As the Third-Party Security Risk Lead, you will be part of the Information Security team, focused on establishing and managing a Third-Party Security RiskManagement program. Your role will involve ensuring effective monitoring of all Third-Party relationships and mitigating associated risks. This position requires … experience in Information Security, demonstrating how our Third-Party riskmanagement can be measured and managed effectively. The role is based in Reading, reporting directly to the Head of Governance, Risk and Compliance, with responsibilities aligned to delivering a robust third-party security riskmanagement … a proactive approach in a fast-paced environment, and a strong sense of accountability. What you'll be doing as the Third-Party Security Risk Lead: Develop Third-Party Security RiskManagement Strategy: Support the design and implementation of strategies, standards, and procedures to identify, assess, and More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
Lawrence Harvey
to further implement the Digital Operational Resilience Framework across the company e.g., refining and optimising existing policies, plans and procedures (in areas such as RiskManagement, Incident Management, Business Continuity, Crisis Management, Third-Party RiskManagement and Disaster Recovery), supporting the implementation of new … cross-functional workshops with business stakeholders to execute resilience activities such as End-to-End Function Mapping, Business Impact Assessments, Impact Tolerance Setting and Risk Assessments. Delivering workshops to facilitate testing programme planning and overseeing the ongoing execution and reporting of testing as per the test schedule and remediation … of gaps/vulnerabilities identified. Collating Management Information reporting from various business stakeholders on a quarterly basis to ensure effective reporting on resilience levels of Critical Functions to Senior Management and Board of Directors. Coordinating the activities of Contract Owners in terms of activities related to the outsourcing More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
Logiq
allowance, plus up to 10% performance bonus*, plus excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our … team. What is Cyber RiskManagement? Cyber riskmanagement ensures that organisations can anticipate, withstand, and recover from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate … MOD’s cyber security transformation to Secure by Design (SbD), we are looking for team members and leaders who share our vision that cyber riskmanagement is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business More ❯
our existing team in either Nottingham or Crewe. The Lead Information Manager is responsible for establishing, implementing, and overseeing best practices in Digital Information Management, including security policies, tools, governance, and training across our infrastructure and construction projects. Key aspects of the role include managing and maintaining, as product … owner, the corporate CDE ensuring compliance with ISO 19650 standards, promoting the effective adoption of information management practices across the business, and leading the Information Management (IM) team. Additionally, the role supports company-wide digital integration efforts and ensures the consistent delivery of high-quality data and document … control processes. Key Responsibilities Strategic Information Management Develop and implement the Aureos Information Management (IM) strategy, defining standardised IM practices across all Aureos sectors, frameworks and projects. Define, implement and promote standards and procedures to drive consistency and reduce risk. Oversee the establishment, control, and management of More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
Vallum Associates
Are you ready to lead the Governance, Risk & Compliance function for a fast-growing European technology powerhouse? My client, a dynamic and innovative digital transformation partner, provides IT infrastructure, managed services, and cloud solutions to mission-critical sectors across Europe. They’re seeking an experienced Head of GRC to … shape, lead, and scale their risk and compliance strategy across multiple jurisdictions. This is a high-impact leadership role where you'll drive GRC maturity, contribute to strategic decisions, and ensure operational resilience in a company that’s modernising and securing critical digital ecosystems. What You'll Be Doing … Define and implement governance structures, policies, and procedures that align with international best practices and regulatory requirements (e.g., ISO 27001, NIS2, GDPR). Oversee riskmanagement frameworks, including enterprise risk, cyber risk, and third-party/vendor risk. Collaborate cross-functionally with Security, Legal, Operations, and More ❯
