consulting services with a purpose of saving lives and creating a sustainable future. dss + enables companies to build organisational and human capabilities, manage risk, improve operations, achieve sustainability goals and operate more responsibly. By leveraging its DuPont heritage, deep industry and management expertise and diverse team, dss + … a reality, in a practical actionable way. What will you do? As a Senior Operations Consultant with expertise on Process Hazard Analysis (PHA) and RiskAssessment & Management, you will lead specific workstreams within a wider Process Safety Management (PSM)/Operational Risk Management (ORM) transformation program, aiming … effective solutions within the area of expertise. You will provide subject matter expertise and lead project teams to help clients establishing and implementing robust RiskAssessment and Process Hazard Analysis programs and, in particular, building organizational capabilities to sustain performance. The ideal candidate must have strong expertise and More ❯
Korn Ferry are looking for a contract IT RiskAssessment Manager , ideally with experience in Banking to join an ongoing project with an established client in the Digital Banking space. Key requirement summary: Remote working, core hours GMT time zone, although teams are international 12 month initial contract … good chance to extend Hourly Rate on Autonomo contract Fluent English required IT RiskAssessment Manager Compliance with DORA Regulations: Review and upgrade existing procedures to ensure compliance with DORA regulations. Develop and implement new procedures as necessary to meet DORA standards. COBIT Audit Systems: Conduct a thorough … controls using COBIT frameworks. Identify gaps and areas for improvement in the current control systems. Design necessary controls to align with COBIT standards. Technology Risk Assessments: Perform comprehensive technology risk assessments. Identify potential risks and vulnerabilities within the IT infrastructure. Develop risk mitigation strategies and action plans. More ❯
Laurel, Maryland, United States Hybrid / WFH Options
TEKsystems c/o Allegis Group
the technical team to understand the current system, subsystems, and component specifications. • Responsible for understanding entire projects or processes spanning multiple technical areas. • Support riskassessment, risk management, security control assessment, continuous monitoring, service design, and other IA program support functions. • Support and assist in documentation … Participate in the development, facilitation, and coordination of system documentation such as: System Engineering Plans; Initial Capabilities Documents; Requirements Specifications; and Interface Control Documentation; Assessment and authorization documentation (Body of Evidence) for management and continuous monitoring of information systems. • Effectively communicates with the customer and internal team members across … work with vendor and technical leads to bring findings into remediation; Document detailed Plans of Actions and Milestones (POAMs) for all open findings. • Supporting riskassessment, risk management, security control assessment, continuous monitoring, service design, and other IA program support functions. • Employing SE approach for systems More ❯
Arlington, Virginia, United States Hybrid / WFH Options
Saliense
has a high level of diverse technical and industry experience. Acts as a recognized technical expert providing technical support in the areas of vulnerability assessment, riskassessment, network security, product evaluation, and security implementation. From a technical perspective, the Int. RMF Security Specialist is responsible for protecting … Experience designing and implementing solutions for protecting the confidentiality, integrity, and availability of sensitive information. - Expert providing technical support in the areas of vulnerability assessment, riskassessment, network security, product evaluation, and security implementation. - Experience using e-MASS. - Experience using ACAS. - Ability to work with cooperatively and More ❯
San Diego, California, United States Hybrid / WFH Options
G2 Ops, Inc
we want you to join the fun! Still not convinced? We are seeking a junior level Cyber Security Engineer with a focus on cyber assessment, audit, and Risk Management Framework (RMF) processes to support Navy communications systems for our customers at NAVWAR and within the Big Navy. This … to define security requirements and conduct assessments, including ACAS scans and STIG/SRG compliance checks. Developing and maintaining RMF documentation, such as Security Assessment Plans, RiskAssessment Reports, POA&Ms, and accreditation boundary diagrams. Engaging in cybersecurity exercises and vulnerability assessments to ensure system resilience. If … you're passionate about cyber policy, risk management, and the opportunity to have a direct impact on cutting-edge defense technologies, this could be the perfect fit. Lastly, as we are working for the DoD, we are beholden to some requirements. The candidate must already possess an active DoD More ❯
Washington, Washington DC, United States Hybrid / WFH Options
KBR
mission is to proactively ensure the integrity, confidentiality, and availability of critical judiciary information assets through a comprehensive, rigorous security approach via our governance, risk management, and compliance (GRC) program. The Information Security Analyst SME will be responsible for enhancing cybersecurity for its customers including cybersecurity systems support, cybersecurity … compliance, and cybersecurity risk management for the COO comprehensive IT system portfolio. Primary Responsibilities: Prepare Information Systems: Carry out activities at various levels to help manage security and privacy risks using the JISF and NIST RMF. Categorize Information Systems: Determine the adverse impact to Judiciary operations and assets, individuals … and producing the desired outcome. Authorize Information System: Provide accountability by requiring a government senior management official to determine if the security and privacy risk is acceptable. Monitor Security Controls: Maintain ongoing situational awareness about the security and privacy posture of the information system in compliance with NIST SP More ❯
