Job Description - Cyber Risk Assurance Analyst (16065) Cyber Risk Assurance Analyst ( 16065 ) Cyber Risk Assurance Analyst Luton/Hybrid Company When it comes to innovation and achievement there are few organisations with a better track record. Join us and you'll be able to play a big part in the success of our highly successful, fast-paced … are as engrained as Aircraft Safety. This means close alignment to Operational, Commercial along with Regulatory and Audit functions. The role requires working closely with the Senior Digital Safety Risk Manager, the Head of Digital Safety Assurance and the Technical Security and Business Partner functions to support the Digital Safety vision . The Cyber Risk Assurance Analyst role … to identify, measure, and track cyber security risks within easyJet. This role requires collaboration with various business areas to gather the necessary information that enables the creation of informative risk reports, aiding decision making in the relevant forums supporting the Digital Safety Assurance team's objectives and assists in shedding light on key areas pertaining to our regulatory compliance More ❯
City of London, London, United Kingdom Hybrid / WFH Options
The MDU
a key aspect of the maturing IT organisation but something that can be hard to achieve when relying on collective responsibility. This role will demonstrate clear ownership for EITS Risk and Controls and deliver ongoing management of policies, procedures, risk reviews and a quarterly plan to address specific actions in this area. This is important to ensure consistency … across all areas of the EITS department, that controls remain active and up to date and we align to Enterprise Risk governance. Role Context The role is flexible in terms of location with remote (working from home within the UK) working available on a hybrid basis, attending the office as required by the role. Main Responsibilities The Risk … any relating incidents and work with Leadership and Management to ensure these are integrated with wider EITS process. Working across the EITS organisation, supported by EITS Leadership, responsibilities include: Risk Management Framework: Develop and implement a comprehensive risk management framework that aligns with the organizations strategic goals and objectives. This will be aligned to COBIT but also take More ❯
Job Description - Cyber Risk Assurance Analyst (16065) Job Description Cyber Risk Assurance Analyst ( 16065 ) Description Cyber Risk Assurance Analyst Luton/Hybrid Company When it comes to innovation and achievement there are few organisations with a better track record. Join us and you'll be able to play a big part in the success of our highly … are as engrained as Aircraft Safety. This means close alignment to Operational, Commercial along with Regulatory and Audit functions. The role requires working closely with the Senior Digital Safety Risk Manager, the Head of Digital Safety Assurance and the Technical Security and Business Partner functions to support the Digital Safety vision . The Cyber Risk Assurance Analyst role … to identify, measure, and track cyber security risks within easyJet. This role requires collaboration with various business areas to gather the necessary information that enables the creation of informative risk reports, aiding decision making in the relevant forums supporting the Digital Safety Assurance team's objectives and assists in shedding light on key areas pertaining to our regulatory compliance More ❯
prevention, and system outages. Conduct scenario analysis and stress testing to evaluate the organization's preparedness for operational disruptions. Collaborate with functional teams to design, implement, and monitor operational risk controls, ensuring alignment with the organization's risk appetite and regulatory requirements. Support the development of mitigation plans for key risks, ensuring practical solutions are implemented effectively. Develop … and maintain Key Risk Indicators (KRIs) to track operational risks and provide actionable insights to senior management. Prepare detailed risk reports for senior leadership, risk committees, and regulatory bodies, highlighting risk trends, control effectiveness, and areas requiring attention. Maintain the riskregister, ensuring it is comprehensive, up-to-date, and aligned with the organization … s risk framework. Investigate operational risk incidents, identify root causes, and provide recommendations to prevent recurrence. Lead post-incident reviews and ensure lessons learned are integrated into processes and controls. Monitor and ensure timely resolution of risk-related issues, escalating where necessary. Support regular reviews of the operational risk management framework, ensuring alignment with industry best More ❯
