the Atos Risk & Assurance Directorate. This role is key to driving our risk maturity forward by enabling a consistent and effective approach to the BusinessContinuity Framework management across the NS&I account B2C and B2B business lines. What will you be doing: Lead the annual … BusinessContinuityManagement (BCM) workplan, overseeing all BCMS activities. Ensure regular reviews and approvals of BusinessContinuity materials, providing feedback and challenge. Maintain and oversee the Crisis Management Team Plan, BusinessContinuity Policy, and Minimum Standards. Conduct crisis management exercises and … user testing of plans, ensuring actions are tracked to completion. Coordinate incident responses, ensuring the right business areas are engaged and post-incident reviews are completed. Provide assurance over third-party supplier BusinessContinuity frameworks. Develop BusinessContinuity awareness across business units through training More ❯
Vacancy: BusinessContinuity Manager - Dounreay NRS is seeking a qualified and experienced BusinessContinuity Manager to join their team on a long-term contract basis. Role Details Position: BusinessContinuity Manager Business: NRS Duration: 12 months ongoing contract Location: Dounreay site, Thurso Rate … depending on experience Job Description NRS Dounreay requires a qualified BusinessContinuity professional, with at least a CBCI qualification, to join the resilience team for a temporary twelve-month contract. The primary purpose of this role is to ensure organisational resilience, minimize downtime, protect assets and reputation, and … facilitate swift recovery from disruptions. The successful candidate will manage the development and implementation of best practices in BusinessContinuityManagement, overseeing strategies and plans to ensure the organization can continue essential activities during and after disruptive events. Responsibilities Create detailed strategies and procedures to maintain or More ❯
Job Title: IT Service Continuity Manager Location: Manchester (Tue, Wed, Thu - Onsite) Job Overview: We are seeking an experienced and highly motivated IT Service Continuity Manager (ITSCM) to design, implement, and manage our IT Service Continuity (ITSCM) and Disaster Recovery (DR) strategies. The role involves traveling to … Thursday each week. The ideal candidate will have a deep understanding of IT infrastructure, ITIL v4 best practices, and will hold relevant certifications in businesscontinuity and disaster recovery. Roles & Responsibilities: Design and align the BusinessContinuity (BC) and IT Service Continuity strategies with critical … business requirements. Define and implement ITSCM frameworks and best practices to ensure consistency and reliability in service delivery. Develop and implement comprehensive IT Service Continuity and Disaster Recovery plans, policies, and procedures to support business operations during disruptions. Lead and coordinate BusinessContinuity and Disaster More ❯
the Operational Resilience Manager with the delivery of Digital and Operational Resilience initiatives while managing ongoing resilience activities for several entities. You will provide Business Analysis support for the continued implementation of the company’s Digital and Operational Resilience Framework and the ongoing execution of resilience activities in line … further implement the Digital Operational Resilience Framework across the company e.g., refining and optimising existing policies, plans and procedures (in areas such as Risk Management, Incident Management, BusinessContinuity, Crisis Management, Third-Party Risk Management and Disaster Recovery), supporting the implementation of new technologies … to strengthen how resilience activities are performed. Facilitation of cross-functional workshops with business stakeholders to execute resilience activities such as End-to-End Function Mapping, Business Impact Assessments, Impact Tolerance Setting and Risk Assessments. Delivering workshops to facilitate testing programme planning and overseeing the ongoing execution and More ❯
of these services. With our thought leadership and culture of innovation, we apply industry expertise, diverse skill sets and next-generation technology to each business challenge. We believe in inclusion and diversity and supporting the whole person. Our core values comprise of Stewardship, Best People, Client Value Creation, One … Global Network, Respect for the Individual and Integrity. Year after year, Accenture is recognized worldwide not just for business performance but for inclusion and diversity too. "Across the globe, one thing is universally true of the people of Accenture: We care deeply about what we do and the impact … s risk appetite - understanding that one-size-fits-all solutions are not appropriate. Key Responsibilities: This is a mid-senior role with responsibility for business development, client delivery management and team oversight and development. The successful candidate will be required to participate in the Senior Leadership Team of More ❯
The ideal candidate will have a strong background in ServiceNow implementation projects, with at least one project involving ServiceNow Risk solutions (i.e., Integrated Risk Management, Third Party Risk Management, BusinessContinuityManagement). While collaborating with customers, and the wider ServiceNow Risk and Security Operations … CrowdStrike, ProofPoint, Cisco, etc) Required Certifications: ServiceNow Certified Implementation Specialist certification in one or more of the following: Risk and Compliance Third-party Risk Management (TPRM) Implementer Micro-Certification - BusinessContinuityManagement ServiceNow Certified Application Developer certifications Experience in working with an integrated global practice Certified More ❯
