for who they are and what they bring to the table, supporting one another as we continue to deliver for our customers. LI-KS1 Create & Maintain an information security management system (ISMS) capable of demonstrating compliance against internal security requirements and external commitments including certification and regulatory requirements. Provide subject matter expertise in the application of established standards including … existing programme of work. Prepare and support internal and/or external compliance audit activities. Manage remediation of any audit (internal & External) non-conformities. Ensure security policies (on a risk-based approach) are produced, signed off by relevant stakeholders, published, and communicated. Also, ensure that policies are managed throughout their lifecycle and updated through yearly or ad-hoc reviews. … in consultation with Technical teams. Lead on providing information to Three UK Customers (B2B) regarding Three UK's security practices. Support proactive and effective oversight of technology and security riskmanagement frameworks, methodologies, processes, assurance, remediation, and reporting activities across the company. Assist in designing, building, and implementing a Technology and Security Risk framework in collaboration with More ❯
Perform cross-program analysis to assist in responding to Investment Portfolio (IP) actions and producing execution reports. Draftacquisition and program documents such as TTOs, Statements of Work (SOWs), Program Management Plans (PMPs), RiskManagement Plans, program schedules, Technical CICA memorandums, and Acquisition Strategies. Prepare presentations to report analysis findings as well as program/portfolio status. The … allocation and tracking of resources; recommend funding adjustments as appropriate (contract staffing, facilities, and budgets). • Assist program managers in developing program documentation (TTOs, Statements of Work (SOWs), Program Management Plans (PMPs), RiskManagement Plans, program schedules, Technical CICA memorandums, and Acquisition Strategies), creating program schedules, tracking program status, evaluating operational and technical alternatives, performing risk assessment and managing integrated product teams. • Provide support to GPMs to assure execution within the cost, schedule, and performance baselines. Utilize program management tools (e.g., Plan-It, MS Excel) to assist GPM with planning, documenting, executing, and reporting of all program details (e.g., spend plans), for both current year (FY) and out-years (FYDP). • Attend contract reviews More ❯
cross-program analysis to assist in responding to Investment Portfolio (IP) actions and producing execution reports. Draft acquisition and program documents such as TTOs, Statements of Work (SOWs), Program Management Plans (PMPs), RiskManagement Plans, program schedules, Technical CICA memorandums, and Acquisition Strategies. Prepare presentations to report analysis findings as well as program/portfolio status. The … allocation and tracking of resources; recommend funding adjustments as appropriate (contract staffing, facilities, and budgets). Assist program managers in developing program documentation (TTOs, Statements of Work (SOWs), Program Management Plans (PMPs), RiskManagement Plans, program schedules, Technical CICA memorandums, and Acquisition Strategies), creating program schedules, tracking program status, evaluating operational and technical alternatives, performing risk assessment and managing integrated product teams. Provide support to GPMs to assure execution within the cost, schedule, and performance baselines. Utilize program management tools (e.g., Plan-It, MS Excel) to assist GPM with planning, documenting, executing, and reporting of all program details (e.g., spend plans), for both current year (FY) and out-years (FYDP). Attend contract reviews More ❯
Clinical Leads are clearly defined or elaborated, and reported to the Senior Digital Clinical Safety Officer and/or Clinical Digital Matron to ensure clinical safety measures, controls or risk mitigation are documented and put in place. Person Specification Experience Essential Experience in using digital tools and systems within a healthcare setting. Experience in implementing or supporting digital projects. …/AHP/Pharmacist/Pharmacy technician. Working as part of a multi-disciplinary team. Awareness and previous involvement in Clinical Digital Safety and the processes involved. Experience with riskmanagement and the reporting of incidents. Working as part of project teams, or leading projects. Desirable Previous experience in a similar level leadership role in digital health. Experience … in change management and service improvement initiatives. Management and leadership experience. Involvement in data analysis and interpretation to inform clinical practice. Qualifications Essential Registered Nurse/AHP/Pharmacist/Pharmacy Technician with current registration. Evidence of continuous professional development in digital health or related fields. Clinical Digital Riskmanagement foundation course (e-learning and face More ❯
