City Of Bristol, England, United Kingdom Hybrid / WFH Options
KPMG UK
KPMG; a diverse business requires diverse personalities, characters, and perspectives. There really is a place for you here. Why Join KPMG as a Manager - IGH GRCS? KPMG's Governance, Risk and Compliance Services (GRCS) practice within IGH is an area of the firm with tremendous growth potential. GRCS is an integral part of our Enterprise Risk advisory practice. … We provide services relating to internal audit, internal control, corporate governance, riskmanagement and related assurance projects. Clients are based in the public sector and our services deliver added value to clients using modern control assessment, riskmanagement and audit techniques focusing on strategic, management and operational issues as well as financial management and … reporting controls. We also work closely with other consulting teams including our colleagues in Technology Risk and Cyber Risk to ensure our clients receive the best possible advice and assurance. What will you be doing? • Creating annual internal audit plans for clients • Providing internal audit services on both outsourced and co-sourced contractual basis • Managing and directly delivering More ❯
Specialist who'll be responsible for leading the coordination of Economic Crime (EC) governance forums in the first line of defence helping the bank to effectively manage financial crime risk and protect its customers. As part of the team, you'll coordinate and collate a suite of reporting to ensure senior management in Compliance, risk and business … functions receive actionable insights on Economic Crime risk and performance. This involves challenging the leadership team in Economic Crime including Operations Service Delivery Management, Risk Operations and Fraud and Financial Crime Analytics to ensure reporting adds value and accurately presents risks. In addition, you'll use your stakeholder management and communication skills to coordinate first line … of defence EC governance, taking responsibility for the effective operation of forums. What you'll be doing Overseeing the preparation of dashboards and MI on EC riskmanagement and performance for board and senior management level reporting. Managing content sources, data flows and reporting deadlines for all required reporting, ensuring inputs are submitted on a timely basis. More ❯
Emersons Green, Bristol, Avon, England, United Kingdom
Gregory Martin International Limited
or equivalent with a professional qualification (e.g. CCEA, CPCostE, CEng) Experience working in the defence sector/military. Good knowledge of statistics in support of parametric modelling, sampling and risk analysis. Knowledge of statistical software packages such as 'R’. Using logical and analytical thinking to solve complex problems for the client. Strong Microsoft Excel skills to support analysis … of data. Cost Estimating RiskManagement, Risk Analysis, Earned Value Management (EVM) Experience in analysing project data (cost/risk/schedule). Working in a client’s team to influence strategic decision makers whilst delivering practical solutions. Be articulate with good presentation and written communication skills. Be dependable, committed and have a genuine enthusiasm … to contribute to the growth of a successful business. Understanding the military environment and MOD management structures. Knowledge of MOD approvals, the MOD acquisition cycle and Defence lines of Development Experience of Identifying, bidding and winning future work Candidates from a technical consultancy background working within the MOD sector. Ability to travel to client sites across the UK as More ❯
Bristol, Kendleshire, Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
responsible for designing, implementing, and overseeing security infrastructure to protect products and systems from security threats. This role ensures security controls are integrated throughout the software development lifecycle, performs risk assessments, and collaborates with stakeholders to mitigate vulnerabilities. The Security Architect will also contribute to security compliance and best practices, ensuring products meet regulatory and industry standards. Key Responsibilities … Identify security requirements and integrate controls into product development. Conduct risk assessments, threat modeling, and vulnerability analysis. Develop and implement riskmanagement strategies using security frameworks. Collaborate with development teams to ensure security best practices and secure-by-design principles. Identify and mitigate security risks in solution architectures. Create security documentation (e.g., RMADS, Security Assurance Documents). … Provide security guidance and training to teams across the organization. Key Skills & Experience: Strong knowledge of security frameworks (ISO 27001, NIST 800-30/53, OWASP) . Experience with riskmanagement methodologies and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge More ❯
Business Unit: Group Risk, Independent Model Validation Salary Range: £39,200 Do not pass up this chance, apply quickly if your experience and skills match what is in the following description. - circa £49,000 per annum DOE benefits Location : UK Remote – work from anywhere within the UK. Contract Type: Permanent and 12 month fixed term contract opportunities available Our … Team Ensuring we have robust Model RiskManagement frameworks in place is essential for us to manage risk arising from using models for our decision making while complying with complex regulations and increasing regulatory expectations. Also, the advent of new technologies (e.g. AI) and emerging sources of financial risk (e.g. climate change) drive innovation in the … you to have Experience with model development and/or model validation, ideally related to at least one of the following areas: IRB, Scorecards, IFRS 9, Stress Testing, Climate Risk, Fraud, Financial Crime, Econometrics. Highly analytical with a numerate degree or equivalent technical experience. Advanced knowledge of at least one programming language, e.g., Python/R/SQL/ More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