entrepreneurially-spirited and high growth businesses that fuel the economy - and directly advise the owners and management teams that lead them. We'll broaden your horizons The Quality and Risk Management Team (QRM) provides leadership, guidance, and tools to help partners and staff manage quality and risk matters. The team is comprised of an Advisory and Compliance Team … You'll be encouraged to identify and draw attention to opportunities for enhancing our delivery and providing additional services to organisations we work with. Role Purpose The Business Information Risk Analyst's (BIRA) role is responsible for supporting the Chief Information Security Office (CISO) service to BDO's business streams to effectively manage information security risk. This role will … play a key part in ensuring the effectiveness of BDO's information security risk management framework, procedures, and information security controls. The BIRA role is a focal point for effective engagement between business streams and the CISO team. This role will be a trusted adviser to business stakeholders and provide broad knowledge of the firm's security strategies, policies More ❯
First Line Security Risk Manager Department: IT Operations Employment Type: Permanent - Full Time Location: London Reporting To: Kirsty Kelly Description We are seeking a proactive and experienced First Line Security Risk Manager to lead the implementation and management of information security risk practices across our organisation. In this role, you will be the first line of defense … for security risk management and play a critical part in ensuring security governance, policy compliance, and operational risk ownership across business functions. You will report directly to the Group CISO and work closely with business units, IT, compliance, and audit to ensure security risks are effectively identified, assessed, documented, and mitigated in line with our overall risk appetite. About the role The ideal manager for this position will lead and maintain the first line Information Security Risk Management function. Additionally, this person will be responsible for: Conducting and documenting security risk assessments across systems, projects, and processes. Owning and managing the Group security riskregister, ensuring timely updates, mitigation tracking, and escalation More ❯
This role is pivotal in safeguarding the organisation’s reputation and ensuring regulatory compliance. You will work closely with process owners, auditors, and stakeholders to analyse, monitor, and address risk management and compliance issues, with a strong alignment to the Group Head of Audit. Key Responsibilities Administer and maintain ISO 27001 and ISO 22301 compliance programs. Oversee and configure … the GRC tool, ensuring it remains current and effective. Manage relationships with GRC solution providers. Conduct risk and vulnerability assessments, compliance reviews, and audits. Support and manage ISO 27001, ISO 22301, and PCI audits. Maintain a central repository for audit evidence. Develop and enhance the GRC framework in line with industry best practices. Collaborate with cross-functional teams to … identify and mitigate IT and business risks. Own and manage the IT RiskRegister and RoPA. Align risk assessments with the Group Risk function. Promote health and safety awareness and compliance across the organisation. Qualifications & Experience Experience in GRC, risk management, or compliance within IT or related fields. Familiarity with ISO 27001, ISO 22301, and More ❯
This role is pivotal in safeguarding the organisation’s reputation and ensuring regulatory compliance. You will work closely with process owners, auditors, and stakeholders to analyse, monitor, and address risk management and compliance issues, with a strong alignment to the Group Head of Audit. Key Responsibilities Administer and maintain ISO 27001 and ISO 22301 compliance programs. Oversee and configure … the GRC tool, ensuring it remains current and effective. Manage relationships with GRC solution providers. Conduct risk and vulnerability assessments, compliance reviews, and audits. Support and manage ISO 27001, ISO 22301, and PCI audits. Maintain a central repository for audit evidence. Develop and enhance the GRC framework in line with industry best practices. Collaborate with cross-functional teams to … identify and mitigate IT and business risks. Own and manage the IT RiskRegister and RoPA. Align risk assessments with the Group Risk function. Promote health and safety awareness and compliance across the organisation. Qualifications & Experience Experience in GRC, risk management, or compliance within IT or related fields. Familiarity with ISO 27001, ISO 22301, and More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Morgan Philips Group