The ideal candidate will have a strong background in ServiceNow implementation projects, with at least one project involving ServiceNow Risk solutions (i.e., Integrated Risk Management, Third Party Risk Management, BusinessContinuityManagement). While collaborating with customers, and the wider ServiceNow Risk and Security Operations … CrowdStrike, ProofPoint, Cisco, etc) Required Certifications: ServiceNow Certified Implementation Specialist certification in one or more of the following: Risk and Compliance Third-party Risk Management (TPRM) Implementer Micro-Certification - BusinessContinuityManagement ServiceNow Certified Application Developer certifications Experience in working with an integrated global practice Certified More ❯
Bachelor's degree and 10+ years of experience or an equivalent combination of education and experience. A minimum of 5 years of experience in businesscontinuitymanagement, ideally with an emphasis on cyber disruption. Additional expertise on third party cyber risk management-including conducting third party … or reviewing certifications and attestations. An understanding in how organizations can recover from all disruptions with a special emphasis on cyber disruptions and maintaining businesscontinuity and business recovery after incidents. First-hand experience in developing and implementing businesscontinuity programs and plans, planning or More ❯
orders quickly, sell online instantly and manage their money more efficiently. SumUp creates the tools merchants need to make their customer experience and their business thrive. As Operational Resilience Manager, you will join the team that is a key component of SumUp's second line of defence and is … responsible for the ongoing assessment and oversight of the group's risk management including operational and enterprise risks and operational resilience framework. What you'll do: Develop and implement the operational resilience framework, ensuring compliance with DORA and other regulations, and lead BusinessContinuity Planning (BCP) and … Disaster Recovery Plan (DRP) efforts Collaborate with engineering, product, and GRC teams to identify risks, address gaps in processes and technologies, and ensure continuity of critical operations during disruptions Oversee and test incident response, BCP, and DRP frameworks, minimizing downtime and customer impact while maintaining regulatory standards Conduct post More ❯
and adapting to changes in our operating environment. Within the area of Security, Operational Resilience covers three separate but interconnected disciplines: Incident and Crisis Management (IM/CM), BusinessContinuityManagement (BCM) and IT Service ContinuityManagement & IT Recovery (ITSCM & ITR). These disciplines … key action plans. Maintain the DOR Testing Framework, manage attestation results, and ensure testing procedures are documented and approved according to the ICT Risk Management Framework and in coordination with the Risk function. Work closely with testing owners across Security and Global Technology (IT), and AXA Group to align … and report overall DORT effectiveness to the ICT Risk Management Framework. Ensures that testing owners maintain and annually refresh the respective testing standards included in the DORT Framework. Review and analyse data from a maintained Dashboard, sample test reports, and additional evidence provided by testing owners to ensure the More ❯
and adapting to changes in our operating environment. Within the area of Security, Operational Resilience covers three separate but interconnected disciplines: Incident and Crisis Management (IM/CM), BusinessContinuityManagement (BCM) and IT Service ContinuityManagement & IT Recovery (ITSCM & ITR). These disciplines … key action plans. Maintain the DOR Testing Framework, manage attestation results, and ensure testing procedures are documented and approved according to the ICT Risk Management Framework and in coordination with the Risk function. Work closely with testing owners across Security and Global Technology (IT), and AXA Group to align … and report overall DORT effectiveness to the ICT Risk Management Framework. Ensures that testing owners maintain and annually refresh the respective testing standards included in the DORT Framework. Review and analyse data from a maintained Dashboard, sample test reports, and additional evidence provided by testing owners to ensure the More ❯
practice and is growing rapidly. As the largest team of resilience and crisis professionals in the UK, RRCR combines deep industry knowledge with both business advisory experience and significant technical expertise. Connect to your career at Deloitte Deloitte drives progress. Using our vast range of expertise, we help our … to client locations and work additional hours as needed. Applicants should have experience in one or more resilience-related disciplines, such as: Operational Risk BusinessContinuityManagement Third-party Risk Management Supply Chain Resilience Crisis Management IT Service Continuity and Disaster Recovery Scenario risk … modelling and planning Connect to your business - Technology and Transformation Distinctive thinking, deep expertise, innovation, and collaboration connect us. If you want to help solve some of the biggest tech and transformational challenges, join us. Together, we'll make an impact that matters. Cyber The modern world is more More ❯
warrington, cheshire, north west england, United Kingdom Hybrid / WFH Options
Iron Mountain
us and see how you can elevate the power of your work at Iron Mountain. We provide expert, sustainable solutions in records and information management, digital transformation services, data centers, asset lifecycle management, and fine art storage, handling, and logistics. We proudly partner every day with our … your skills in a culture that will welcome your unique contributions? If so, let's start the conversation. THE OPPORTUNITY Title : Process Improvement and Business Process Excellence Manager Location : Hinton House, Warrington/Home-based (hybrid) Other: SC clearance will be required (The post you are applying for attracts … prior to the date of application). Job summary/Objectives of the role Responsible for managing IT support, technical innovation, continuous improvement and business processes changes to ensure that work is carried out to operational targets, job specifications, quality standards, and in line with customer requirements; and the More ❯
