London, England, United Kingdom Hybrid / WFH Options
Bondsmith
threat landscape, ideally in fintech environments. Hands-on expertise with security technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), SIEM, antivirus solutions, encryption mechanisms, and vulnerability assessment tools. Hands-on experience in security tools (e.g., SAST, DAST, OWASP ZAP). Relevant security certifications, such as Security+, IAT II/III level, or equivalent. Strong capability in … riskassessment, vulnerability management, and data informed decision-making. Solid understanding of incident response procedures, including containment, eradication, and recovery from cybersecurity events. Advanced proficiency in AWS, with experience in multi-region and hybrid cloud architectures Strong grasp of networking protocols, including TCP/IP, and core network security principles. Proficiency in scripting and programming (i.e., Python) to More ❯
threat landscape, ideally in fintech environments. Hands-on expertise with security technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), SIEM, antivirus solutions, encryption mechanisms, and vulnerability assessment tools. Hands-on experience in security tools (e.g., SAST, DAST, OWASP ZAP). Relevant security certifications, such as Security+, IAT II/III level, or equivalent. Strong capability in … riskassessment, vulnerability management, and data informed decision-making. Solid understanding of incident response procedures, including containment, eradication, and recovery from cybersecurity events. Advanced proficiency in AWS, with experience in multi-region and hybrid cloud architectures Strong grasp of networking protocols, including TCP/IP, and core network security principles. Proficiency in scripting and programming (i.e., Python) to More ❯
five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Technical Cyber RiskAssessment Manager will be responsible for the following: Develop an understanding of Deloitte's global line of business and its priorities, becoming an advocate for addressing cyber risk. … Demonstrate familiarity with the Three Lines of Defense (3LOD) model. Possess knowledge of risk management practices and the ability to conduct technical risk assessments. Work with the Global Technology Infrastructure team to integrate system cybersecurity assessments into their processes to ensure consistent implementation of security controls. Work with the Cybersecurity Architecture team and apply reference architectures for security … reported threats at peer organizations, and overall cybersecurity threats in the internet ecosystem and you will notify leadership of potential or existing threats and assist in the development of risk mitigating strategies of these items. Monitor security blogs, articles, and reports and remain current on related laws, regulations, and industry standards to keep up to date on the latest More ❯
St. Albans, Hertfordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Technical Cyber RiskAssessment Manager will be responsible for the following: Develop an understanding of Deloitte's global line of business and its priorities, becoming an advocate for addressing cyber risk. … Demonstrate familiarity with the Three Lines of Defense (3LOD) model. Possess knowledge of risk management practices and the ability to conduct technical risk assessments. Work with the Global Technology Infrastructure team to integrate system cybersecurity assessments into their processes to ensure consistent implementation of security controls. Work with the Cybersecurity Architecture team and apply reference architectures for security … reported threats at peer organizations, and overall cybersecurity threats in the internet ecosystem and you will notify leadership of potential or existing threats and assist in the development of risk mitigating strategies of these items. Monitor security blogs, articles, and reports and remain current on related laws, regulations, and industry standards to keep up to date on the latest More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Technical Cyber RiskAssessment Manager will be responsible for the following: Develop an understanding of Deloitte's global line of business and its priorities, becoming an advocate for addressing cyber risk. … Demonstrate familiarity with the Three Lines of Defense (3LOD) model. Possess knowledge of risk management practices and the ability to conduct technical risk assessments. Work with the Global Technology Infrastructure team to integrate system cybersecurity assessments into their processes to ensure consistent implementation of security controls. Work with the Cybersecurity Architecture team and apply reference architectures for security … reported threats at peer organizations, and overall cybersecurity threats in the internet ecosystem and you will notify leadership of potential or existing threats and assist in the development of risk mitigating strategies of these items. Monitor security blogs, articles, and reports and remain current on related laws, regulations, and industry standards to keep up to date on the latest More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Technical Cyber RiskAssessment Manager will be responsible for the following: Develop an understanding of Deloitte's global line of business and its priorities, becoming an advocate for addressing cyber risk. … Demonstrate familiarity with the Three Lines of Defense (3LOD) model. Possess knowledge of risk management practices and the ability to conduct technical risk assessments. Work with the Global Technology Infrastructure team to integrate system cybersecurity assessments into their processes to ensure consistent implementation of security controls. Work with the Cybersecurity Architecture team and apply reference architectures for security … reported threats at peer organizations, and overall cybersecurity threats in the internet ecosystem and you will notify leadership of potential or existing threats and assist in the development of risk mitigating strategies of these items. Monitor security blogs, articles, and reports and remain current on related laws, regulations, and industry standards to keep up to date on the latest More ❯
