security, including catalogs, groups, spaces, pages, and troubleshooting authorization issues. Gathering security requirements from process, development, and functional teams and incorporating them into design, build, and testing. Using access governance tools like SAP Identity Access Governance (IAG) and GRC. Understanding business role concepts in IAG/GRC to design business roles. Embedding segregation of duties requirements andrisk rules into More ❯
Market Harborough, Leicestershire, East Midlands, United Kingdom Hybrid / WFH Options
4C Resourcing
to Incident Response where needed. There will also be opportunities to define and lead other areas of cyber security. What youll be doing Lead and deliver client engagements across governance, riskandcompliance (GRC), including audits, assessments and improvement plans aligned to frameworks such as ISO/IEC 27001, NCSC CAF, and PCI DSS. Lead independent assurance , review and test … Chartered status (or demonstrable readiness to achieve this in the near term). Significant experience in cyber security consulting or assurance, ideally within the public sector. Deep knowledge of GRC frameworks and standards ( e.g. CAF, ISO/IEC 27001, PCI DSS). Strong client-facing skills , able to communicate complex issues clearly to technical and non-technical audiences. Proven track … and influencing decision-making. Excellent written and verbal communication, including the ability to produce polished consultancy reports. Desirable certifications: ISO 27001 Lead Auditor/Implementer, CISSP, CISM, CRISC, CCP (GRC), or equivalent. Driving license and willingness to travel to client sites across the UK as required . Why join 4C Strategies? Work with a growing cyber team in a respected More ❯
SAP GRC Security & Authorisations Consultant About NTT DATA Business Solutions: NTT DATA Business Solutions Group is part of the NTT DATA Corporate Group a top 10 global IT services provider, headquartered in Tokyo, operating in more than 50 countries. We combine a global reach with local intimacy to provide premier professional SAP services from deep industry expertise consulting to applied … business by being alert to the customer opportunities that present themselves. Have strength and depth in delivery and configuration expertise in the following; Core SAP Roles & Authorisations Functionality SAP GRC SAP IAG You will support the implementation and use of Governance, RiskandCompliance (GRC/AIG solutions) in the customer’s IT infrastructure. You will help our clients to More ❯
and implement end-to-end ServiceNow solutions across multiple modules. Deep understanding of the ServiceNow platform architecture, data model, and security framework. Expertise in ServiceNow best practices, including platform governance, performance optimization, and security hardening. Proven experience with large-scale ServiceNow implementations and complex integrations. Strong analytical and problem-solving skills with the ability to articulate complex technical concepts to … both technical and non-technical audiences. Experience with Agile development methodologies. Relevant ServiceNow certifications (e.g., Certified Master Architect, Certified Technical Architect, Certified Application Developer, Certified System Administrator). ServiceNow GRC & SecOps B.E/B.Tech , BCA/MCA ServiceNow Certified Consultant 2- Functional Consultant – ServiceNow IRM and SecOps Solution Certified ServiceNow IRM/SecOps administrator/consultant (this is mandatory) Must … ServiceNow IRM/SecOps implementation. Experience in JavaScript, API, Web Services Working knowledge of Vulnerability Mgmt. process & tools ISO/CISA/CISM/CISSP/CRICS (preferred) ServiceNow GRC & SecOps B.E/B.Tech , BCA/MCA ServiceNow Certified Consultant More ❯
and other relevant frameworks. RiskManagement: Lead the information security riskmanagement program, including the identification, assessment, mitigation, and monitoring of risks across all systems and operations. Policy andGovernance: Support and oversee the creation and enforcement of security policies, standards, and procedures. Incident Response: Develop, implement, and manage the security incident response plan. Leadership: Provide strong leadership and mentorship … to the governance, risk, andcompliance team. Essential Requirements: Extensive security leadership: Proven experience (10+ years) in a senior information security role, with significant experience in a CISO or equivalent position within a software development or health technology environment UK health sector experience: In-depth knowledge and practical experience with UK healthcare security standards and regulations, including demonstrable expertise with … track record in developing, leading, and managing security incident response plans, including experience with major incident handling and communication with regulatory bodies (eg NCSC, ICO, NHS England). Policy & governance: Extensive experience in developing, implementing, and enforcing comprehensive information security policies, standards, and procedures. Regulatory compliance: Solid understanding of UK and EU data protection laws (eg GDPR, Data Protection Act More ❯
BA1, Bath, Bath and North East Somerset, Somerset, United Kingdom
YT Technologies
and other relevant frameworks. RiskManagement: Lead the information security riskmanagement program, including the identification, assessment, mitigation, and monitoring of risks across all systems and operations. Policy andGovernance: Support and oversee the creation and enforcement of security policies, standards, and procedures. Incident Response: Develop, implement, and manage the security incident response plan. Leadership: Provide strong leadership and mentorship … to the governance, risk, andcompliance team. Essential Requirements: Extensive security leadership: Proven experience (10+ years) in a senior information security role, with significant experience in a CISO or equivalent position within a software development or health technology environment UK health sector experience: In-depth knowledge and practical experience with UK healthcare security standards and regulations, including demonstrable expertise with … track record in developing, leading, and managing security incident response plans, including experience with major incident handling and communication with regulatory bodies (eg NCSC, ICO, NHS England). Policy & governance: Extensive experience in developing, implementing, and enforcing comprehensive information security policies, standards, and procedures. Regulatory compliance: Solid understanding of UK and EU data protection laws (eg GDPR, Data Protection Act More ❯