Washington, Washington DC, United States Hybrid / WFH Options
KBR
mission is to proactively ensure the integrity, confidentiality, and availability of critical judiciary information assets through a comprehensive, rigorous security approach via our governance, risk management, and compliance (GRC) program. The Senior Information Security Analyst will be responsible for enhancing cybersecurity for its customers including cybersecurity systems support, cybersecurity … compliance, and cybersecurity risk management for the COO comprehensive IT system portfolio. Primary Responsibilities: Prepare Information Systems: Carry out activities at various levels to help manage security and privacy risks using the JISF and NIST RMF. Categorize Information Systems: Determine the adverse impact to Judiciary operations and assets, individuals … and producing the desired outcome. Authorize Information System: Provide accountability by requiring a government senior management official to determine if the security and privacy risk is acceptable. Monitor Security Controls: Maintain ongoing situational awareness about the security and privacy posture of the information system in compliance with NIST SP More ❯
discover a culture that is rooted in innovation and thrives on collaboration. Imagine loving what you do and where you do it. Job Category Risk Control Target Openings 1 What Is the Opportunity? As Nat CAT Modelling and Analytics Lead you will be responsible for leading our NAT CAT … modelling and analytics team with the CAT Risk function, reporting directly into the AVP for CAT Risk and Capital. You will lead in the areas of complex pricing support, portfolio analysis and optimisation, model validation, VoR and other related areas. You will have deep understanding of CAT models … Cat function. You will have a thorough understanding of the Lloyd's market and hold specialist qualifications such as the Certified Specialist in Catastrophe Risk (CSCR), Certified Catastrophe Risk Management Professional (CCRMP), or a CAT modelling designation from a leading third-party vendor, such as Verisk's Certified More ❯
Team/Role Overview The Enterprise Risk & Stress Testing function supports Citi's missions through ensuring the foundation of our business - our global presence through branches and subsidiaries - have themselves strong capital, liquidity and risk disciplines. The team sits within the Risk Data, Analytics, Reporting and Technology … DART) function and provides cross-risk-stripe support for Internal Capital Adequacy Assessment Process (ICAAP) and Regulatory stress tests, working to ensure global capabilities are fit-for-purpose and appropriately aligned to the local country requirements. The successful individual will have experience in risk management, models and … reporting and will be keen to take that to a broader level spanning the global reach of Citi and supporting coherent riskassessment in our stress tests. What you'll do Design models and approaches to their deployment, enhance reporting and provide intelligent insight into what model outputs More ❯
Cyber Security Risk Specialist - VP Docklands, London (Hybrid) £100,000 - £110,000 per annum + annual discretionary bonus On behalf of a Leading financial services organisation, I am seeking a highly experienced Cyber Security Risk Specialist at VP level. The individual will be part of the security function … that is responsible for security governance, risk and assurance, to ensure the organisations security posture is robust, compliant against the security policy, standards and controls. In particular I am seeking someone with an extensive background in managing Security Control testing. The company operate a hybrid work policy and therefore … such as NIST CSF and NIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain risk register in RSA Archer. Identify assess and prioritize security risk across the organisation's information assets and environments. More ❯
london, south east england, united kingdom Hybrid / WFH Options
Spencer Rose
Cyber Security Risk Specialist - VP Docklands, London (Hybrid) £100,000 - £110,000 per annum + annual discretionary bonus On behalf of a Leading financial services organisation, I am seeking a highly experienced Cyber Security Risk Specialist at VP level. The individual will be part of the security function … that is responsible for security governance, risk and assurance, to ensure the organisations security posture is robust, compliant against the security policy, standards and controls. In particular I am seeking someone with an extensive background in managing Security Control testing. The company operate a hybrid work policy and therefore … such as NIST CSF and NIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain risk register in RSA Archer. Identify assess and prioritize security risk across the organisation's information assets and environments. More ❯
Columbus, Ohio, United States Hybrid / WFH Options
Seneca Resources, LLC
Auditors to join our team either in Indianapolis, IN or Columbus, OH. As a Senior Auditor, you will play a vital role in performing risk identification and assessment related to the Fund Balance with Treasury line item and associated processes reported on the Balance Sheet and related Note … 3. This is an excellent opportunity for individuals with a strong background in federal financial management, internal controls, and auditing. Responsibilities: Conduct risk identification and assessment related to the Fund Balance with Treasury line items and associated processes. Identify relevant controls, including ITACs (Information Technology Automated Controls) and … prevent, detect, and correct identified risks or control gaps. Design and implement new controls as needed to address control gaps. Utilize extensive knowledge in riskassessment, internal controls, analytical and critical thinking, accounting, auditing, and technical writing. Preference for external financial statement audit experience, with experience in financial More ❯