and direct the information security program and team to ensure compliance with security policies and applicable regulations. Develop and maintain the system's security documentation, including security plans and riskmanagement assessments. Implement security protocols and oversee responses to security incidents, managing the resolution of vulnerabilities and breaches. Conduct comprehensive risk assessments and audits to evaluate security … posture and recommend enhancements. Lead the RiskManagement Framework (RMF) processes for information systems, ensuring adherence to requirements and documentation standards. Collaborate with other IT teams and departments to integrate security into system development and operations. Provide guidance, training, and mentorship to security team members and staff regarding security practices and compliance requirements. Prepare and present security risk reports to senior management, along with actionable recommendations based on assessment findings. Stay up-to-date with the latest security trends, threats, and regulatory changes to ensure the organization's security posture remains robust. Minimum of 5 years of experience in information security management or related field. Active DOD Secret Clearance or higher. Proven knowledge of federal More ❯
VIRGINIA - URGENT Job Type: Full-time Clearance Level: Top secret/SCI Work Arrangement: Remote Job Location: Arlington VA Salary: 250k - 300k Background Utilize expert knowledge and experience regarding riskmanagement strategies in support of a major DoD program Collaborate between the Cyber Risk assessor/security Control assessor and the program as well as DoD senior … and metrics for body of evidence and authorization conditions Develop and implement security policies, procedures, and guidelines to ensure compliance with applicable laws, regulations, and industry best practices Conduct risk assessments and identify potential vulnerabilities and threats to information systems Develop and implement risk mitigation strategies and controls to minimize the impact of security incidents Collaborate with system … Conduct periodic security audits and assessments to evaluate the effectiveness of security controls and identify areas for improvement Maintain accurate and up-to-date security documentation, including security plans, risk assessments, and incident reports Provide regular reports to the Government customer on the status of information security and any identified risks or vulnerabilities Provide support regarding the DoD's More ❯
that just opened in Scottsdale, AZ. In this role, you will work with a small team to design, build, test, deploy and support enterprise web applications to modernize the management of data and design information developed for our customers. The web applications will allow the product development team to store project data in a relational database, where the data … U.S. citizenship is required. The Web Software Developer we seek will work with a small team to design, build, test, deploy and support enterprise web applications to modernize the management of data and design information developed for our customers. The web applications will allow the product development team to store project data in a relational database, where the data … field. Also requires 5+ years of job-related experience, or a Master's degree plus 3 years of job-related experience. Agile experience preferred. Develop and implement a comprehensive riskmanagement plan for the MUOS program Identify and assess potential risks that could impact project scope, schedule, cost, and quality Collaborate with cross-functional teams to develop opportunities More ❯
to lead the evolution of cyber defence at one of the UK's leading Universities? Your leadership will be instrumental as Man Met embarks on a major security and risk transformation programme-building a resilient, agile, and forward-looking security capability that supports innovation across the University. Manchester Metropolitan University is seeking an experienced and motivated Head of Security … audiences. You'll work closely with colleagues across Information Security, IT and wider university services to enhance our security posture and support the delivery of a major security and risk transformation programme, including a major refresh of framework and policy. It's a unique opportunity to lead a growing team within a supportive and forward-thinking environment, where your … cross-functional collaboration with CSIRT and key stakeholders. Collaborate on the development and continual improvement of enterprise-wide remediation strategies and readiness planning. Provide strategic insight for information security riskmanagement, ensuring effective collaboration to maintain an accurate, prioritised, and actionable university-wide risk register. Set the strategic direction for third-party cybersecurity riskmanagementMore ❯
Coalville, Leicestershire, United Kingdom Hybrid / WFH Options
Hays Technology