experience: Technical Foundation: At least 3-5 years of IT/security experience in the Defence Sector Demonstrable experience of one or more of the following areas: MoD Security GRC/Assurance Processes: Secure by Design and RMADs/Risk Assessment Cloud security architecture documentation, s ecurity controls mapping and c ompliance checking automation MoD Cyber Operations: SOC tool evaluation … are embedded in our DNA. Read more about our commitment to a fair work environment for all. Atos is a recognized leader in its industry across Environment, Social andGovernance (ESG) criteria. Find out more on our CSR commitment. More ❯
Service Operations are secure-by-design, compliant with IT security policies, and resilient against emerging threats. This is an excellent opportunity for an experienced IT Auditor, Security Auditor, or GRC Analyst to work on high-profile, business-critical technology initiatives within a complex, regulated environment. Key Responsibilities Delivering on the secure-by-design review process , ensuring all technology projects undergo … Skills & Experience Strong understanding of cybersecurity and IT control frameworks (SOX, FFIEC, ISO27001, NIST, Cloud Security Alliance, PCI-DSS). Proven experience as an IT auditor, security auditor, or GRC analyst in a complex environment. Hands-on knowledge of IT security systems (OS, databases, firewalls, SIEM, DLP, etc.). Strong stakeholder engagement skills, with the ability to challenge and influence More ❯
Proven, foundational understanding of compliance regulations including anti-money laundering (AML), financial crimes and illicit financing (KYC), sanctions, and environmental, social andgovernance (ESG). Understanding of governance, riskandcompliance (GRC), business intelligence research, conflict and illicit finance analysis, banking sector riskmanagementandcompliance, or other national security-related matters. Experience uncovering the needs of customers and the … to connecting to senior executives and have experience as a Business Development Manager focusing on expanding new business sales and be regarded as a Subject Matter Expert in the GRC space. To the right person, this will be the perfect kind of challenge. Our mission is compelling, our product is powerful and we're growing at a rate that makes … of experience do you have in one or any of the following: Compliance regulations including anti-money laundering (AML), financial crimes and illicit financing (KYC), sanctions, and environmental, social andgovernance (ESG)? Do you have fluent, working proficiency in the German language? The following questions are entirely optional. To comply with government Equal Employment Opportunity and/or Affirmative Action More ❯
tools, and mentoring junior analysts, while contributing to the continuous improvement of their security posture. This is a hands-on, operationally focused role that blends technical security responsibilities with governance, risk, andcompliance (GRC) elements. As Cyber Security Analyst, you will: Lead cyber incident investigations with SOC and client teams Triage and analyse alerts across email, cloud, and hybrid systems More ❯
Employment Type: Permanent
Salary: £50000 - £60000/annum excellent benefits and bonus
tools, and mentoring junior analysts, while contributing to the continuous improvement of their security posture. This is a hands-on, operationally focused role that blends technical security responsibilities with governance, risk, andcompliance (GRC) elements. As Cyber Security Analyst, you will: Lead cyber incident investigations with SOC and client teams Triage and analyse alerts across email, cloud, and hybrid systems More ❯
City of London, London, United Kingdom Hybrid / WFH Options
ea Change
programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governance, riskmanagement, andcompliance, ensuring resilience and service continuity throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements Proven experience managing the transition More ❯
programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governance, riskmanagement, andcompliance, ensuring resilience and service continuity throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements Proven experience managing the transition More ❯
london, south east england, united kingdom Hybrid / WFH Options
ea Change
programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governance, riskmanagement, andcompliance, ensuring resilience and service continuity throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements Proven experience managing the transition More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
ea Change
programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governance, riskmanagement, andcompliance, ensuring resilience and service continuity throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements Proven experience managing the transition More ❯
slough, south east england, united kingdom Hybrid / WFH Options
ea Change
programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governance, riskmanagement, andcompliance, ensuring resilience and service continuity throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements Proven experience managing the transition More ❯
for the faint-hearted. If you're ready to grow alongside Navro, let's build something amazing together. What You'll Be Doing Day-to-day responsibility for security GRC, help build version 2.0 of Navro's Information Security Management System. Ensure compliance to international standards and regional regulatory requirements. Own security GRC automation tooling (Vanta) and work across the … Trust Centre to easily present and provide security information. Work with Marketing to position excellent posture, certifications, and regulatory compliance as a product differentiator. What We're Looking For GRC Experience - You're the go-to person for security governance, risk, and compliance. With a degree in a computer or security discipline and numerous years' GRC experience under your belt. More ❯
