Job Description - Cyber Risk Assurance Analyst (16065) Cyber Risk Assurance Analyst ( 16065 ) Cyber Risk Assurance Analyst Luton/Hybrid Company When it comes to innovation and achievement there are few organisations with a better track record. Join us and you'll be able to play a big part in the success of our highly successful, fast-paced … are as engrained as Aircraft Safety. This means close alignment to Operational, Commercial along with Regulatory and Audit functions. The role requires working closely with the Senior Digital Safety Risk Manager, the Head of Digital Safety Assurance and the Technical Security and Business Partner functions to support the Digital Safety vision . The Cyber Risk Assurance Analyst role … to identify, measure, and track cyber security risks within easyJet. This role requires collaboration with various business areas to gather the necessary information that enables the creation of informative risk reports, aiding decision making in the relevant forums supporting the Digital Safety Assurance team's objectives and assists in shedding light on key areas pertaining to our regulatory compliance More ❯
our ever-growing talented team. Responsibilities Collaborate with Operations & Back Office teams to identify and assess operational risks in daily processes, including transaction handling, settlements, and reconciliation. Conduct regular risk assessments and control reviews, documenting potential vulnerabilities and recommending improvements. Monitor risk exposures and operational trends that could impact Ops/Back Office functions. Develop and maintain dashboards … and reporting tools to provide real-time risk information to senior management. Prepare and present risk reports for governance forums, such as risk committees, highlighting critical issues and potential impact on business continuity. Design and implement key risk controls in partnership with operational teams to manage identified risks within acceptable limits. Perform periodic control testing to … needed based on testing outcomes and feedback from internal audits. Investigate operational incidents, documenting root causes, and coordinating with relevant departments to implement corrective actions. Support the development of risk mitigation strategies to reduce the likelihood of repeat incidents, ensuring lessons learned are incorporated into the process. Ensure compliance with internal policies, regulatory requirements, and industry standards applicable to More ❯
whilst also collaborating closely with internal teams across Bridewell. Your core focus will be leading the delivery of Microsoft Purview solutions - helping clients navigate complex data governance, compliance, and riskmanagement requirements. From auditing and optimising existing deployments to designing and implementing scalable compliance architectures, you will provide strategic and technical oversight across projects, acting as both a … trusted advisor and hands-on lead. You'll support the development of team capability and Bridewell's service offerings within Microsoft Purview. Specific tasks may include: Daily management activities, or supporting daily management activities, for a team of Senior Consultants, Consultants and Junior Consultants. Evaluating, recommending and implementing Microsoft Purview technologies to support data classification, protection, retention, and … and Azure. Designing and deploying Purview features such as eDiscovery, Information Protection, Data Loss Prevention, Communication Compliance and Information Barriers. Advising on and implementing best practices for Insider RiskManagement and regulatory compliance using Purview's advanced tools. Supporting integration of Purview with Microsoft Entra ID, Exchange Online, SharePoint Online, Teams and OneDrive. Assessing and reviewing customer cloud More ❯
Job Description - Cyber Risk Assurance Analyst (16065) Job Description Cyber Risk Assurance Analyst ( 16065 ) Description Cyber Risk Assurance Analyst Luton/Hybrid Company When it comes to innovation and achievement there are few organisations with a better track record. Join us and you'll be able to play a big part in the success of our highly … are as engrained as Aircraft Safety. This means close alignment to Operational, Commercial along with Regulatory and Audit functions. The role requires working closely with the Senior Digital Safety Risk Manager, the Head of Digital Safety Assurance and the Technical Security and Business Partner functions to support the Digital Safety vision . The Cyber Risk Assurance Analyst role … to identify, measure, and track cyber security risks within easyJet. This role requires collaboration with various business areas to gather the necessary information that enables the creation of informative risk reports, aiding decision making in the relevant forums supporting the Digital Safety Assurance team's objectives and assists in shedding light on key areas pertaining to our regulatory compliance More ❯
London, England, United Kingdom Hybrid / WFH Options
itecopeople
