IT & Operations Risk Manager Our Financial Services Client is looking for an IT Risk Manager who’s role serves as a best practice/quality contributor supporting the organisations’ IT & Ops Risk Management Programme. You will act as first line of defense providing risk assessments and … other risk management activities including risk identification, profiling, assessment, response, evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the risk management activities in alignment with the Risk and Controls Governance framework. Key Responsibilities Align with Groups target … state program based on the planned roadmap including governance, risk management methodologies, technology enablement and automation, metrics, and reporting. Collaborate with the three lines of defense and other risk functions on behalf IT & Operations to support, enable and align the Risk and Controls Governance strategy within the More ❯
Our client Scottish Power are seeking a Cyber-Risk Analyst for an immediate start for a critical intial 3 month project based in the Glasgow office, which could potentially reach to 6-9 months. Job Purpose Statement The primary purpose of the Cyber Risk and Assurance Analyst is … to support the delivery of Cyber Risk and Assurance services by the SPEN Cyber Governance, Risk and Assurance team. This role offers the opportunity to work and gain further experience within three primary GRA domains across BAU and Change Delivery – Cyber Risk Management, Third Party Risk Management and Cyber Assurance. Risk activities performed by this role are expected to include conducting or supporting cyber risk assessments on behalf of stakeholders using the Cyber Risk Assessment Methodology across our essential services, IT and OT estates regular reviews and reporting of existing risks to More ❯
The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations IT & Ops Risk Management Programme. The individual will act as first line of defense providing RCG risk assessments and other risk management activities including risk identification, profiling, assessment, response … evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the risk management activities in alignment with the Risk and Controls Governance framework. This position requires the applicant to have an intermediate or expert level of understanding of IT & Operational risks … and the execution of first line IT risk management processes and governance within a large institution. The applicant must also have good communication and management skills, and strong knowledge of industry best practices. Key Responsibilities Performs a combination of the following duties according to departmental guidelines: Strategy and Transformation More ❯
The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations’ IT & Ops Risk Management Programme. The individual will act as first line of defence providing RCG risk assessments and other risk management activities including risk identification, profiling, assessment, response … evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the risk management activities in alignment with the Risk and Controls Governance framework. Strategy and Transformation: Align with Group RCG target state program based on the planned roadmap including governance, risk management methodologies, technology enablement and automation, metrics, and reporting. Collaborate with the three lines of defence and other risk functions on behalf IT & Operations to support, enable and align the Risk and Controls Governance strategy within the broader risk functions. Engage stakeholders at all levels across More ❯
Bournemouth, Dorset, South West, United Kingdom Hybrid / WFH Options
FBI &TMT
office Hours: Full-time, 35 hours per week About the Role: This exciting position plays a key role in shaping and overseeing the IT risk and control framework within Technology. You'll champion a proactive approach to risk, promoting awareness and accountability throughout the tech teams. In this … role, you'll drive IT risk initiatives, deliver regular insights to senior stakeholders, and oversee audits, general controls, and risk assessments. Collaboration is crucial - you'll work closely with Information Security, Group Risk, and both internal and external audit teams. You'll also support policy alignment, evaluate … control effectiveness, and advise on enhancements to risk controls. Key Responsibilities: Develop, implement, and manage the IT Risk Management Framework Maintain an up-to-date IT RiskRegister Oversee the creation and tracking of risk mitigation plans Provide clear, regular risk updates to IT More ❯
london, south east england, United Kingdom Hybrid / WFH Options
CLS Group
dollars’ worth of currency flows through our systems each day. Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients … over 96% on average, so clients can put their capital and resources to better use. CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX … environment in which everyone is encouraged to be open and forward-thinking. Job information: Functional title - AVP, IT Security Specialist Department – Security Governance and Risk Management Corporate level – Associate Vice President Report to – Director of Security Location - London, onsite 2 days per week About the role: The individual will More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
TieTalent
and-run drivers and paid over £400 million in compensation to support victims rebuild their lives. We're looking for a professional and inspiring Risk Management Leader to come and join our team. As a member of the Information Security - Governance Risk and Compliance team (InfoSec GRC), you … ll maintain the confidentiality, availability and integrity of MIB's information and information systems. This will primarily be achieved through identification and recommendation of risk mitigation treatment plans and as a subject matter specialist to support the needs of the organisation. This will be delivered by: Supporting the ongoing … Information Security strategy to business objectives Maintaining robust governance processes in the delivery of MIB's Information security responsibilities Operating an effective information security risk management capability that assesses and reduces risk to an acceptable level Implementing and operating an ongoing information security compliance programme that delivers assurance More ❯