QinetiQ Limited
with cutting-edge technology in partnership with some of the most brilliant minds. The Role: As a Principal Cyber Security Consultant you will join our Information Assurance and Cyber Risk team that provides expert risk assessments, analysis and advice to clients within the Defence Sector. Day-to-day, you'll be a key stakeholder in the Security RiskManagement process, working closely with our clients to identify and respond to cyber threats and security risks. Your responsibilities will include: Leading cyber security consultancy with key customers at a senior level providing subject matter expertise, advice and guidance on security matters Implementing Secure by Design for systems across live, test and training environments Monitoring and reporting on … system security requirements and vulnerabilities, escalating unresolved vulnerabilities when appropriate Managing the effective coordination of all security-related activities, including but not limited to, queries, incident management, document reviews and testing Modelling Cyber security risks using established and novel frameworks Essential experience of the Principal Cyber Security Consultant: In-depth knowledge of MoD Security policy In-depth knowledge of More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Reed Technology
a leading, nationwide organisation delivering high-impact cyber advisory services across critical infrastructure and the built environment. These roles are ideal for experienced cyber professionals who are passionate about riskmanagement, resilience, and embedding security into complex, real-world systems. You will work closely with internal teams and external clients to identify and manage cyber risks, applying industry … to embed security into the full project lifecycle. Engage with clients across sectors such as energy, water, transport, and smart infrastructure. Share knowledge and support internal awareness of cyber risk across the wider business. Required Skills & Qualifications: Proven experience in cyber riskmanagement and advisory, ideally within the built environment or critical infrastructure . Strong understanding of … cyber-physical systems , OT environments , and connected infrastructure . Experience applying assurance frameworks and technical standards (e.g. NIST, ISO27001, CAF). Background in governance, risk, and compliance (GRC) functions. Excellent communication and stakeholder engagement skills. Agile, analytical, and solutions-focused mindset. Experience in sectors such as energy, water, transport, or smart cities is highly desirable. Relevant certifications (e.g. CISSP More ❯
be responsible for Identify security requirements and ensure the integration of security controls during the product development lifecycle Some of what you will be involved in: Develop and implement riskmanagement strategies Perform security threat modelling and risk assessments applying security controls to mitigate any threats identified Collaborate with the development teams to ensure the adoption of … of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST 800-30, NIST 800-53 or OWASP Working with riskmanagement frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST 800-30, NIST 800-53) Please reach out to Lewis Dunn @ ARM if you are … is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically More ❯
be responsible for Identify security requirements and ensure the integration of security controls during the product development lifecycle Some of what you will be involved in: Develop and implement riskmanagement strategies Perform security threat modelling and risk assessments applying security controls to mitigate any threats identified Collaborate with the development teams to ensure the adoption of … of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST 800-30, NIST 800-53 or OWASP Working with riskmanagement frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST 800-30, NIST 800-53) Please reach out to Lewis if you are interested or … is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Rolls-Royce plc
implementation, documentation, and maintenance of policies, procedures, associated guidelines, tools and training. Contribute to the security life cycle activities (concept through release) including regulatory certification/qualification (ie - The RiskManagement Framework, ED-202A/DO-326A, Secure By Design, IEC 62443, etc) Collaborate with government, customers, suppliers, and industry experts to meet system and program requirements. Provide … develop, implement, and secure such cyber-physical systems. Experience or interest in cybersecurity and cyber threats (ie - designing secure products, systems, and applications; intrusion detection; digital forensics; system recovery; risk assessment tools and methods; security solutions, policies, standards, and procedures, etc.). Knowledge and/or experience in applying Product Security policies and standards to the engineering of cyber … physical systems such as NIST SP 800-160, DO-326, UK Secure By Design, IEC 62443, the RiskManagement Framework (RMF), and DoDI 5000.83,. Excellent communications skills: able to influence without authority and describe complex ideas simply and succinctly to non-technical people. What we offer We offer excellent development opportunities, a competitive salary, and exceptional benefits. More ❯