the Legal Team, you will be responsible for ensuring the organisation adheres to legal standards and internal policies across multiple jurisdictions. You will implement compliance programs, monitor adherence, provide risk-based legal advice, and help shape a compliance-focused culture. Key Accountabilities: Compliance and Governance Ensure the organisation adheres to corporate governance standards, codes of conduct and relevant laws … and impact on the business, providing timely advice to leadership and relevant stakeholders. Support the development and application of internal controls to ensure full compliance with all applicable Legal Risk Management Proactively Identify, assess, and mitigate legal and compliance risks across all the group companies. Advise on the legal and regulatory implications of strategic and operational decisions, supporting the … business in managing risk appropriately. Maintain legal riskregister and contribute to companywide risk review. Policy Oversight and Monitoring Where relevant implement and/or maintain key corporate policies owned by the legal team, including but not limited to anti-bribery and corruption, competition, whistleblowing, data protection and ethical conduct. Monitor adherence and manage internal reporting More ❯
the Legal Team, you will be responsible for ensuring the organisation adheres to legal standards and internal policies across multiple jurisdictions. You will implement compliance programs, monitor adherence, provide risk-based legal advice, and help shape a compliance-focused culture. Key Accountabilities: Compliance and Governance Ensure the organisation adheres to corporate governance standards, codes of conduct and relevant laws … and impact on the business, providing timely advice to leadership and relevant stakeholders. Support the development and application of internal controls to ensure full compliance with all applicable Legal Risk Management Proactively Identify, assess, and mitigate legal and compliance risks across all the group companies. Advise on the legal and regulatory implications of strategic and operational decisions, supporting the … business in managing risk appropriately. Maintain legal riskregister and contribute to companywide risk review. Policy Oversight and Monitoring Where relevant implement and/or maintain key corporate policies owned by the legal team, including but not limited to anti-bribery and corruption, competition, whistleblowing, data protection and ethical conduct. Monitor adherence and manage internal reporting More ❯
the Legal Team, you will be responsible for ensuring the organisation adheres to legal standards and internal policies across multiple jurisdictions. You will implement compliance programs, monitor adherence, provide risk-based legal advice, and help shape a compliance-focused culture. Key Accountabilities: Compliance and Governance Ensure the organisation adheres to corporate governance standards, codes of conduct and relevant laws … and impact on the business, providing timely advice to leadership and relevant stakeholders. Support the development and application of internal controls to ensure full compliance with all applicable Legal Risk Management Proactively Identify, assess, and mitigate legal and compliance risks across all the group companies. Advise on the legal and regulatory implications of strategic and operational decisions, supporting the … business in managing risk appropriately. Maintain legal riskregister and contribute to companywide risk review. Policy Oversight and Monitoring Where relevant implement and/or maintain key corporate policies owned by the legal team, including but not limited to anti-bribery and corruption, competition, whistleblowing, data protection and ethical conduct. Monitor adherence and manage internal reporting More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Morgan Philips Specialist Recruitment
the Legal Team, you will be responsible for ensuring the organisation adheres to legal standards and internal policies across multiple jurisdictions. You will implement compliance programs, monitor adherence, provide risk-based legal advice, and help shape a compliance-focused culture. Key Accountabilities: Compliance and Governance Ensure the organisation adheres to corporate governance standards, codes of conduct and relevant laws … and impact on the business, providing timely advice to leadership and relevant stakeholders. Support the development and application of internal controls to ensure full compliance with all applicable Legal Risk Management Proactively Identify, assess, and mitigate legal and compliance risks across all the group companies. Advise on the legal and regulatory implications of strategic and operational decisions, supporting the … business in managing risk appropriately. Maintain legal riskregister and contribute to companywide risk review. Policy Oversight and Monitoring Where relevant implement and/or maintain key corporate policies owned by the legal team, including but not limited to anti-bribery and corruption, competition, whistleblowing, data protection and ethical conduct. Monitor adherence and manage internal reporting More ❯