will set global commissioning process standards to ensure scalable, repeatable design and construction solutions. What youll do Global QA/QC and Cx Program Management: Manage global QA/QC and commissioning programs, enabling regional market adjustments where necessary to ensure consistency across all regions. Establish Global Standards: Define …/QC teams to enhance local capabilities and ensure consistent application of global standards. Innovation and Continuous Improvement: Drive innovation by integrating modern quality management tools and techniques into workflows, ensuring the latest technologies and best practices are communicated throughout the team. What youll need Bachelors degree in Civil … Electrical, or Mechanical Engineering, Construction Management or related field. Ideally Chartered or professional registration within any of the following engineering disciplines: Civil, Electrical, Mechanical. LEED AP certification (a plus). Experience: 10+ years of experience in datacenter and/or technically demanding developments focused on Quality Assurance and Control More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
usecure
preferred) Type: Full-Time Salary: £30,000–£35,000 (DOE) About usecure At usecure, we help MSPs and channel partners deliver world-class human riskmanagement solutions to their clients. Our automated platform makes it easy to run effective security awareness training, phishing simulations, policy management and … additional leave City-centre co-working space in Manchester City Centre Join a fast-growing, remote-first company shaping the future of human cyber riskmanagement Be part of a supportive, collaborative team culture where your work truly matters Work closely with an experienced Channel Marketing Manager and More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
Qinecsa Solutions
to manage client implementation projects for our Pharmacovigilance SaaS solutions. The ideal candidate will be a dynamic client facing services professional with extensive project management experience in the life science technology domain. This is a strategic role requiring deep project management expertise, pharmaceutical domain knowledge, and excellent leadership … skills. Key Responsibilities: Lead end-to-end project management of client software implementations, upgrades, and integrations. Develop and manage project plans, including timelines, budgets, and resource demand, and author project initiation documents. Coordinate cross-functional, global teams to ensure successful project delivery. Serve as the primary point of contact … and costs, ensuring any changes are documented and approved through formal change control processes. Develop and maintain comprehensive project documentation, including project initiation documents, riskmanagement plans, and post-project reviews. Ensure all projects comply with industry regulations, particularly those related to pharmacovigilance and data privacy (e.g. GxP More ❯
SaaS, Cloud or high growth technology companies. Key Responsibilities: Strategic Security Leadership: Define and implement a global security strategy aligned with business goals and risk appetite. Advise executive leadership on threat landscapes, risk posture, and security innovation Security Architecture & Operations: Oversee the design and operation of our global … cloud security infrastructure across AWS, GCP, and/or Azure. Drive robust incident response, threat detection, and remediation processes. RiskManagement & Compliance: Lead risk assessments and ensure adherence to international compliance standards (SOC 2, ISO 27001, GDPR, HIPAA, etc.). Establish a robust control environment to support … from the ground up. Team & Vendor Leadership: Build and lead a high-performing, globally distributed security team. Oversee security budgets, tooling, and third-party risk management. Required Qualifications: 10+ years in cybersecurity leadership, including 3–5 years at a senior level within a SaaS or cloud-native environment. Expert More ❯
to storage and endpoint solutions. Working as the Senior Infrastructure Engineer/Network Support Technician youll lead on project workstreams, contribute to critical incident management, and be a go-to expert for more complex technical challenges. Your insight and experience will help shape the way the organisation deliver services … Youll have hands-on experience managing cloud and hybrid systems, networks, storage and virtualised platforms, alongside solid knowledge of Microsoft 365, Azure, and endpoint management tools such as Intune. Youll also be a clear communicator and proactive problem solver, able to stay calm under pressure and comfortable working across … environment Experience of virtualised Windows Server platforms and components i.e. Hyper-V, VMWare In depth understanding of Active Directory, Azure AD, Identity and Access Management, account riskmanagement and role-based access tools Experience in deploying and managing network switches, WiFi, routers, firewall and network appliance security More ❯
