London, South East, England, United Kingdom Hybrid / WFH Options
Montpellier Resourcing
bonus and benefits Hybrid working available (3 days in the office) Our client, a dynamic and rapidly growing UK-based EMI FinTech Payments firm, is seeking an experienced Enterprise Risk Analyst to support their Head of Risk. This is a focused Enterprise Risk Analyst role dedicated entirely to the Second Line of Defence (2LOD), centred on embedding the … firm’s Governance, Risk, and Compliance (GRC) model. You will be instrumental in the day-to-day operation of the ERM framework, ensuring risk is managed consistently and strategically across the entire business. Duties of the Enterprise Risk Analyst to include: Risk Register Management: Own the central Risk Register , ensuring all key risks (Strategic, Financial … Operational, and Compliance) are accurately identified, assessed, and maintained. RiskAssessment Cycle: Facilitate and manage the formal Risk and Control Self-Assessment (RCSA) process across all business units. Control Framework: Maintain and evolve the company’s Risk Control Framework , ensuring controls are effective and aligned with the established risk appetite. Residual Risk Analysis More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
QBE Management Services (UK) Limited
Primary Details Time Type: Full time Worker Type: Employee The purpose of this role is to enhance riskassessment and decision-making processes through the provision of advanced risk modelling analytics. This is achieved through engaging with business stakeholders to define requirements and combining this Accumulation Management expertise and knowledge of data sets. Senior Cyber Risk … as a leading resource on cyber accumulations, providing expert guidance and insights to internal teams and external stakeholders. Collaborate with Global Cyber team other divisional stakeholders to develop effective risk mitigation strategies and optimize risk management processes. Collect, validate, and analyse large datasets related to cyber risks, ensuring data accuracy and reliability. Present findings in a clear and … QBE’s proprietary view of risk. Work closely with cross-functional teams, including Global Cyber team, underwriting, actuarial, and claims, to ensure a holistic understanding of the company's risk landscape. Communicate effectively with external stakeholders, including reinsurers and regulatory bodies, to maintain transparency and compliance with industry standards. Stay abreast of the latest developments in cyber modelling, riskMore ❯
and report to audit management. Identify areas for improvement within Internal Audit and play a leading role on department improvement initiatives. Support and provide input into the Internal Audit riskassessment process to inform the Audit Plan. Execution of planning and testing for complex technology, information security audits and high-level reviews, including designing test strategies, audit test … understanding of regulatory requirements, eg, FRBNY, FCA. Strong IT security and technical knowledge with approximately 8 years of experience within the industry. Working experience with common security/technology risk frameworks, for instance, ISO 27000, NIST, CIS Critical Security Controls, COBIT, and IIA GTAGs. Working experience with regulatory standards/requirements (US, UK) ie, GDPR, BCBS 239, FFIEC … Working experience and/or knowledge of Security domains including Access management, Threat management, Incident response and recovery, Data protection, Vulnerability management, Monitoring and logging, Physical security, and Security risk management and governance. Working experience and/or knowledge of cloud, block chain, high volume transaction systems. Working experience and/or knowledge of application controls, input/output More ❯
and the Audit & Finance Committee. Identify areas for improvement within Internal Audit and play a leading role on department improvement initiatives. Support and provide input into the Internal Audit riskassessment process to inform the Audit Plan. Support the director in strategic improvements including Continuous Auditing, Data Analytics, Development of control Dashboards, and Automated Testing Capabilities. Stand in … understanding of regulatory requirements, eg, FRBNY, FCA. Strong IT security and technical knowledge with approximately 8+ years of experience within the industry. Working experience with common security/technology risk frameworks, for instance, ISO 27000, NIST, CIS Critical Security Controls, Cloud Controls Matrix, COBIT, and IIA GTAGs. Working experience with regulatory standards/requirements (US, UK) ie, GDPR, BCBS … Working experience and/or knowledge of Security domains including Access management, Threat management, Incident response and recovery, Data protection, Vulnerability management, Monitoring and logging, Physical security, and Security risk management and governance. Working experience and/or knowledge of application controls, input/output, configuration, application controls. Confident in managing integrated and non-integrated audits, and leading other More ❯