London, England, United Kingdom Hybrid / WFH Options
MUFG Americas
tools that empower you to own your career. Join MUFG, where being inspired is expected and making a meaningful impact is rewarded. OVERVIEW OF THE DEPARTMENT/SECTION IT Risk, Security & Control department covers cyber security strategy maintenance and tactical planning and operations to provide IT Security protection, governance, risk management and reporting. This includes promoting the global … and Securities. The delivery manager will be responsible for support and execution of the following deliverables as required: charter and roadmap, role matrix, status reports, programme schedules, issues and risk log, communication protocol and escalation plan, scope change assessment and change requests. Also business requirements specification and requirements traceability matrix. Assisting the programme manager by providing programme support … in a wide range of information IT security technologies and embedded security; at the minimum knowledge must cover key cybersecurity domains such as Identity and Access Management, Threat Intelligence, Risk Evaluation, Security Assessment/Testing, Incidence Management and Vendor/Cloud products assessment. Possessing high level of analytical ability where problems are typically unusual and difficult. Ability to More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Sycurio
driving the attainment and maintenance of the ISO27001, PCI-DSS, and SOC2 compliance. They are the subject matter expert on all things regarding security and compliance, owning the information risk management processes. They are the thought leader on all matters within the security and compliance domain such that the company remains secure against the ever-changing security threat and … external auditors to achieve positive outcomes. Expert in information security with strong communication and stakeholder management skills. Experience in managing security incidents and leading incident response. Experience with security assessment tools and vulnerability management. Strong vendor management and third-party riskassessment experience. Skills: Strong understanding of cloud security principles and best practices, particularly in AWS. Solid More ❯
London, England, United Kingdom Hybrid / WFH Options
WSP
although some interaction with clients and third parties may be required. This position requires a senior management professional with relevant experience and a strong working knowledge of IT security, risk management, regulatory compliance, information and public cloud service technology, IT operations management principles, and third-party security management. A little more about your role... Specific areas of responsibility may … implementation and maintenance of its ISO27001 aligned Data and Information Security Management System. Establish and maintain the Information Security Governance framework; including running the Information Security Committees; coordinating IS risk management, executive reporting and participate in other forums where information security input and approval is required based on documented policies and processes. Risk Management: Oversee the identification, reporting … assessment, and mitigation of information security risks. Work closely with cross-functional teams to ensure risk management practices are embedded in business processes and projects. Monitor the effectiveness of risk mitigation measures and drive continuous improvement. Security Awareness and Training: Develop and deliver comprehensive security awareness and training programs to promote a security-conscious culture. Collaborate with More ❯
London, England, United Kingdom Hybrid / WFH Options
Gespreksleider Jacobs
Head of Cyber Governance, Risk and Complience Join to apply for the Head of Cyber Governance, Risk and Complience role at Gespreksleider Jacobs Head of Cyber Governance, Risk and Complience 1 day ago Be among the first 25 applicants Join to apply for the Head of Cyber Governance, Risk and Complience role at Gespreksleider Jacobs Join … of the global economy! The Department for Business and Trade ('DBT') and Inspire People are partnering together to bring you an exciting opportunity for the Head of Cyber Governance, Risk and Compliance playing a pivotal role in shaping the success of the Cyber function and service. Salary between £71,738 to £93,864 (including allowances) plus excellent Civil Service … on location and technical skills as assessed at interview. Flexible, hybrid working from London, Cardiff, Darlington, Belfast, Birmingham, Salford and Edinburgh. About The Role As Head of Cyber Governance, Risk and Compliance (GRC) you will be playing a pivotal role in shaping the success of the Cyber function and service by ensuring that cyber security risks are monitored and More ❯