cloud architecture, assurance, and secure systems design. Key Accountabilities: • Proven experience in security architecture and cyber capability development • Strong background in secure systems design, risk mitigation, and assurance activity • Experience working across large, multi-disciplinary teams within regulated environments • Excellent stakeholder communication and ability to engage at all levels … control design • Review solution designs to ensure security compliance and effectiveness • Lead on identifying and mitigating security vulnerabilities across projects • Support IT Health Checks, risk assessments, and internal assurance processes • Advise managers on control implementation and performance improvements • Contribute to the ongoing maturity of organisational cyber capability Essential Requirements … or equivalent qualifications • Strong understanding of security frameworks and architectural methodologies • Excellent interpersonal and cross-team collaboration skills Interested? Please apply below Information Security | RiskManagement | Cyber Security | Security Architecture | DV Cleared | CESG Certified IA Professional | IA Consultant | InfoSec Specialist | Public Sector | Security Governance | Security Assurance | RiskMore ❯
cloud architecture, assurance, and secure systems design. Key Accountabilities: • Proven experience in security architecture and cyber capability development • Strong background in secure systems design, risk mitigation, and assurance activity • Experience working across large, multi-disciplinary teams within regulated environments • Excellent stakeholder communication and ability to engage at all levels … control design • Review solution designs to ensure security compliance and effectiveness • Lead on identifying and mitigating security vulnerabilities across projects • Support IT Health Checks, risk assessments, and internal assurance processes • Advise managers on control implementation and performance improvements • Contribute to the ongoing maturity of organisational cyber capability Essential Requirements … or equivalent qualifications • Strong understanding of security frameworks and architectural methodologies • Excellent interpersonal and cross-team collaboration skills Interested? Please apply below Information Security | RiskManagement | Cyber Security | Security Architecture | DV Cleared | CESG Certified IA Professional | IA Consultant | InfoSec Specialist | Public Sector | Security Governance | Security Assurance | RiskMore ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Thames Water Utilities Limited
the development of a robust threat-informed defence strategy. You'll also work collaboratively across teams to enhance our threat intelligence capabilities, inform vulnerability management, and strengthen incident response readiness. Your role will involve maintaining threat actor profiles, managing intelligence feeds, supporting compliance, and shaping threat intelligence processes to … align with our risk reduction initiatives. You'll help ensure Thames Water is well-prepared to address evolving cyber threats while contributing to the organisation's long-term security maturity. What you'll be doing as a Senior Cyber Threat Intelligence Analyst: Cyber Threat Assessment: Support and lead cyber … detection engineering and signature development. Intelligence Feeds & Dashboards: Evaluate technical intelligence feeds, ensure quality of data, and build reporting dashboards for key stakeholders. Vulnerability Management Collaboration: Work closely with the vulnerability management team to align intelligence with known exposures. Threat Actor Profiling: Maintain in-depth profiles of adversaries More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
testing of controls, and supporting evidence to meet SOC 2 Trust Service Criteria. Understand technology controls that impact on-premises and cloud technology, operational risk to the Deloitte Technology organization as well as related laws, regulations, and industry standards, specifically related to internal and cloud technology solutions. Assess technology … track remediation activities to meet target dates for closure, and track/report progress. Work with the appropriate Information Security, Office of General Counsel, RiskManagement, and leadership to determine scope of SOC 2 audits. Develop and recommend appropriate information security policies, standards, procedures, checklists, and guidelines using … accounting or equivalent educational or professional experience and/or qualifications. Proven directly related experience in the following: managing information technology audits, assessments, remediation management, creating, leading, and managing risk assessment programs. Experience with SSAE 18 SOC 2 and various other industry standard frameworks such as: NIST, HITRUST More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
GCS
the development of a robust threat-informed defence strategy. You'll also work collaboratively across teams to enhance our threat intelligence capabilities, inform vulnerability management, and strengthen incident response readiness. Your role will involve maintaining threat actor profiles, managing intelligence feeds, supporting compliance, and shaping threat intelligence processes to … align with our risk reduction initiatives. You'll help ensure it is well-prepared to address evolving cyber threats while contributing to the organisation's long-term security maturity. What you'll be doing as a Senior Cyber Threat Intelligence Analyst: Cyber Threat Assessment: Support and lead cyber threat … detection engineering and signature development. Intelligence Feeds & Dashboards: Evaluate technical intelligence feeds, ensure quality of data, and build reporting dashboards for key stakeholders. Vulnerability Management Collaboration: Work closely with the vulnerability management team to align intelligence with known exposures. Threat Actor Profiling: Maintain in-depth profiles of adversaries More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
