Senior Risk Analyst 1277CW SEIC - Somerset Energy innovation centre PAYE Option Up to £386.74 or Umbrella £539.18 per day Decision-Making • The jobholder will be accountable for the Risk information they generate, associated with Project delivery and the management of Project progress and forecasting data. The jobholder will have authority to make decision relating to the maintenance … of Project data and Reporting, within their area of work, and will be expected to identify programme/area issues and suggest resolutions or changes. Principal Accountabilities • The Senior Risk Analyst will be the face of Riskmanagement in their nominated Programme/Area in the Project, bringing confidence to stakeholders that they are performing the right … steps to identify, analyse, respond to and manage their Risk Outputs. • Providing assurance of the maintenance of all Risk and Opportunity data for the Programme/Area within the Risk software system e.g. ARM. • Assurance of the delivery of Risk and Opportunity reports to a defined reporting cycle, including commentary on key time-related drivers and More ❯
Senior Risk Analyst 1277CW SEIC - Somerset Energy innovation centre PAYE Option Up to £386.74 or Umbrella £539.18 per day Decision-Making • The jobholder will be accountable for the Risk information they generate, associated with Project delivery and the management of Project progress and forecasting data. The jobholder will have authority to make decision relating to the maintenance … of Project data and Reporting, within their area of work, and will be expected to identify programme/area issues and suggest resolutions or changes. Principal Accountabilities • The Senior Risk Analyst will be the face of Riskmanagement in their nominated Programme/Area in the Project, bringing confidence to stakeholders that they are performing the right … steps to identify, analyse, respond to and manage their Risk Outputs. • Providing assurance of the maintenance of all Risk and Opportunity data for the Programme/Area within the Risk software system e.g. ARM. • Assurance of the delivery of Risk and Opportunity reports to a defined reporting cycle, including commentary on key time-related drivers and More ❯
Delivery Risk Lead 1284CW Hinkley Point C PAYE £510 or Umbrella £690 Principal Accountabilities (include, whilst not limited to) • Implementation of the RiskManagement Framework through the project organisation including the Portfolio and adherence with the RiskManagement processes and governance cycle within the project delivery organisation. • Act as a Risk Lead and provide … riskmanagement support to the Area, Programme and Functional Directors and teams to ensure project portfolio and delivery risks are adequately identified, assessed, controlled, actioned, and reported to the Project. • Alignment and linkage of delivery risks to portfolio risks to ensure there is a comprehensive coverage of risk across the project and to support Executive reporting on … risk exposure and support linkage to the strategic risk register. • Continuous review and improvement of delivery riskmanagement work instruction, supporting training and ARM RiskManagement Software. • Accountable for the timely production, assurance and focussed Risk and Opportunity reporting for the Project at all levels, including Project Review, Portfolio Risk Review, and More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Morson Talent
home Status: Inside IR35 Type: Contract with approval until 31dec25 with HIGH probability of further renewal(s) Morson Talent are delighted to present an opportunity for a suitably experienced Risk professional to join our client's established team for work associated with a Nuclear New Build mega-Project in Somerset. This role presents a unique chance to be part … apply – typically 3 days per week office attendance and 2 days per week working remotely. Job Purpose/Overview To lead the definition of Policy and Strategy for Delivery Risk for the Project, including responsibility for and oversight of Risks, staffing and the implementation of required Delivery Risk standards and processes. Principal Accountabilities (include, whilst not limited to … ... Implementation of the RiskManagement Framework through the project organisation including the Portfolio and adherence with the RiskManagement processes and governance cycle within the project delivery organisation. Act as a Risk Lead and provide riskmanagement support to the Area, Programme and Functional Directors and teams to ensure project portfolio and More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Vinarchy
in place, continuously improved, and fully compliant with Australian legislation and global standards. You'll take the lead in supplier engagement, reporting, and resolving quality issues, helping to minimise risk while maintaining strong controls. If you have a keen eye for detail, a collaborative mindset, and experience working with quality management systems like ISO 9001, BRC, IFS, or … HACCP we want to hear from you! Key Responsibilities Include: Evaluate and enhance the Quality Management Systems to drive continuous improvement and embed Best Practice philosophies. Manage large projects and end-to-end processes with minimal oversight, ensuring delivery to scope, quality, and timelines. Partner with third parties to ensure full compliance with Vinarchys Quality Management and Food … standards and implement system improvements to support quality audits across relevant sites. Embed compliance activities consistently across all internal operations and third-party partners. Produce monthly reports on Quality Management and Food Safety KPIs, identifying emerging trends and areas for intervention. Contribute to the Global RiskManagement Plan, shaping company policy and direction for Quality RiskMore ❯
City of London, London, Coleman Street, United Kingdom
Deerfoot Recruitment Solutions Limited
