regulators and industry authorities with a shared commitment to telling clients what is really needed for turning change into a strategic business asset, managing risk and unlocking value at every stage of growth. To learn more, visit: The team: Alvarez and Marsal's Global Security Office is committed to … delivering the highest standards of security and compliance. We are seeking a highly skilled and motivated Information Security Risk Manager to lead on A&M wide information security risk management program and join our dynamic and growing team based in either our London or Tampa office. Position Summary … The Information Security Risk Manager will play a critical role in, and will be responsible for, driving risk strategy, overseeing risk governance, managing senior-level reporting, and leading key information security risk initiatives across the Alvarez and Marsal. This role will be focused on managing and More ❯
IT & Operations Risk Manager Our Financial Services Client is looking for an IT Risk Manager who’s role serves as a best practice/quality contributor supporting the organisations’ IT & Ops Risk Management Programme. You will act as first line of defense providing risk assessments and … other risk management activities including risk identification, profiling, assessment, response, evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the risk management activities in alignment with the Risk and Controls Governance framework. Key Responsibilities Align with Groups target … state program based on the planned roadmap including governance, risk management methodologies, technology enablement and automation, metrics, and reporting. Collaborate with the three lines of defense and other risk functions on behalf IT & Operations to support, enable and align the Risk and Controls Governance strategy within the More ❯
Head of Risk & Compliance page is loaded Head of Risk & Compliance Apply remote type Hybrid locations London - UK time type Full time posted on Posted Yesterday job requisition id JR09270 About Us: Planet is a leading technology company transforming payments by putting customer experience first. We offer integrated … secure, and seamless, enabling our partners to deliver exceptional experiences to their customers. Role Overview: Reporting to the Chief Legal Officer, the Head of Risk & Compliance will be responsible for developing and leading the overall Risk Management Framework (RMF) and program at Planet. This person will be able … to view the business and opportunities through a risk-based lens and will include ensuring all aspects of Planet's payment institution licenses are maintained in full compliance with regulation including but not limited to those of AML, fraud and credit risk management, safeguarding and governance as well More ❯
develop the privacy risks monitoring framework for Sportradar's products and services. Oversee and maintain the internal Privacy by Design process, including conducting privacy risk assessments of Sportradar's products and services, identification of privacy risks and creation of remediation plans. Maintain the privacy riskregister in … identified risks related to Sportradar's products and services are remediated on time and in line with business requirements. Develop and improve the privacy riskregister in OneTrust in line with Security and Enterprise Risk Management teams' frameworks. Analyse the privacy risks recorded in the privacy riskregister in OneTrust to understand trends and patterns to enable data driven decisions. Periodically report on identified risks, trends and overall numbers of assessments and other records to senior management. Monitor the new legislative changes and decisions and guidelines of data protection authorities to ensure timely compliance with More ❯
consulting services with a purpose of saving lives and creating a sustainable future. dss + enables companies to build organisational and human capabilities, manage risk, improve operations, achieve sustainability goals and operate more responsibly. By leveraging its DuPont heritage, deep industry and management expertise and diverse team, dss + … a reality, in a practical actionable way. What will you do? As a Senior Operations Consultant with expertise on Process Hazard Analysis (PHA) and Risk Assessment & Management, you will lead specific workstreams within a wider Process Safety Management (PSM)/Operational Risk Management (ORM) transformation program, aiming at … effective solutions within the area of expertise. You will provide subject matter expertise and lead project teams to help clients establishing and implementing robust Risk Assessment and Process Hazard Analysis programs and, in particular, building organizational capabilities to sustain performance. The ideal candidate must have strong expertise and proven More ❯
The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations IT & Ops Risk Management Programme. The individual will act as first line of defense providing RCG risk assessments and other risk management activities including risk identification, profiling, assessment, response … evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the risk management activities in alignment with the Risk and Controls Governance framework. This position requires the applicant to have an intermediate or expert level of understanding of IT & Operational risks … and the execution of first line IT risk management processes and governance within a large institution. The applicant must also have good communication and management skills, and strong knowledge of industry best practices. Key Responsibilities Performs a combination of the following duties according to departmental guidelines: Strategy and Transformation More ❯