Security Operations, Incident Response and Investigations. Enforce security policies and ensure regulatory compliance. Analyse security data using Excel, Python, and PowerBI. Conduct IT security risk assessments and basic security analysis. Respond to security incidents and document findings. Collaborate with IT, legal, and compliance teams. Maintain security documentation in Confluence … deliver security training programs. Manage vulnerability scans and penetration tests. Ensure compliance with GDPR, DORA, FCA, NFA, MAS & ACPR. Provide security updates to IT Risk Committee. Engage in professional development and obtain certifications. Create and deliver security presentations. Develop and monitor security KPIs and KRIs. Maintain the ICT Risk Management Framework. Create findings within the riskregister, and track to resolution Assist with audits and operational resilience activities. Qualifications: Bachelor’s degree in Information Security, Computer Science, or related field. Experience in Cyber Security Operations with a track record in Incident Response and Investigations. Experience with More ❯
PSD2 SCA, CSSF) and global standards (PCI DSS, SWIFT CSP). This role requires technical knowledge, strategic thinking, and expertise in managing third-party risk , outsourcing compliance , and identity governance to safeguard operational resilience. What you will be doing: Regulatory & Technical Compliance: Support compliance with GDPR and complementary regulations … technical security controls. Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls). Manage and maintain Security Policies and procerdures Third-Party Risk & Outsourcing Management: Design and implement third-party risk management programs to assess vendors, cloud providers, and outsourced services. Ensure compliance with DORA’s … internal/external audits (ISO 27001, SOC 2) and regulatory examinations, focusing on third-party and outsourcing compliance. Remediate gaps in processes or documentation. Risk Management: Maintain the enterprise riskregister , prioritizing risks tied to third-party dependencies, outsourcing, and ICT disruptions. Quantify risks using methodologies. Technical More ❯
Staines, Middlesex, United Kingdom Hybrid / WFH Options
Foundations Executive Search
Cyber and IT Risk Analyst Location: Hybrid (c. 3-4 times per month in the Staines area) Type: Full-time, Permanent Salary: £62,000 - £79,000 per annum + Benefits Foundations Executive Search is proud to be partnering with one of the UK's most prestigious and recognised brands … to support the appointment of a Cyber and IT Risk Analyst . This is a fantastic opportunity for an analytical, detail-driven cyber risk professional to join a nationally critical organisation undergoing significant digital transformation. You'll be supporting enterprise-wide cyber risk decision-making at scale … helping to shape and mature security practices across a complex operational environment. The Opportunity As a Cyber and IT Risk Analyst, you will play a vital role in supporting the enterprise security team to assess, manage, and remediate cyber and IT risks. Working closely with a wide range of More ❯
advice and guidance on all cyber security related matters and ensure the wider technology teams are engaged and supported Manage and drive the security riskregister Ensure our suppliers and vendors are appropriately assessed against our security controls frameworks and comply with our security standards and any certification … skills with the ability to translate technical speak into easy to understand noncomplex language Able to engage with senior leaders to promote, and enable risk based decision making Working Hours: 09.00 - 17.30 Monday- Friday Apply for this position Full Name Email Phone Upload CV/Resume Allowed Type(s More ❯
multiple projects and driving efficiencies through innovative technology solutions. Key Responsibilities: Lead and manage full lifecycle software implementation projects. Develop and maintain project plans, risk registers, and stakeholder communications. Ensure projects are delivered on time, within scope, and budget. Liaise with internal teams, external vendors, and clients to align More ❯
Abingdon, Oxfordshire, United Kingdom Hybrid / WFH Options
Tokamak Energy
objectives, tracking progress to meet these requirements. Establish project documentation in accordance with management processes, including requirements, project plans, finances, system FMEAs, design approvals, risk registers, and change management documentation. Identify risks and liaise with stakeholders to develop mitigation plans, resolving issues related to time, cost, or specifications. Capture More ❯
IT Risk & Governance Analyst We’re looking for a talented IT Risk & Governance Analyst to join a team to assist the IT Risk & Governance Manager in facilitating IT Risk and Governance activities. This role involves both technical and non-technical risk management tasks, this allows … for someone who is eager to learn and support the IT governance function in promoting a risk-aware culture throughout. Responsibilities: Monitor management actions resulting from audits and assessments and follow up until closure. Assist in facilitating risk management activities and manage the IT risk register. Assist … of technology audits and assessments with evidence collection, auditor meeting schedules and documentation. Collaborate with internal and external stakeholders to ensure IT governance and risk management activities support business goals. Support and track continuous improvement initiatives within the team. Prepare and distribute IT Governance meeting packs and minutes for More ❯
