Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
These five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Cyber Risk Manager will be responsible for the following: Operational Develop and define key risk indicators to provide cyber risks insights to Deloitte Technology BISOs and executives. Gather requirements and … build dashboards that accurately depict Deloitte Technology's cyber risk exposure. Drive organizational change and work with multiple business units of a large organization to effect change. Understand the Deloitte global line of business, gain familiarity with priorities, and become an advocate for the cyber risk within the BISO organization. Collaborate with BISOs as a cyber risk expert, to assist then to identify, assess, and manage cyber risks within their respective lines of business. Actively govern cyber risk in the Deloitte Technology risk register. Partner effectively with Deloitte Technology and BISO teams to facilitate cyber security risk reviews and analysis. Empower Deloitte Technology teams to establish cyber risk ownership and agree on More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
These five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Cyber Risk Manager will be responsible for the following: Operational Develop and define key risk indicators to provide cyber risks insights to Deloitte Technology BISOs and executives. Gather requirements and … build dashboards that accurately depict Deloitte Technology's cyber risk exposure. Drive organizational change and work with multiple business units of a large organization to effect change. Understand the Deloitte global line of business, gain familiarity with priorities, and become an advocate for the cyber risk within the BISO organization. Collaborate with BISOs as a cyber risk expert, to assist then to identify, assess, and manage cyber risks within their respective lines of business. Actively govern cyber risk in the Deloitte Technology risk register. Partner effectively with Deloitte Technology and BISO teams to facilitate cyber security risk reviews and analysis. Empower Deloitte Technology teams to establish cyber risk ownership and agree on More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
These five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Cyber Risk Manager will be responsible for the following: Operational Develop and define key risk indicators to provide cyber risks insights to Deloitte Technology BISOs and executives. Gather requirements and … build dashboards that accurately depict Deloitte Technology's cyber risk exposure. Drive organizational change and work with multiple business units of a large organization to effect change. Understand the Deloitte global line of business, gain familiarity with priorities, and become an advocate for the cyber risk within the BISO organization. Collaborate with BISOs as a cyber risk expert, to assist then to identify, assess, and manage cyber risks within their respective lines of business. Actively govern cyber risk in the Deloitte Technology risk register. Partner effectively with Deloitte Technology and BISO teams to facilitate cyber security risk reviews and analysis. Empower Deloitte Technology teams to establish cyber risk ownership and agree on More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
These five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Cyber Risk Manager will be responsible for the following: Operational Develop and define key risk indicators to provide cyber risks insights to Deloitte Technology BISOs and executives. Gather requirements and … build dashboards that accurately depict Deloitte Technology's cyber risk exposure. Drive organizational change and work with multiple business units of a large organization to effect change. Understand the Deloitte global line of business, gain familiarity with priorities, and become an advocate for the cyber risk within the BISO organization. Collaborate with BISOs as a cyber risk expert, to assist then to identify, assess, and manage cyber risks within their respective lines of business. Actively govern cyber risk in the Deloitte Technology risk register. Partner effectively with Deloitte Technology and BISO teams to facilitate cyber security risk reviews and analysis. Empower Deloitte Technology teams to establish cyber risk ownership and agree on More ❯
NAT CAT Risk - Modelling & Analytics Lead Hybrid As Nat CAT Risk Modelling and Analytics Lead you will be responsible for leading our NAT CAT modelling and analytics team with the CAT Risk function, reporting directly into the AVP for CAT Risk and Capital. You will lead in the areas of complex pricing support, portfolio analysis and … industry leading expertise within our Enterprise Cat function.You will have a thorough understanding of the Lloyd’s market and hold specialist qualifications such as the Certified Specialist in Catastrophe Risk (CSCR), Certified Catastrophe Risk Management Professional (CCRMP), or a CAT modelling designation from a leading third-party vendor, such as Verisk’s Certified Extreme Event Modeler (CEEM). … and verbal communication skills allow you to consult on complex projects and present confidently at all levels of seniority. What Will You Do? Provide complex pricing support to optimize riskassessment and pricing strategies. Conduct portfolio risk reward analysis to influence CAT underwriting strategy Lead model validation efforts and play an leading role in CAT View of More ❯