other generous benefits This post is subject to DBS clearance. Hays Technology are working in partnership with a large public sector organisation in Coalville to recruit a Technology Audit & Risk Analyst to join their Technology team on a permanent basis. The purpose of the role is to be responsible for ensuring the highest standards of quality and efficiency in … the Technology department. This involves overseeing technology riskmanagement, IT audit management and process improvement. Principal duties and responsibilities: Conduct regular audits to ensure compliance with IT standards and best practices. Contribute towards and report on the performance of IT systems and services. Develop and maintain a technology riskmanagement framework. IT Audit Management. Prepare … audit reports and present findings to the management team. Analyse current IT processes and identify areas for improvement. Work closely with other departments to ensure IT services meet their needs. Provide training and support to staff on quality assurance and riskmanagement practices. In order to apply, you must have the following skills and experience: Bachelor's More ❯
Business Analyst Lead -GRC Location: Manchester, Birmingham and London Job Type: Contract Job Summary: The GRC Lead & Business Analyst is responsible for managing the organization's Governance, Risk, and Compliance (GRC) framework while also performing business analysis to enhance riskmanagement, regulatory compliance, and operational efficiency. This role involves assessing risks, ensuring compliance, conducting audits, analyzing business … GRC-related projects. The GRC Lead Cum BA will work closely with IT, legal, finance, and business units to enforce policies, ensure compliance, and implement best practices for governance, risk, and assurance. Key Responsibilities: 1. Governance, Risk & Compliance (GRC) Management Develop, implement, and maintain GRC policies, frameworks, and procedures aligned with industry standards and regulatory requirements (ISO … NIST, SOC 2, GDPR, HIPAA, PCI DSS). Conduct workshops to gather requirements for risk assessments and security reviews, ensuring risk mitigation strategies are in place. Maintain a risk register and track riskmanagement initiatives. Lead third-party/vendor risk assessments requirement gathering, ensuring supplier security and compliance. Collaborate with leadership to align More ❯
Please visit our careers site to find out more about working at Ki Full details of the job. Vacancy Name Vacancy Name Technology Risk & Controls Manager Employment Type Employment Type Permanent Location Location London Role Details Look at the latest headlines and you will see something Ki insures. Think space shuttles, world tours, wind farms, and even footballers' legs. … to another level? We are seeking a keen systems thinking mind, with an eye for detail, procedures and technical acumen, to help us implement and run a new IT riskmanagement framework. This is a multi-faceted role supporting both a Technology Transformation Programme as well as maintaining oversight over current operational technology and applications. This role will … Nevertheless, we are open to other experiences as we are creating a new diverse and dynamic team to build innovative ways of assessing and managing technology risk. Principal Accountabilities: - Risk Identification: Develop strategies, conduct horizon scanning, and collaborate across teams to identify and assess technology risks, including regulatory changes. - Risk Assessment: Ensure compliance with governance policies, conduct assessments More ❯
Who are we? Smarsh empowers its customers to manage risk and unleash intelligence in their digital communications. Our growing community of over 6500 organizations in regulated industries counts on Smarsh every day to help them spot compliance, legal or reputational risks in 80+ communication channels before those risks become regulatory fines or headlines. Relentless innovation has fueled our journey … Summary Smarsh is committed to embedding security as a business enabler. As a senior member of the GRC team, you will be instrumental in ensuring that our security governance, risk, and compliance efforts are integrated, scalable, and proactive. The GRC Lead plays a cross-functional leadership role, supporting the Senior Manager, GRC, and taking ownership of key programmes that … span our ISMS, controls assurance, riskmanagement, third-party oversight, and regulatory compliance. Youll engage with stakeholders across InfoSec, Legal, Product, Engineering, and Customer teams to operationalise governance and build trust. This is a strategic yet hands-on role, ideal for someone who thrives in driving governance initiatives, facilitating risk discussions, and ensuring compliance readiness while working More ❯
Shenley Church End, Buckinghamshire, United Kingdom
Solus Accident Repair Centres
Overview At Solus, we believe that strong governance and a proactive approach to risk are essential to delivering excellence. As a Risk & Compliance Analyst, you'll play a key role in shaping how we manage risk, uphold compliance, and embed a culture of accountability across the business. This is a fantastic opportunity to grow your career in … a supportive, forward-thinking environment where your voice will be heard. Responsibilities RiskManagement Promote risk awareness and help colleagues integrate risk thinking into everyday activities. Maintain the Risk Register and Risk Universe, ensuring risks are clearly owned, mitigated, and monitored. Facilitate risk evaluation meetings, control assessments, and action planning. Work with Risk & Control Owners to improve internal controls and ensure risks remain within tolerance. Log and manage risk events and issues, escalating and resolving them in a timely manner. Support project and IT change initiatives with risk oversight. Contribute to the annual Risk Survey, Company Risk Assessment, and resilience planning. Compliance & Governance Oversee company policies and manage More ❯