financial services is essential. Experience designing Target Operating Models or strategic business blueprints at programme or enterprise level (not just project level). Deep understanding of the Compliance and Risk landscape, including: Policy and control frameworks Riskassessment and monitoring Investigations, sanctions, and anti-financial crime The Three Lines of Defence model Strong knowledge of business architecture … deliverable for the next stage of programme execution. Act as a trusted advisor during implementation, ensuring designs are translated into practical, scalable solutions. Support stakeholder engagement across senior compliance, risk, and technology leaders, ensuring buy-in for the proposed operating model. Designing the Target State Business Architecture for EMEA, including capability maps, operating models, and value streams. Collaborating with … Technology, Data Architects, Compliance, and Risk SMEs to develop a holistic design that aligns with business strategy. Recommending a comprehensive roadmap to implement the Target State, balancing business outcomes, costs, and risks. Supporting project teams to ensure alignment with the Target State Business Architecture. Leading best practises in business design and process engineering to enhance operational efficiency. Your Key More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Adecco
financial services is essential. Experience designing Target Operating Models or strategic business blueprints at programme or enterprise level (not just project level). Deep understanding of the Compliance and Risk landscape, including: Policy and control frameworks Riskassessment and monitoring Investigations, sanctions, and anti-financial crime The Three Lines of Defence model Strong knowledge of business architecture … deliverable for the next stage of programme execution. Act as a trusted advisor during implementation, ensuring designs are translated into practical, scalable solutions. Support stakeholder engagement across senior compliance, risk, and technology leaders, ensuring buy-in for the proposed operating model. Designing the Target State Business Architecture for EMEA, including capability maps, operating models, and value streams. Collaborating with … Technology, Data Architects, Compliance, and Risk SMEs to develop a holistic design that aligns with business strategy. Recommending a comprehensive roadmap to implement the Target State, balancing business outcomes, costs, and risks. Supporting project teams to ensure alignment with the Target State Business Architecture. Leading best practises in business design and process engineering to enhance operational efficiency. Your Key More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Police Digital Services
schedules and contracts Organising the various professional people and suppliers working on the project to ensure alignment with project plans and timely delivery of their respective inputs Carrying out riskassessment and dealing with/mitigating risks at an appropriate level, escalating where necessary Making sure the quality standards agreed to by Project Boards are met Using project … Programme Manager and senior stakeholders on progress What you need to succeed in the role Significant experience in project management - especially in scope, performance, cost control, delivery, scheduling, resourcing, risk management and demand management. Significant experience of financial control, reporting and monitoring - relating to in-scope project(s) delivery. Proven experience in the delivery of highly technical solutions into More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Velocity Talent Ltd
UKAS , ISO 17021-1 , and ISO 19011 principles. Support technical reviews, certification decisions, and internal auditor development. Maintain up-to-date knowledge of information security, data protection, and cyber-risk frameworks. Essential Qualifications and Experience Successfully completed an ISO/IEC 27001:2022 Lead Auditor course (IRCA-approved or equivalent). At least four years experience in information security … auditing. Proven track record conducting third-party ISO 27001 audits for a UKAS-accredited certification body. Strong working knowledge of Annex A controls , ISO/IEC 27002 , and ISMS riskassessment methodologies . Familiarity with ISO 17021-1 , ISO 19011 , and UKAS accreditation processes. Excellent written and verbal communication skills. Willingness and ability to travel across London and More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
direction, and ensuring security-by-design across complex AI systems and data pipelines. You’ll define and deliver AI security strategies, develop reference architectures, and provide expert guidance on risk management, data protection, and ethical AI governance. You’ll also play a key role in client engagement, helping shape proposals, define solutions, and drive pre-sales activity. To justify … consulting experience and commercial awareness alongside deep technical expertise. Key areas of focus Define and implement enterprise-level AI/ML security strategies, policies, and architectures. Lead on AI riskassessment, threat modelling, and mitigation planning. Ensure compliance with GDPR, the EU AI Act, and international security frameworks (ISO 27001, NIST, TOGAF, SABSA). Build and maintain secure More ❯
direction, and ensuring security-by-design across complex AI systems and data pipelines. You’ll define and deliver AI security strategies, develop reference architectures, and provide expert guidance on risk management, data protection, and ethical AI governance. You’ll also play a key role in client engagement, helping shape proposals, define solutions, and drive pre-sales activity. To justify … consulting experience and commercial awareness alongside deep technical expertise. Key areas of focus Define and implement enterprise-level AI/ML security strategies, policies, and architectures. Lead on AI riskassessment, threat modelling, and mitigation planning. Ensure compliance with GDPR, the EU AI Act, and international security frameworks (ISO 27001, NIST, TOGAF, SABSA). Build and maintain secure More ❯
london, south east england, united kingdom Hybrid / WFH Options
Anson McCade