GCS
the development of a robust threat-informed defence strategy. You'll also work collaboratively across teams to enhance our threat intelligence capabilities, inform vulnerability management, and strengthen incident response readiness. Your role will involve maintaining threat actor profiles, managing intelligence feeds, supporting compliance, and shaping threat intelligence processes to … align with our risk reduction initiatives. You'll help ensure it is well-prepared to address evolving cyber threats while contributing to the organisation's long-term security maturity. What you'll be doing as a Senior Cyber Threat Intelligence Analyst: Cyber Threat Assessment: Support and lead cyber threat … detection engineering and signature development. Intelligence Feeds & Dashboards: Evaluate technical intelligence feeds, ensure quality of data, and build reporting dashboards for key stakeholders. Vulnerability Management Collaboration: Work closely with the vulnerability management team to align intelligence with known exposures. Threat Actor Profiling: Maintain in-depth profiles of adversaries More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
Intec Select
data processes that drive operational improvements. Collaborate with cross-functional teams to ensure data-related initiatives are properly planned, scheduled, and managed. Participate in riskmanagement and change management processes related to data infrastructure. Participate in quality reviews of designs, prototypes, and other work products to ensure … of data engineering concepts, such as ETL processes, data pipelines, and data quality management. Hands-on experience with SQL (e.g., writing queries, basic database management). Familiarity with data tools and platforms (e.g., Python, Power BI, Tableau, or similar visualization tools). Attention to detail across large data sets More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
Ultima
design and implementation, across several of the skills and technologies below: Microsoft Defender for Endpoint Microsoft Defender for Office 365 Microsoft Sentinel Tenable Vulnerability Management (Or similar technology) Azure Security understanding Azure update Manager/Other Patching technologies Qualifications: Microsoft Security Certifications (eg SC200) Pen Testing/Related Certifications … be provided if required. Microsoft Intune (Focused on Security, not the full suite) Microsoft Defender for Cloud Apps, Identity Cloud CSPM Suites Privileged Access Management (PAM) Tooling Cloud Email Security Solutions Certs CSTM, Cyber Essentials Assessor KEY COMPETENCIES REQUIRED FOR ROLE In line with our company values every employee … quality, being attentive to detail and willing to try to improve one’s own performance. Understanding and adherence to quality procedures. Decision Taking and RiskManagement – Willingness to take difficult decisions and have confidence in your decision making and attitude to risk and impact. Respect Communication – Clarity More ❯
of a technical nature including frameworks such as ISO27001/2:2005/13 &DORA Ownership of Strategic, Operational and Tactical IT Security and RiskManagement, technical and legislative mandates Programme/Project management of large and corporate security transformation and change programmes Development of the companies … the area of Enterprise Architecture, GRC and Advisory capabilities Full P&L ownership of Cyber Technology and/or Advisory Practices Programme/Project management of large corporate security transformation/change programmes £140,000 - £160,000 plus significant bonus and benefits EA First Ltd are acting as an More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
Beazley Security
About Us: Beazley Security is a global cybersecurity firm committed to helping clients enable advanced cyber defenses that reduce risk with quantifiable results. We’re comprised of top talent from private industry, government, intelligence, and law enforcement who are specialists in threat detection, incident response, digital forensics, offensive security … riskmanagement, and cyber resilience. As a subsidiary of specialty insurance giant, Beazley Insurance, we’ve been at the forefront of cyber insurance management and breach response activities for business clients in the US, UK, and Europe since 2017. As Beazley Security, the company will have an More ❯
reading, south east england, united kingdom Hybrid / WFH Options
Ultima
