Yeovil, Somerset, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
of a significant programme, during which you will ensure that the product and associated deliverables are as secure as reasonably practicable, and in accordance with customer's requirements and risk appetite. You will be supported in this role as part of a larger consulting team, engineers and product domain specialists. Your work at Leonardo UK will see you take … and detailed system and security designs as they pertain to the cyber domain. Decomposing cyber and security requirements down to the system control level. Conducting cyber and information security riskassessment activities including threat modelling, vulnerability analysis and analysis of mitigations, including technical understanding. Scoping and managing security verification and validation activities and remedial action plans. Coordinating with More ❯
Swindon, Wiltshire, United Kingdom Hybrid / WFH Options
Zurich 56 Company Ltd
skills (Data Analytics, IT fundamentals, and GenAI), and Agile methods, and serve as a role model for delivering change. What will you be doing? Input into the overall UK riskassessment and audit planning and, determining the right auditscope, key risks to be addressed and most suitable audit techniques and approaches alongside the Audit Director Keeping the business … Security and new technologies, such as Robotics and Artificial Intelligence. Experience in third-party, outsourcing and project management auditing. Strong understanding and applicability of audit and/or business risk management and control processes. Proven record of working with and influencing executive/senior stakeholders, verbally and through written reports. Demonstrated success in business, functional and people management. Excellent More ❯
Swindon, England, United Kingdom Hybrid / WFH Options
婵物捨
skills (Data Analytics, IT fundamentals, and GenAI), and Agile methods, and serve as a role model for delivering change. What will you be doing? Input into the overall UK riskassessment and audit planning and, determining the right audit scope, key risks to be addressed and most suitable audit techniques and approaches alongside the Audit Director. Keeping the … Security and new technologies, such as Robotics and Artificial Intelligence. Experience in third-party, outsourcing and project management auditing. Strong understanding and applicability of audit and/or business risk management and control processes. Proven record of working with and influencing executive/senior stakeholders, verbally and through written reports. Demonstrated success in business, functional and people management. Excellent More ❯
Swindon, Wiltshire, United Kingdom Hybrid / WFH Options
Zurich 56 Company Ltd
on how to move our UK business forward. You will be asked to drive change and improve on a set of already well-established IT Controls and an IT Risk Management Framework to allow senior IT management, business functions and 3rd party service providers to demonstrate they are managing and safeguarding company assets, data, and operations. Your ideas will … Controls Manager and other governance colleagues to gather data and collate, aggregate and interpret information to provide the Boards of Directors, Business Executives and other interested parties with an assessment of the UK IT Risk and Controls landscape. You will also manage multiple demands for IT risk-based information within Zurich, ensuring all reporting commitments are met. … alongside local and regional Group IT functions, Service Providers (through internal and external suppliers), and business functions to ensure that Zurich is proactive in the management of IT Operational Risk and Controls. The role is varied, interesting, and there are genuine opportunities to get stuck in and make a difference Many of our employees work flexibly in a variety More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Cyber UK
Recruitment Service (AFRS). Delivered through a partnership of the MOD, Serco, and our consortium of partners, this service will provide end-to-end support from candidate attraction to assessment, onboarding, and Phase 1 training. Our team brings together best-in-class integrated technology and specialist partners to offer a holistic recruitment and skills solution for the UK Armed … responsibilities of the role: Engage with key industry partners and suppliers to ensure ongoing compliance with MOD standards (e.g., Secure By Design, DefStan 05-138). Conduct information security riskassessment and management using recognized frameworks such as NIST SP800. Perform information security assurance activities and manage incidents. Establish and manage internal and external Security Working Groups. Support … Design, JSP 440, and DefStan 05-138/DCPP. ISO27001 Lead Implementer/Auditor, CISSP or CISM. Strong understanding of data protection compliance and relevant privacy certifications. Proficiency in risk management using recognised frameworks like NIST. Experience in creating and delivering security awareness training. Ability to work effectively with stakeholders to support contract and business unit needs. Clear communication More ❯
Bournemouth, England, United Kingdom Hybrid / WFH Options
LV=
Data Governance and management team. •Oversee the acquisition, collection, storage and analysis of our business data with a Data Management best practice and compliance lens. •Actively contribute to Data Risk management and our riskassessment processes by identifying data risk, defining and establishing data management controls to mitigate data risk. •Develop and implement data management strategies More ❯