Contract Risk Analyst – £31 per hour (Inside IR35) Hybrid – 3 days in Central London office, 2 days remote Initial 3-month contract | Start ASAP Are you a detail-driven Risk Analyst ready to hit the ground running? We're looking for an experienced professional to join a dynamic Enterprise RiskManagement team on an initial … month contract . This role offers a hybrid working model , with 3 days a week in the London office and 2 days working remotely . The Opportunity As a Risk Analyst, you'll play a key role in embedding risk strategy, processes and procedures across the organisation. Reporting into the Head of Risk and Assurance, you'll … while ensuring compliance with industry regulations and best practice. What You'll Be Doing Identify and assess key risks that could impact business operations, performance, or reputation Conduct thorough risk assessments using qualitative and data-driven approaches Develop and implement risk mitigation strategies and controls Monitor key risk indicators and produce regular reports for senior leadership Ensure More ❯
That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career. About the team The Risk Partnerships team is an essential part of Stripe's Global Partnerships organization. Our team is responsible for building and maintaining relationships with key partner banks to manage risk … Stripe to accept and make payments, provide credit, move & store money and develop new products and solutions to meet our users' needs. We work across a broad range of risk and compliance topics including; credit, fraud, regulatory, financial crime, reputational, product and operational risks. What you'll do We are seeking a new team member to collaborate with key … support Stripe's goals to enable users to send and receive payments domestically and internationally, store funds securely, earn yield on those funds, and enable multi-currency fund flows. Riskmanagement is essential for managing these relationships, and this role requires a broad understanding of risk disciplines across banking activities, including accepting and making payments, money storage More ❯
foundations across platforms, data, and business applications. Our passion lies in using technology to solve business problems, working closely with clients to help achieve their goals. About the role: Risk Assessment: Assist in identifying, assessing, and prioritising risks across the organisation. Conduct risk assessments to evaluate the likelihood and potential impact of risks on business operations and objectives. … DR Advisor in developing and maintaining IT resilience and business continuity plans to ensure the organisation's ability to respond to and recover from IT disruptions. Incident Response and Management: Support DR-related incident response activities, including investigating IT security incidents, breaches, and disruptions. Issue Identification: Identify and document control deficiencies, compliance gaps, and areas for improvement. Collaborate with … stakeholders to develop actionable recommendations and corrective action plans. Documentation and Reporting: Maintain accurate documentation of risk assessments, compliance reviews, control testing activities, and remediation efforts. Prepare regular reports for management and stakeholders. Policy and Procedure Development: Assist in developing and maintaining riskmanagement, compliance, and control-related policies, procedures, and guidelines, ensuring alignment with regulatory More ❯
employee at M.C. Dean, you will join forces with more than 5,800 professionals who engineer and deploy automated, secure and resilient power and technology systems; and deliver the management platforms essential for long-term system sustainability. Together, we transform the way complex, large-scale systems are designed, delivered, and sustained-enhancing client outcomes, improving lives, and changing the … and implementation of trusted relations among external systems and architectures. Assess and mitigate system security threats/risks throughout the program life cycle. Contribute to the security planning, assessment, risk analysis, riskmanagement, certification and awareness activities for system and networking operations. Review assessment and accreditation (A&A) documentation, provide feedback on completeness and compliance of its … to: system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification; authentication; and authorization; system integration; riskmanagement; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control More ❯