Milton Keynes, Shenley Church End, Buckinghamshire, United Kingdom
Solus Accident Repair Centres
Overview At Solus, we believe that strong governance and a proactive approach to risk are essential to delivering excellence. As a Risk & Compliance Analyst, you'll play a key role in shaping how we manage risk, uphold compliance, and embed a culture of accountability across the business. This is a fantastic opportunity to grow your career in … a supportive, forward-thinking environment where your voice will be heard. Responsibilities RiskManagement Promote risk awareness and help colleagues integrate risk thinking into everyday activities. Maintain the Risk Register and Risk Universe, ensuring risks are clearly owned, mitigated, and monitored. Facilitate risk evaluation meetings, control assessments, and action planning. Work with Risk & Control Owners to improve internal controls and ensure risks remain within tolerance. Log and manage risk events and issues, escalating and resolving them in a timely manner. Support project and IT change initiatives with risk oversight. Contribute to the annual Risk Survey, Company Risk Assessment, and resilience planning. Compliance & Governance Oversee company policies and manage More ❯
protection, and operational risk. What you will do: Lead and support the implementation of key compliance and cybersecurity frameworks (e.g. UK GDPR, ISO 27001, Cyber Essentials), while developing regulatory risk frameworks that track and operationalise emerging obligations. Conduct and coordinate risk assessments, internal reviews, audits, and control testing to ensure compliance with regulations, internal policies, and best practices. … and maintain security governance documentation, including policies, standards, procedures, and awareness content. Prepare the organisation for external audits, regulatory reviews, and due diligence processes, particularly in relation to regulatory risk and operational resilience. Oversee third-party vendor and partner assessments from a compliance and cyber risk perspective. Work cross-functionally with Compliance, Product, Engineering, and Operations to identify … in Onsi; we don't take ourselves too seriously and always win as a team. You will need: A degree in a relevant discipline (e.g. Law, Information Security, Cybersecurity, RiskManagement), or equivalent professional experience. Around 4+ years of experience in compliance, riskmanagement, information security, or cybersecurity governance - ideally within a regulated environment such as More ❯
We are looking for a highly skilled Information Security and Supplier Assurance Consultant to join our Operational RiskManagement (ORM) team at the European Bank for Reconstruction and Development (EBRD). This is a unique opportunity to play a vital role in protecting the EBRD's Information Assets and IT Facilities, supporting the delivery of critical projects, and … shaping our security and risk governance across the Bank; with a focus on providing Information Security consultancy to the business and performing supplier assurance assessments. Your Role and Purpose As an Information Security and Supplier Assurance Consultant, you will support the Head of Information Security in managing Information Security (IS) risks across the Bank. You will be responsible for … Providing technical security consultancy and managing risk assessments, including third-party and cybersecurity risks. Delivering key IS projects and driving supplier and project security assurance activities. Ensuring regulatory compliance and supporting internal/external reviews. Enhancing the Bank's Third Party RiskManagement (TPRM) framework. Key Responsibilities Conduct Information Security and Cybersecurity assessments and technical riskMore ❯
the highest level of system security. • Develop and maintain formal documentation, including NSS-specific SOPs and Concept of Operations (CONOPs), to streamline and enhance the authorization process. • Analyze cyber risk indicators stemming from system threats and vulnerabilities and provide detailed cybersecurity risk recommendations in support of NSS continuous monitoring activities. • Research, develop, and implement policies to improve the … the security authorization process while minimizing operational impacts on critical NSS systems. • Conduct vulnerability scans, create Body of Evidence (BoE) artifacts, and produce Security Assessment Reports (SARs) to document risk levels and recommended mitigations. • Provide in-depth analysis of cyber threat actor behavior and create detailed white papers to inform DHS NSS of potential risks and threat trends. • Actively … participate in security meetings, including engineering review boards and cybersecurity supply chain riskmanagement (C-SCRM) sessions, to inform and support NSS initiatives. • Develop automated assessment tools and dashboards to support continuous monitoring and ongoing authorization processes, leveraging tools like Splunk, Tenable, and Axonius. Basic Qualifications: • Bachelor's Degree in Information Technology, Cybersecurity, or a related technical field More ❯