The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations’ IT & Ops Risk Management Programme. The individual will act as first line of defence providing RCG risk assessments and other risk management activities including risk identification, profiling, assessment, response … evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the risk management activities in alignment with the Risk and Controls Governance framework. Strategy and Transformation: Align with Group RCG target state program based on the planned roadmap including governance, risk management methodologies, technology enablement and automation, metrics, and reporting. Collaborate with the three lines of defence and other risk functions on behalf IT & Operations to support, enable and align the Risk and Controls Governance strategy within the broader risk functions. Engage stakeholders at all levels across More ❯
Cyber Security Risk Specialist - VP Docklands, London (Hybrid) £100,000 - £110,000 per annum + annual discretionary bonus On behalf of a Leading financial services organisation, I am seeking a highly experienced Cyber Security Risk Specialist at VP level. The individual will be part of the security function … that is responsible for security governance, risk and assurance, to ensure the organisations security posture is robust, compliant against the security policy, standards and controls. In particular I am seeking someone with an extensive background in managing Security Control testing. The company operate a hybrid work policy and therefore … such as NIST CSF and NIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain riskregister in RSA Archer. Identify assess and prioritize security risk across the organisation's information assets and More ❯
london, south east england, united kingdom Hybrid / WFH Options
Spencer Rose
Cyber Security Risk Specialist - VP Docklands, London (Hybrid) £100,000 - £110,000 per annum + annual discretionary bonus On behalf of a Leading financial services organisation, I am seeking a highly experienced Cyber Security Risk Specialist at VP level. The individual will be part of the security function … that is responsible for security governance, risk and assurance, to ensure the organisations security posture is robust, compliant against the security policy, standards and controls. In particular I am seeking someone with an extensive background in managing Security Control testing. The company operate a hybrid work policy and therefore … such as NIST CSF and NIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain riskregister in RSA Archer. Identify assess and prioritize security risk across the organisation's information assets and More ❯
Bournemouth, Dorset, South West, United Kingdom Hybrid / WFH Options
FBI &TMT
office Hours: Full-time, 35 hours per week About the Role: This exciting position plays a key role in shaping and overseeing the IT risk and control framework within Technology. You'll champion a proactive approach to risk, promoting awareness and accountability throughout the tech teams. In this … role, you'll drive IT risk initiatives, deliver regular insights to senior stakeholders, and oversee audits, general controls, and risk assessments. Collaboration is crucial - you'll work closely with Information Security, Group Risk, and both internal and external audit teams. You'll also support policy alignment, evaluate … control effectiveness, and advise on enhancements to risk controls. Key Responsibilities: Develop, implement, and manage the IT Risk Management Framework Maintain an up-to-date IT RiskRegister Oversee the creation and tracking of risk mitigation plans Provide clear, regular risk updates to IT More ❯
Role: IT Risk and Controls Lead Location: East London (Fortnightly) Salary: 55,000 - £60,000 Effective management of IT Risks, and their associated Controls, is a key aspect of the maturing IT organisation but something that can be hard to achieve when relying on collective responsibility. This role will … demonstrate clear ownership for IT Risk and Controls and deliver ongoing management of policies, procedures, risk reviews and a quarterly plan to address specific actions in this area. This is important to ensure consistency across all areas of IT and that controls remain active and up to date. … Ideal Candidate: Build and maintain close working relationship with the Risk Assurance department to ensure policies, and procedures, are aligned to Enterprise level policy and meet regulatory requirements. Operational ownership of the IT RiskRegister, ensuring adherence to the agreed IT risk management framework. This should More ❯
dollars’ worth of currency flows through our systems each day. Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients … over 96% on average, so clients can put their capital and resources to better use. CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX … environment in which everyone is encouraged to be open and forward-thinking. Job information: Functional title - AVP, IT Security Specialist Department – Security Governance and Risk Management Corporate level – Associate Vice President Report to – Director of Security Location - London, onsite 2 days per week About the role: The individual will More ❯
london, south east england, united kingdom Hybrid / WFH Options
CLS Group
dollars’ worth of currency flows through our systems each day. Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients … over 96% on average, so clients can put their capital and resources to better use. CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX … environment in which everyone is encouraged to be open and forward-thinking. Job information: Functional title - AVP, IT Security Specialist Department – Security Governance and Risk Management Corporate level – Associate Vice President Report to – Director of Security Location - London, onsite 2 days per week About the role: The individual will More ❯