to ensure alignment with standard process frameworks and operational controls Develop account-level client and Diligenta stakeholder relationships Attend internal and client Change Governance Analyse causes of incidents and risk events to understand systemic failings in the process frameworks, work collaboratively with teams to enhance controls so that similar failings are prevented in future, ensuring good customer outcomes Provide … key learning reports for internal and joint governance Evaluate lessons learned with respect to wider impact and feed these into the Enterprise Lessons Learned process Complete Top-Down risk reporting Provide input to Transformation risk assessments prior to Go-Live (Enterprise Risk-led) Provide training and support on process frameworks to all impacted roles Assess controls effectiveness … working closely with Change L1 risk) Provide assurance of Transformation project approach Ensure that Consumer Duty rules are understood and Embedded in standard process Preparation of reports for internal and client Change Governance Control and maintain Transformation & Change process and control frameworks, incorporating best practice and lessons learned Define and maintain Assurance & Governance processes and controls that support the More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
The Boeing Company
and security challenges. An exciting opportunity has arisen for a Lead Information Security Adviser to join Boeing Defence UK in the support of the Defence Equipment Engineering and Asset Management System (DEEAMS) programme. Due to continued business growth there is an opportunity to join a multi-skilled security team that delivers all aspects of protective security to Boeing Defence … UK (BDUK), including information security and assurance, personnel security, business continuity and counter threat support and risk advice. The successful candidate would be a part of a supportive team of around 26, with access to varied work and opportunities to progress their career alongside the growth of the business. At Boeing we're committed to rewarding excellence and fostering … liaise with the customer and other agencies as required and deliver other programme contractual deliverables as required. The post holder will also have experience of information security, defence security management and defence cyber protection partnership processes. Post initial operating capability the role will be integral to maintaining the continued authority to operate by maintaining the Information Security ManagementMore ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
The Boeing Company
defence and security challenges. An exciting opportunity has arisen for an Information Security Adviser to join Boeing Defence UK in the support of the Defence Equipment Engineering and Asset Management System (DEEAMS) programme. Due to continued business growth there is an opportunity to join a multi-skilled security team that delivers all aspects of protective security to Boeing Defence … UK (BDUK), including information security and assurance, personnel security, business continuity and counter threat support and risk advice. The successful candidate would be a part of a supportive team of around 26, with access to varied work and opportunities to progress their career alongside the growth of the business. At Boeing we're committed to rewarding excellence and fostering … liaise with the customer and other agencies as required and deliver other programme contractual deliverables as required. The post holder will also have experience of information security, defence security management and defence cyber protection partnership processes. Post initial operating capability the role will be supportive in maintaining the continued authority to operate by maintaining the Information Security ManagementMore ❯
Strategy, Programme, Digital, Programme Leadership and Human Centred Transformation to better anticipate, shape and manage change in Major Programmes. It empowers project leaders to effectively anticipate and manage change, risk and uncertainty across a programme's lifecycle, shaping its success. Our practice comprises a blend of those who have worked previously in industry (in both technical and non-technical … Financial Services practice means that we are looking to grow the team further by recruiting individuals with experience from across Retail and Commercial Banking, Building Societies, Wealth and Asset Management, Capital Markets, Insurance and Reinsurance. Your role: Take the lead in partnering with clients to solve complex issues, through leading teams to design, shape and deliver strategically significant projects … shape and manage delivery through the cycle Programme set-up; delivery/operating model design, commercial model structure, definition and mapping of programme outcomes Programme delivery; project and programme management, programme controls/assurance, riskmanagement, and operational readiness Programme recovery; executive level engagement, recovery planning, and experience reshaping programmes Commercial and contract management, and strong More ❯
Security Tools Proficiency Hands-on experience with Palo Alto firewalls, IDS/IPS, and endpoint protection. Network Security Knowledge Deep understanding of VPNs, network protocols, and security architecture. Incident Management Proven ability to detect, analyse, and resolve security threats and malware. Vulnerability Management Experience in identifying and mitigating system vulnerabilities. Automation Skills Proficiency in security automation using scripting … tools like Python or PowerShell. Frameworks & Compliance Familiarity with ISO 27001, NIST 800-53, Cyber Essentials, and GDPR. RiskManagement Strong grasp of risk assessment methodologies and security control frameworks. Communication Able to communicate technical concepts clearly to both technical and non-technical stakeholders. Project Management Experience managing security projects and working with cross-functional teams. More ❯
