00421 CNA Insurance Company Limited, United Kingdom
Time left to apply: End Date: September 17, 2025 (28 days left to apply) Job Requisition ID: R-5598 Position Summary The IT Risk Manager role serves as a best practice/quality contributor supporting the organisation's IT & Ops RiskManagement Programme. The individual will act as the first line of defense, providing RCG risk assessments and other riskmanagement activities including risk identification, profiling, assessment, response, evaluation, and advising on issues and remediations to support the overall IT & Ops organization. This position supports riskmanagement activities in alignment with the Risk and Controls Governance framework. This position requires the applicant to have an intermediate or expert level … of understanding of IT & Operational risks and the execution of first-line IT riskmanagement processes and governance within a large institution. The applicant must also have good communication and management skills, and strong knowledge of industry best practices. Key Responsibilities Strategy and Transformation: Align with Group RCG target state program based on the planned roadmap including More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Raisin GmbH
our growth. Our success is your success. Couldn't find the right position? About Raisin About Raisin Bank About Raisin US About Raisin UK Team At Raisin UK, our Risk & Compliance team is at the forefront of responsible innovation in the fintech space. As part of our second line of defence, we help ensure our savings platform operates safely … compliance framework-giving you both strategic exposure and real impact. You'll be joining a small, hands-on team where your contributions will be seen and valued. From shaping risk frameworks to staying ahead of regulatory change, we collaborate across all parts of the business to support our growth and maintain our integrity. Tech Stack Your Responsibilities As Risk & Compliance Associate , you'll play a central role in managing Raisin UK's risk landscape and supporting our compliance monitoring. You'll help ensure our processes remain strong, scalable, and aligned with FCA requirements-while also having the chance to shape and improve how we operate. Your key responsibilities will include: RiskManagement Support the execution More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
These five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Cyber Risk Manager will be responsible for the following: Operational Develop and define key risk indicators to provide cyber risks insights to Deloitte Technology BISOs and executives. Gather requirements and … build dashboards that accurately depict Deloitte Technology's cyber risk exposure. Drive organizational change and work with multiple business units of a large organization to effect change. Understand the Deloitte global line of business, gain familiarity with priorities, and become an advocate for the cyber risk within the BISO organization. Collaborate with BISOs as a cyber risk expert, to assist then to identify, assess, and manage cyber risks within their respective lines of business. Actively govern cyber risk in the Deloitte Technology risk register. Partner effectively with Deloitte Technology and BISO teams to facilitate cyber security risk reviews and analysis. Empower Deloitte Technology teams to establish cyber risk ownership and agree on More ❯
Key info: 1st line IT Risk Manager position Manchester location (3 days in office - 2 from home) 75k-80k + bonus The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations’ IT & Ops RiskManagement Programme. The individual will act as first line of defence providing RCG risk assessments … and other riskmanagement activities including risk identification, profiling, assessment, response, evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the riskmanagement activities in alignment with the Risk and Controls Governance framework. To be successful you will need to be able to demonstrate the following … capabilities and experience: Person requirements: Excellent understanding and experience of technology risk & controls, including working with and creating risk frameworks. Broad knowledge of technology including emerging risks, (e.g. understanding of ITIL service management processes, cloud/AI) Understanding of principle technology related regulations e.g. Ops Res, GDPR, DORA, SOx etc Demonstrate experience of technology risk profiling More ❯
bolton, greater manchester, north west england, united kingdom
JSS Search
Key info: 1st line IT Risk Manager position Manchester location (3 days in office - 2 from home) 75k-80k + bonus The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations’ IT & Ops RiskManagement Programme. The individual will act as first line of defence providing RCG risk assessments … and other riskmanagement activities including risk identification, profiling, assessment, response, evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the riskmanagement activities in alignment with the Risk and Controls Governance framework. To be successful you will need to be able to demonstrate the following … capabilities and experience: Person requirements: Excellent understanding and experience of technology risk & controls, including working with and creating risk frameworks. Broad knowledge of technology including emerging risks, (e.g. understanding of ITIL service management processes, cloud/AI) Understanding of principle technology related regulations e.g. Ops Res, GDPR, DORA, SOx etc Demonstrate experience of technology risk profiling More ❯