IT Risk & Controls Lead London - Hybrid (2 DPM in office) Up to £63,000 VIQU have partnered with a leading organisation who are seeking an IT Risk & Controls Lead to join their IT risk management team. The IT Risk & Controls Lead will take overall responsibility for … maintaining up-to-date IT risk documentation and ensuring that all mitigating controls are current, effective, and properly evidenced. The IT Risk & Controls Lead will be instrumental in developing and sustaining a close working relationship with the Risk Assurance Board, ensuring that IT policies and procedures are … aligned with enterprise-wide standards and compliant with regulatory requirements. The successful IT Risk & Controls Lead will also own the IT RiskRegister, overseeing its ongoing management in line with the established IT risk framework. This includes collaborating with departmental leads to review risks according to More ❯
As part of the Risk Team, you will be working with the Operational Risk Team as they define, assess, and manage operational risks and incidents and business continuity for Convera. This role will be responsible for ensuring that company practices are in line with Digital Operational Resilience Act … DORA) requirements and all functions understand their ICT risk profile and manage risk within the risk appetite of Convera. You will be responsible for: Develop, implement, and maintain an ICT risk management framework to identify, analyze, and mitigate potential ICT risks Maintain the Entity/County …/Region/Global level risk registers and produce risk reporting as appropriate Support the business in ICT risk identification, assessment, treatment, and monitoring Provide practical interpretation, application, and mitigation of risk to resolve issues raised across the organization Deliver strategic projects to enhance the company More ❯
As part of the Risk Team, you will be working with the Operational Risk Team as they define, assess, and manage operational risks and incidents and business continuity for Convera. This role will be responsible for ensuring that company practices are in line with Digital Operational Resilience Act … DORA) requirements and all functions understand their ICT risk profile and manage risk within the risk appetite of Convera. You will be responsible for: Develop, implement, and maintain an ICT risk management framework to identify, analyze, and mitigate potential ICT risks. Maintain the Entity/County …/Region/Global level risk registers and produce risk reporting as appropriate. Support the business in ICT risk identification, assessment, treatment, and monitoring. Provide practical interpretation, application, and mitigation of risk to resolve issues raised across the organization. Deliver strategic projects to enhance the company More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
TieTalent
and-run drivers and paid over £400 million in compensation to support victims rebuild their lives. We're looking for a professional and inspiring Risk Management Leader to come and join our team. As a member of the Information Security - Governance Risk and Compliance team (InfoSec GRC), you … ll maintain the confidentiality, availability and integrity of MIB's information and information systems. This will primarily be achieved through identification and recommendation of risk mitigation treatment plans and as a subject matter specialist to support the needs of the organisation. This will be delivered by: Supporting the ongoing … Information Security strategy to business objectives Maintaining robust governance processes in the delivery of MIB's Information security responsibilities Operating an effective information security risk management capability that assesses and reduces risk to an acceptable level Implementing and operating an ongoing information security compliance programme that delivers assurance More ❯
equity backing. It's an inspiring time to join the team! Looking for a self-starting highly motivated and detail-orientated Information Security Governance, Risk, and Compliance (GRC) Analyst to support the design, implementation, and ongoing improvement of our information security governance and risk management framework. This role … is essential in ensuring the organisation proactively manages information security risk across its employees, technologies, vendors, and operations and adheres to the regulatory and security standards pertinent to financial services while providing visibility to key stakeholders. Job Responsibilities Support the development, maintenance, and enforcement of information security policies, procedures … and standards Conduct risk assessments on technology systems, third-party vendors, and new services. Drive, monitor and track remediation efforts related to incidents, assurance internal audits, external audits, and security assessments Strong stakeholder management skills, working closely with business and technical teams to ensure security controls are implemented and More ❯
PSD2 SCA, CSSF) and global standards (PCI DSS, SWIFT CSP). This role requires technical knowledge, strategic thinking, and expertise in managing third-party risk , outsourcing compliance , and identity governance to safeguard operational resilience. What you will be doing: Regulatory & Technical Compliance: Support compliance with GDPR and complementary regulations … technical security controls. Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls). Manage and maintain Security Policies and procerdures Third-Party Risk & Outsourcing Management: Design and implement third-party risk management programs to assess vendors, cloud providers, and outsourced services. Ensure compliance with DORA’s … internal/external audits (ISO 27001, SOC 2) and regulatory examinations, focusing on third-party and outsourcing compliance. Remediate gaps in processes or documentation. Risk Management: Maintain the enterprise riskregister , prioritizing risks tied to third-party dependencies, outsourcing, and ICT disruptions. Quantify risks using methodologies. Technical More ❯