Contract Salary: Negotiable Hybrid - Hertfordshire As an Information Security Compliance Analyst, you will support the development and maintenance of the EMEA wide information security management system in accordance with Global EIT strategy, EMEA business requirements and relevant information security legislation, including NIS 2, AI Act and GDPR. You … will ensure the continued certification of the EIT ISO 27001:2022 management system and adherence by the EMEA EIT department to all relevant legislation and regulations, including but not limited to Health and Safety, Financial and Privacy laws. Main duties/responsibilities: Conduct information security, information system, and compliance … NIST CSF, IEC 62443, CIS, GDPR etc.) Maintain the department’s information security procedures, including but not limited to information security incident response and businesscontinuitymanagement, conducting tabletop exercises to evaluate effectiveness. Manage the information security awareness training program to ensure all employees develop and maintain More ❯
Contract Salary: Negotiable Hybrid - Hertfordshire As an Information Security Compliance Analyst, you will support the development and maintenance of the EMEA wide information security management system in accordance with Global EIT strategy, EMEA business requirements and relevant information security legislation, including NIS 2, AI Act and GDPR. You … will ensure the continued certification of the EIT ISO 27001:2022 management system and adherence by the EMEA EIT department to all relevant legislation and regulations, including but not limited to Health and Safety, Financial and Privacy laws. Main duties/responsibilities: Conduct information security, information system, and compliance … NIST CSF, IEC 62443, CIS, GDPR etc.) Maintain the department’s information security procedures, including but not limited to information security incident response and businesscontinuitymanagement, conducting tabletop exercises to evaluate effectiveness. Manage the information security awareness training program to ensure all employees develop and maintain More ❯
bradford, yorkshire and the humber, United Kingdom Hybrid / WFH Options
Morrisons
provide expert guidance to ensure robust security solutions are in place. Responsibilities Planning and Design Activities • Define and maintain security architecture processes aligned with business, technology, and threat drivers. • Develop security strategy plans, roadmaps, and architecture artefacts, including models, templates, and standards. • Establish baseline security standards for operating systems … for executive review and approval. • Establish a taxonomy of indicators of compromise (IOCs) and share insights with security teams. • Continuously monitor developments in digital business and threat environments to refine security strategies and artefacts. Assurance • Validate IT infrastructure and reference architectures for security best practices and recommend improvements. • Ensure … privilege for network access (Zero Trust). • Support testing and validation of internal security controls and assess emerging security technologies. Collaboration • Partner with vendor management to conduct security assessments of vendors, including SaaS, IaaS, MSPs, and payroll providers, ensuring adequate protections in contracts and SOWs. • Coordinate with operational and More ❯
Bradford, south west england, United Kingdom Hybrid / WFH Options
Morrisons
provide expert guidance to ensure robust security solutions are in place. Responsibilities Planning and Design Activities • Define and maintain security architecture processes aligned with business, technology, and threat drivers. • Develop security strategy plans, roadmaps, and architecture artefacts, including models, templates, and standards. • Establish baseline security standards for operating systems … for executive review and approval. • Establish a taxonomy of indicators of compromise (IOCs) and share insights with security teams. • Continuously monitor developments in digital business and threat environments to refine security strategies and artefacts. Assurance • Validate IT infrastructure and reference architectures for security best practices and recommend improvements. • Ensure … privilege for network access (Zero Trust). • Support testing and validation of internal security controls and assess emerging security technologies. Collaboration • Partner with vendor management to conduct security assessments of vendors, including SaaS, IaaS, MSPs, and payroll providers, ensuring adequate protections in contracts and SOWs. • Coordinate with operational and More ❯
to security policies, and support the identification and record risks. If you're passionate about ensuring the security posture of vendors and enabling secure business growth at scale, this role is for you. THE CHALLENGE: As an InfoSec Third Party Audit Specialist, you will: Conduct security risk assessments on … standards. Track and manage third-party risks through to remediation, working directly with vendors and internal stakeholders. Contribute to the broader ISMS (Information Security Management System) and support internal risk, compliance, and audit activities. Participate in governance initiatives, including regulatory compliance efforts, awareness campaigns, and cross-functional risk assessments. … Support the wider GRC team with reporting, metrics, and stakeholder communications. YOUR PROFILE: 3-5 years of experience in third-party/vendor risk management, preferably within an information security, risk, or compliance team. Strong working knowledge of information security standards and frameworks such as ISO/IEC More ❯