Head of Governance, Risk and Compliance Salary : Competitive Salary plus cash car allowance Location: Remote Keywords: Information Security, ISO 27001, RiskManagement, Compliance, Governance, Cyber Security, Team Management, Audit, Stakeholder Engagement, Data Protection A distinguished opportunity has arisen for a Head of Governance, Risk and Compliance to join a highly regarded organisation. This position is … integral to the Group's Information Security strategy, underpinning the maintenance of exemplary standards, compliance, and riskmanagement practices. The successful candidate will play a pivotal role in shaping and overseeing information security governance programmes, working in close concert with both business and technology divisions to ensure that security imperatives are clearly articulated and diligently executed. Opportunity to … Group's Information Security governance programme through collaboration with cross-functional teams and by shaping strategic decisions at all levels. What you'll do:As a Head of Governance, Risk and Compliance you will assume responsibility for guiding a proficient team devoted to safeguarding organisational information assets through robust governance frameworks. Your remit will encompass close engagement with technical More ❯
overview of the role and hold a Q&A session. Event Link You will lead a challenging agenda, building strong partnerships with other functional leaders (e.g., Commercial, People, Finance, Risk) to develop integrated approaches to problem-solving and drive activity in areas such as: Performance and Planning Own the complete view of Digital and Transformation Group business, ensuring it … resourced plans to achieve our ambitions, strategy, and vision. Develop key performance metrics and Objectives and Key Results (OKRs) that help shape and align future departmental plans. Governance and RiskManagement Lead organisational governance, control, and riskmanagement for DWP Digital, identifying issues early and supporting colleagues to navigate them successfully. Manage the business of Digital … Transformation Group through the DET, representing the group and providing expertise on Departmental Committees. Own and manage the relationship with the Government Internal Audit Agency (GIAA) to ensure effective riskmanagement and implement improvements as needed. Finance Oversee the DWP Digital budget (over £1bn) and headcount (circa 7,000+). Collaborate with Finance colleagues to secure necessary funding More ❯
of expertise, working collaboratively across government to deliver holistic, customer centric cyber security services and consultancy support that continually evolves to emerging technologies and the ever-changing threat and risk landscape to support HMRC/HMG business needs. This is an exciting time to be part of our active and encouraging cyber security community, working within HMRC and across … HMG. Job description As a Principal Cyber Security Professional, you will play a leading role in securing HMRCs services, to ensure the best possible technical security risk-based advice is given to our customers. As the ideal candidate you will work in partnership with key and senior stakeholders on major programmes and projects. You will act as the Security … the work commitment required is delivered on time and to agreed quality standards. You will work collaboratively with a further range of senior business & technical stakeholders, to deliver appropriate risk-based technical security advice and guidance, to enable the secure delivery of HMRC and HMG solutions and services. You will be a security champion, driving Secure by Design across More ❯
The Design Manager role will join a team of senior technical leads and C&I Engineers. The role will augment the current technical leadership with people leadership, supply chain management and project management skills. The role will cover the delivery lifecycle of the Protection System(s) spanning system architecture, sub-system design and equipment specification and design/… C&I Systems. Demonstratable knowledge of the C&I design lifecycle from requirements to commissioning. Collaborate to succeed Experience of working closely with suppliers, senior technical leads, and Senior Management to create a collaborative high performing environment. Regulatory Experience Experience of the UK civil nuclear regulatory regime or similar regulated environment. Understanding of Office for Nuclear Regulation (ONR) Safety … Assessment Principles (SAPs). Appreciation of application of standards such as IEC 61511, IEC61508 and IEC61513. Project management A demonstrable ability to manage complex design and manufacture programmes with experience of riskmanagement, and ability trade and react to change. Training & Qualification Requirements Degree in engineering or scientific discipline or equivalent experience Ref 478 Department Engineering - EC More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
TalkTalk Telecom Group PLC
become true experts in their field who embody our values every day: we care; we challenge; we commit. About the Role You will be part of an efficacious Security RiskManagement and Governance team that exists in a strong and mature Security function within PXC's Technology and Security Business Unit. Reporting directly into the Head of Security … RiskManagement and Governance, you will be responsible for management of Information Security Management System and maintain compliance with the respective security standards. Key Responsibilities Working cross-functionally, this role is pivotal to the successful management and maintenance of PXC's several information security and resilience compliance certifications to provide assurance to key stakeholders, customers … and Internal Audit teams and facilitate our response to our external auditors. Responsibilities will include: Maintain and continually improve PXC's external compliance, including mergers & acquisition's, Information Security Management System (ISMS) and compliance regime for security certifications (TSA, ISO27001, PCI, Cyber Essentials, External Audit IT General Controls). Oversee and manage the process for responding to incoming customer More ❯
Manchester Area, United Kingdom Hybrid / WFH Options
Us3 Consulting
