drive their Group cyber security strategy and build resilience across their global operations. The Director of Cyber Security's responsibilities will be: Lead implementation of Group … cyber security strategy, driving a long-term approach to building resilience and capability. Supervise 2nd line Cyber Risk, Standards and Assurance teams, implementing technology security policies and NIST CSF standards. Strengthen cyber governance and riskmanagement, providing timely and accurate risk reporting to senior management and risk committees. Lead Security Monitoring & Incident Response teams … ensuring assets comply with NIST CSF v2 and Group policies. Manage SEC reporting requirements for significant cyber incidents and educate stakeholders on GDPR and regulatory responsibilities. Collaborate with Legal, Risk, DPO and Finance teams to add value and improve cyber risk management. Support merger and acquisition activities by assessing cyber risk in proposed acquisitions. Create and maintain More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
Goldman Sachs Bank AG
OVERVIEW The Goldman Sachs Group, Inc. is a leading global financial services firm providing investment banking, securities and investment management services to a substantial and diversified client base that includes corporations, financial institutions, governments and high net worth individuals. Founded in 1869, the firm is headquartered in New York and maintains offices in London, Frankfurt, Tokyo, Hong Kong, Bengaluru … and other major financial centers around the world. Risk Engineering ("RE"), which is part of the Risk Division, is a central part of the Goldman Sachs riskmanagement framework, with primary responsibility to provide robust metrics, data-driven insights, and effective technologies for risk management. RE is staffed globally with offices including New York, Dallas … Salt Lake City, London, Warsaw, Bengaluru, Singapore, and Tokyo. Analytics & Reporting (A&R) is responsible for reviewing, publishing, interpreting and communicating the firm's independent and authoritative risk and capital measures. This includes understanding financial/non-financial risk by analyzing risk and capital metrics to evaluate, explain and justify features and emerging trends observed in the More ❯
Cybersecurity Issue/Risk Service Manager page is loaded Cybersecurity Issue/Risk Service Manager Apply locations Birmingham, England, United Kingdom Krakow, Lesser Poland, Poland time type Full time posted on Posted Yesterday job requisition id R Location: Birmingham, England, United Kingdom Job ID: R Date Posted: 2024-07-17 Company Name: HITACHI ENERGY UK LIMITED Profession (Job … Category): IT, Telecom & Internet Job Schedule: Full time Remote: Yes Job Description: To grow Cybersecurity team we are lookinng for: Global Cybersecurity Risk Service Manager location: Remote from Poland, remote from UK Responsibilities: Owns the services related to Cybersecurity RiskManagement: Iidentify core requirements for RiskManagement in cooperation with stakeholders Develops requirements and frameworks … for Issue and RiskManagement in alignment within the subdepartment; Take care about area's processes and procedures Supervises a team of specialists, Deliver riskmanagement services to Hitachi Energy in cooperation with the te Work closely with the stakeholders to prioritize, create reporting, and oversee security findings. Improve management of security risks/issues More ❯
Primary Details Time Type: Full time Worker Type: Employee Senior IT Risk Analyst Permanent London/Hybrid At QBE, our purpose is to enable a more resilient future. We are an international insurer and reinsurer with a local presence in 27 countries. The Opportunity QBE Insurance is seeking a Senior IT Risk Analyst to join our Global IT … RiskManagement team , supporting the global Data, AI and Technology function within Technology Services. This is a permanent, hybrid role based out of our London office . The successful candidate will play a key role in assessing and improving technology controls to ensure compliance with the QBE Global IT RiskManagement Framework and Group Enterprise Risk Policies and Standards . Your New Role As a Senior IT Risk Analyst, you’ll support the monitoring and reporting of technology and transformation performance in risk and controls as part of Line 1. You’ll help identify and track risks and improvements, analyse data, and ensure alignment with Group Enterprise RiskManagement Standards. Main More ❯
About the team: The Data, IT and Cyber Risk Team is part of the wider riskmanagement function responsible for providing check and challenge to the first line over their risk profile. What you will be doing: As the new Senior Risk Manager - Data Risk, you will provide data risk second line opinion … over the data first line. This includes ensuring that data risk is managed in line with the Group's risk appetite as well as ensuring that Data Risk Framework follows best practice. Your responsibilities will include... The management of the Data Risk Team and its delivery of the annual plan. This includes the line management of the Data Risk Team across the Group and supporting any external resource as and when required. Supporting and engaging with 1LOD business and controls functions to ensure effective adherence to the Data riskmanagement principles and framework, ensuring that 1LOD fully adheres to the 3LOD disciplines based on defined 1LOD and 2LOD roles and responsibilities. More ❯
Newcastle upon Tyne, United Kingdom Hybrid / WFH Options
NHS Business Services Authority
