regulatory requirements, including cross-industry regulations (e.g., GDPR, Data Protection Act) and industry-specific regulations Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT as well as those from NIST, including 800-53 and Cybersecurity Framework Knowledge of OneTrust risk management toolset or similar preferred Proven ability to communicate with technical teams to elicit More ❯
identify and manage cyber risk. Demonstrable experience in cyber risk analysis, assessment and mitigation. Experience in a financial or highly regulated environment. A detailed understanding of ISO 27001, ITIL, COBIT, PCI DSS and NIST Cyber Security Frameworks. Working knowledge of GDPR. Relevant security certifications such as CISSP, CISM, CISA, CRISC, ISEB Certificate in Information Security Management Principles. Effective written andMore ❯
data models and reporting frameworks. Ensure alignment of analytics and reporting outputs with enterprise risk management andcontrol frameworks. Strong knowledge of risk management frameworks (e.g., NIST, ISO 27001, COBIT) andcontrol environments. Deep understanding of IT general controls, cyber security principles, andtechnology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau More ❯
Deep understanding of UK/EU regulatory drivers (e.g., FCA/PRA Operational Resilience Policy, DORA, SYSC 8, PS 21/3, CP4/24) and relevant industry frameworks (COBIT, ITIL, ISO 27001/22301, NIST CSF). Strong analytical skills with the ability to translate complex technical issues into clear, business-focused recommendations. Possession of strong team working andMore ❯
of Practice (TCoP) and UK Digital/Data Strategies Experience in major enterprise architecture engagements e.g. application optimisation/rationalisation, re-platforming, modernization of enterprise data architecture Certified in COBIT, TOGAF, DCAM and/or AWS/Azure/GCP solution architecture Knowledge of DAMA-DMBOK Familiarity with applying key frameworks such as APQC Process Classification Framework, Zachman Framework, ITIL More ❯
of Practice (TCoP) and UK Digital/Data Strategies Experience in major enterprise architecture engagements e.g. application optimisation/rationalisation, re-platforming, modernization of enterprise data architecture Certified in COBIT, TOGAF, DCAM and/or AWS/Azure/GCP solution architecture Knowledge of DAMA-DMBOK Familiarity with applying key frameworks such as APQC Process Classification Framework, Zachman Framework, ITIL More ❯
issue management-related processes and services. Experience in Risk Management aligned to certification requirements (ISO27001, ISO31000 or similar) required Knowledge of relevant security/governance frameworks (NIST CSF, ISO27001, CobiT, ) required Experience in service build up a plus Security Governance/Risk Management certification (CISSP, CGEIT, CISM, CRISC ) is a plus Qualified individuals with a disability may request a reasonable More ❯
CySA+, or Cloud Security Engineer. Extensive experience in cybersecurity, especially incident response and technical operations. Strong understanding of AWS and Azure cloud platforms. Familiarity with frameworks like NIST, ISO, COBIT, and OWASP. Proven success in leading and delivering security projects. Experience with PowerShell and automation. Consulting experience across IT and digital teams. Flexibility for occasional travel and out-of-hours More ❯
/or existing IT General Controls from across access, change, and operations domains drawing on experience to do so independently and/or with minimal support. Working knowledge of COBIT/ITIL Frameworks Comfortable performing IT Risk Assessments across a variety of IT domains. Strong analytical and problem-solving skills, being able to decipher sometimes complex information, analyse and report More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
Adam Appointments Ltd
Solid experience in IT oversight, ideally within financial services. Background in quality assurance, with strong working knowledge of CONC, TCF, and GDPR. Understanding of IT governance frameworks such as COBIT, NIST, or ITIL. Preferred certifications include CISA, CRISC or CISM. If you like the sound of this and you're passionate about compliance, governance, and supporting effective IT operations, please More ❯
paisley, central scotland, united kingdom Hybrid / WFH Options
Adam Appointments Ltd
Solid experience in IT oversight, ideally within financial services. Background in quality assurance, with strong working knowledge of CONC, TCF, and GDPR. Understanding of IT governance frameworks such as COBIT, NIST, or ITIL. Preferred certifications include CISA, CRISC or CISM. If you like the sound of this and you're passionate about compliance, governance, and supporting effective IT operations, please More ❯
milton, central scotland, united kingdom Hybrid / WFH Options
Adam Appointments Ltd
Solid experience in IT oversight, ideally within financial services. Background in quality assurance, with strong working knowledge of CONC, TCF, and GDPR. Understanding of IT governance frameworks such as COBIT, NIST, or ITIL. Preferred certifications include CISA, CRISC or CISM. If you like the sound of this and you're passionate about compliance, governance, and supporting effective IT operations, please More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Oliver James
findings to relevant stakeholders What We're Looking For: Previous experience in IT audit, information security, or risk management (in-house or external) Knowledge of audit tools, frameworks (e.g. COBIT, NIST), and security standards Strong understanding of IT general controls (ITGCs), infrastructure, and networks Excellent analytical, problem-solving, and communication skills Experience working within data centres or critical infrastructure environments More ❯