and organisational adoption. Key Responsibilities: Program Leadership: Own the end-to-end delivery of a major international digital transformation program, including planning, resourcing, execution, governance, and continuous improvement. Change Management: Lead change management strategies that drive adoption, engagement, and cultural alignment across international teams. Proactively identify resistance and develop mitigation strategies. Stakeholder Engagement: Build strong relationships with senior … and other executive leaders on program status, risks, and outcomes. Workstream Oversight: Oversee and integrate multiple workstreams across functions such as IT, operations, customer experience, and commercial. Ensure coordination, riskmanagement, and delivery across interdependent initiatives. Governance & Reporting: Establish robust program governance, reporting frameworks, and decision-making protocols. Ensure transparency and accountability across the transformation program. Digital Delivery … environments and navigating matrixed organizational structures. Strategic thinker with a pragmatic, delivery-focused mindset. Experience with Salesforce implementations or CRM transformations is a strong advantage. Strong financial, resource, and riskmanagement capabilities. Location & Travel Requirements: The role is Hybrid, with 2–3 days per week in the office in Manchester Occasional international travel may be required. More ❯
bolton, greater manchester, north west england, united kingdom Hybrid / WFH Options
Us3 Consulting
and organisational adoption. Key Responsibilities: Program Leadership: Own the end-to-end delivery of a major international digital transformation program, including planning, resourcing, execution, governance, and continuous improvement. Change Management: Lead change management strategies that drive adoption, engagement, and cultural alignment across international teams. Proactively identify resistance and develop mitigation strategies. Stakeholder Engagement: Build strong relationships with senior … and other executive leaders on program status, risks, and outcomes. Workstream Oversight: Oversee and integrate multiple workstreams across functions such as IT, operations, customer experience, and commercial. Ensure coordination, riskmanagement, and delivery across interdependent initiatives. Governance & Reporting: Establish robust program governance, reporting frameworks, and decision-making protocols. Ensure transparency and accountability across the transformation program. Digital Delivery … environments and navigating matrixed organizational structures. Strategic thinker with a pragmatic, delivery-focused mindset. Experience with Salesforce implementations or CRM transformations is a strong advantage. Strong financial, resource, and riskmanagement capabilities. Location & Travel Requirements: The role is Hybrid, with 2–3 days per week in the office in Manchester Occasional international travel may be required. More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
First Central Services
Heath, West Sussex, or Guernsey , with occasional office visits. Core skills required: Significant experience in at least two technology solution development disciplines, such as technical or infrastructure architecture, network management, application development, middleware, database management, or cloud development. Excellent interpersonal skills including teamwork, facilitation, and negotiation. Formal architectural certification (preferred). Formal cloud certification (preferred). Good understanding … of SOLID principles and design patterns. Excellent analytical and technical skills. Knowledge of cloud security best practices and compliance. Riskmanagement abilities. Problem-solving skills with a logical approach. Strong communication and interpersonal skills. Key responsibilities: Lead the architectural definition of the Focus Platform, ensuring it meets business and technical goals. Provide technical direction to unify engineering teams … new technologies and innovations to enhance the platform. Engage with senior stakeholders and the executive team, providing advisory services. Ensure compliance with company policies, standards, and regulations. Maintain department risk registers and provide relevant documentation and updates. Experience & knowledge: Leadership experience with architects and senior engineers. Experience with Azure cloud platform architecture. Expertise in C# .Net full-stack application More ❯
Systems. This is an exciting opportunity to make a real difference to the client project that you lead. Further details on the roles can be found below: Software Engineering Management (SWEM) includes the establishment and execution of the appropriate processes, practices and standards for the software development to be undertaken. This includes the selection of appropriate methodologies, lifecycles and … tools. It also includes the identification, organisation and management of resources (human and technical) required to undertake the development. Software Work Package Management (SWPM) includes responsibility for the delivery of a defined scope of work to meet specific customer needs within committed cost, time and quality constraints agreed for the project/product. It includes the planning, monitoring … and control of the work, identifying and managing risks throughout the work-package duration. Responsibilities Ensure relevant department/product/project management plans are kept up to date and the correct level of governance is executed for the products/projects Ensure development is performed in accordance with these plans Liaise with Project Customers as required Plan, coordinate More ❯
end-to-end ownership of the security assurance process for digital services and systems, ensuring all solution designs are aligned with GLD's enterprise architecture standards, security controls, and riskmanagement framework. This includes reviewing architectural artefacts, participating in technical design sessions, and validating that controls are effectively implemented throughout the solution lifecycle. Partner with delivery teams to … manage cybersecurity risks Embed yourself within multidisciplinary delivery teams to support secure-by-design practices from the earliest stages of project initiation through to deployment and operation. Conduct detailed risk assessments, threat modelling, and architecture reviews to help teams understand and mitigate potential vulnerabilities before they impact live environments. Collaborate closely with the Strategic Security Architect and technical stakeholders … security working groups, design authorities, and backup/recovery forums. Drive consistency in how security is considered across programmes, ensure adherence to defined standards, and influence decisions that improve riskmanagement and architectural assurance. Build strong relationships with internal and external stakeholders Engage regularly with key stakeholders across GLD and wider government departments, including legal, data, and operational More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Made Tech Limited