materials Supporting workshop delivery and client meetings Conducting research and analysis Client Engagement Support Typical activities include: Leading client workshops such as security strategy sessions, Cloud security architecture reviews, Riskassessment workshops, technology evaluation sessions. Producing client materials including, Security assessment reports, technical architecture diagrams, implementation roadmaps and project status updates. Conducting security assessments by gathering and …/security experience in the Defence Sector Demonstrable experience of one or more of the following areas: MoD Security GRC/Assurance Processes: Secure by Design and RMADs/RiskAssessment Cloud security architecture documentation, s ecurity controls mapping and c ompliance checking automation MoD Cyber Operations: SOC tool evaluation support, SIEM use case development, Metrics and reporting … frameworks, and Technology integration assessment. Cyber Vulnerability Investigations Identity & Access: IAM architecture reviews, p rivileged access solutions, authentication technology assessment, and Zero Trust implementation planning OT Security OT RiskAssessment/Assurance and OT Vulnerability Management Key Strengths Detail-oriented with a strong focus on quality Well-organised and committed to developing customer service skills Enthusiastic about More ❯
Mansfield, Nottinghamshire, England, United Kingdom Hybrid / WFH Options
Cherry Professional - Relationship Led Recruitment
Risk and Assurance Analyst | Hybrid working | Permanent | Up to £42,000 | Annual Bonus Cherry Professional are pleased to be working with their public sector client to support the recruitment of a Risk and Assurance Analyst to join their dedicated team. Responsibilities: Implement and maintain effective risk management activities Develop and implement qualitative and quantitative riskassessment processes Conduct risk workshops to identify, assess, and document risks Provide risk management support to project and programme managers Maintain and oversee RAIIDD reporting and escalation processes. Lead formal and informal assurance reviews of projects and programmes Review and assure project documentation Oversee compliance with external programme governance and assurance processes Support and challenge project managers to … ensure best practices in planning, risk management , and project delivery assurance Ideal Candidate: Educated to Degree level or with equivalent experience Professional qualification in Risk Management , Assurance, or Programme/Project Management (e.g., APM Risk Certificate, MoR, MSP, PRINCE2). Degree in a relevant field (e.g., Risk Management , Business, Project Management, Engineering) or equivalent experience. Proven More ❯
Job ID: Amazon Ireland Support Services Limited This is a mid-level position ideal for candidates looking to grow their career in IT Risk Management. Are you an Information Technology (IT) Risk Manager ready for a step-up role with within Amazon's unique IT environment? We are looking for an experienced IT Risk Manager within the … First Line of Defense (1LoD) to enhance our IT risk management and control environment. Reporting to the Senior IT Risk Manager, the successful candidate will contribute to the development of a 1st Line IT Risk program across Amazon global regulated entities. The ideal candidate must have IT risk management experience, preferably, within the payments or financial … services sector. Key job responsibilities • Support the Global Technology Officer (GTO) to attest compliance with the Global IT Risk Management Framework and legal entity regulatory requirements. • Design and implement IT risk controls, mitigation strategies, and remediation plans. • Establish IT risk management policies and procedures, ensure their implementation. • Define key risk indicators (KRIs), key performance indicators (KPIs More ❯
unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. Our Digital Risk team is dedicated to providing innovative solutions that mitigate risks associated with digital transformation, cybersecurity, and regulatory compliance. The Digital Risk practice is growing rapidly, and we are … looking for Senior Consultants to help drive success for our clients by helping them navigate the complexities of the digital landscape. The opportunity Our Digital Risk team provides innovative solutions that mitigate risks associated with digital transformation, cybersecurity, and regulatory compliance. As organizations increasingly adopt AI technologies, the need for trusted AI frameworks and governance has become paramount. The … Digital Risk practice is growing rapidly, and we are looking for Senior Consultants to help drive success for our clients by navigating the complexities of the digital landscape, including the integration of AI in risk management strategies. Your key responsibilities Collaborate with clients and internal stakeholders to assess and improve digital risk management strategies, compliance frameworks, and More ❯
City of London, London, England, United Kingdom Hybrid / WFH Options
Morgan Hunt Recruitment