Business Information Risk Analyst page is loaded Business Information Risk Analyst Apply locations London time type Full time posted on Posted 2 Days Ago job requisition id R18274 Ideas People Trust We're BDO. An accountancy and business advisory firm, providing the advice and solutions entrepreneurial organisations need to navigate today's changing world. We work with the … companies that are Britain's economic engine - ambitious, entrepreneurially-spirited and high growth businesses that fuel the economy - and directly advise the owners and management teams that lead them. We'll broaden your horizons The Quality and RiskManagement Team (QRM) provides leadership, guidance, and tools to help partners and staff manage quality and risk matters. … You'll be encouraged to identify and draw attention to opportunities for enhancing our delivery and providing additional services to organisations we work with. Role Purpose The Business Information Risk Analyst's (BIRA) role is responsible for supporting the Chief Information Security Office (CISO) service to BDO's business streams to effectively manage information security risk. This role will More ❯
a crucial role in leading and managing complex Cyber Security projects, ensuring the successful execution of initiatives that safeguard our clients' organisations against evolving threats. Leveraging your extensive project management expertise and technical knowledge, you will partner with and contribute to the enhancement of the overall Cyber Security posture and resilience of our clients, collaborating with cross-functional teams … start-up and initiation phases of Cyber Security projects, defining clear project objectives, scope, deliverables, and success criteria. Develop detailed project plans, timelines, and resource allocation approaches. Conduct comprehensive risk assessments and develop mitigation strategies to address potential security threats and project risks. Utilise industry frameworks and standards to ensure robust riskmanagement practices. Oversee and manage … projects end-to-end in line with the Association for Project Management guidance. Manage projects such as Security Framework Audits and Implementation, Cyber Strategy, Cyber RiskManagement, Data Privacy, Offensive Security, Security Architecture, and Cloud Security & Engineering. Lead the onboarding process for Managed Security Services including Managed Detection & Response, Cyber Threat Intelligence, and Vulnerability Management Services. More ❯
employee at M.C. Dean, you will join forces with more than 5,800 professionals who engineer and deploy automated, secure and resilient power and technology systems; and deliver the management platforms essential for long-term system sustainability. Together, we transform the way complex, large-scale systems are designed, delivered, and sustained-enhancing client outcomes, improving lives, and changing the … and implementation of trusted relations among external systems and architectures. Assess and mitigate system security threats/risks throughout the program life cycle. Contribute to the security planning, assessment, risk analysis, riskmanagement, certification and awareness activities for system and networking operations. Review assessment and accreditation (A&A) documentation, provide feedback on completeness and compliance of its … to: system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification; authentication; and authorization; system integration; riskmanagement; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control More ❯
and implementation of trusted relations among external systems and architectures. Assesses and mitigates system security threats/risks throughout the program life cycle. Contributes to the security planning, assessment, risk analysis, riskmanagement, certification and awareness activities for system and networking operations. Reviews certification and accreditation (C&A) documentation, providing feedback on completeness and compliance of its … to : system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification; authentication; and authorization; system integration; riskmanagement; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control … and security testing. Support security authorization activities in compliance with NSA/CSS Information System Certification and Accreditation Process (NISCAP) and DoD RiskManagement Framework (RMF), the NIST RiskManagement Framework (RMF) process, and prescribed NSA/CSS business processes for security engineering. • Certification that meets Information Assurance Manager (IAM) Tier 2 requirements. • Full understanding of More ❯
The firm's RiskManagement team is responsible for managing market risk, counterparty risk and liquidity risk. The team works closely with traders across discretionary and systematic trading of macro and relative value strategies in fixed income, foreign exchange, credit and digital asset markets. MAIN DUTIES/RESPONSIBILITIES OF THE ROLE: Riskmanagement of … fixed income and foreign exchange macro and relative value trading across market risk, counterparty risk, liquidity risk. Contribute to enhancing risk measurement and portfolio analytics and controls. Work within a collaborative environment both within the Risk team and with other stakeholders. The role is hands on and will involve liaising with Portfolio Managers discussing portfolio and … market risks and solutions to manage and optimise risks within the firm's risk framework. WORK EXPERIENCE/BACKGROUND: Quantitative degree from a Top Tier institution (Maths, Physics, Engineering, Computer Science, Finance or Economics) Between 4 and 7 years of experience in a Quantitative-intensive role: RiskManagement, Quant, Trading, Structuring Experience in data analysis Experience in More ❯