and internal policies across multiple jurisdictions. You will implement compliance programs, monitor adherence, provide risk-based legal advice, and help shape a compliance-focused culture. Key Accountabilities: ComplianceandGovernance Ensure the organisation adheres to corporate governance standards, codes of conduct and relevant laws across all jurisdictions. Monitor regulatory developments and interpret their relevance and impact on the business, providing … not limited to anti-bribery and corruption, competition, whistleblowing, data protection and ethical conduct. Monitor adherence and manage internal reporting mechanisms by liaising with internal Global RiskandCompliance (GRC) function. Global Regulatory Compliance Ensure compliance with international legal and regulatory frameworks (e.g. GDPR, FCPA, local employment laws). Liaise with external counsel where jurisdiction-specific advice is needed with More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Morgan Philips Group
and internal policies across multiple jurisdictions. You will implement compliance programs, monitor adherence, provide risk-based legal advice, and help shape a compliance-focused culture. Key Accountabilities: ComplianceandGovernance Ensure the organisation adheres to corporate governance standards, codes of conduct and relevant laws across all jurisdictions. Monitor regulatory developments and interpret their relevance and impact on the business, providing … not limited to anti-bribery and corruption, competition, whistleblowing, data protection and ethical conduct. Monitor adherence and manage internal reporting mechanisms by liaising with internal Global RiskandCompliance (GRC) function. Global Regulatory Compliance Ensure compliance with international legal and regulatory frameworks (e.g. GDPR, FCPA, local employment laws). Liaise with external counsel where jurisdiction-specific advice is needed with More ❯
london, south east england, united kingdom Hybrid / WFH Options
Morgan Philips Group
and internal policies across multiple jurisdictions. You will implement compliance programs, monitor adherence, provide risk-based legal advice, and help shape a compliance-focused culture. Key Accountabilities: ComplianceandGovernance Ensure the organisation adheres to corporate governance standards, codes of conduct and relevant laws across all jurisdictions. Monitor regulatory developments and interpret their relevance and impact on the business, providing … not limited to anti-bribery and corruption, competition, whistleblowing, data protection and ethical conduct. Monitor adherence and manage internal reporting mechanisms by liaising with internal Global RiskandCompliance (GRC) function. Global Regulatory Compliance Ensure compliance with international legal and regulatory frameworks (e.g. GDPR, FCPA, local employment laws). Liaise with external counsel where jurisdiction-specific advice is needed with More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Morgan Philips Group
and internal policies across multiple jurisdictions. You will implement compliance programs, monitor adherence, provide risk-based legal advice, and help shape a compliance-focused culture. Key Accountabilities: ComplianceandGovernance Ensure the organisation adheres to corporate governance standards, codes of conduct and relevant laws across all jurisdictions. Monitor regulatory developments and interpret their relevance and impact on the business, providing … not limited to anti-bribery and corruption, competition, whistleblowing, data protection and ethical conduct. Monitor adherence and manage internal reporting mechanisms by liaising with internal Global RiskandCompliance (GRC) function. Global Regulatory Compliance Ensure compliance with international legal and regulatory frameworks (e.g. GDPR, FCPA, local employment laws). Liaise with external counsel where jurisdiction-specific advice is needed with More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Morgan Philips Group
and internal policies across multiple jurisdictions. You will implement compliance programs, monitor adherence, provide risk-based legal advice, and help shape a compliance-focused culture. Key Accountabilities: ComplianceandGovernance Ensure the organisation adheres to corporate governance standards, codes of conduct and relevant laws across all jurisdictions. Monitor regulatory developments and interpret their relevance and impact on the business, providing … not limited to anti-bribery and corruption, competition, whistleblowing, data protection and ethical conduct. Monitor adherence and manage internal reporting mechanisms by liaising with internal Global RiskandCompliance (GRC) function. Global Regulatory Compliance Ensure compliance with international legal and regulatory frameworks (e.g. GDPR, FCPA, local employment laws). Liaise with external counsel where jurisdiction-specific advice is needed with More ❯
Cyber Security ComplianceandGovernance Analyst £50-60k Manchester We are looking for a dedicated and enthusiastic Cyber Security ComplianceandGovernance analyst to join our Cyber Security team. You will be responsible for supporting and ensuring compliance with the client's cyber security governance, riskand compliance. The role is key to ensuring that security controls, policies and … that IT services are aligned with business needs and comply with industry and internal standards. Key Accountabilities: The primary duties consist of, but are not limited to the following: Governanceand Policy Management Leading the development, review and implementation of information security policies, standards and procedures. Ensuring policies remain up-to-date with applicable regulations, frameworks and best practices (eg More ❯
frameworks. The focus is business change, integration, testing, cutover, training, adoption and handover to BAU, with clear evidence for PRA and FCA expectations. What you will do • Drive rollout, governanceand reporting • Coordinate integrations with procurement, contract management, GRC, SSO and data platforms • Lead UAT, dry run cutover, go live and hypercare • Deliver training, communications and role based guides • Stand More ❯
frameworks. The focus is business change, integration, testing, cutover, training, adoption and handover to BAU, with clear evidence for PRA and FCA expectations. What you will do • Drive rollout, governanceand reporting • Coordinate integrations with procurement, contract management, GRC, SSO and data platforms • Lead UAT, dry run cutover, go live and hypercare • Deliver training, communications and role based guides • Stand More ❯