The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations IT & Ops RiskManagement Programme. The individual will act as first line of defense providing RCG risk assessments and other riskmanagement activities including risk identification, profiling … assessment, response, evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the riskmanagement activities in alignment with the Risk and Controls Governance framework. This position requires the applicant to have an intermediate or expert level of understanding of … IT & Operational risks and the execution of first line IT riskmanagement processes and governance within a large institution. The applicant must also have good communication and management skills, and strong knowledge of industry best practices. Key Responsibilities Performs a combination of the following duties according to More ❯
london, south east england, United Kingdom Hybrid / WFH Options
KPMG UK
diverse personalities, characters, and perspectives. There really is a place for you here. Why Join KPMG as a Manager - IGH GRCS? KPMG's Governance, Risk and Compliance Services (GRCS) practice within IGH is an area of the firm with tremendous growth potential. GRCS is an integral part of our … Enterprise Risk advisory practice. We provide services relating to internal audit, internal control, corporate governance, riskmanagement and related assurance projects. Clients are based in the public sector and our services deliver added value to clients using modern control assessment, riskmanagement and audit techniques … focusing on strategic, management and operational issues as well as financial management and reporting controls. We also work closely with other consulting teams including our colleagues in Technology Risk and Cyber Risk to ensure our clients receive the best possible advice and assurance. What will you More ❯
bristol, south west england, United Kingdom Hybrid / WFH Options
KPMG UK
diverse personalities, characters, and perspectives. There really is a place for you here. Why Join KPMG as a Manager - IGH GRCS? KPMG's Governance, Risk and Compliance Services (GRCS) practice within IGH is an area of the firm with tremendous growth potential. GRCS is an integral part of our … Enterprise Risk advisory practice. We provide services relating to internal audit, internal control, corporate governance, riskmanagement and related assurance projects. Clients are based in the public sector and our services deliver added value to clients using modern control assessment, riskmanagement and audit techniques … focusing on strategic, management and operational issues as well as financial management and reporting controls. We also work closely with other consulting teams including our colleagues in Technology Risk and Cyber Risk to ensure our clients receive the best possible advice and assurance. What will you More ❯
perspectives, turn inputs into actions, and uphold trust through integrity. Skills and Competencies This role will report to the Senior Vice President, Third Party RiskManagement, Moody's Ratings (MR) and will be responsible for managing and overseeing the relationships between Moody's Ratings and Moody's Shared … Services (MSS) regarding Third-Party RiskManagement (TPRM). The AVP - Supplier Relationship Management core responsibilities will be: Manage and own relationships, and the associated work orders, with internal Information, Communication and Technology (ICT) service providers (for example: Technology Services Group and Cyber Security Group) on behalf …/client of the internal ICT service providers and the first point of contact for any future proposed service changes Education Undergraduate degree, preferably Risk, Legal or Business Management Graduate degree and/or relevant professional riskmanagement qualification a plus 5+ years of business experience More ❯
Technology Risk Analyst - VP** (Contract) Duration: 4 - 6 Months (Possibility for extension) Location: London/Hybrid (2 - 3 days on site) Rate: A highly competitive Umbrella Day Rate is available for suitable candidates Position Overview We are seeking a Vice President for our Operational RiskManagement department … specialising in Information Security and IT Risk. This pivotal role will oversee the implementation of robust riskmanagement frameworks and support our EMEA entities in line with service level agreements. As a key escalation point for senior riskmanagement, you will ensure our strategies align with … industry regulations and best practises. Key Responsibilities: Oversee the development and implementation of Information Security/Cyber and IT Riskmanagement frameworks across the organisation. Support EMEA branches in maintaining compliance with relevant service level agreements. Act as an escalation point for senior riskmanagement, facilitating More ❯
personalities, characters, and perspectives. There really is a place for you here. Why Join KPMG as a Assistant Manager - IGH GRCS? KPMG's Governance, Risk and Compliance Services (GRCS) practice within IGH is an area of the firm with tremendous growth potential. GRCS is an integral part of our … Enterprise Risk advisory practice. We provide services relating to internal audit, internal control, corporate governance, riskmanagement and related assurance projects. Clients are based in the public sector and our services deliver added value to clients using modern control assessment, riskmanagement and audit techniques … focusing on strategic, management and operational issues as well as financial management and reporting controls. We also work closely with other consulting teams including our colleagues in Technology Risk and Cyber Risk to ensure our clients receive the best possible advice and assurance. What will you More ❯