resilient platforms across converged IT and Operational Technology (OT) environments. This multi-year programme is governed by the highest standards of cyber assurance and regulatory scrutiny. As the Security & RiskManagement Lead, you willact as the programme's senior security authority. You will define and own the security vision, risk posture and regulatory compliance strategy, embedding a … delivery scope, inform design decisions, and meet evolving regulatory expectations. Your work will be integral to establishing a compliant, assured, and future-ready cyber operating model. As the Security & RiskManagement Lead, you will: Serve as the executive security owner for the programme, accountable for cyber posture, risk exposure, and regulatory alignment Lead the adoption and enforcement …/IEC 62443 zones and conduits methodology Provide assurance of technical controls across Security Levels SL1 to SL4, validating patterns such as segmentation, RBAC, and incident containment Lead cyber riskmanagement activities including threat modelling and formal risk analysis (Bow-Tie, Attack Trees, Swiss Cheese, HAZOPs) Own the delivery of the Cybersecurity Requirements Specification (CRS) for all More ❯
Insurance clients on a 12-month contract. Inside IR35 Hybrid Responsibilities: Analyze large datasets to identify trends, anomalies, and emerging risks across technology and cyber domains. Support governance and risk forums with timely and accurate reporting on key risk indicators (KRIs), control effectiveness, and remediation progress. Develop and maintain dashboards and reports to visualize technology and cyber risk and control data. Collaborate with risk and control owners to ensure accurate data capture and interpretation of risk metrics. Contribute to the development and enhancement of risk data models and reporting frameworks. Ensure alignment of analytics and reporting outputs with enterprise riskmanagement and control frameworks. Strong knowledge of riskmanagement frameworks … e.g., NIST, ISO 27001, COBIT) and control environments. Deep understanding of IT general controls, cyber security principles, and technology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau, or similar tools). Familiarity with GRC platforms and risk data management practices. Experience in a riskmanagement, IT More ❯
Our client is seeking a highly motivated Market Risk Business Analyst to join their growing RiskManagement team. In this role, you will play a critical part in identifying, measuring, and reporting market risk across trading activities and investment portfolios. You will leverage your strong analytical and programming skills to build and maintain robust risk models and data pipelines, ensuring the accuracy and efficiency of their riskmanagement framework. We are looking for a self-starter who can collaborate with other teams and communicate effectively with stakeholders. Requirements Responsibilities Partner with traders, portfolio managers, and quantitative analysts to understand market risk exposures and develop risk mitigation strategies. Design, develop, and … implement quantitative models to assess Value at Risk (VaR), portfolio sensitivities, and other market risk metrics. Utilize Python programming language and relevant libraries (Pandas, NumPy, SciPy) to manipulate, analyze, and visualize market data. Build and maintain data pipelines for efficient ingestion, transformation, and cleansing of financial data from various sources. Conduct back-testing and stress-testing exercises to More ❯
About the team The Data, IT and Cyber Risk Team is part of the wider riskmanagement function responsible for providing check and challenge to the first line over their risk profile. What you will be doing? As the new Senior Risk Manager - IT & Cyber Risk, you willprovide an IT and Cyber risk second line opinion to the IT and Cyber first line risk champions over related risks (within Riskonnect) to ensure that first line work within their risk appetite. Your responsibilities will include The management of the IT and Cyber Risk Team and its delivery of the annual plan. this includes the line management of the … IT and Cyber Risk Team across the Group and supporting any external resource Ensure that IT and Cyber riskmanagement is aligned to the Group wider riskmanagement framework, industry good practice standards and regulatory expectations, ensuring consistency in application across all 1LOD business and control functions. Support and manage the process to conduct IT More ❯