Chantilly, Virginia, United States Hybrid / WFH Options
Aerospace Corporation
against a diverse and dynamic portfolio of programs, customers, and national challenges. EED spans the capability lifecycle from concept and architecture design to performance assessment to application of space and space-enabled capabilities. As a member of the Space Object Risk Department, you will be providing technical capabilities … to support our customers in advancing situational awareness and hazard assessment and mitigation to operate safely in space. Work Model This is a full-time position based in El Segundo, CA, Chantilly, VA, or Colorado Springs, CO offering a hybrid work model that combines a minimum of 3 regular … you will: C ontribute to multiple focus areas of the department, which include space traffic management , SDA data management, space object and debris environment assessment and projections, riskassessment s of threats related to debris, re-entry, kinetic collision s , and electromagnetic spectrum interference. Have an opportunity More ❯
Chantilly, Virginia, United States Hybrid / WFH Options
Aerospace Corporation
engineering disciplines against a dynamic portfolio of programs, customers, and national challenges. EED spans the capability lifecycle from concept and architecture design to performance assessment to application of space and space-enabled capabilities. As a member of the Space Object Risk Department , you will be providing technical capabilities … you will: C ontribute to multiple focus areas of the department, which include space traffic management , SDA data management, space object and debris environment assessment and projections, riskassessment s of threats related to debris, re-entry, kinetic collision s , and electromagnetic spectrum interference. Have an opportunity … to s upport real-time operations support includes launch and on-orbit collision risk assessments, launch RF and debris riskassessment , on-orbit breakup event evaluation , and deorbit/reentry analysis . Independently provide deep technical expertise , innovation, and project coordination/leadership in technical deep dives More ❯
dollars’ worth of currency flows through our systems each day. Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients … over 96% on average, so clients can put their capital and resources to better use. CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX … environment in which everyone is encouraged to be open and forward-thinking. Job information: Functional title - AVP, IT Security Specialist Department – Security Governance and Risk Management Corporate level – Associate Vice President Report to – Director of Security Location - London, onsite 2 days per week About the role: The individual will More ❯
london, south east england, united kingdom Hybrid / WFH Options
CLS Group
dollars’ worth of currency flows through our systems each day. Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients … over 96% on average, so clients can put their capital and resources to better use. CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX … environment in which everyone is encouraged to be open and forward-thinking. Job information: Functional title - AVP, IT Security Specialist Department – Security Governance and Risk Management Corporate level – Associate Vice President Report to – Director of Security Location - London, onsite 2 days per week About the role: The individual will More ❯
Southern Md Facility, Maryland, United States Hybrid / WFH Options
Softek International Inc
optimize Zscaler Internet Access (ZIA), Zscaler Private Access (ZPA), and Zscaler Digital Experience (ZDX) solutions to ensure secure and efficient internet and application access. RiskAssessment and Mitigation: Perform regular risk assessments to identify potential vulnerabilities in the organization's systems and networks and develop strategies to … optimize Zscaler Internet Access (ZIA), Zscaler Private Access (ZPA), and Zscaler Digital Experience (ZDX) solutions to ensure secure and efficient internet and application access. RiskAssessment and Mitigation: Perform regular risk assessments to identify potential vulnerabilities in the organization's systems and networks and develop strategies to More ❯
Johnston, Rhode Island, United States Hybrid / WFH Options
FM
is a leading property insurer of the world's largest businesses, providing more than one-third of FORTUNE 1000-size companies with engineering-based risk management and property insurance solutions. FM helps clients maintain continuity in their business operations by drawing upon state-of-the-art loss-prevention engineering … and research; risk management skills and support services; tailored risk transfer capabilities; and superior financial strength. To do so, we rely on a dynamic, culturally diverse group of employees, working in more than 100 countries, in a variety of challenging roles. Summary: This position heads up the critical … internal auditor. The position manages a team of IT auditors. The position monitors all emerging information technology risks including the hugely impactful cyber security risk that is owned by the chief information officer and is actively monitored by the audit committee. This position requires active participation in the development More ❯
Raynham, Massachusetts, United States Hybrid / WFH Options
FM