Senior Project Manager Reports to: Head of Projects Location: Hybrid Reading KEY ACCOUNTABILITIES/ROLE PURPOSE To perform the successful day-to-day project management of projects, responsible for project ownership and accountability. Projects will be of various sizes ranging from £30,000 to £2m+ budgets utilising Ultima’s … project management framework for the delivery of cutting-edge IT solutions. MAIN DUTIES AND RESPONSIBILITES To deliver projects within the agreed scope, cost, and quality. Manage risks and issues and put in place suitable mitigation strategies. Responsibility for the whole project lifecycle – from defining the scope via Statement of … to ensure projects are delivered to the highest quality. Proactively manage any queries, changes or escalations that arise. ESSENTIAL KNOWLEDGE, SKILLS & EXPERIENCE Relevant project management certifications are expected – e.g. PRINCE2 Practitioner/APMP 5 years demonstrable experience of successfully delivering multiple concurrent technology projects. Stakeholder management – customer facing More ❯
About the job About Us: Our client are a dynamic and innovative fintech company specialising in collateral management solutions for the derivatives market. Their cutting-edge technology empowers financial institutions to manage risk, optimise operations, and enhance transparency in the fast-paced trading ecosystem. Based in London, we … to nurture your development and offer new opportunities at every stage. You'll interact with and learn from people across various functions, including relationship management, software development, and product strategy. The work you do will have a direct impact on clients, providing measurable value from day one. What we … degree in a quantitative or analytical field (e.g., Economics, Maths, Finance) from a top university in recent years. Knowledge of derivatives markets, products, and riskmanagement, with a desire to deepen this expertise. A detail-oriented mindset with a curiosity about the 'why' behind your work. Comfort with More ❯
teams. Facilitate clear and effective communication, coordinate dependencies, provide timely updates, address concerns or issues promptly, and promote collaboration and teamwork. Team Leadership and Management: Lead and manage a global team of technical consultants, including onshore and offshore employees and contractors, by cultivating a positive, collaborative, and resultsoriented work … environment that encourages productivity and support. Stakeholder Management: Engage with technical stakeholders to gather feedback, understand their requirements, and manage expectations. In partnership with the Project Manager, keep them informed about project progress, risks, and any changes in scope by providing or contributing to weekly status reports, using client … specific or standardized templates. RiskManagement: Identify and mitigate technical risks, challenges, and potential roadblocks, proactively communicating them to the Project Manager. Collaborate with the technical project team to gather detailed information and explore solution options for addressing these risks. Change Management: Identify potential change orders and More ❯
or CISSP are preferred. Extensive experience with enterprise DLP technologies , including Microsoft Purview, M365, and Proofpoint . Proficiency in DLP policy development and management , with the ability to write, configure, and develop policies to protect sensitive data and ensure regulatory compliance. Familiarity with End-User Behaviour Analytics (EUBA) and … Insider RiskManagement processes and tools. Proven experience in analysing and responding to DLP alerts and incidents , collaborating with the Incident Response team for remediation. Strong knowledge of data classification methodologies and associated compliance frameworks. An understanding of security DLP best practices and frameworks, including GDPR, HIPAA , and … non-technical stakeholders. For the DLP Manager role Background in DLP and cloud solutions, and leadership experience 2-3 years in team lead or management roles, including reporting and DLP. Skills Data loss, Prevention, security, Microsoft Purview, Microsoft 365 Why Join This Organisation? This global leading professional services company More ❯
Reading, England, United Kingdom Hybrid / WFH Options
MarkJames Search
Senior Cyber Security Consultant - GRC (Governance, Risk, Compliance) Location: Reading, United Kingdom (Hybrid 1-2 days per month, with some travel) Job Type: 6 month contract (inside IR35) Pay Rate: £Negotiable DOE About the Role: We are seeking a talented and experienced Senior Security Consultant specialising in Governance, Risk … and standards such as ISO27001, NIST CSF, CIS Top 18, and COBIT. Demonstrate professional consulting experience in Enterprise IT-security, Cyber Security Governance, Technology RiskManagement, Compliance, Business Continuity/DR, and Cloud Security. Ensure client satisfaction by delivering high-quality solutions tailored to business needs. What We … equivalent experience. Strong English communication skills; additional fluency in French, German, or any European language is a plus. Experience with Cloud Security, emerging technology risk assessments, and cross-industry experience. Relevant certifications in Cloud Security (ISC2 CCSP, EC-Council CCSE, CSA CCAK) are an advantage. Ability to travel as More ❯