You will be responsible for guiding a team of highly capable early-career data scientists and analysts, ensuring their work delivers real impact in regulatory decision-making and wider risk assessment.The role requires a leader who can balance academic rigour with practical application, setting the standard for what is possible with data science in a regulatory environment, while also … formalise the organisation's approach to data science and analysis, shape its technical infrastructure, and ensure outputs are robust, defensible, and strategically aligned.As the organisation invests further in its Risk and Data Programme, you will lead efforts to embed advanced data-driven methods across riskassessment, research, and enforcement functions. This will include developing approaches to analysing … strategic alignment and clarity about what can, and cannot, be derived from analysis. Partner with the Director on establishing clear backlogs, pipelines, and strategies for the team, working across riskassessment, data science, and research functions. Champion a culture of curiosity, experimentation, and continuous improvement. Technical Excellence & Delivery Oversee the use of advanced statistical modelling, AI, and machine More ❯
think innovatively, and listen to each other and customers in meaningful ways. Moody's is transforming how the world sees risk. As a global leader in ratings and integrated riskassessment, we're advancing AI to move from insight to action-enabling intelligence that not only understands complexity but responds to it. We decode risk to unlock … into actions, and uphold trust through integrity. The Director, Tech Advisory is a senior leader within Moody's Insurance Business Unit, responsible for shaping the future of insurance analytics, risk management, and workflow transformation. You will lead a high performing team of technical architects, specialists, and developers, delivering innovative solutions that redefine client risk workflows and unlock new … and market innovators - you will design and demonstrate cutting edge architectures, proof of concept analytics, and migration strategies that help clients realize the full potential of Moody's Intelligent Risk Platform (IRP) and broader risk and data offerings. This is both a strategic and hands on role: you will champion best practices, enforce technical and architectural standards, and More ❯
Wilmslow, Cheshire, United Kingdom Hybrid / WFH Options
ID Co
cyber security incidents, to minimise the damage to our organisation and prevent recurrence. Management of the configuration of protected systems to ensure that any vulnerabilities are understood and managed. Assessment, validation and reporting of information on current and potential cyber threats to maintain the organisation's situational awareness. Management of cyber security risks in line with business objectives and … CISSP, CCSP, CISM. Or equivalent proven Level of experience. Minimum of two years' experience in a similar role. Working experience of security operations and incident management. Working experience of risk management and mitigation. Working experience of developing and delivering security education and awareness programmes. Desirable: Experience of working in a public sector or highly regulated organisation. Good time management … systems, detection and response to incidents, and collection and use of threat intelligence. Knowledge of security management systems and organisational security controls, including standards, best practices, and approaches to riskassessment and mitigation. Knowledge of human factors, including usable security, social and behavioural factors impacting security, security culture and awareness, as well as the impact of security controls More ❯
Oliver James are partnered with a globally renowned reinsurance company in their search for a Cyber Security Governance, Risk & Compliance (GRC) and Third-Party Risk Management (TPRM) Lead. This role will play a crucial part in strengthening the organisation's security posture, focusing heavily on vendor risk, regulatory readiness, and cyber governance. Oliver James are partnered with … a globally renowned reinsurance company in their search for a Cyber Security Governance, Risk & Compliance (GRC) and Third-Party Risk Management (TPRM) Lead. This role will play a crucial part in strengthening the organisation's security posture, focusing heavily on vendor risk, regulatory readiness, and cyber governance. Based in the City of London with a flexible hybrid … site), this position carries a package of c£155,000 inclusive of bonus and LTIP and exclusive of exceptional benefits and annual/loyalty bonuses. Key Responsibilities Third-Party Risk Management: Lead and own the third-party vendor riskassessment process across a portfolio of 100-120 vendors. Review and validate vendor security documentation (e.g., SOC More ❯
strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. Risk Management: Lead the information security risk management program, including the identification, assessment, mitigation, and monitoring of risks across all systems and operations. Policy and Governance: Support and … creation and enforcement of security policies, standards, and procedures. Incident Response: Develop, implement, and manage the security incident response plan. Leadership: Provide strong leadership and mentorship to the governance, risk, and compliance team. Essential Requirements: Extensive security leadership: Proven experience (10+ years) in a senior information security role, with significant experience in a CISO or equivalent position within a … sector experience: In-depth knowledge and practical experience with UK healthcare security standards and regulations, including demonstrable expertise with the NHS Data Security and Protection Toolkit (DSPT), Digital Technology Assessment Criteria (DTAC) and NCSC CAF. ISO 27001:2022 implementation & maintenance: Hands-on experience with the successful implementation, certification, and ongoing maintenance of an ISO 27001 Information Security Management System More ❯