and requirements across all levels of the business. Key Responsibilities Information Security Strategy and Governance: Develop, implement, and maintain a comprehensive information security strategy aligned with business objectives and risk tolerance. Establish and enforce information security policies, procedures, and standards in accordance with ISO27001, customer requirements, relevant legislation, and application security best practices. Communication: Develop and maintain an organization … Board, other internal sub-Boards, and relevant stakeholders. Compliance and Assurance: Ensure ongoing compliance with ISO27001 certification requirements, including managing audits, reviews, and continual improvement of the Information Security Management System (ISMS). Stay abreast of and ensure adherence to regulations (e.g., GDPR, NIS2, DORA) and other relevant legal and contractual obligations, as well as application security standards. RiskManagement: Lead the information security riskmanagement process, including identification, assessment, treatment, and monitoring of risks, with a particular emphasis on application security risks. Conduct regular risk assessments and vulnerability analyses of systems, applications, and infrastructure. Security Operations: Oversee the management of security technologies and controls, including but not limited to, firewalls, intrusion detection More ❯
and requirements across all levels of the business. Key Responsibilities Information Security Strategy and Governance : Develop, implement, and maintain a comprehensive information security strategy aligned with business objectives and risk tolerance. Establish and enforce information security policies, procedures, and standards in accordance with ISO27001, customer requirements, relevant legislation, and application security best practices. Communication : Develop and maintain an organization … Board, other internal sub-Boards, and relevant stakeholders. Compliance and Assurance : Ensure ongoing compliance with ISO27001 certification requirements, including managing audits, reviews, and continual improvement of the Information Security Management System (ISMS). Stay abreast of and ensure adherence to regulations (e.g., GDPR, NIS2, DORA) and other relevant legal and contractual obligations, as well as application security standards. RiskManagement : Lead the information security riskmanagement process, including identification, assessment, treatment, and monitoring of risks, with a particular emphasis on application security risks. Conduct regular risk assessments and vulnerability analyses of systems, applications, and infrastructure. Security Operations : Oversee the management of security technologies and controls, including but not limited to, firewalls, intrusion detection More ❯
and requirements across all levels of the business. Key Responsibilities Information Security Strategy and Governance : Develop, implement, and maintain a comprehensive information security strategy aligned with business objectives and risk tolerance. Establish and enforce information security policies, procedures, and standards in accordance with ISO27001, customer requirements, relevant legislation, and application security best practices. Communication : Develop and maintain an organization … Board, other internal sub-Boards, and relevant stakeholders. Compliance and Assurance : Ensure ongoing compliance with ISO27001 certification requirements, including managing audits, reviews, and continual improvement of the Information Security Management System (ISMS). Stay abreast of and ensure adherence to regulations (e.g., GDPR, NIS2, DORA) and other relevant legal and contractual obligations, as well as application security standards. RiskManagement : Lead the information security riskmanagement process, including identification, assessment, treatment, and monitoring of risks, with a particular emphasis on application security risks. Conduct regular risk assessments and vulnerability analyses of systems, applications, and infrastructure. Security Operations : Oversee the management of security technologies and controls, including but not limited to, firewalls, intrusion detection More ❯
DLL - Financial Solutions Partner - Part of Rabobank
Integrated Risk Manager - Control Optimisation, Rationalisation Program Lead In an era defined by digital transformation, automation, and artificial intelligence (AI), organisations must modernise their non-financial riskmanagement approaches to stay resilient and competitive. We are looking for a forward-thinking and experienced Risk Manager to deliver our ambitions of leveraging exception-based analytics, automation, and … advanced control optimisation strategies to enhance efficiency, reduce redundancies, and strengthen compliance. This is an exciting opportunity to lead a critical Control Optimisation and Rationalisation initiative-driving innovation, improving riskmanagement effectiveness, and shaping the future of controls in a digital-first world. We are seeking an experienced Risk Manager to lead an ambitious Control Optimisation and … Rationalisation program across our global network. We are seeking somebody to spearhead a global risk transformation initiative, with a sharp focus on cultivating a strong risk culture, optimising controls, integrating AI, and ensuring operational resilience. This role involves overseeing the review, improvement, and consolidation of existing controls, leveraging advanced technology to drive efficiency, reduce manual intervention, and enhance More ❯