head office in Wimbledon as and when required . Salary: Competitive Contract Type: Permanent We have a fantastic opportunity for a self-motivated and hardworking individual to join our Risk & Compliance team as Group Data Protection Officer. The role will be responsible to develop, maintain and effectively implement the Group's strategic approach to data privacy governance across countries … MI and reporting for day-to-day oversight purposes and executive management committees and boards. Serve as the point of contact for group data privacy supervisory authorities. Data privacy risk management Implement a documented, Group-wide privacy risk management framework, conduct risk assessments, maintain and update a privacy riskregister with documented mitigations and derogations. More ❯
programmes Design and implement Sentinel playbooks to automate detection and response Lead on PSN audit readiness and ensure compliance with key frameworks (Cyber Essentials, ISO27001, NIST, GDPR) Conduct cyber risk assessments, maintain the riskregister, and drive remediation activity Provide regular reports and updates to senior stakeholders on cyber posture, risks, and progress Support and mentor two More ❯
the security of new applications and programs prior to installation or upgrade and within the Software Development Lifecycle. Participates in ensuring that Information Security risks are identified, and the riskregister is continually maintained and reviewed. Provides monthly risk reporting to the Information Security Manager. Responsible for ensuring that all servers and other IT related equipment is More ❯
the rollout of tools and templates to increase visibility, consistency, and accountability across the portfolio. Key Responsibilities Maintain, manage and track programme/project governance tools including RAID logs, risk registers, action trackers, and issue logs. Design, automate and improve reporting processes using tools such as Power BI , Microsoft Project , Excel , and other visualisation platforms. Collect, analyse, and interpret More ❯
the rollout of tools and templates to increase visibility, consistency, and accountability across the portfolio. Key Responsibilities Maintain, manage and track programme/project governance tools including RAID logs, risk registers, action trackers, and issue logs. Design, automate and improve reporting processes using tools such as Power BI , Microsoft Project , Excel , and other visualisation platforms. Collect, analyse, and interpret More ❯
process adoption, and 3rd-party engagement. Develop and maintain a comprehensive, realistic project plan across timeline, deliverables, dependencies, and cost. Oversee procurement and technical onboarding for third-party integrations. Risk & Issue Management Identify and manage project risks and interdependencies, particularly where external data exchange and operational behavior need to align. Establish and maintain a structured riskregister … leaders to developers and logistics partners. Results-oriented and pragmatic, known for getting things done. You thrive on structure, drive progress relentlessly, and bring high standards to project governance, risk management, and delivery quality. You have: Ambition (dream big): translating strategy into action (projects, tasks and processes) Judgement (make good decisions): identifying the need for tactical change and leading More ❯
stakeholders across business units, IT, and third-party vendors to ensure shared understanding and alignment throughout the project lifecycle. Create and maintain robust project documentation, including roadmaps, sprint plans, risk registers, and status reports. Monitor and report on project progress, managing risks, dependencies, and issues to ensure successful delivery and value realisation. Champion user-centered design and iterative delivery More ❯
the IT function and external partners. Establishing a target operating model, governance frameworks, and a strategic roadmap to ensure cohesive implementation of security and privacy strategies, supporting business enablement, risk management, and resilience across all markets and functions. Key responsibilities: Define and deliver multi-year cyber-security and privacy strategies aligned to corporate objectives and customer trust requirements. Ensure … and privacy policies across the organisation. Define and report on key metrics to the board and executive leadership on the effectiveness of security and privacy programmes. Own the enterprise riskregister for cyber security and privacy; define KPIs, lead cyber resilience initiatives and tabletop exercises in coordination with Crisis Management, BCP, and ITDR. Oversee the integration of PIAs … project lifecycles to ensure privacy risks are identified and mitigated early. Maintain strategic relationships with partners and suppliers that support the information security and privacy programme; oversee third-party risk assurance activities including due diligence, contract reviews, and ongoing monitoring. Monitor threat intelligence sources and conduct horizon scanning to identify emerging risks and technology trends. Lead all security activities More ❯