BA1, Bath, Bath and North East Somerset, Somerset, United Kingdom
YT Technologies
strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. Risk Management: Lead the information security risk management program, including the identification, assessment, mitigation, and monitoring of risks across all systems and operations. Policy and Governance: Support and … creation and enforcement of security policies, standards, and procedures. Incident Response: Develop, implement, and manage the security incident response plan. Leadership: Provide strong leadership and mentorship to the governance, risk, and compliance team. Essential Requirements: Extensive security leadership: Proven experience (10+ years) in a senior information security role, with significant experience in a CISO or equivalent position within a … sector experience: In-depth knowledge and practical experience with UK healthcare security standards and regulations, including demonstrable expertise with the NHS Data Security and Protection Toolkit (DSPT), Digital Technology Assessment Criteria (DTAC) and NCSC CAF. ISO 27001:2022 implementation & maintenance: Hands-on experience with the successful implementation, certification, and ongoing maintenance of an ISO 27001 Information Security Management System More ❯
months Central Government experience in the last 5 years is strongly preferred. As an Aker Lead Security Architect, you will be a recognised subject matter expert in security, risk management and compliance with demonstrable experience in highly regulated industries, specifically UK Government and/or Defence. You will build effective working relationships with delivery team members and Aker customers … testing (e.g ITHC) of solutions on the public cloud (Azure, AWS, GCP), cloud native platforms (Docker, Kubernetes, etc.), and Software as a Service (SaaS) solutions. Formulate HMG Information Assurance RiskAssessment and Risk Treatment Plans Establish security requirements for cloud-based solutions by evaluating business strategies and requirements, implementing security standards such as ISO 27000 series, NIST … CSF, and CSA Identify and deliver appropriate controls based on industry standards (e.g. CCM) to drive cloud and customer security solutions framework based on business risk and cloud native threats. Provide oversight and guidance on government security procedures and processes. Continually evaluate new threats in the cloud, to identify the impact on IT and the business to develop and More ❯
routes and parameters Coding to implement the system in line with documentation provided from Project Managers (PM) Testing and validating the overall solution and certifying conformity Strong involvement in Riskassessment & Impact assessment with PM before final submission to customer Project coordination and reporting in conjunction with Project Management team ensuring each project is a success, both More ❯
in moving to the beautiful county of Derbyshire, we can provide a generous relocation package of up to £8,000 and the key duties are: Provide psychiatric assessments, including assessment of risk to self and others. Manage patients under the care of the CAMHS Crisis and Liaison pathway including riskassessment and management. Liaison with community More ❯
of client's processes and procedures, support regulatory or audit reviews, advising on TM technology, optimisation, and remediation programmes Define and lead on TM model optimisation, industry monitoring typology riskassessment methodology and overall control framework in building an effective Transaction Monitoring programme Leading and developing strong relationships with project stakeholders Supporting with planning, status update and support … during projects Strong team ethos and ability to work efficiently and accurately under pressure and minimal supervisions What you will need: At least ten years experience in financial crime risk and compliance within the Financial Services industry 5-10 years of experience in either strategic and/or management consulting with a focus on financial crime compliance and risk Experience developing and applying corporate governance, compliance control and risk management frameworks Degree level education Financial crime risk or compliance related professional qualifications e.g. ICA Diploma Other role requirements: Keeping abreast of legislation, regulation, guidance and technologies relating to financial crime risk and compliance Commercial business awareness and financial acumen and understanding We offer the opportunity More ❯
insights, and identify opportunities to integrate improvements and new features into the user flow and product roadmap. Advocate for user needs while balancing business requirements and technical feasibility. Innovation & Risk Management: Drive innovation by identifying emerging technologies and trends that may affect the product landscape. Proactively manage product risks, ensuring that potential roadblocks are identified and mitigated early in … and innovative approach to overcoming product challenges and seizing new opportunities. Data-Driven Decision Making: Comfortable with data analysis and making decisions based on KPIs, metrics, and performance analytics. Risk Management: Experience in riskassessment and mitigation strategies, ensuring smooth product delivery and minimizing potential disruptions. About S&P Global Ratings S&P Global Ratings is the … securities. We offer an independent view of the market built on a unique combination of broad perspective and local insight. We provide our opinions and research about relative credit risk; market participants gain independent information to help support the growth of transparent, liquid debt markets worldwide. S&P Global Ratings is a division of S&P Global (NYSE: SPGI More ❯