up detail estimates for bespoke tasks as required, in suitable documentation with comprehensive Dependencies Assumptions Risks Exclusions Opportunities (DAREO) You will ensure that project risk and opportunity is being managed and mitigated within the contract and recorded in formal riskregister documents and manage escalation of specific … risks into predict by informing the Cross Sector Engineering Manager who attends the Contract monthly risk and opportunity reviews Your skills and experiences: Essential: Experience in project delivery, and able to work with a good level of autonomy Experience using Life Cycle Management, Microsoft Project (and other scheduling toolsets More ❯
bid management best practices and tender processes, including public and private procurement. Proven project management skills, with the ability to develop resource plans, schedules, risk registers and project budgets. Skilled at stakeholder engagement across disciplines and seniority levels. High attention to detail and strong organisational skills, with the ability More ❯
Waste). Identify and document risks, making line manager or Application lead aware, and continue to assist with resolution. Validate submitted risks into the riskregister, and own risk entry. Skills Service Now experience and certification CMDB and Asset Management experience Software Engineering experience Experience of working More ❯
You will be required to manage specialist IT 3rd service partners/consultants. The role involves having a strong focus on IT security, managing risk, and remaining compliant (CE/DRP/ISO). Roles & Responsibilities: Stay up to date with innovative IT solutions and identify opportunities for improvements … business and IT operations. Ensure proactive measures are in place to protect against cyber threats and IT risks, maintaining an up-to-date IT riskregister and implementing appropriate mitigation strategies. Support the creation and administration of IT Disaster Recovery (DRP) and Business Continuity Plans (BCP) to ensure More ❯
managing and mentoring the project team resources Initiate and sustain project related documentation consistent with the company Project workbook including Budget management, Labour forecasts, RiskRegister, Schedule, Open Issues list, Change Management/ECO tracker, Lessons learned and Final acceptance testing. Maintain a detailed schedule (MS Project for … customer and project team are aware of related constraints. Provide project leadership Liaising directly with customers to understand their needs (commercial and technical) Identify risk areas and generate a plan to mitigate them Provide regular reporting to senior management and customer Budget validation and control Control all project changes More ❯
managing and mentoring the project team resources Initiate and sustain project related documentation consistent with the company Project workbook including Budget management, Labour forecasts, RiskRegister, Schedule, Open Issues list, Change Management/ECO tracker, Lessons learned and Final acceptance testing. Maintain a detailed schedule (MS Project for … customer and project team are aware of related constraints. Provide project leadership Liaising directly with customers to understand their needs (commercial and technical) Identify risk areas and generate a plan to mitigate them Provide regular reporting to senior management and customer Budget validation and control Control all project changes More ❯
to ensure the security of assets and probity in financial transactions. Overseeing procurement arrangements and ensuring value for money. Overseeing financial corporate governance including risk management and insurance. Providing advice to the Executive team and Board on the financial implications of decisions. Research Support To ensure delivery of a … Legal services Act as main interface with all legal advisers. Ensure all corporate legal matters are discharged as required. Development and coordination of the riskregister to ensure it is appropriate and up to date. Person Specification The successful applicant will be a qualified accountant and have significant More ❯
Haywards Heath, Sussex, United Kingdom Hybrid / WFH Options
First Central Services
best practice, with focuses on efficiency and long term success Monitor the latest techniques and solutions being utilised in the wider industry Maintain departmental risk registers providing evidence and commentary for controls, updates for Mitigation Actions and maintaining control matrices and attestations. Comply with the requirements, and act in More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
First Central Services
best practice, with focuses on efficiency and long term success Monitor the latest techniques and solutions being utilised in the wider industry Maintain departmental risk registers providing evidence and commentary for controls, updates for Mitigation Actions and maintaining control matrices and attestations. Comply with the requirements, and act in More ❯
Haywards Heath, Sussex, United Kingdom Hybrid / WFH Options
First Central Services
to meet company requirements Maintain an ethically sound workplace culture of inclusivity, openness, ownership, collaboration, ambition, innovation, agility, and respect Responsibility for maintaining department risk registers (as applicable), providing evidence and commentary for controls, updates for Mitigation Actions and maintaining control matrices and attestations. Also, to ensure that your More ❯
managing and mentoring the project team resou rcesInitiate and sustain project related documentation consistent with the company Project workbook including Budget management, Labour forecasts, RiskRegister, Schedule, Open Issues list, Change Management/ECO tracker, Lessons learned and Final acceptance test ing.Maintain a detailed schedule (MS Project for … and project team are aware of related constrai nts.Provide project leader shipLiaising directly with customers to understand their needs (commercial and techni cal)Identify risk areas and generate a plan to mitigate themProvide regular reporting to senior management and cust omerBudget validation and con trolControl all project changes that More ❯