Principal Cyber Security Risk Manager £54,857+additional allowance up to £25,543 (£80,400) Multiple locations: Newcastle/Leeds/Oldham/Bristol/Swansea/Nottingham/Birmingham Hybrid working: 60% attendance per week Permanent Overview: Principal Cyber Security Risk Manager Sellick Partnership have partnered with the Driver and Vehicle Standards Agency to recruit a Principal Cyber … Security Risk Manager. To ensure agility as part of continuous the organisation, this role is integral to ensure that information and security risk associated with a service group are visible and responded to in a collaborative and visible manner. The role holder identifies, understands, and mitigates cyber-related risks. The role holder provides corporate risk processes, and … the Chief Data & Security Officer and Service Owners with advice to help them make well informed risk-based decisions. The role sits as part of a wider security team reporting to the Head of Cyber Security. Benefits: Principal Cyber Security Risk Manager Flexible working options encouraging work-life balance. Exceptional pension - employer contribution of an average of More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Sellick Partnership
Principal Cyber Security Risk Manager 54,857+additional allowance up to 25,543 ( 80,400) Multiple locations: Newcastle/Leeds/Oldham/Bristol/Swansea/Nottingham/Birmingham Hybrid working: 60% attendance per week Permanent Overview: Principal Cyber Security Risk Manager Sellick Partnership have partnered with the Driver and Vehicle Standards Agency to recruit a Principal Cyber … Security Risk Manager. To ensure agility as part of continuous the organisation, this role is integral to ensure that information and security risk associated with a service group are visible and responded to in a collaborative and visible manner. The role holder identifies, understands, and mitigates cyber-related risks. The role holder provides corporate risk processes, and … the Chief Data & Security Officer and Service Owners with advice to help them make well informed risk-based decisions. The role sits as part of a wider security team reporting to the Head of Cyber Security. Benefits: Principal Cyber Security Risk Manager Flexible working options encouraging work-life balance. Exceptional pension - employer contribution of an average of More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
SSR G&M Ltd
Information Security Manager - Corporate Governance, Risk, and Compliance Information Security Manager - CGRC £70k + Bonus + Package, Based Bristol (Hybrid working) This is an exceptional opportunity to work for our client, a global defence tech organisation. In this exciting role the successful candidate will be responsible for providing Information Security support and advice to meet the needs of the … maintaining effective security processes and procedures. Ensure a robust internal governance framework exists for compliance with company and MoD policies SAL, F1686, DCPP. Develop and manage a program of riskassessment activity and provide support and guidance on the implementation of risk management controls. Develop and manage an information security training awareness programme for all employees and … experience in a similar role working as an information security manager with knowledge and experience of UK MOD and Government information security policies, processes, standards, and guidance. Experience in risk management including the creation of information security risk assessments, risk acceptance criteria, and risk treatment plans. Experience of security audit and compliance in accordance with ISO More ❯
Corporate Secretariat to define the project plan, manage execution, and establish robust governance structures. You'll build a stakeholder matrix and ensure that design and execution decisions are appropriately risk-assessed and approved through the relevant governance forums. Key Accountabilities: Develop a comprehensive project plan aligned with pre-defined objectives and deadlines. Manage all aspects of project execution, including … stakeholder communication and risk mitigation. Build and maintain a comprehensive stakeholder matrix. Establish effective governance structures for design and execution decisions. Liaise with Compliance, Legal, and Corporate Secretariat teams. Ensure appropriate riskassessment and approval processes are followed. Key Skills: Proven experience in requirements gathering and translation for technology projects. Experience managing senior stakeholders at VP/ More ❯
Corporate Secretariat to define the project plan, manage execution, and establish robust governance structures. You'll build a stakeholder matrix and ensure that design and execution decisions are appropriately risk-assessed and approved through the relevant governance forums. Key Accountabilities: Develop a comprehensive project plan aligned with pre-defined objectives and deadlines. Manage all aspects of project execution, including … stakeholder communication and risk mitigation. Build and maintain a comprehensive stakeholder matrix. Establish effective governance structures for design and execution decisions. Liaise with Compliance, Legal, and Corporate Secretariat teams. Ensure appropriate riskassessment and approval processes are followed. Key Skills: Proven experience in requirements gathering and translation for technology projects. Experience managing senior stakeholders at VP/ More ❯
Brixton, Devon, United Kingdom Hybrid / WFH Options
Barclays