think innovatively, and listen to each other and customers in meaningful ways. Moody's is transforming how the world sees risk. As a global leader in ratings and integrated riskassessment, we're advancing AI to move from insight to action-enabling intelligence that not only understands complexity but responds to it. We decode risk to unlock … perspectives, turn inputs into actions, and uphold trust through integrity. Skills and Competencies 10+ years insurance industry experience, including 5+ years in casualty insurance (product management, underwriting, analytics, or risk solutions). Deep understanding of liability risk and exposure across multiple casualty lines (general liability, workers' compensation, professional liability, etc.). Experience with risk analytics tools, portfolio … analytical skills. High energy, drive, and ability to perform as a team player with a high degree of self-motivation, while able to work independently. Prior experience with insurtech, risk platforms, or regulatory frameworks is preferred. Excellent written and oral communication skills in a business environment, with proven ability to prioritize, organize, and deliver on commitments. Strong prioritization and More ❯
Reports to: Team Leader, Analytics, Claims and Underwriting Solutions (International) Location: London/Hybrid Business Description Verisk Analytics is a multinational data and analytics riskassessment company and a leading source of information about insurance risk. To serve our clients, we draw upon our vast experience in data management and predictive modelling to offer decision analytics to the … insurance industry through underwriting to claims management in personal lines, commercial lines, and the London market. In underwriting we create sophisticated risk models to assist insurers with risk selection and accurate pricing. Our range of models is broad spanning residential and commercial property perils, motor insurance, SME business covers, travel, pet and health insurance. To feed our risk … and manage cases more effectively. Role Purpose Verisk are looking for a Data Scientist to support the development of various data science models to support the development of our risk management products. The International Analytics Team is a dynamic and exciting place to work: our projects are extremely varied and include developing supervised machine learning models, unsupervised clustering type More ❯
Newcastle Upon Tyne, Tyne and Wear, England, United Kingdom Hybrid / WFH Options
Virgin Money
to our internal and external customer experience, contributing to our purpose of Making You Happier About Money. We're seeking someone with a deep understanding of IT change management, riskassessment, and stakeholder coordination to safeguard the bank's interests, maintain internal governance and compliance with regulatory standards. What you'll be doing Protecting live operational service through … addressed. Interrogating ITSM tools (Service Now) to produce relevant MI reporting to exec level. Ensuring that policies, procedures and standards are always followed, and activities are within regulatory and risk requirements. Developing risk mitigation strategies, creating and maintaining team Controls, fulfilling Audit requirements as part of a continuous service improvement plan. Communicating effectively with all levels of the More ❯
sensitive in nature. These include but not limited to front to back(f2b), multi-entity, multi-business area impacting initiatives. In addition these may be high budget, high change risk projects, along with multi-year duration - potentially structured as a programme with multiple project workstreams. Projects may include combination of strategic business change, regulatory, and IT components - so close … other senior members of team to help drive BOW. Contribute to IPC, EDF & Other forums - delivery and continuous improvement of the forum which ensures project delivery assurance of high risk, high profile projects in order to provide visibility and alignment across MUFG EMEA, Securities International and support the Deputy Regional Executive in achieving the EMEA/International Strategy and … individual Function Medium Term Business Plans ("MTBP").") goals. Chair the RiskAssessment Forum (RAF) and ensure the RCSA is maintained across all teams in CTO, engaging with team owners to ensure it is up to date and adequate control frameworks are in place for each sub-function. Post Blue Day 2, provide a six month warranty period More ❯
working arrangements - please speak to your recruiter about the options for this particular role. Salary: Circa £39,000 dependent on experience What you'll be doing: Conduct Cyber Security riskassessment of systems and services Deliver documentation to demonstrate compliance to internal and external stakeholders. Conduct assessment and provision of control effectiveness in managing information security risk … processes are as inclusive as possible. If you have a disability or health condition (for example dyslexia, autism, an anxiety disorder etc.) that may affect your performance in certain assessment types, please speak to your recruiter about potential reasonable adjustments. Please be aware that many roles at BAE Systems are subject to both security and export control restrictions. These More ❯