personalities, characters, and perspectives. There really is a place for you here. Why Join KPMG as a Assistant Manager - IGH GRCS? KPMG's Governance, Risk and Compliance Services (GRCS) practice within IGH is an area of the firm with tremendous growth potential. GRCS is an integral part of our … Enterprise Risk advisory practice. We provide services relating to internal audit, internal control, corporate governance, riskmanagement and related assurance projects. Clients are based in the public sector and our services deliver added value to clients using modern control assessment, riskmanagement and audit techniques … focusing on strategic, management and operational issues as well as financial management and reporting controls. We also work closely with other consulting teams including our colleagues in Technology Risk and Cyber Risk to ensure our clients receive the best possible advice and assurance. What will you More ❯
london, south east england, united kingdom Hybrid / WFH Options
KPMG UK
personalities, characters, and perspectives. There really is a place for you here. Why Join KPMG as a Assistant Manager - IGH GRCS? KPMG's Governance, Risk and Compliance Services (GRCS) practice within IGH is an area of the firm with tremendous growth potential. GRCS is an integral part of our … Enterprise Risk advisory practice. We provide services relating to internal audit, internal control, corporate governance, riskmanagement and related assurance projects. Clients are based in the public sector and our services deliver added value to clients using modern control assessment, riskmanagement and audit techniques … focusing on strategic, management and operational issues as well as financial management and reporting controls. We also work closely with other consulting teams including our colleagues in Technology Risk and Cyber Risk to ensure our clients receive the best possible advice and assurance. What will you More ❯
IT & Operations Risk Manager Our Financial Services Client is looking for an IT Risk Manager who’s role serves as a best practice/quality contributor supporting the organisations’ IT & Ops RiskManagement Programme. You will act as first line of defense providing risk assessments … and other riskmanagement activities including risk identification, profiling, assessment, response, evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the riskmanagement activities in alignment with the Risk and Controls Governance framework. Key Responsibilities Align … with Groups target state program based on the planned roadmap including governance, riskmanagement methodologies, technology enablement and automation, metrics, and reporting. Collaborate with the three lines of defense and other risk functions on behalf IT & Operations to support, enable and align the Risk and Controls More ❯
over a third of our economy - yet have been largely neglected both by traditional high street banks and modern fintech providers. Department Description The Risk department at Allica Bank serves as a key component of the Second Line of Defence, dedicated to ensuring robust management of credit risk across the organisation. The Risk team plays a pivotal role in providing challenge and oversight on the credit risk components of the bank's IFRS 9 model, maintaining the integrity and precision of the bank's riskmanagement framework. Our work is essential to supporting … Allica's continued growth while maintaining a strong and resilient riskmanagement culture. Role Description The Credit Risk Oversight Manager is expected to support the provision of Second Line oversight and challenge credit risk management. The role will be expected to ensure that credit riskMore ❯
As part of the Risk Team, you will be working with the Operational Risk Team as they define, assess, and manage operational risks and incidents and business continuity for Convera. This role will be responsible for ensuring that company practices are in line with Digital Operational Resilience Act … DORA) requirements and all functions understand their ICT risk profile and manage risk within the risk appetite of Convera. You will be responsible for: Develop, implement, and maintain an ICT riskmanagement framework to identify, analyze, and mitigate potential ICT risks. Maintain the Entity/… County/Region/Global level risk registers and produce risk reporting as appropriate. Support the business in ICT risk identification, assessment, treatment, and monitoring. Provide practical interpretation, application, and mitigation of risk to resolve issues raised across the organization. Deliver strategic projects to enhance the More ❯
combine to deliver a unique set of products and services that help people, businesses, and governments realize their greatest potential. Title and Summary Manager, RiskManagement Who is Mastercard? Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive … globe that underpin over 32 billion transactions a year. This role is part of the 1st Line of Defence, reporting to the First Line Risk Director. The appointee will support the First Line Risk Director in embedding a riskmanagement framework and culture to improve risk identification, management, treatment, and reporting across the organization. This is a strategically important role that requires working closely across the business to enhance decision-making, reduce operational risk, and improve service resiliency. The key responsibilities include: Supporting risk assessment with ownership of treatment and riskMore ❯
Royston, Hertfordshire, South East, United Kingdom
Johnson Matthey Plc
Vacancy: Cyber and IT Risk Manager The Purpose of the Cyber & IT Risk Manager is to complement and enhance Johnson Matthey's cyber security and IT/OT risk posture by identifying, assessing, analysing and communicating IT and cyber-security risks, and both the existence and efficacy … need talented individuals to help shape and lead us into our next century. Your responsibilities: Develop, implement, schedule and drive a cyber and IT riskmanagement program which includes regular assessment, prioritisation, and review of remediation and mitigation activities, with clearly defined management ownership. Ensure that the … riskmanagement program is aligned with business priorities and risk appetite, assessing and clearly communicating those risks in a non-technical, easily digestible manner that ensures all stakeholders can make informed decisions on these risks. Ensure that risks are assessed, recorded and communicated at the appropriate level More ❯