response activities including malware analysis and threat hunting. Collaborate with the CERT team in maintaining an up-to-date threat landscape and contributing to the incident response playbooks. Security Risk Management and Compliance: Support the maintenance of the IT security riskregister and assist with internal and external security audits. Contribute to security reporting and tracking security … risk indicators. Personal Attributes: Dynamic, creative, and proactive. Committed to continuous learning and staying updated with the latest technologies. Ability to work independently and achieve results. Strong timekeeping and time management skills. Ability to prioritize and meet tight deadlines. Hands-on approach with a willingness to go the extra mile. Benefits: Opportunities for professional growth and development. Dynamic and More ❯
6+ IT/telecoms vendors, including contracts, renewals, and performance reviews • Oversee daily/weekly SLAs, drive service improvements, and align to ITIL metrics • Lead IT governance board; maintain riskregister and support ISO/cybersecurity compliance • Control £700k IT OPEX budget; track costs and manage asset register • Sponsor supplier-led projects (e.g., ERP, M365); build cases … environment • Run IT Teams across Microsoft stack • Led RFPs, contract negotiations, and vendor performance reviews • Tracked SLAs and supported supplier-led change projects • Familiar with ISO 27001, GDPR, and risk reporting • Clear communicator with execs, users, and vendors • Data-driven; focused on cost, service, and risk improvement Certifications & Education: • ITIL v4 Managing Professional PRINCE2 Practitioner Agile PM • CIPS More ❯
6+ IT/telecoms vendors, including contracts, renewals, and performance reviews • Oversee daily/weekly SLAs, drive service improvements, and align to ITIL metrics • Lead IT governance board; maintain riskregister and support ISO/cybersecurity compliance • Control £700k IT OPEX budget; track costs and manage asset register • Sponsor supplier-led projects (e.g., ERP, M365); build cases … environment • Run IT Teams across Microsoft stack • Led RFPs, contract negotiations, and vendor performance reviews • Tracked SLAs and supported supplier-led change projects • Familiar with ISO 27001, GDPR, and risk reporting • Clear communicator with execs, users, and vendors • Data-driven; focused on cost, service, and risk improvement Certifications & Education: • ITIL v4 Managing Professional | PRINCE2 Practitioner | Agile PM • CIPS More ❯
Employment Type: Permanent
Salary: £40000 - £60000/annum Plus up to 10% annual bonus
relevant cost and revenue drivers associated with long-term contracts. The role requires the provision of support on Client opportunities by providing best in class commercial thought leadership, modelling, risk management and commercial innovation to optimize both our win chances and profitability of multi-tower services. Take the commercial lead on large, complex, domestic and international client opportunities by … ensuring profits are maximised, risks are understood and/or mitigated, and the client needs are met and exceeded. Utilisation of Joint Venture, Risk/Reward, Gain Sharing, flexible consumption/utility-based pricing and other pricing variations. Maintenance and development of innovative and commercially sustainable pricing models. Responsibility and creation of the contract P&L reporting of new … and the ability to generate savings to both the client and the company throughout the life of the contract. Responsible for the completion of asset financing requests, cashflow forecast, riskregister, client pricing templates Analysis of existing and new pricing methodologies to help drive continuous improvement and competitiveness while remaining profitable. Governance Monitor and adhere to relevant Governance More ❯
relevant cost and revenue drivers associated with long-term contracts. The role requires the provision of support on Client opportunities by providing best in class commercial thought leadership, modelling, risk management and commercial innovation to optimize both our win chances and profitability of multi-tower services. What you'll be doing Position Summary & Objectives Commercial Modelling: Take the commercial … domestic and international client opportunities by ensuring profits are maximised, risks are understood and/or mitigated, and the client needs are met and exceeded. Utilisation of Joint Venture, Risk/Reward, Gain Sharing, flexible consumption/utility-based pricing and other pricing variations. Maintenance and development of innovative and commercially sustainable pricing models. Responsibility and creation of the … and the ability to generate savings to both the client and the company throughout the life of the contract. Responsible for the completion of asset financing requests, cashflow forecast, riskregister, client pricing templates Analysis of existing and new pricing methodologies to help drive continuous improvement and competitiveness while remaining profitable. Governance: Monitor and adhere to relevant Governance More ❯