Corporate Secretariat to define the project plan, manage execution, and establish robust governance structures. You'll build a stakeholder matrix and ensure that design and execution decisions are appropriately risk-assessed and approved through the relevant governance forums. Key Accountabilities: Develop a comprehensive project plan aligned with pre-defined objectives and deadlines. Manage all aspects of project execution, including … stakeholder communication and risk mitigation. Build and maintain a comprehensive stakeholder matrix. Establish effective governance structures for design and execution decisions. Liaise with Compliance, Legal, and Corporate Secretariat teams. Ensure appropriate riskassessment and approval processes are followed. Key Skills: Proven experience in requirements gathering and translation for technology projects. Experience managing senior stakeholders at VP/ More ❯
Plymouth, Devon, United Kingdom Hybrid / WFH Options
Barclays
Corporate Secretariat to define the project plan, manage execution, and establish robust governance structures. You'll build a stakeholder matrix and ensure that design and execution decisions are appropriately risk-assessed and approved through the relevant governance forums. Key Accountabilities: Develop a comprehensive project plan aligned with pre-defined objectives and deadlines. Manage all aspects of project execution, including … stakeholder communication and risk mitigation. Build and maintain a comprehensive stakeholder matrix. Establish effective governance structures for design and execution decisions. Liaise with Compliance, Legal, and Corporate Secretariat teams. Ensure appropriate riskassessment and approval processes are followed. Key Skills: Proven experience in requirements gathering and translation for technology projects. Experience managing senior stakeholders at VP/ More ❯
Stratford-upon-avon, Warwickshire, United Kingdom Hybrid / WFH Options
Barclays
Corporate Secretariat to define the project plan, manage execution, and establish robust governance structures. You'll build a stakeholder matrix and ensure that design and execution decisions are appropriately risk-assessed and approved through the relevant governance forums. Key Accountabilities: Develop a comprehensive project plan aligned with pre-defined objectives and deadlines. Manage all aspects of project execution, including … stakeholder communication and risk mitigation. Build and maintain a comprehensive stakeholder matrix. Establish effective governance structures for design and execution decisions. Liaise with Compliance, Legal, and Corporate Secretariat teams. Ensure appropriate riskassessment and approval processes are followed. Key Skills: Proven experience in requirements gathering and translation for technology projects. Experience managing senior stakeholders at VP/ More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Amey
reasonable standard. Good working knowledge of relevant software and similar analytical tools (e.g., LUSAS, Autodesk Structural Bridge Design). Demonstrates commercial awareness. Has a good understanding of CDM and riskassessment applied to both design and construction. Experienced in the management and communication of hazards and risks on projects and ensures appropriate risk mitigation and transference has More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
including a Level 4 Cyber Security Engineer award. The programme is tailored to provide a springboard into the world of Cyber Security, focused on the following areas: Security Technology RiskAssessment Operating Systems Networking and Architecture Cloud Services Business Processes Data, ML/AI, Analytics, and DevOps Leonardo is a leader in cybersecurity, and one of the biggest More ❯
Exeter, Devon, United Kingdom Hybrid / WFH Options
Proactive.IT Appointments Limited
proactive and organised IT Change Analyst on a permanent basis. This is a remote role with occasional travel to site. The ideal candidate will bring experience in Release Management , RiskAssessment , and Change Coordination , along with excellent communication and stakeholder management skills. This is a great opportunity to join a collaborative and forward-thinking IT team where soft … initiatives across IT and business functions Release Management - Plan, execute, and coordinate software/infrastructure releases Stakeholder Engagement - Maintain clear and consistent communication with technical teams and business stakeholders Risk Management - Identify potential risks and develop mitigation strategies to ensure successful delivery Collaboration - Work closely with cross-functional teams across IT and the wider organisation Experience & Skills Required: Proven More ❯
Exeter, Devon, United Kingdom Hybrid / WFH Options
Proactive.IT Appointments Limited
proactive and organised IT Change Analyst on a permanent basis. This is a remote role with occasional travel to site. The ideal candidate will bring experience in Release Management , RiskAssessment , and Change Coordination , along with excellent communication and stakeholder management skills. This is a great opportunity to join a collaborative and forward-thinking IT team where soft … initiatives across IT and business functions Release Management - Plan, execute, and coordinate software/infrastructure releases Stakeholder Engagement - Maintain clear and consistent communication with technical teams and business stakeholders Risk Management - Identify potential risks and develop mitigation strategies to ensure successful delivery Collaboration - Work closely with cross-functional teams across IT and the wider organisation Experience & Skills Required: Proven More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Strata Construction Consulting
whom you will be expected to provide guidance and support as appropriate What you need to succeed Knowledge of, and experience in highway design, drainage strategy and design, flood riskassessment and management, utility design and planning as well as a good working knowledge of the Development Industry The ability to produce infrastructure masterplans, site appraisals, technical reports More ❯