direction, and ensuring security-by-design across complex AI systems and data pipelines. You’ll define and deliver AI security strategies, develop reference architectures, and provide expert guidance on risk management, data protection, and ethical AI governance. You’ll also play a key role in client engagement, helping shape proposals, define solutions, and drive pre-sales activity. To justify … consulting experience and commercial awareness alongside deep technical expertise. Key areas of focus Define and implement enterprise-level AI/ML security strategies, policies, and architectures. Lead on AI riskassessment, threat modelling, and mitigation planning. Ensure compliance with GDPR, the EU AI Act, and international security frameworks (ISO 27001, NIST, TOGAF, SABSA). Build and maintain secure More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Anson McCade
direction, and ensuring security-by-design across complex AI systems and data pipelines. You’ll define and deliver AI security strategies, develop reference architectures, and provide expert guidance on risk management, data protection, and ethical AI governance. You’ll also play a key role in client engagement, helping shape proposals, define solutions, and drive pre-sales activity. To justify … consulting experience and commercial awareness alongside deep technical expertise. Key areas of focus Define and implement enterprise-level AI/ML security strategies, policies, and architectures. Lead on AI riskassessment, threat modelling, and mitigation planning. Ensure compliance with GDPR, the EU AI Act, and international security frameworks (ISO 27001, NIST, TOGAF, SABSA). Build and maintain secure More ❯
City of London, London, United Kingdom Hybrid / WFH Options
X4 Technology
traders and analysts to design, build and maintain high-performance front office tools and solutions, including: Desk-specific analytics , providing real-time market insights Python-based forecasting models supporting riskassessment and decision making. Tender tracking systems via Angular-based Outlook add-ins Data driven applications , built with data scientists, structurers and analysts to surface key price drivers … demand, weather, etc) Freight and risk-altering tools , developed with risk teams to provide forward-looking LNG exposure insights Responsibilities of the Front Office Software Engineer Partner with front office teams to iteratively deliver a prioritised backlog of business and technology initiatives Designing and delivering solutions using C#/.NET, Azure, Angular, Python, SQL Server and other technologies More ❯
traders and analysts to design, build and maintain high-performance front office tools and solutions, including: Desk-specific analytics , providing real-time market insights Python-based forecasting models supporting riskassessment and decision making. Tender tracking systems via Angular-based Outlook add-ins Data driven applications , built with data scientists, structurers and analysts to surface key price drivers … demand, weather, etc) Freight and risk-altering tools , developed with risk teams to provide forward-looking LNG exposure insights Responsibilities of the Front Office Software Engineer Partner with front office teams to iteratively deliver a prioritised backlog of business and technology initiatives Designing and delivering solutions using C#/.NET, Azure, Angular, Python, SQL Server and other technologies More ❯
london, south east england, united kingdom Hybrid / WFH Options
X4 Technology
traders and analysts to design, build and maintain high-performance front office tools and solutions, including: Desk-specific analytics , providing real-time market insights Python-based forecasting models supporting riskassessment and decision making. Tender tracking systems via Angular-based Outlook add-ins Data driven applications , built with data scientists, structurers and analysts to surface key price drivers … demand, weather, etc) Freight and risk-altering tools , developed with risk teams to provide forward-looking LNG exposure insights Responsibilities of the Front Office Software Engineer Partner with front office teams to iteratively deliver a prioritised backlog of business and technology initiatives Designing and delivering solutions using C#/.NET, Azure, Angular, Python, SQL Server and other technologies More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
X4 Technology
traders and analysts to design, build and maintain high-performance front office tools and solutions, including: Desk-specific analytics , providing real-time market insights Python-based forecasting models supporting riskassessment and decision making. Tender tracking systems via Angular-based Outlook add-ins Data driven applications , built with data scientists, structurers and analysts to surface key price drivers … demand, weather, etc) Freight and risk-altering tools , developed with risk teams to provide forward-looking LNG exposure insights Responsibilities of the Front Office Software Engineer Partner with front office teams to iteratively deliver a prioritised backlog of business and technology initiatives Designing and delivering solutions using C#/.NET, Azure, Angular, Python, SQL Server and other technologies More ❯
manipulation. Experience using a range of project management, portfolio management and digital collaboration tools such as Microsoft Project Online, the MS Office 365 suite, Azure. A good foundation in riskassessment, problem resolution, and influencing skills. About the client About the client Arup is an equal opportunity employer that actively promotes and nurtures a diverse and inclusive workforce. More ❯