Select how often (in days) to receive an alert: Job Code: 10368 Country: GB City: London Skill Category: Internal Audit Description: Job title: Global Portfolio Director: Risk Culture Corporate Title: Executive Director Department: Internal Audit Location: London Company overview Nomura is a global financial services group with an integrated network spanning approximately 30 countries and regions. By connecting markets … East & West, Nomura services the needs of individuals, institutions, corporates and governments through its three business divisions: Wealth Management, Investment Management, and Wholesale (Global Markets and Investment Banking). Founded in 1925, the firm is built on a tradition of disciplined entrepreneurship, serving clients with creative solutions and considered thought leadership. For further information about Nomura, visit Department … any weaknesses identified to the Audit Committees and senior management. Global Internal Audit department has 138 professionals reporting to the Global Head of Internal Audit for Wholesale, comprising Business, Risk and IT audit specialists. Role Description: Lead the Global Risk Culture Audit portfolio, providing independent assurance on the effectiveness of risk culture frameworks and behaviours across the More ❯
UK Capital Markets technology and data capability helps our investment banking clients to deliver complex business and regulatory transformation, enabled by technology. The opportunity EY has a market leading Risk practice which requires a strong data and technology focus to deliver strategic future proof solutions with a control and efficiency lens. This presents an opportunity for Technology Consulting to … helped investment banks improve their compliance with regulations such as the Basel 3 Regulatory Framework, FRTB and BCBS 239, and prepare for upcoming regulation around Liquidity and Interest Rate Risk and supporting our clients in leverage how to deploy AI in their businesses responsibly. As we look to the future prudential regulation will increasingly have a Climate Risk … to help financial services become a low carbon industry. We are already advising clients on sustainability and the enabling role that data and technology play. We are looking for Risk Technology Managers to join our team due to high demand and expected growth. Do you want to engage your mind? Then join EY to gain experiences that will last More ❯
Description/Key Responsibilities: • Provides System Engineering and Technical Assistance (SETA) program support services for PM Tactical Network's portfolio of tactical communications systems. • Provide direct Program Analyst and RiskManagement support for the multiple long-term and new start programs and support additional programs as requested. • Serve as a program office acquisition strategy/life cycle subject … AR 750-10) o Army Operation of the Adaptive Acquisition Framework (AR 70-1) • Support in the areas of program analysis to include day-to-day program analysis and management for multiple programs. • Serve as an acquisition milestone subject matter expert providing guidance to multiple ACAT 1, 2, 3, 4, modification programs and new start programs in areas such … and resolutions. • Participate and assist program leadership with managing efforts of large cross-functional teams to meet program milestone decision reviews. • Assist new start programs with the development of riskmanagement plans, processes, and initial risk identification. • Track, manage and advise programs on the documentation required in the Adaptive Acquisition Framework Document Identification Tool (AAFDID) to support More ❯
IT RISKMANAGEMENT SENIOR ANALYST WHAT IS THE OPPORTUNITY? "The IT Risk Senior Analyst is a subject-area specialist with specialized training, methods and analytic techniques to create recommendations and directions for cyber risk mitigation in a complex technical environment. Focus areas of IT Control assessment by the ITRM Security Senior Analyst includes fit for purpose … review and challenges and process/risk/control (PRC) reviews to evaluate and overall control program effectiveness in mitigating risk. The ITRM Senior Analyst's goal to create actionable information for IT and business leadership, and to provide objective assessment of cyber security risks for auditors, regulators and external parties. This requires routinely performing review and challenge reviews … I controls, authoring detailed reports and gathering metrics ensure stakeholders receive accurate and complete information. The ITRM Senior Anlayst keeps abreast of external cyber security trends, technologies and cyber riskmanagement approaches, and often works with other teams on cyber risk-related initiatives to provide subject-matter recommendations and guidance to achieve a posture within the bank More ❯