Gloucester, Gloucestershire, United Kingdom Hybrid / WFH Options
DXC Technology Inc
oversight - Incident, Service Request, Problem, Change, Release Management Service Level Management Escalation Management Drive internal and third-party service review meetings covering performance, service improvements, quality and processes Technology riskassessment and management Technology Service Integration - both internally within Velonetic and with our delivery partners High Priority Incident Management & Leadership Ensures the 'Voice of the Customer' is heard More ❯
Exeter, Devon, United Kingdom Hybrid / WFH Options
Met Office
a team to ensure the team operate effectively. Develop the team utilising the career framework to identify learning needs and career pathways. Vulnerability Management: Manage and coordinate vulnerability scanning, risk assessments, and penetration testing to identify security weaknesses across systems, infrastructure, and digital services.Lead efforts to enhance vulnerability management protocols, ensuring alignment with national (Secure by Design) and international … maintaining the organisational security posture. Reporting and Metrics: Define metrics and targets.Prepare and present regular reports on vulnerability management, and trends to management, translating technical metrics into business focused risk insights. We operate an on-call roster in Technology to provide 24/7/365 support to respond to operational service requirements.This post may be part of an … processes for identifying, classifying, and prioritising vulnerabilities using industry standard frameworks such as CVSS, NIST, and MITRE ATT&CK, with a track record of tailoring scoring models to organisational risk appetite.Proven ability to lead end-to-end vulnerability management initiatives in complex IT environments that reduce mean time to remediation, elevate security maturity and align vulnerability management closely with More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Defence
a collaborative, high-impact environment - this is your chance to make a real difference. Key Responsibilities Define and embed security requirements throughout the product development lifecycle. Conduct threat modelling, risk assessments, and drive mitigation strategies. Advise on solution architecture, minimising security risks and ensuring compliance. Collaborate with cross-functional teams to implement security best practices. Support incident response and … MOD-specific guidelines (e.g. JSP, Def Stan 05-138/139). Familiarity with HMG security and assurance frameworks is a strong plus. Comfortable using threat modelling tools and riskassessment methodologies. Key Competencies: Excellent communicator - confident, clear, and influential. Proactive problem-solver with critical thinking skills. Organised, resilient, and delivery-focused. Strong team player and stakeholder engager. More ❯
Old Down, Gloucestershire, United Kingdom Hybrid / WFH Options
Matchtech
a collaborative, high-impact environment - this is your chance to make a real difference. Key Responsibilities Define and embed security requirements throughout the product development lifecycle. Conduct threat modelling, risk assessments, and drive mitigation strategies. Advise on solution architecture, minimising security risks and ensuring compliance. Collaborate with cross-functional teams to implement security best practices. Support incident response and … MOD-specific guidelines (e.g. JSP, Def Stan 05-138/139). Familiarity with HMG security and assurance frameworks is a strong plus. Comfortable using threat modelling tools and riskassessment methodologies. Key Competencies: Excellent communicator - confident, clear, and influential. Proactive problem-solver with critical thinking skills. Organised, resilient, and delivery-focused. Strong team player and stakeholder engager. More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
the Private and Public/Defence Sector. They are seeking talented Cyber Security Consultants to join their growing team, with ideal candidates having good knowledge/understanding of Governance Risk & Compliance (GRC), specifically around HMG/MOD frameworks such as Secure by Design, NIST, and ISO 27001. Because of the nature of the work and customers you could end … JSP440), and processes Experience with Secure by Design implementation and related tooling Knowledge of NCSC Cyber Assurance Framework (CAF) and GovAssure audits Understanding of NIST Cyber Security Framework and riskassessment methods Experience with ISO/IEC 27001 audits and cyber security assurance Supplier assurance and supply chain security expertise Basic salary £55,000-£65,000 (flexibility for More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Network Rail Limited
affordable and meet programme requirements in a safe and environmentally responsible manner for time, cost and quality. Maintain the use of relevant techniques and procedures of quantified and qualitative riskassessment and HAZOP analysis to allocated projects and manage the environmental aspects of allocated projects in accordance with Network Rail’s environmental policy. Monitor design and specialist consultants … design projects across multi discipline areas. Technical qualifications to HNC/HND or equivalent GNVQ level. Knowledge of quality assurance. An understanding of the arrangements required for the independent assessment of work. What could set you apart: Membership of a relevant professional body with chartered status and/or educated to degree level. Rail Operations and/or maintenance More ❯