London, England, United Kingdom Hybrid / WFH Options
Citigroup Inc
Services. The business partners withinstitutional investorstoenhance their portfolio returns through intrinsic value securities lending, liquidity management, and collateral optimization. Citi's key strengths include unsurpassed global branch network, robust risk management, real-time controls, product innovation, dynamic reporting, and market thought leadership. What you’ll do: Lead the RiskAssessment of new and existing business products and … drive changes when needed. Monitor industry trends and articulate Citi's position to Senior Management. This includes providing ongoing updates to Chief Risk Officer's, Product Managers and Sr. Management related to Fraud trends, forecast, performance and opportunities. Identify new tools, vendors and capabilities to mitigate current fraud and anticipated changes/shifts in fraud tactics. Develop strategic vision … of work-streams, customer communication and detection capabilities. The position requires substantial interaction and collaboration with Policy, Operations, and other functional business partners to optimize Fraud needs Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations More ❯
leading provider of operations management consulting services with a purpose of saving lives and creating a sustainable future. dss + enables companies to build organisational and human capabilities, manage risk, improve operations, achieve sustainability goals and operate more responsibly. By leveraging its DuPont heritage, deep industry and management expertise and diverse team, dss + consultants are on the ground … required to make their vision a reality, in a practical actionable way. What will you do? As a Senior Operations Consultant with expertise on Process Hazard Analysis (PHA) and RiskAssessment & Management, you will lead specific workstreams within a wider Process Safety Management (PSM)/Operational Risk Management (ORM) transformation program, aiming at identifying, designing, and implementing … effective solutions within the area of expertise. You will provide subject matter expertise and lead project teams to help clients establishing and implementing robust RiskAssessment and Process Hazard Analysis programs and, in particular, building organizational capabilities to sustain performance. The ideal candidate must have strong expertise and proven experience in PHA and RiskAssessment Programs More ❯
Rochester, England, United Kingdom Hybrid / WFH Options
Locke and McCloud
want to hear from you. Key Responsibilities: Develop and implement security solutions for Microsoft Azure and M365 environments. Ensure compliance with regulatory requirements, including PCI and FCA standards. Conduct risk assessments using established frameworks and methodologies. Configure and manage security-related controls, systems, and applications. Lead and manage compliance and security programs across technical infrastructure and applications. Respond effectively … controls, and compliance programs. Preferred certifications: Microsoft Azure (AZ-500), M365 (MS-500), CISSP, CCSP, or CompTIA Security+. Vendor certifications for firewall, antivirus, and networking solutions. Strong understanding of riskassessment frameworks and methodologies. Technical expertise in security tools and applications. Excellent analytical and problem-solving skills. Proactive, tenacious, and team-oriented approach. Strong interpersonal skills to build More ❯
Tunbridge Wells, England, United Kingdom Hybrid / WFH Options
Locke and McCloud
want to hear from you. Key Responsibilities: Develop and implement security solutions for Microsoft Azure and M365 environments. Ensure compliance with regulatory requirements, including PCI and FCA standards. Conduct risk assessments using established frameworks and methodologies. Configure and manage security-related controls, systems, and applications. Lead and manage compliance and security programs across technical infrastructure and applications. Respond effectively … controls, and compliance programs. Preferred certifications: Microsoft Azure (AZ-500), M365 (MS-500), CISSP, CCSP, or CompTIA Security+. Vendor certifications for firewall, antivirus, and networking solutions. Strong understanding of riskassessment frameworks and methodologies. Technical expertise in security tools and applications. Excellent analytical and problem-solving skills. Proactive, tenacious, and team-oriented approach. Strong interpersonal skills to build More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Gespreksleider Jacobs
department. They lead the security engagement for all projects ensuring that the department's security design standards are adhered to. This challenging role incorporates aspects of security architecture, cyber risk management and cyber security policy. As a Principal Security Architect, you will also provide an 'out-reach' to advise on security requirements and solutions to enable technical teams to … DBT to identify new opportunities for exploiting emerging technologies and support the development of architectures, patterns and approaches to support their safe use in accordance with the department's risk appetites. At all times your goal is to help ensure delivery of systems that meet the desired business outcomes with security decisions and controls being proportionate to the risk appetite. You will build effective partnerships with diverse teams across multiple locations and technologies and effectively communicate security and risk implications across technical and non-technical stakeholders. You will manage the Security Architecture team, covering critical review architecture referencing NCSC (National Cyber Security Centre ) guidelines and to guide and mentor others throughout DBT. Main responsibilities You will: Interact More ❯