/or existing IT General Controls from across access, change, and operations domains, drawing on experience to do so independently and/or with minimal support. Working knowledge of COBIT/ITIL Frameworks Comfortable performing IT Risk Assessments across a variety of IT domains. Strong analytical and problem-solving skills, being able to decipher complex information, analyse and report on More ❯
technologyrelated regulations e.g. Ops Res, GDPR, DORA, SOx etc Demonstrate experience of technology risk profiling, assessments, scenarios, metrics and reporting. Demonstrate knowledge of Risk Frameworks and certifications including Cobit, NIST, ISO27001 Financial services experience 5+ (not exclusively Insurance) Demonstrate a level of seniority - this is a new role and will require the candidate to plan and implement the IT More ❯
from time to time. What we're looking for: Qualified to degree level or time served experience. CISA, CRISC or similar professional qualifications but training will be provided ITIL, COBIT, SOX knowledge - Desirable 2-3 years of experience working within an IT control testing programme Experience working in an external audit team within a Big 4 or similar corporate environment More ❯
warrington, cheshire, north west england, united kingdom
JSS Search
technologyrelated regulations e.g. Ops Res, GDPR, DORA, SOx etc Demonstrate experience of technology risk profiling, assessments, scenarios, metrics and reporting. Demonstrate knowledge of Risk Frameworks and certifications including Cobit, NIST, ISO27001 Financial services experience 5+ (not exclusively Insurance) Demonstrate a level of seniority - this is a new role and will require the candidate to plan and implement the IT More ❯
bolton, greater manchester, north west england, united kingdom
JSS Search
technologyrelated regulations e.g. Ops Res, GDPR, DORA, SOx etc Demonstrate experience of technology risk profiling, assessments, scenarios, metrics and reporting. Demonstrate knowledge of Risk Frameworks and certifications including Cobit, NIST, ISO27001 Financial services experience 5+ (not exclusively Insurance) Demonstrate a level of seniority - this is a new role and will require the candidate to plan and implement the IT More ❯
testing IT general and application controls, ideally in cloud environments Working knowledge of change management approaches, including agile ways of working Knowledge of risk andcontrol frameworks (e.g. COSO, COBIT) Experience using data analytics to support audit delivery Strong communication skills and stakeholder engagement experience A bachelor's degree or equivalent experience in business, accounting, or a related field Next More ❯
a recognised professional accounting qualification and a qualification in an I.T.-related discipline. Substantial experience in related areas would be considered in the absence of formal qualifications. * Experience in COBIT or ITIL best practices. * Experience in working within an Agile environment. More ❯
Leeds, West Yorkshire, England, United Kingdom Hybrid / WFH Options
HW FINANCE LIMITED
technical Experience Proven experience in an IT Audit or IT Risk Advisory role within internal audit, consultancy, or regulated environments. Solid understanding of IT risks, controls, and frameworks (e.g. COBIT, ISO 27001). Experience working within SOX-compliant environments would be advantageous but not essential Strong communication and stakeholder management capabilities Hybrid working pattern - ideally 2 days in the office More ❯
take their career to the next level. Key responsibilities/Experience Hands-on experience implementing NIST CSF (not just reviewing or auditing) Strong knowledge of frameworks like ISO 27001, COBIT, etc. The ability to connect and translate across frameworks Proven stakeholder engagement and influencing skills Experience in a complex, multi-stakeholder environment A proactive, practical mindset - ready to 'do the More ❯
Newcastle Upon Tyne, United Kingdom Hybrid / WFH Options
NHS Business Services Authority
best practices. Experience in leading and managing cross-functional teams and driving cultural change. A strong understanding of relevant frameworks and methods relevant to the role, (such as ITIL, COBIT, MoR and ISMS ) A strong understanding of project management delivery frameworks (such as PRINCE) Experience Essential Proven experience in technology leadership role and strategic planning. Leading and managing teams to … IT governance, compliance, and risk management. Desirable TOGAF certification or equivalent, or willing to work towards this certification Relevant foundation level qualification in an DDaT department framework (eg ITIL, COBIT, MoR and ISMS) Programme and Project Management (PRINCE, MSP, P3O or similar) Agile Delivery Qualifications (SCRUM) Strong understanding of cloud computing, cybersecurity, AI, data architecture, and modern development practices (Agile More ❯
in a similar role, with the ability to adapt in a dynamic environment. Strong team player with a supportive attitude. Experience with best practice frameworks such as ITIL/COBIT, and industry or academic credentials in risk management. More ❯
as NIST, PCI, GDPR, ISO Series, OWASP the IT Infrastructure Library (ITIL), the ISF Standards of Good Practice (SoGP) and ISACA's ControlObjectivesforInformationandrelatedTechnology (COBIT) frameworks. Actively represent the security organisation within business project initiatives, providing technical security leadership to ensure that security requirements and outcomes are defined and considered throughout the lifecycle of projects More ❯