Risk Reporting Data Engineering Lead Central London/Hybrid Financial Risk Data/Data Analytics/International Banking Base salary: c. £135k + bonus + comprehensive bens. As a tech recruitment partner for this international bank, we're assisting in hiring a Technical Lead for the Risk Reporting team, which involves designing technologies for data warehousing, mining … You Ready to Lead in a Fast-Paced, Global Environment? The client seeks a Data & Analytics Engineering Lead to head an international team (10-15 members), driving innovation in Risk Reporting. As the organisation evolves with regulations and tech, they need someone with strong technical leadership, a passion for data, and a drive to architect impactful riskmanagement solutions. Main Purpose Lead and develop a high-performing team of 10-15 Engineers delivering robust, scalable risk reporting solutions globally. Key Responsibilities Mentor an international team focused on risk data ingestion, transformation, and reporting. Act as SME in database and reporting solutions, working with Risk stakeholders to meet business needs. Design innovative, fault-tolerant systems More ❯
Employment Type: Permanent
Salary: £135000/annum bonus + good benefits package
Principal Cyber Security Risk Manager Location: Birmingham, Bristol, Leeds, Newcastle-upon-Tyne, Nottingham, Oldham, Swansea Salary: Up to £80,400 per annum Vacancy Type: Permanent Closing Date: 21st September 2025 The organisation are continuing to strengthen security capability across the business. This role will form a part of a growing Cyber function continuing to embed and maintain an assurance … supporting Service Owners and multi-disciplinary teams to ensure that security is built into the service development lifecycle and strategic planning. You will be responsible for providing the consolidated risk picture for the Products within that Service and recommending risk acceptance aligning with defined risk appetites. You will lead a small service group team of security professionals … the Security Architecture function to influence pattern adoption. If this challenge is attractive, theyd love to hear from you! Responsibilities include but are not limited to: Lead and undertake riskmanagement activities against the hardest or most novel scenarios, while applying the fundamental principles of riskmanagement to a range of complex scenarios, and lead regulatory More ❯
strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. RiskManagement: Lead the information security riskmanagement program, including the identification, assessment, mitigation, and monitoring of risks across all systems and operations. Policy and Governance: Support … creation and enforcement of security policies, standards, and procedures. Incident Response: Develop, implement, and manage the security incident response plan. Leadership: Provide strong leadership and mentorship to the governance, risk, and compliance team. Essential Requirements: Extensive security leadership: Proven experience (10+ years) in a senior information security role, with significant experience in a CISO or equivalent position within a … Technology Assessment Criteria (DTAC) and NCSC CAF. ISO 27001:2022 implementation & maintenance: Hands-on experience with the successful implementation, certification, and ongoing maintenance of an ISO 27001 Information Security Management System (ISMS), ideally to the 2022 standard. Security architecture & Secure by Design: Strong understanding and experience of secure software development lifecycles (SDLC) and embedding security by design into product More ❯
BA1, Bath, Bath and North East Somerset, Somerset, United Kingdom
YT Technologies
strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. RiskManagement: Lead the information security riskmanagement program, including the identification, assessment, mitigation, and monitoring of risks across all systems and operations. Policy and Governance: Support … creation and enforcement of security policies, standards, and procedures. Incident Response: Develop, implement, and manage the security incident response plan. Leadership: Provide strong leadership and mentorship to the governance, risk, and compliance team. Essential Requirements: Extensive security leadership: Proven experience (10+ years) in a senior information security role, with significant experience in a CISO or equivalent position within a … Technology Assessment Criteria (DTAC) and NCSC CAF. ISO 27001:2022 implementation & maintenance: Hands-on experience with the successful implementation, certification, and ongoing maintenance of an ISO 27001 Information Security Management System (ISMS), ideally to the 2022 standard. Security architecture & Secure by Design: Strong understanding and experience of secure software development lifecycles (SDLC) and embedding security by design into product More ❯
that could impede the reputation, safety, security, or financial success of the organisation and the programme. Facilitate identification, assessment and prioritisation of threats, opportunities, and issues Experience of RAID Management on a complex Programme of work, dealing with multiple senior stakeholders. Maintain visibility of threat/opportunity trigger points to facilitate risk cost profiling, timely drawdown of risk budget or retirement of threat/opportunity. Assist with the identification and development of appropriate management responses which are measurable and specific, along with assessing the post mitigated positions. Monitor overall risk exposure and assess against the remaining risk budget and timeline. Produce and present fit for purpose risk reports, in a timely manner, to … support the effective communication of threat & opportunity status and required senior management action. Establish and maintain documentation of policies and procedures including a RiskManagement Framework and Corporate Assurance Framework. A working understanding of a developing and implementing integrated riskmanagement solutions across portfolios, programmes and projects. Experience of managing a Dependency Management process More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