the heart of designing, building and delivering public services leads to better outcomes for everyone. About the role The PMO Analyst will participate in building and implementing agile delivery management improvements and offering subject matter expertise to elevate best practices across the organization. You will be responsible for delivery operations support, delivery assurance support and capability improvements. As the … establish and maintain standards for projects, oversee progress against plans, manage dependencies and issues, and ensure that projects stay on track. This role will be part of the delivery management capability at Made Tech. Key responsibilities Delivery operations support Produce financial reports for account teams (contract/SOW burndown). Validate, track and approve TOIL for account teams. Track … projects are on track. Oversee dependencies, action/issue monitoring, and controls and help to perform health checks work streams/SoWs Be an active participant in the Delivery Management community within the engagement and Made Tech. Capability improvements Build and implement plans to improve the Agile delivery management capability. Participate as part of the PMO team in More ❯
within the band advertised is commensurate to experience and skill. Key Selection Criteria: Test Programmes - Skilled in delivering design projects from concept to detailed definition, including test planning, documentation, riskmanagement, and clear communication of solutions. Delivery - Proven ability to lead complex engineering projects in regulated industries-managing scope, budget, schedule, risks, and stakeholder relationships-while ensuring quality … within the band advertised is commensurate to experience and skill. Key Selection Criteria: Test Programmes - Skilled in delivering design projects from concept to detailed definition, including test planning, documentation, riskmanagement, and clear communication of solutions. Delivery - Proven ability to lead complex engineering projects in regulated industries-managing scope, budget, schedule, risks, and stakeholder relationships-while ensuring quality More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Rolls Royce SMR Ltd
initial requirements through to detailed definition, along with the production of comprehensive design documentation such as requirements specifications, engineering calculations, test specifications, and technical drawings. A solid appreciation of riskmanagement principles is also essential. Civil Engineering Technical experience of steel and concrete structures such as buildings, retaining walls, foundations, fuel pools or similar, working to British Standards … initial requirements through to detailed definition, along with the production of comprehensive design documentation such as requirements specifications, engineering calculations, test specifications, and technical drawings. A solid appreciation of riskmanagement principles is also essential. Civil Engineering Technical experience of steel and concrete structures such as buildings, retaining walls, foundations, fuel pools or similar, working to British Standards More ❯
to purchase required products and services Using a consultative approach and expertise to conduct strategic sourcing events, including collecting, analysing, and presenting data and recommendations to various levels of management across the organisation Partnering with the business in contract and price negotiations, including reviewing business terms, Service Level Agreements, Statements of Work, etc. Facilitating a collaborative approach to Category … Management, including but not limited to category spend analytics, multi-year strategic sourcing roadmaps, and acquiring and educating the enterprise on markets, suppliers, and trends Working collaboratively with suppliers and Technology teams to enhance supplier value and innovation We'd love to hear from you if you: Exhibit understanding and familiarity with technology-related products, services, and global suppliers … have: A bachelor's degree or equivalent A minimum of seven (7) years of progressively responsible strategic sourcing experience, including vendor negotiations and RFx events Experience in procurement category management, vendor management/vendor riskmanagement, and negotiating technology-related areas Experience establishing a Strategic Sourcing function or helping significantly mature a function, preferably Global Procurement More ❯
/escalation point for key clients. Leverage company-wide project delivery tools to ensure successful project delivery, workload forecasting, staff recruitment, development, and performance management. Conduct contract negotiations and management with key clients. Collaborate with accounting leadership to monitor and manage financial aspects of business operations. Work with the safety team to develop guidance and safe work systems related … to commissioning, including safety protocols and KPIs. Participate in local, regional, and global leadership meetings as required. Assist in riskmanagement planning for projects. Support recruitment efforts, including hiring and onboarding of new personnel and apprentices. Support the annual budgeting process for commissioning planning. Demonstrate a commitment to quality, continuous improvement, and HDR's values. Drive the development … client engagement strategies. Other Duties Structure training and succession planning to enhance team performance and expertise. Support bid processes by delivering high-quality, viable bid documents. Assist in quality management for the Cx Business class. Ensure no claims are made on PI and contract documents are diligently checked. Participate in interviews and recruitment of new personnel. Develop and maintain More ❯