Darlington, England, United Kingdom Hybrid / WFH Options
Gespreksleider Jacobs
department. They lead the security engagement for all projects ensuring that the department's security design standards are adhered to. This challenging role incorporates aspects of security architecture, cyber risk management and cyber security policy. As a Principal Security Architect, you will also provide an 'out-reach' to advise on security requirements and solutions to enable technical teams to … DBT to identify new opportunities for exploiting emerging technologies and support the development of architectures, patterns and approaches to support their safe use in accordance with the department's risk appetites. At all times your goal is to help ensure delivery of systems that meet the desired business outcomes with security decisions and controls being proportionate to the risk appetite. You will build effective partnerships with diverse teams across multiple locations and technologies and effectively communicate security and risk implications across technical and non-technical stakeholders. You will manage the Security Architecture team, covering critical review architecture referencing NCSC (National Cyber Security Centre ) guidelines and to guide and mentor others throughout DBT. Main responsibilities You will: Interact More ❯
London, England, United Kingdom Hybrid / WFH Options
Modulr Finance Limited
leadership and direction to the information security team. Stay abreast of industry best practices, emerging threats, and regulatory changes, specifically those relevant to the UK financial sector. Conduct regular risk assessments to identify and evaluate potential security threats, taking into account the specific risks faced by UK financial institutions. Develop and implement risk mitigation strategies to address identified … compliance with relevant industry standards (e.g., PCI DSS, ISO 27001) and UK-specific guidelines. Conduct security awareness training for employees, tailored to the UK financial services context. Third-Party Risk Management: Assess and manage security risks associated with third-party vendors and service providers, ensuring compliance with UK data protection and outsourcing regulations. Ensure vendors comply with security requirements … and managing security posture in cloud environments. Strong analytical and problem-solving abilities. Deep understanding of security technologies and architecture, including cloud security and AWS-specific services. Knowledge of riskassessment methodologies and incident response procedures, tailored to the UK financial services context. Ability to develop and implement security policies and procedures in line with UK regulations. Experience More ❯
Newcastle Upon Tyne, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
This is an exciting opportunity to be part of significant programmes, during which you will ensure that products meet the highest standards, in accordance with customer's requirements and risk appetite. You will be supported in this role as part of a larger team of consultants, engineers and product domain specialists. Your work at Leonardo UK will see you … and detailed system and security designs as they pertain to the cyber domain. Decomposing cyber and security requirements down to the system control level. Conducting cyber and information security riskassessment activities including threat modelling, vulnerability analysis and analysis of mitigations. Scoping and managing security verification & validation activities and remedial action plans. Coordinating with product engineers, system architects More ❯
Yeovil, Somerset, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
of a significant programme, during which you will ensure that the product and associated deliverables are as secure as reasonably practicable, and in accordance with customer's requirements and risk appetite. You will be supported in this role as part of a larger consulting team, engineers and product domain specialists. Your work at Leonardo UK will see you take … and detailed system and security designs as they pertain to the cyber domain. Decomposing cyber and security requirements down to the system control level. Conducting cyber and information security riskassessment activities including threat modelling, vulnerability analysis and analysis of mitigations, including technical understanding. Scoping and managing security verification and validation activities and remedial action plans. Coordinating with More ❯
Fareham, England, United Kingdom Hybrid / WFH Options
Zurich Insurance Company