responsible for supporting the company in all compliance activities and leading its compliance operations for all workstreams within the business. This will involve creating processes for our compliance and riskmanagement framework and ensuring our operational practices meet the requirements of regulators and our core company values. You should have an understanding of the laws surrounding KYC/… Drive improvements in AML/CTF, data protection, consumer duty, and general compliance awareness through the evaluation of needs and delivering a training program, with input from compliance and risk-based monitoring programs. Lead the preparation of audit and examination responses, including monitoring the completion of management commitments/remediation actions. Conduct periodical risk assessments assessing the … of the company's AML & CTF systems and controls, identifying enhancement opportunities, and providing detailed recommendations to the company's governing body/senior management. Sign off on high-risk business relationships and investigations on potential PEP, Sanction, and Adverse Media matches, and maintain necessary records. Develop and oversee internal procedures pertaining to merchant onboarding, monitoring, and suspicious activity More ❯
high performing teams. This role requires a unique blend of technical acumen, leadership skills, and strategic thinking. In this capacity, the Engineering Manager is focused on overseeing the performance management and development of engineers, ensuring adherence to engineering excellence and community practice. They play a strategic role in project planning and execution, aligning engineering resources with the company's … goals. Additionally, the Engineering Manager III is key in recruitment and resource management, maintaining a comprehensive skillset and job inventory, and developing a robust competency framework. Success in this role is defined by the ability to lead a team effectively, fostering a culture of continuous improvement, agility, fungibility and alignment of goals and objectives. Key Responsibilities People Management … the engineering Community of Practice (CoP) to foster knowledge sharing and collaboration. Work with other Engineering Managers to organize and contribute to CoP activities, taking on responsibilities as needed. RiskManagement: Support project teams in identifying and mitigating operational risks in engineering projects, fostering a proactive risk-aware culture within the team. Integrate riskmanagementMore ❯
high performing teams. This role requires a unique blend of technical acumen, leadership skills, and strategic thinking. In this capacity, the Engineering Manager is focused on overseeing the performance management and development of engineers, ensuring adherence to engineering excellence and community practice. They play a strategic role in project planning and execution, aligning engineering resources with the company's … goals. Additionally, the Engineering Manager III is key in recruitment and resource management, maintaining a comprehensive skillset and job inventory, and developing a robust competency framework. Success in this role is defined by the ability to lead a team effectively, fostering a culture of continuous improvement, agility, fungibility and alignment of goals and objectives. Key Responsibilities People Management … the engineering Community of Practice (CoP) to foster knowledge sharing and collaboration. Work with other Engineering Managers to organize and contribute to CoP activities, taking on responsibilities as needed. RiskManagement: Support project teams in identifying and mitigating operational risks in engineering projects, fostering a proactive risk-aware culture within the team. Integrate riskmanagementMore ❯
high performing teams. This role requires a unique blend of technical acumen, leadership skills, and strategic thinking. In this capacity, the Engineering Manager is focused on overseeing the performance management and development of engineers, ensuring adherence to engineering excellence and community practice. They play a strategic role in project planning and execution, aligning engineering resources with the company's … goals. Additionally, the Engineering Manager III is key in recruitment and resource management, maintaining a comprehensive skillset and job inventory, and developing a robust competency framework. Success in this role is defined by the ability to lead a team effectively, fostering a culture of continuous improvement, agility, fungibility and alignment of goals and objectives. Key Responsibilities People Management … the engineering Community of Practice (CoP) to foster knowledge sharing and collaboration. Work with other Engineering Managers to organize and contribute to CoP activities, taking on responsibilities as needed. RiskManagement Support project teams in identifying and mitigating operational risks in engineering projects, fostering a proactive risk-aware culture within the team. Integrate riskmanagementMore ❯