advisory team, then this could be the role for you. As a Manager within the team, you will be a key member of controls advisory team. Combining your Oracle risk and controls expertise with your stakeholder and project management skills and experience, this role will provide you with opportunities to lead multi-disciplinary teams leveraging your knowledge of … risk, controls and Oracle to assess, design and implement Oracle controls for a wide range of clients across multiple industries. This includes applying knowledge of Oracle Cloud emerging technology such as AI Agents and leveraging Oracle RiskManagement & Compliance GRC modules to drive improvements throughout the control lifecycle from assessing risks to implementing, monitoring and assessing controls. … HR Transformation programme; Assessing, designing and implementing Oracle controls across areas including: business process controls, application security/role based access controls, segregation of duties, IT general controls, programme management controls, etc; Assessing, designing and implementing Oracle RiskManagement and Compliance (RMC) modules; Applying your risk and controls experience to support clients in meeting specific requirements More ❯
of digital transformation projects and programmes across the organisations. Main duties of the job Working within a clear framework the post holder will be responsible for implementing the clinical riskmanagement processes and procedures in accordance with the relevant NHS guidelines. The postholder will lead the digital clinical safety effectiveness team. They will line manage the digital clinical … regulations. Attended clinical safety training for Health IT or hold Master Modules in Patient Safety (or complete training within a short time of joining) Suitably trained and qualified in riskmanagement or have an understanding in principles of risk and safety as applied to Health IT Systems. Desirable Management/Supervisory qualification Experience Essential Extensive experience … as a Clinical Safety Officer. Knowledgeable in riskmanagement and its application to clinical domains. Experience in process and policy development and operating model implementation. Experience of utilising project and programme management techniques. Experience in managing highly complex stakeholder relationships. Experience in writing and delivering high quality reports, documentation, and presentations to people at all levels, including More ❯
of Travel & Subsistence) Clearance Required: DV (Developed Vetting) (MOD) Brief Summary We are seeking a highly skilled Security Practitioner with strong expertise in MoD Secure by Design (SbD) and riskmanagement , as well as practical knowledge of Operational Technology (OT) and ISO 62443 standards. The successful candidate will play a critical role in supporting security assurance activities within … a high-security environment, contributing to the design, implementation, and management of secure systems. Key Responsibilities Apply MoD SbD principles to ensure systems are designed and implemented securely Lead and support riskmanagement activities aligned with MoD frameworks and standards Provide security assurance for Operational Technology (OT) systems in line with ISO 62443 Collaborate with multidisciplinary teams … and governance requirements Essential Skills & Experience Demonstrable experience as a Security Practitioner (SFIA Level 4/5) Strong understanding of MoD Secure by Design (SbD) principles Proven background in riskmanagement within MoD or similar high-assurance environments Knowledge and application of Operational Technology (OT) security Practical experience with ISO 62443 Active DV Clearance Desirable Familiarity with other More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Sanderson Government and Defence
Cyber Consultant - Governance, Risk & Compliance (MOD/Defence - SC) Location: Remote/Southwest on-site presence Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role As a Cyber Security Consultant, you will play a pivotal role in delivering Secure by Design risk and security assurance services within MOD and Public Sector environments. You'll collaborate … with multi-disciplinary teams to define and implement security risk assessments and best practice solutions, ensuring alignment with business risk appetites and transformation goals. You'll be part of a knowledge-sharing culture, working alongside expert peers in Secure Architecture and Risk Planning. Key Responsibilities Deliver Secure by Design risk and security assurance functions within MOD …/Public Sector. Lead and advise on riskmanagement frameworks, ISMS, and Enterprise Security Risk Management. Facilitate security and risk workshops with Authority departments. Produce clear reporting on vulnerabilities, risks, controls, and treatment activities. Provide pragmatic remediation and riskmanagement guidance. Support secure design across technology platforms including cloud infrastructures. Experience Required The successful More ❯
Emersons Green, Bristol, Avon, England, United Kingdom
Gregory Martin International Limited