Job summary Are you passionate about improving how we manage governance, risk, and compliance in digital services? We're looking for a proactive and detail-focused Governance, Risk and Compliance Analyst to join our Digital, Data and Technology (DDaT) directorate at NHSBSA. In this role, you'll help shape and maintain governance, risk and compliance frameworks across … We're looking for someone with strong communication and analytical skills who's confident working independently and as part of a team. You'll bring proven experience in Governance, Risk, Compliance, Assurance, or Audit -- ideally gained within the NHS or wider public sector -- to help us strengthen our frameworks and deliver real impact. What do we offer? o … networks o Excellent pension o NHS Car lease scheme o Access to a wide range of benefits and high street discounts! Main duties of the job As a Governance, Risk and Compliance (GRC) Analyst, you'll play a vital role in supporting the development, implementation, and continuous improvement of governance, risk, and compliance frameworks across our Digital, Data More ❯
Greater Bristol Area, United Kingdom Hybrid / WFH Options
Logiq
Dependent on Experience , plus car allowance, plus up to 10% performance bonus*, plus excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber RiskManagement? Cyber riskmanagement ensures that organisations can anticipate, withstand, and recover from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and … context. As leading players in MOD’s cyber security transformation to Secure by Design (SbD), we are looking for team members and leaders who share our vision that cyber riskmanagement is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work More ❯
newport, wales, united kingdom Hybrid / WFH Options
Logiq
Dependent on Experience , plus car allowance, plus up to 10% performance bonus*, plus excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber RiskManagement? Cyber riskmanagement ensures that organisations can anticipate, withstand, and recover from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and … context. As leading players in MOD’s cyber security transformation to Secure by Design (SbD), we are looking for team members and leaders who share our vision that cyber riskmanagement is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work More ❯
bath, south west england, united kingdom Hybrid / WFH Options
Logiq
Dependent on Experience , plus car allowance, plus up to 10% performance bonus*, plus excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber RiskManagement? Cyber riskmanagement ensures that organisations can anticipate, withstand, and recover from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and … context. As leading players in MOD’s cyber security transformation to Secure by Design (SbD), we are looking for team members and leaders who share our vision that cyber riskmanagement is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work More ❯
bradley stoke, south west england, united kingdom Hybrid / WFH Options
Logiq
Dependent on Experience , plus car allowance, plus up to 10% performance bonus*, plus excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber RiskManagement? Cyber riskmanagement ensures that organisations can anticipate, withstand, and recover from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and … context. As leading players in MOD’s cyber security transformation to Secure by Design (SbD), we are looking for team members and leaders who share our vision that cyber riskmanagement is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work More ❯
packages. Most specifically SFDC but others as well. • Train and coordinate with systems application owners, data custodians, technical leads, and business impact analysts on security standards, guidelines, and vendor riskmanagement of the systems within the organization and sub organizations. • Build relationships with Dynatrace Business Systems application teams. • Create, conduct, and report on security audits and assessments for … all systems applications (custom, SaaS and 3rd Party applications). • Provide guidance and support over the teams and ensure they can meet riskmanagement requirements and industry control frameworks for their systems/applications. • Contribute to the development and implementation of security policies, procedures, and controls. • Serve as a bridge between the Dynatrace business units and the Security … RiskManagement organization to promote and facilitate the adaptation and involvement with the Dynatrace RiskManagement Framework What will help you succeed Technical skills: Experience with Salesforce (SFDC) implementations and integrations. Experience performing secure application configurations of other large ERP type Software packages. Knowledge of configuration and integration security (API, etc.) for SaaS solutions Understanding Secure More ❯
The Data Privacy Senior Analyst is responsible for providing governance and oversight, riskmanagement and controls leadership across the enterprise for all activities associated with Privacy. This individual will have responsibility for covering privacy related capabilities and requirements including: compliance with the Citi Global Privacy Policy, identification and management of operational risks associated with Privacy and working … the 1LOD (First Line of Defense) Businesses and Functions Assess, evaluate, and validate controls through processes and tools such as the MCA and KRIs as appropriate for data privacy risk Monitor key privacy risk indicators Support the preparation and facilitation of enterprise privacy oversight forums Perform trend analysis on metrics and Issues to identify emerging risks Support the … implementation of global, regional and local Data Privacy, regulatory and risk and control projects Support periodic reviews of data privacy processes and controls and validate changes as a result of such reviews Track and review deviations and risk acceptances when raised and at the time of renewal to assess the need for deviations and ascertain that the business More ❯