is a leading property insurer of the world's largest businesses, providing more than one-third of FORTUNE 1000-size companies with engineering-based risk management and property insurance solutions. FM helps clients maintain continuity in their business operations by drawing upon state-of-the-art loss-prevention engineering … and research; risk management skills and support services; tailored risk transfer capabilities; and superior financial strength. To do so, we rely on a dynamic, culturally diverse group of employees, working in more than 100 countries, in a variety of challenging roles. Summary: This position heads up the critical … internal auditor. The position manages a team of IT auditors. The position monitors all emerging information technology risks including the hugely impactful cyber security risk that is owned by the chief information officer and is actively monitored by the audit committee. This position requires active participation in the development More ❯
Attleboro Falls, Massachusetts, United States Hybrid / WFH Options
FM
is a leading property insurer of the world's largest businesses, providing more than one-third of FORTUNE 1000-size companies with engineering-based risk management and property insurance solutions. FM helps clients maintain continuity in their business operations by drawing upon state-of-the-art loss-prevention engineering … and research; risk management skills and support services; tailored risk transfer capabilities; and superior financial strength. To do so, we rely on a dynamic, culturally diverse group of employees, working in more than 100 countries, in a variety of challenging roles. Summary: This position heads up the critical … internal auditor. The position manages a team of IT auditors. The position monitors all emerging information technology risks including the hugely impactful cyber security risk that is owned by the chief information officer and is actively monitored by the audit committee. This position requires active participation in the development More ❯
Forestdale, Rhode Island, United States Hybrid / WFH Options
FM
is a leading property insurer of the world's largest businesses, providing more than one-third of FORTUNE 1000-size companies with engineering-based risk management and property insurance solutions. FM helps clients maintain continuity in their business operations by drawing upon state-of-the-art loss-prevention engineering … and research; risk management skills and support services; tailored risk transfer capabilities; and superior financial strength. To do so, we rely on a dynamic, culturally diverse group of employees, working in more than 100 countries, in a variety of challenging roles. Summary: This position heads up the critical … internal auditor. The position manages a team of IT auditors. The position monitors all emerging information technology risks including the hugely impactful cyber security risk that is owned by the chief information officer and is actively monitored by the audit committee. This position requires active participation in the development More ❯
Birmingham, West Midlands, United Kingdom Hybrid / WFH Options
Context
on' SecOps/Infrastructure background Extensive experience with GDPR and data protection, together with extensive knowledge of IS standards including ISO and NIST. Security assessment frameworks (threat modelling, controls assessment, riskassessment) Ideally hold a relevant qualifications; CISSP, CISM or similar. Understanding of TOGAF methodology would More ❯
engineering organization and ensure speed and accuracy Drive consistency in proposal quality, format, and content across all regions Implement governance processes to ensure appropriate riskassessment and profitability analysis Develop strategies to differentiate professional services offerings from competitors Partner with sales leaders to develop and execute joint go … commercial acumen Advanced negotiation and influencing skills Ability to translate complex technical concepts into business value propositions Strong analytical capabilities for pricing, scoping, and riskassessment Excellent problem-solving and creative thinking skills Education & Certifications Bachelor's degree required; MBA or other advanced degree preferred Technical certifications relevant More ❯
City of London, London, United Kingdom Hybrid / WFH Options
McCabe & Barton
We are working with a leading Financial Services client in the City of London that is seeking an experienced Risk Manager to join the business on a permanent basis. This role is offering a base of £70,000 + bonus, pension and car allowance. Hybrid work available. The ideal … IT Risk Manager will be tasked with leading the management of the risk and control frameworks across all CIO areas, ensuring alignment with RMF and overseeing core governance processes, including audit coordination, internal assurance, and HEAF attestation. Key Responsibilities: Lead and develop risk and control frameworks across … the CIO Provide Quality Assurance for riskassessment, testing, and reporting Foster a strong risk culture and best practice standards Manage risk reporting, governance committees, and audit processes Oversee supplier risk, compliance, and assurance initiatives Engage with 2nd and 3rd line functions to ensure seamless More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
TieTalent
and-run drivers and paid over £400 million in compensation to support victims rebuild their lives. We're looking for a professional and inspiring Risk Management Leader to come and join our team. As a member of the Information Security - Governance Risk and Compliance team (InfoSec GRC), you … ll maintain the confidentiality, availability and integrity of MIB's information and information systems. This will primarily be achieved through identification and recommendation of risk mitigation treatment plans and as a subject matter specialist to support the needs of the organisation. This will be delivered by: Supporting the ongoing … Information Security strategy to business objectives Maintaining robust governance processes in the delivery of MIB's Information security responsibilities Operating an effective information security risk management capability that assesses and reduces risk to an acceptable level Implementing and operating an ongoing information security compliance programme that delivers assurance More ❯