Who we are in a nutshell. At BES Group, we pride ourselves in being the leading end to end riskmanagement solutions provider in the UK and Ireland. That means it’s our job to help keep our customers assets’ legally compliant, operational and, above all else, safe. And we do this with a team of the very … Work with other members of the team or directly with our business users to understand and document business requirements, evaluate options, research, and propose suitable solutions. Use your stakeholder management skills to translate business requirements into design specifications. You will ensure that all work is carried through the environments, source controlled with regularity and that deployment packages are robust … processes and the data we provide, working with system and business owners to ensure a proactive approach supporting data governance as well as establishing best practice guidelines for code management and deployment between cloud MI environments Take an active role in ensuring the highest quality of our processes and the data we provide, working with system and business owners More ❯
LVD, and EMC directives Contribute to full lifecycle C&I development including protection systems, PLCs, and SMART device qualification Undertake tasks related to functional safety and ageing/obsolescence management where required Engage with internal teams, clients, and stakeholders to align on design expectations and riskmanagement Promote safety, reliability, and compliance at every stage of the … years of experience in the Oil & Gas , Hydrogen , Nuclear , or Water sectors Strong working knowledge of UK legislation, CE marking, and equipment installation in hazardous areas Familiarity with HSE risk identification, management, and functional safety principles Technically confident with excellent communication and stakeholder engagement skills Motivated, delivery-focused, and comfortable working both independently and as part of a More ❯
The Role The Information Security Manager will be responsible for developing, implementing, and managing best practices in information security across M247. This role requires a deep understanding of data management, information security frameworks, and regulatory compliance. The ideal candidate will have a proven track record in creating efficient security processes and play a key role in fostering a culture … with ISO 27001 standards. Microsoft 365 Expertise: Leverage Microsoft 365 tools to enhance security measures, ensuring optimal configuration and deployment to protect data and information assets. Data and Information Management: Oversee data governance policies and practices to ensure the integrity, confidentiality, and availability of sensitive information. Operational Efficiency: Identify opportunities to consolidate security processes and improve efficiencies across various … departments, driving best practices organisation-wide. Cybersecurity Management: Manage and monitor the organisation's cybersecurity posture, implementing measures to detect, respond to, and recover from security incidents. Compliance Oversight: Ensure adherence to relevant regulatory requirements and industry standards, facilitating audits and assessments as needed. Training and Awareness: Develop and deliver security training programs to promote a culture of security More ❯
develop a robust electrical design and engineering package. Your role will involve preparing project offers and managing the delivery of primary and auxiliary electrical systems, while also providing technical management for the transmission equipment offer/order processing team. Additionally, you will plan, monitor, and control all aspects of offer/order processing, including riskmanagement and … and engineering package, including drawings and hardware delivery. Prepare offers and manage project delivery for primary and auxiliary electrical systems, focusing on schedule, cost, quality, and safety. Provide technical management for the transmission equipment offer/order processing team, coordinating with project management and engineering experts. Plan, monitor, and control offer/order processing, including technical conception, scope … delimitation, scheduling, costing, quality control, and risk management. Responsible for subcontracting, reporting, information management, and implementing process and design reviews. What You Bring Earned a university degree in electrical engineering, electrical power engineering, or a related field, with a standard duration of over 3 years. Gained post-graduate professional experience, including project management expertise. Possess strong technical More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Connect to your opportunity Lead the research and development of Deloitte Global cybersecurity standards, detailed security baselines and their supporting documents, to meet Deloitte's business objectives and cybersecurity risk appetite Collaborate with subject matter experts and leadership to determine the impact of cybersecurity standards and help resolve deployment challenges and risks Interact with relevant stakeholders to apply consistent … or other technology-related field, or equivalent experience Proven combined experience in the information security/cybersecurity domain, with a focus on policies and standards, or cybersecurity governance and riskmanagement Strong ability to clearly communicate complex cybersecurity statements to technical and non-technical audiences at various hierarchical levels Deep knowledge of common information security management frameworks … and standards, such as ISO/IEC 27001/27002, NIST 800-53, and the NIST Cybersecurity Framework Soft skills: collaboration, teamwork, persuasion, attention to detail, time management, prioritization, resourcefulness Advanced proficiency with MS Office products, primarily MS Word, Excel, PowerPoint Excellent written and verbal communication skills Preferred Qualifications: Professional certifications, such as Certified Information Systems Security Professional (CISSP More ❯