PSD2 SCA, CSSF) and global standards (PCI DSS, SWIFT CSP). This role requires technical knowledge, strategic thinking, and expertise in managing third-party risk , outsourcing compliance , and identity governance to safeguard operational resilience. What you will be doing: Regulatory & Technical Compliance: Support compliance with GDPR and complementary regulations … technical security controls. Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls). Manage and maintain Security Policies and procerdures Third-Party Risk & Outsourcing Management: Design and implement third-party risk management programs to assess vendors, cloud providers, and outsourced services. Ensure compliance with DORA’s … internal/external audits (ISO 27001, SOC 2) and regulatory examinations, focusing on third-party and outsourcing compliance. Remediate gaps in processes or documentation. Risk Management: Maintain the enterprise riskregister , prioritizing risks tied to third-party dependencies, outsourcing, and ICT disruptions. Quantify risks using methodologies. Technical More ❯
PSD2 SCA, CSSF) and global standards (PCI DSS, SWIFT CSP). This role requires technical knowledge, strategic thinking, and expertise in managing third-party risk , outsourcing compliance , and identity governance to safeguard operational resilience. What you will be doing: Regulatory & Technical Compliance: Support compliance with GDPR and complementary regulations … technical security controls. Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls). Manage and maintain Security Policies and procedures. Third-Party Risk & Outsourcing Management: Design and implement third-party risk management programs to assess vendors, cloud providers, and outsourced services. Ensure compliance with DORA's … internal/external audits (ISO 27001, SOC 2) and regulatory examinations, focusing on third-party and outsourcing compliance. Remediate gaps in processes or documentation. Risk Management: Maintain the enterprise riskregister , prioritizing risks tied to third-party dependencies, outsourcing, and ICT disruptions. Quantify risks using methodologies. Technical More ❯
with both internal and external stakeholders. Ensure clarity on deliverables and timelines for all stakeholders, including IT, Finance, Procurement, Legal, and Communications. Maintain a riskregister and develop risk mitigation plans. Establish governance protocols and key decision dates. Develop a project-specific communication plan to keep stakeholders … management using MSP. Ability to connect and engage key stakeholders across the organisation. Knowledge of governance, standards, and controls in project management. Experience in risk management with effective communication of risks to stakeholders. Strong communication skills capable of influencing at senior levels. Relevant qualifications such as APMP Practitioner, Prince2 More ❯
Staines, Middlesex, United Kingdom Hybrid / WFH Options
Foundations Executive Search
Cyber and IT Risk Analyst Location: Hybrid (c. 3-4 times per month in the Staines area) Type: Full-time, Permanent Salary: £62,000 - £79,000 per annum + Benefits Foundations Executive Search is proud to be partnering with one of the UK's most prestigious and recognised brands … to support the appointment of a Cyber and IT Risk Analyst . This is a fantastic opportunity for an analytical, detail-driven cyber risk professional to join a nationally critical organisation undergoing significant digital transformation. You'll be supporting enterprise-wide cyber risk decision-making at scale … helping to shape and mature security practices across a complex operational environment. The Opportunity As a Cyber and IT Risk Analyst, you will play a vital role in supporting the enterprise security team to assess, manage, and remediate cyber and IT risks. Working closely with a wide range of More ❯
accessibility, and performance. Manage scope, costs, and timelines: Collaborate with the PMO Analyst and Resources Manager to align resource allocation with project milestones. Maintain risk and quality standards: Keep a riskregister, monitor delivery progress, and follow ISO standards to ensure quality and security of solutions. Collaborate … managing software workstreams in an agile environment. Strong stakeholder engagement skills, capable of handling difficult situations and resolving conflicts. Commercial awareness, including budget tracking, risk management, and forecasting. Ability to build and maintain high-performing teams with clear communication and collaboration. Due to the industries we serve, the candidate More ❯
advice and guidance on all cyber security related matters and ensure the wider technology teams are engaged and supported Manage and drive the security riskregister Ensure our suppliers and vendors are appropriately assessed against our security controls frameworks and comply with our security standards and any certification … skills with the ability to translate technical speak into easy to understand noncomplex language Able to engage with senior leaders to promote, and enable risk based decision making Working Hours: 09.00 - 17.30 Monday- Friday Apply for this position Full Name Email Phone Upload CV/Resume Allowed Type(s More ❯