complex issues. Our team, comprised of expert-level professionals, excels at tailoring solutions for our clients' most challenging imperatives in the areas of finance and accounting, operations, technology, and risk assessment. Our mission is to deliver real results and sustainable strategies to ensure the ongoing success of our clients in meeting their objectives. Our core values encourage the discovery … for their businesses. If you are as excited about your future as we are, join our team here at 11th Hour Service. 11th Hour Service is currently seeking a RiskManagement & Internal Controls Consultant to support a Federal agency client engagement based on-site in Bethesda, MD (hybrid). Requirements: Minimum of 6+ years of relevant professional experience. … business-related degrees preferred). Ability to obtain and maintain a U.S. Government-issued security clearance (active SECRET clearance preferred). Desired Skills & Experience: Strong background in federal financial management, including financial reporting, internal controls, audit readiness, riskmanagement, and audit remediation. Exceptional organizational, written, and oral communications, and time management Expertise in supporting DoD finance More ❯
Non-Union Location: Kingston 2025-087 TFT Data Analyst Job Summary: Reporting to the Clinical Director of Programming and Quality, the Data Analyst works collaboratively with the Operations and Management team to support operational and strategic decision-making and planning to maximize client service and meet accountabilities required by funders. The incumbent is responsible for the provision of data … utilization and decision support analysis, monthly and quarterly reporting, management of data quality, administration of risk-management initiatives and EMHware, and support for continuous quality improvement initiatives, contributing to the Agency's ability to achieve identified strategic objectives. Key Responsibilities: Provides Data Utilization and Decision Support Analysis: Analyzes and compiles data from a variety of sources within … meaningful information to support informed, evidence-based, operational, and strategic decisions. Prepares monthly service data reporting for quarterly report submissions to funders. Prepares CAPS service targets with customer clinical management for annual submission to funders. Liaises with the client database system developers to recommend design improvements and resolve data integrity issues, ensuring the system is meeting the needs of More ❯
business through quantitative trading and automation of daily decisions. We handle a wide range of products, including stocks, options, ETFs, and futures, with strategies like market making, automatic quoting, riskmanagement, systematic trading, and algorithmic execution across global venues. We utilize statistical analysis and mathematical models to enhance business performance, collaborating closely with traders and sales on the … and quoting strategies for equities, from cash to derivatives. Apply advanced statistical and quantitative techniques, including neural networks, to build models that support systematic trading strategies and real-time riskmanagement decisions. Develop riskmanagement frameworks and construct optimal portfolios across asset classes using factor models and other techniques. Create model calibration frameworks for advanced statistical … C++, Java, or Python, with experience in object-oriented or functional paradigms. About Goldman Sachs Founded in 1869, Goldman Sachs is a leading global investment banking, securities, and investment management firm headquartered in New York, with offices worldwide. We are committed to fostering diversity and inclusion, offering extensive professional and personal growth opportunities, and providing comprehensive benefits and wellness More ❯
Philadelphia, PA. This position requires five days per week onsite. For immediate consideration email your resume to . - Robbie Kissinger About the Role As a Technical Analyst supporting the RiskManagement and Internal Controls (RMIC) program, you will play a critical role in helping government stakeholders implement and sustain effective internal control frameworks. You'll work closely with … narratives, process maps, SOPs, and job aids. Conduct internal control testing (Test of Design and Test of Effectiveness) and document results. Maintain and update project plans, deliverables trackers, and risk/control matrices. Support the development and monitoring of Corrective Action Plans (CAPs) and closure packages. Assist in preparing responses to audit requests and internal assessments. Contribute to recurring … reports such as Bi-Weekly Activity Reports (BWAR) and monthly progress updates. Minimum Qualifications Bachelor's degree from an accredited institution. 4+ years of experience in financial management, accounting, internal controls, riskmanagement, or auditing (federal, military, or private sector). 1+ year of recent experience (within the last 3 years) supporting federal internal control programs-DoD More ❯