The IT Risk Manager role serves as a best practice/quality contributor supporting the organisations’ IT & Ops RiskManagement Programme. The individual will act as first line of defence providing RCG risk assessments and other riskmanagement activities including risk identification, profiling … assessment, response, evaluation and advising on issues and remediations to support the overall IT & Ops organisation. This position supports the riskmanagement activities in alignment with the Risk and Controls Governance framework. Strategy and Transformation: Align with Group RCG target state program based on the planned roadmap … including governance, riskmanagement methodologies, technology enablement and automation, metrics, and reporting. Collaborate with the three lines of defence and other risk functions on behalf IT & Operations to support, enable and align the Risk and Controls Governance strategy within the broader risk functions. Engage stakeholders More ❯
Brentwood, Essex, South East, United Kingdom Hybrid / WFH Options
Gerrard White
IT RiskManagement Lead This is a hybrid role and would require you onsite in Brentwood 2 days per week. Role Purpose: We are looking for an IT RiskManagement Lead who will be responsible for monitoring IT risks and ensuring that all controls are functioning … effectively and routinely. You will also manage each risk event from identification to conclusion, identifying any weaknesses in the control environment and putting into place actions to correct. Key Responsibilities and Accountabilities: Review and log all IT risks according to the ISO27001 framework, updating the Information Security Management System risk registers accordingly. o Prepare a monthly report for the CIO on highlighting a prioritised set of current risks Develop and maintain a register of all IT controls to ensure that they are routinely tested and working effectively. o Prepare monthly reporting for the CIO to evidence More ❯
IT RiskManagement Lead This is a hybrid role and would require you onsite in Brentwood 2 days per week. Role Purpose: Our client is looking for an IT RiskManagement Lead who will be responsible for monitoring IT risks and ensuring that all controls are … functioning effectively and routinely. You will also manage each risk event from identification to conclusion, identifying any weaknesses in the control environment and putting into place actions to correct. Key Responsibilities and Accountabilities: Review and log all IT risks according to the ISO27001 framework, updating the Information Security Management System risk registers accordingly. Prepare a monthly report for the CIO on highlighting a prioritised set of current risks Develop and maintain a register of all IT controls to ensure that they are routinely tested and working effectively. Prepare monthly reporting for the CIO to evidence the control More ❯
culture, while benefiting from continuous learning opportunities, a supportive community which is proud to serve our mission, and comprehensive benefits. As an Acquiring Products Risk Specialist within in our second line RiskManagement Function you will be in a hands-on role focussing on primarily helping product … and operations teams to understand and manage their risks, doing risk reviews and deep dives, supporting with oversight and advice, primarily focussing on Teya’s acquiring product loss prevention, including delayed delivery, fraud loss and credit exposure. Key areas of focus Extensive background working in the merchant acquiring industry … within risk, second line oversight, compliance, fraud, underwriting and or AML roles. Have experience assessing and developing controls to minimise and mitigate against loss from the risks arising from merchant acquiring. Background of assessing controls and suggesting new rules or mechanisms to reduce fraud losses. What you will be More ❯
City of London, London, United Kingdom Hybrid / WFH Options
DXC UK INTERNATIONAL LIMITED
Job Description Job Title: Second Line Risk Officer Location: Remote Working Type: Permanent, Full-time (37.5 hours per week) About the company Velonetic represents the joint ventures between DXC Technology, the International Underwriting Association (IUA), and Lloyds of London. Previously referred to as the London Market Joint Ventures, we … greater efficiency and speed, releasing time to drive innovation and focus on higher value activities. About the job We are seeking a Second Line Risk Officer who will actively participate in the full riskmanagement lifecycle, including risk and control identification workshops, supporting and challenging risk … a particularly interesting period where we are implementing significant RMF improvements including the roll out of a new GRC system. This is an enterprise risk role; however, the preferred candidate will have a solid foundation in operational risk. Experience with using GRC systems is essential. Experience/Qualifications: At More ❯
MORE ABOUT THIS ROLE The Risk Division is responsible for independent review of market, credit, operational, model, and liquidity risk throughout the firm as well as enterprise wide stress testing. Market Risk is a Department within the Risk Division that facilitates effective deployment of risk appetite, prudent riskmanagement and regulatory compliance for the Firm's market risks. The group acts as a key stakeholder in ensuring that the firm's business plans are within its market risk appetite and engages directly with businesses on the review and challenge of riskmanagement actions. The group also plays a key role in keeping the Board of Directors apprised of the firm's market risk profile. This is achieved through the use of a suite of risk measures, proactive application of expert judgement, and limit setting. Activities are centered More ❯