Security Tools Proficiency - Hands-on experience with Palo Alto firewalls, IDS/IPS, and endpoint protection. Network Security Knowledge - Deep understanding of VPNs, network protocols, and security architecture. Incident Management - Proven ability to detect, analyse, and resolve security threats and malware. Vulnerability Management - Experience in identifying and mitigating system vulnerabilities. Automation Skills - Proficiency in security automation using scripting … tools like Python or PowerShell. Frameworks & Compliance - Familiarity with ISO 27001, NIST 800-53, Cyber Essentials, and GDPR. RiskManagement - Strong grasp of risk assessment methodologies and security control frameworks. Communication - Able to communicate technical concepts clearly to both technical and non-technical stakeholders. Project Management - Experience managing security projects and working with cross-functional teams. More ❯
Security Tools Proficiency – Hands-on experience with Palo Alto firewalls, IDS/IPS, and endpoint protection. Network Security Knowledge – Deep understanding of VPNs, network protocols, and security architecture. Incident Management – Proven ability to detect, analyse, and resolve security threats and malware. Vulnerability Management – Experience in identifying and mitigating system vulnerabilities. Automation Skills – Proficiency in security automation using scripting … tools like Python or PowerShell. Frameworks & Compliance – Familiarity with ISO 27001, NIST 800-53, Cyber Essentials, and GDPR. RiskManagement – Strong grasp of risk assessment methodologies and security control frameworks. Communication – Able to communicate technical concepts clearly to both technical and non-technical stakeholders. Project Management – Experience managing security projects and working with cross-functional teams. More ❯
Employment Type: Permanent
Salary: £60000 - £65000/annum + 10% Bonus and Excellent Benefits
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Connect to your opportunity Lead the research and development of Deloitte Global cybersecurity standards, detailed security baselines and their supporting documents, to meet Deloitte's business objectives and cybersecurity risk appetite Collaborate with subject matter experts and leadership to determine the impact of cybersecurity standards and help resolve deployment challenges and risks Interact with relevant stakeholders to apply consistent … or other technology-related field, or equivalent experience Proven combined experience in the information security/cybersecurity domain, with a focus on policies and standards, or cybersecurity governance and riskmanagement Strong ability to clearly communicate complex cybersecurity statements to technical and non-technical audiences at various hierarchical levels Deep knowledge of common information security management frameworks … and standards, such as ISO/IEC 27001/27002, NIST 800-53, and the NIST Cybersecurity Framework Soft skills: collaboration, teamwork, persuasion, attention to detail, time management, prioritization, resourcefulness Advanced proficiency with MS Office products, primarily MS Word, Excel, PowerPoint Excellent written and verbal communication skills Preferred Qualifications: Professional certifications, such as Certified Information Systems Security Professional (CISSP More ❯
assignment, however some requirements that are central to all the roles below: Eligibility to get SC Cleared (ideally Active for a quicker start) SRM systems integration experience Supplier Relationship Management & Supplier RiskManagement Call me, Alex Manea, at NonStop Recruitment now for a confidential conversation. Contact me on a.manea@nonstopconsulting .com or +, please send your CV More ❯
Bristol, Avon, England, United Kingdom Hybrid / WFH Options
Hays Specialist Recruitment Limited
to resolve blockers, implement process improvement and manage a small team of two Procurement Business Partners. Your responsibilities will include: * Lead strategic procurement delivery across IT, Hard & Soft Facilities Management, and Customer Communications categories, managing a spend portfolio of approximately £163 million.* Design and implement category strategies that align with business objectives and deliver measurable value.* Build strong relationships … efficiency and compliance.* Manage and develop a team of two Procurement Business Partners, providing leadership, coaching, and support.* Oversee end-to-end procurement activities, including sourcing, contract negotiation, supplier management, and performance tracking when needed.* Ensure procurement practices comply with public sector regulations (old UCR15 frameworks and PA23)* Monitor market trends and supplier innovations to inform strategic sourcing decisions … and maintain competitive advantage. What you'll need to succeed: * Extensive experience in IT procurement is essential, with Facilities Management category experience being highly desirable* Proven line management experience, with the ability to lead, coach, and develop high-performing teams.* Demonstrated success in managing procurement portfolios of a similar scale (circa £150 million).* Strong understanding of public More ❯
Emersons Green, Bristol, Avon, England, United Kingdom
it stars