Derby, Derbyshire, United Kingdom Hybrid / WFH Options
ICS.AI Limited
Act as the primary point of contact with major clients during project delivery and represent the company on Project Steering Groups Manage all elements of the PRINCE2 Agile project management lifecycle for AI transformation programmes Coordinate technical implementation teams for projects and solutions across multiple concurrent workstreams Manage project budgets, resourcing, riskmanagement and stakeholder engagement across … multiple council departments Provide client communications and reporting, including regular Highlight reports and project status updates Ensure accountability for project quality through test plans, governance reviews and riskmanagement Create and maintain project documentation including Project Initiation Documentation, Project Plans, RAID Logs, and Change Management Trackers Deliver RiskManagement, Stakeholder Management, Budget Management, Benefits Realisation, Business Intelligence and Renewal management Effective resource planning to ensure maximum billable resource allocation Provide consultancy services and gather solution requirements from stakeholders Support the Project Management Office team with PMO continuous improvement initiatives Required Skills and Experience Minimum 5 years in a Project Management Office role PRINCE2 Foundation certification (PRINCE2 Practitioner and ITIL More ❯
and oversee governance frameworks that mitigate risks associated with Active Directory infrastructure within a highly regulated banking environment. This role ensures the security, compliance, and operational integrity by conducting risk assessments, establishing governance policies, and aligning technical practices with industry regulations and audit standards. • Acting as a subject matter expert, the specialist bridges the gap between technical security controls … and business riskmanagement, supporting audit readiness and regulatory compliance while enhancing the organization's overall cybersecurity posture. Candidate Value Proposition: • The successful candidate will play a key role in shaping IT governance within a global banking environment-leading strategic initiatives, driving compliance and risk mitigation, and collaborating with senior stakeholders. • This is a unique opportunity to … role that values leadership, technical excellence, and continuous improvement Typical Day in Role: • Maintain and update governance frameworks and policies to align with cybersecurity standards and banking regulations. • Conduct risk assessments on Active Directory infrastructure, identifying vulnerabilities and evaluating mitigation strategies. • Collaborate with technical teams and business stakeholders to translate security risks into actionable governance improvements. • Support internal and More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Adecco
Job title: RiskManagement Specialist Location: London/Hybrid Duration: 6 months Adecco is an employment consultancy. We put expertise, energy, and enthusiasm into improving everyone's chance of being part of the workplace. We respect and appreciate people of all ethnicities, generations, religious beliefs, sexual orientations, gender identities, and more. We do this by showcasing their talents … skills, and unique experience in an inclusive environment that helps them thrive. The role: This role forms a key part of the 1LOD Technology RiskManagement function, supporting the Head of Technology Risk. The role holder will form a crucial component in the establishment of an enhanced riskmanagement framework and beyond that identify and assess … potential risks across Technology, as well as ensuring a comprehensive approach to risk mitigation. The key focus of this contract is to Support the enhancement of Technology Resilience and the maturity of riskmanagement practices Responsibilities: Process Documentation: Create and update process documentation across key technology processes to support governance, compliance, and operational consistency. SSSDLC Integration: Support More ❯
Insurance clients on a 12-month contract. Inside IR35 Hybrid Responsibilities: Analyze large datasets to identify trends, anomalies, and emerging risks across technology and cyber domains. Support governance and risk forums with timely and accurate reporting on key risk indicators (KRIs), control effectiveness, and remediation progress. Develop and maintain dashboards and reports to visualize technology and cyber risk and control data. Collaborate with risk and control owners to ensure accurate data capture and interpretation of risk metrics. Contribute to the development and enhancement of risk data models and reporting frameworks. Ensure alignment of analytics and reporting outputs with enterprise riskmanagement and control frameworks. Strong knowledge of riskmanagement frameworks … e.g., NIST, ISO 27001, COBIT) and control environments. Deep understanding of IT general controls, cyber security principles, and technology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau, or similar tools). Familiarity with GRC platforms and risk data management practices. Experience in a riskmanagement, IT More ❯