Our client, a top-tier asset manager, is looking to hire a senior investment risk professional in the global risk team. As part of a small team, this individual will lead the riskmanagement of the Quantitative Investment platform, primarily covering equity funds. Key Responsibilities: Proactive … role in managing the firm's riskmanagement function, with a focus on covering equity portfolios. Lead the riskmanagement of the Quantitative Investment platform. Provide portfolio analysis to ensure that Portfolio Managers understand the different risks in the market. Participate in monthly riskmanagement meetings with Portfolio Managers. Process and understand risk predictions made by risk models. Initially assist with running of, but increasingly develop, risk-management processes and be able to liaise with IT developers to implement the building of risk-management systems. Candidate Profile More ❯
The RiskManagement function is critical to Enstar. The function is structured into various risk towers, including cyber risk. The Cyber Security Risk Analyst is responsible for undertaking and supporting processes to identify, assess, treat and monitor/report on the underlying risk profile. This … third parties (incident desk top and red team testing) as well as tracking any findings through to remediation. The role will also support various Management Committee activities as it pertains to Information Security, Data Protection and Artificial Intelligence. What you will be doing: Key Accountabilities: Conduct regular risk assessments, identifying, evaluating, and managing risks to minimize operational and compliance risks in support of the Enterprise RiskManagement program. Maintain risk and control register and the associated maintenance of our GRC framework ensuring it remains reflective of the risks to which the Company is exposed. More ❯
Cambridge, England, United Kingdom Hybrid / WFH Options
Queen Square Recruitment
Risk Lead – Exam Technology Location: Cambridge (Hybrid – 2 days/week in office) Day Rate: Competitive inside IR35 Duration: 6 months Start Date: ASAP Role Type: RiskManagement | IT Governance | Regulatory Compliance Our client, a leading global consultancy, is seeking an experienced Risk Lead to shape … and drive a robust riskmanagement framework across cutting-edge Exam Technology services. This role is critical in ensuring high-stakes digital assessment products remain secure, compliant, and trusted. As the Risk Lead , you will work across multiple technical and leadership teams, acting as the Risk Champion to ensure non-project IT risk is effectively managed, aligned with corporate governance, and in full compliance with regulatory bodies such as Ofqual and ISO standards. Key Responsibilities: Design, implement and own Exam Technology’s riskmanagement framework, policies and procedures. Identify and mitigate IT More ❯
cambridge, east anglia, United Kingdom Hybrid / WFH Options
Queen Square Recruitment
Risk Lead – Exam Technology Location: Cambridge (Hybrid – 2 days/week in office) Day Rate: Competitive inside IR35 Duration: 6 months Start Date: ASAP Role Type: RiskManagement | IT Governance | Regulatory Compliance Our client, a leading global consultancy, is seeking an experienced Risk Lead to shape … and drive a robust riskmanagement framework across cutting-edge Exam Technology services. This role is critical in ensuring high-stakes digital assessment products remain secure, compliant, and trusted. As the Risk Lead , you will work across multiple technical and leadership teams, acting as the Risk Champion to ensure non-project IT risk is effectively managed, aligned with corporate governance, and in full compliance with regulatory bodies such as Ofqual and ISO standards. Key Responsibilities: Design, implement and own Exam Technology’s riskmanagement framework, policies and procedures. Identify and mitigate IT More ❯
Cambridge, south west england, United Kingdom Hybrid / WFH Options
Queen Square Recruitment
Risk Lead – Exam Technology Location: Cambridge (Hybrid – 2 days/week in office) Day Rate: Competitive inside IR35 Duration: 6 months Start Date: ASAP Role Type: RiskManagement | IT Governance | Regulatory Compliance Our client, a leading global consultancy, is seeking an experienced Risk Lead to shape … and drive a robust riskmanagement framework across cutting-edge Exam Technology services. This role is critical in ensuring high-stakes digital assessment products remain secure, compliant, and trusted. As the Risk Lead , you will work across multiple technical and leadership teams, acting as the Risk Champion to ensure non-project IT risk is effectively managed, aligned with corporate governance, and in full compliance with regulatory bodies such as Ofqual and ISO standards. Key Responsibilities: Design, implement and own Exam Technology’s riskmanagement framework, policies and procedures. Identify and mitigate IT More ❯
Senior Cyber Security (GRC) Analyst This Senior Cyber Security (GRC) Analyst will report to the Cyber Security Governance, Risk & Compliance Manager and will work within the Information Systems directorate based in either our London or Crawley office. You will be a permanent employee. You will attract a salary of … Occupational Health support. Switched On - scheme providing discount on hundreds of retailers' products. Discounted gym membership. Employee Assistance Programme. Job Purpose The Senior Governance Risk and Compliance (GRC) Analyst will support the Cyber Security GRC Manager in developing IT governance, riskmanagement, and compliance strategies across UK … Power Networks. Good verbal, written, and presentational skills to express risks and the potential possible effects to the business and make reasoned recommendations for management action to mitigate or reduce the risks. Stakeholders: Regular and ongoing interaction with senior management across IT, IS and the Business; build relationships More ❯