driven by high standards and has a proven record in delivering major projects on time, utilising leadership skills to show understanding and capability of resolving complex issues, proactively managing risk and having excellent communication skills. Project Planning & Execution: Define project scope, goals, and deliverables in collaboration with senior management and stakeholders. Team Leadership: Lead cross-functional project teams … facilitating communication and collaboration across all team members including technical engineers, account directors and service teams to deliver projects on time and within scope. Client Management: Serve as the primary point of contact for customers throughout the project lifecycle. Build and maintain strong relationships with key stakeholders, ensuring clear communication and satisfaction. RiskManagement: Identify potential risks … and develop mitigation strategies to minimise impact Proactively address issues as they arise to keep projects on track. Process Improvement: Contribute to the ongoing development and improvement of project management processes, tools, and methodologies within the department and wider business. Knowledge, skills, and experience required for the role (Essential) • Minimum of 2 years’ project management experience • Experience of More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Risktec Solutions Ltd
Principal/Senior Nuclear Safety Engineer Location: Bristol, London or Great Yarmouth Type: Permanent, Full-Time Working Environment: Flexible Background Risktec Solutions Ltd is an established, independent engineering and riskmanagement consultancy. Our mission is to help our clients, and hence society, meet their evolving energy and infrastructure needs in a safe, sustainable, and ethical way. Our people … to plant, including: Undertaking plant obsolescence assessments. Authoring specifications for new equipment. Reviewing design proposals and producing design substantiation reports. Authoring testing and commissioning strategies and functional test procedures. Management of projects, project teams and interfacing with clients. Bid proposal management and other business development activities. This role offers the opportunity to support the development of wider company … development: Access to certified CPD courses and a university postgraduate education programme, delivered in partnership with Liverpool John Moores University, including the opportunity to enrol on the MSc in Risk and Safety Management. Support to individuals working towards Chartership including company mentor scheme and institution fees reimbursed. Additional Information Due to the nature of the work, the candidates must More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Core 3 Ltd
is a pivotal role leading finance across the UK business. As a strategic partner to the executive team, you'll be responsible for financial leadership, insight-driven reporting, commercial risk management. Own the monthly management accounts process, providing timely and insightful reporting. Lead budgeting, forecasting, and cost challenge initiatives across the business. Manage statutory reporting, annual audit, and … compliance with IFRS and group standards. Oversee treasury, FX exposure, and multi-currency cash flow. Drive margin protection and riskmanagement across projects ranging from £500k-£5m. Deliver accurate, visual dashboards and business KPIs to influence decision-making. Lead and evolve the IT function to ensure system reliability, data integrity, and alignment with global infrastructure. Optimise the use More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
insight and workforce analysis and understanding. Lead complex, large-scale Technology & Transformation projects for top Financial Services institutions. Help clients adapt to the changing landscape of digital banking, new risk models, and innovative distribution channels. As an Associate Director, you will: Lead complex, large-scale transformation projects for leading Financial Services organisations, focusing on organisational design, transformation and the … roles, and organisations for functions within Financial Services - This could include experience with Digital Transformation initiatives, Mergers and Acquisitions, or new operating models in areas such as Banking, Asset Management, or Insurance Demonstrate a strong understanding and experience of applying emerging technology context to organisation transformation such as the growing capability of AI and GenAI Acute awareness of riskmanagement and managing risks associated with people, processes, systems, change, and commercials. Strong analytical, problem-solving, and communication skills. Passion for innovation and driving change in a dynamic environment. Innovative mindset and keen interest in the newest thinking around transformation, the future of work, and technology disruptors. Ability to explore options in a structured way, deploying techniques such More ❯
Overview Expleo is a trusted partner for end-to-end, integrated engineering, quality services, and management consulting for digital transformation. We help businesses harness unrelenting technological change to deliver innovations that provide a competitive advantage and improve everyday life worldwide.As part of the Expleo Digital and Emerging Technology (DET) team, you will report to the Head of Cybersecurity and … certification artefact production aligned to EASA and UK CAA expectations. Lead the development and review of cybersecurity documentation, including the PSecAC (Airworthiness Security Process Plan), PASRA (Preliminary Aircraft Security Risk Assessment), ASAM (Aircraft Security Architecture Model), and Security Verification Methods. Provide input into the AWSP frameworks, including the tailoring of compliance checklists, activity outcomes, and document templates. Ensure traceability … between security risk assessments, controls, and compliance objectives across the aircraft systems and software architecture. Coordinate the development of cybersecurity methods and processes, contributing to their alignment with recognised standards. Engage with DAG's internal stakeholders, including engineering, safety, and systems integration teams, to embed cybersecurity into the design and certification lifecycle. Act as the primary technical interface for More ❯