making sound, forward-looking decisions that ensure resilience and continuity across changing economic conditions. Your new role The role involves delivering insightful, high-quality analysis to support the annual riskassessment and audit planning processes, while ensuring timely completion of risk-based audits and reviews aligned with internal methodology. It includes monitoring and resolving outstanding management actions … standards. The position also requires ongoing business monitoring to stay informed of changes in strategy and operations, fostering strong relationships with business leaders, and promoting knowledge sharing between audit, risk, compliance, and the wider organisation to strengthen the overall control environment. Adherence to governance and regulatory requirements is essential, ensuring all reporting and review obligations are met to the … required standards. What you'll need to succeed IT internal Audit experience (FS experience preferred) Knowledge of cyber risks, operational risks, Cloud, and risk-based audit approach. Strong stakeholder and senior management-facing capabilities. What you'll get in return Up to £70,000 base salary + strong bonus + benefits Hybrid working arrangement: 2/3 days in More ❯
on leveraging data to improve services and inform strategic decisions. As an organisation, they are committed to fostering innovation and maintaining high operational standards Description Support the Director of Risk, Data Analysis and Insight to develop the analysis programme in line with the overall Strategic Plan Lead and manage the Data Science department, ensuring the delivery of high-quality … and key stakeholders. Select and apply the most appropriate analysis, data science and statistical techniques given the research objectives and the data Develop appropriate analytical methods in firm-based riskassessment and thematic risks Provide internal consultancy across Directorates and Programmes on analytical methods and techniques Stay informed about industry trends and emerging technologies in the public sector. More ❯
Wembley, London, United Kingdom Hybrid / WFH Options
Football Association Limited
with business users, ensuring clear entry and exit criteria and timely sign-offs. Oversee third-party testing to ensure high-quality integrations and configurations. Drive test planning, estimation and riskassessment, and monitor execution and defect trends to protect release quality. Establish strong test governance, regular reporting, defect triage and escalation processes. Contribute to the design and execution … readiness and product quality. What you'll bring: Excellent stakeholder management and communication skills. Strong understanding of Workday modules and their interdependencies. Proven experience defining test strategies, plans and risk-based testing approaches. Hands-on experience testing integrations and data migrations in enterprise environments. Strong background in managing UAT cycles and test governance processes. Proven ability to coordinate testing More ❯
Consultant - 6 months+ £500-600pd Inside IR35 - Remote with 2 days on site per month in London Specialist skills: Must have over half of these skills: Information Assurance riskassessment and management in accordance with HMG policy Accreditation of new systems and re-accreditation of existing systems Requirements Management Process Modelling Architecture and System Design Systems Concepts … System Lifecycle Privacy and Regulatory Impact Assessments Risk and Issue Management Ensuring ongoing compliance of 3rd parties systems IS27001/2 Knowledge of CHECK certification Physical security reviews Team Dynamics and Ways of working Working with a small group of like-minded domain experts Able to effectively prioritise and organise work plans and reschedule, should external events demand a … Security Working Groups (SWGs). Provide systems accreditation, waivers and Go-live approvals as and where appropriate to the overarching remit of the IA Service in line with delegated risk appetite. Undertake site inspections & approvals undertaken to agreed levels. Ensure 3rd party Supplier threat vector mitigation actions in place. Support breach responses and remedial action in conjunction with the More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
experience securing ML/AI systems (not theoretical knowledge). Deep technical expertise in AI/ML architectures, data pipelines, and model lifecycle security. Strong understanding of threat modeling, riskassessment, and security controls in AI/ML contexts. Previous experience as a Security Architect or senior security consultant. Excellent problem-solving, communication, and stakeholder management skills. Must More ❯
experience securing ML/AI systems (not theoretical knowledge). Deep technical expertise in AI/ML architectures, data pipelines, and model lifecycle security. Strong understanding of threat modeling, riskassessment, and security controls in AI/ML contexts. Previous experience as a Security Architect or senior security consultant. Excellent problem-solving, communication, and stakeholder management skills. Must More ❯
london, south east england, united kingdom Hybrid / WFH Options
Anson McCade
experience securing ML/AI systems (not theoretical knowledge). Deep technical expertise in AI/ML architectures, data pipelines, and model lifecycle security. Strong understanding of threat modeling, riskassessment, and security controls in AI/ML contexts. Previous experience as a Security Architect or senior security consultant. Excellent problem-solving, communication, and stakeholder management skills. Must More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Anson McCade
experience securing ML/AI systems (not theoretical knowledge). Deep technical expertise in AI/ML architectures, data pipelines, and model lifecycle security. Strong understanding of threat modeling, riskassessment, and security controls in AI/ML contexts. Previous experience as a Security Architect or senior security consultant. Excellent problem-solving, communication, and stakeholder management skills. Must More ❯