skills (Data Analytics, IT fundamentals, and GenAI), and Agile methods, and serve as a role model for delivering change. What will you be doing? Input into the overall UK riskassessment and audit planning and, determining the right auditscope, key risks to be addressed and most suitable audit techniques and approaches alongside the Audit Director Keeping the business … Security and new technologies, such as Robotics and Artificial Intelligence. Experience in third-party, outsourcing and project management auditing. Strong understanding and applicability of audit and/or business risk management and control processes. Proven record of working with and influencing executive/senior stakeholders, verbally and through written reports. Demonstrated success in business, functional and people management. Excellent More ❯
London, England, United Kingdom Hybrid / WFH Options
Zurich Insurance Company
skills (Data Analytics, IT fundamentals, and GenAI), and Agile methods, and serve as a role model for delivering change. What will you be doing? Input into the overall UK riskassessment and audit planning and, determining the right auditscope, key risks to be addressed and most suitable audit techniques and approaches alongside the Audit Director Keeping the business … Security and new technologies, such as Robotics and Artificial Intelligence. Experience in third-party, outsourcing and project management auditing. Strong understanding and applicability of audit and/or business risk management and control processes. Proven record of working with and influencing executive/senior stakeholders, verbally and through written reports. Demonstrated success in business, functional and people management. Excellent More ❯
Swindon, Wiltshire, United Kingdom Hybrid / WFH Options
Zurich 56 Company Ltd
skills (Data Analytics, IT fundamentals, and GenAI), and Agile methods, and serve as a role model for delivering change. What will you be doing? Input into the overall UK riskassessment and audit planning and, determining the right auditscope, key risks to be addressed and most suitable audit techniques and approaches alongside the Audit Director Keeping the business … Security and new technologies, such as Robotics and Artificial Intelligence. Experience in third-party, outsourcing and project management auditing. Strong understanding and applicability of audit and/or business risk management and control processes. Proven record of working with and influencing executive/senior stakeholders, verbally and through written reports. Demonstrated success in business, functional and people management. Excellent More ❯
London, England, United Kingdom Hybrid / WFH Options
Visa
Join to apply for the Client Onboarding Risk Consultant role at Visa Join to apply for the Client Onboarding Risk Consultant role at Visa Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. … Join us today and experience Life at Visa. Job Description Within Client Services, the Client Lifecycle Operations Team in Europe is made up of services covering Client Onboarding, Licensing, Risk Lifecycle Management, Card Design and Cobrand. The team provide operational support to clients, entailing specialised knowledge regarding Visa licenses. Our clients are primarily financial institutions and fintechs. Risk Lifecycle Management supports client onboarding activities ensuring that new clients adhere to fundamental risk management measures to safeguard against fraud and mitigate other risks. The Risk Lifecycle Management team also review clients’ activities upon changes to their Visa Licence. The Ecosystem Risk Consultant is part of the Risk Lifecycle Management function. You will be responsible More ❯
in the organization by ensuring high quality, consistency, and adherence to policies and procedures with a focus on the Compliance Function of Guavapay. This position focuses on providing independent assessment to drive continuous improvement initiatives, and to enhance efficiency, effectiveness, and overall performance of Compliance activities. Through data-driven decision-making, the Quality Control analyst will lead efforts to … to ensure efficient and effective testing. Prepare QC and testing Management Information (MI) reports for DMLRO/MLRO to provide insights and recommendations for enhancements. Support management in performing risk-based assessments, issue reporting and management, preparing board reports, and providing compliance oversight and challenges on self-assessment reviews. Conduct self-assessment reviews on internal AML and … reports and presenting findings to senior management. Strong communication skills, both written and verbal, with the ability to effectively collaborate and provide guidance to cross-functional teams. Familiarity with riskassessment methodologies and issue management reporting is a plus. Ability to adapt to changing regulatory requirements and stay up-to-date with industry best practices. Benefits: 25 days More ❯
into customer behaviour and preferences, allowing for personalized product recommendations. Marketing Campaigns : Use AI to target customers with tailored marketing campaigns based on their transaction history and preferences. 5. Risk Management RiskAssessment : AI can analyze market trends and economic indicators to provide early warnings about potential risks. Compliance Monitoring : Automate compliance checks and monitoring to ensure … adherence to regulations and reduce the risk of non-compliance penalties. 6. Operational Efficiency Process Automation : Use robotic process automation (RPA) to handle repetitive tasks such as data entry, account reconciliation, and report generation. Workflow Optimization : AI can optimize workflows by identifying bottlenecks and suggesting improvements. Implementation Strategy Assessment : Evaluate the current state of digital banking operations and More ❯