or equivalent with a professional qualification (e.g. CCEA, CPCostE, CEng) Experience working in the defence sector/military. Good knowledge of statistics in support of parametric modelling, sampling and risk analysis. Knowledge of statistical software packages such as 'R’. Using logical and analytical thinking to solve complex problems for the client. Strong Microsoft Excel skills to support analysis … of data. Cost Estimating RiskManagement, Risk Analysis, Earned Value Management (EVM) Experience in analysing project data (cost/risk/schedule). Working in a client’s team to influence strategic decision makers whilst delivering practical solutions. Be articulate with good presentation and written communication skills. Be dependable, committed and have a genuine enthusiasm … to contribute to the growth of a successful business. Understanding the military environment and MOD management structures. Knowledge of MOD approvals, the MOD acquisition cycle and Defence lines of Development Experience of Identifying, bidding and winning future work Candidates from a technical consultancy background working within the MOD sector. Ability to travel to client sites across the UK as More ❯
Emersons Green, Bristol, Avon, England, United Kingdom
Gregory Martin International Limited
to hear from you. As a Systems Engineer , you’ll bring a blend of technical expertise, strategic thinking, and hands-on experience. Ideally, you will have: Experience of requirements management within the UK MOD (Frontline Commands or Delivery Agents), Knowledge of the UK acquisition framework (e.g. Business Cases, URD, SRD, CONEMP/CONUSE, ITEAP, etc.) Comprehension of Defence Lines … and technologies. We are looking for Systems Engineers with broad expertise as well as a specialism in one or more disciplines, including: System Design and Architecture Requirements Engineering and Management Stakeholder Collaboration System of Systems (SoS) Integration and Testing RiskManagement Regulatory Compliance Technology Evaluation Documentation and Reporting Keywords – Systems Engineer, Maritime, Defence, MoD, MBSE, Systems Architecture … Systems Design, Model-Based Systems Engineering, Requirements Management, Stakeholder Collaboration, CADMID, RiskManagement, Defence Digital Projects, Aerospace, Land Systems, Joint Systems, Degree, Meng, Systems Engineering. DOORS, Systems Engineer – Defence More ❯
and deliver high value, complex projects across its Surface Ship domain, managing programmes in excess of £10M from inception through to completion, demonstrating strong leadership, strategic thinking and stakeholder management skills. Knowledge and experience of the Project Manager: Experience of successfully delivering complex technical products from initial design definition through to final test and acceptance into service. Excellent organisational … phase. Definition of the Project Team that will lead the project delivery. Clear definition and placement of work packages including key subcontracts required to deliver the project. Ensuring appropriate risk, opportunity, security, trade controls, quality and configuration management for the project. Planning, monitoring, control and update of the project including management of project Life Cycle. Management … that the contract remains up to date and consistent with the project goals and business objectives. Ensuring that contract milestones are met and that cash flow is optimised. Bid Management -PMs are also key contributors to bids and are required to apply the fundamental project management principles and methodology to bids including: Stakeholder management WBS, OBS and More ❯
Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
responsible for designing, implementing, and overseeing security infrastructure to protect products and systems from security threats. This role ensures security controls are integrated throughout the software development lifecycle, performs risk assessments, and collaborates with stakeholders to mitigate vulnerabilities. The Security Architect will also contribute to security compliance and best practices, ensuring products meet regulatory and industry standards. Key Responsibilities … Identify security requirements and integrate controls into product development. Conduct risk assessments, threat modeling, and vulnerability analysis. Develop and implement riskmanagement strategies using security frameworks. Collaborate with development teams to ensure security best practices and secure-by-design principles. Identify and mitigate security risks in solution architectures. Create security documentation (e.g., RMADS, Security Assurance Documents). … Provide security guidance and training to teams across the organization. Key Skills & Experience: Strong knowledge of security frameworks (ISO 27001, NIST 800-30/53, OWASP) . Experience with riskmanagement methodologies and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge More ❯
Bristol, Kendleshire, Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
responsible for designing, implementing, and overseeing security infrastructure to protect products and systems from security threats. This role ensures security controls are integrated throughout the software development lifecycle, performs risk assessments, and collaborates with stakeholders to mitigate vulnerabilities. The Security Architect will also contribute to security compliance and best practices, ensuring products meet regulatory and industry standards. Key Responsibilities … Identify security requirements and integrate controls into product development. Conduct risk assessments, threat modeling, and vulnerability analysis. Develop and implement riskmanagement strategies using security frameworks. Collaborate with development teams to ensure security best practices and secure-by-design principles. Identify and mitigate security risks in solution architectures. Create security documentation (e.g., RMADS, Security Assurance Documents). … Provide security guidance and training to teams across the organization. Key Skills & Experience: Strong knowledge of security frameworks (ISO 27001, NIST 800-30/53, OWASP) . Experience with riskmanagement methodologies and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge More ❯
+ Benefits Are you an experienced Security Consultant looking for your next challenge? We are seeking passionate cyber security professionals with strong expertise in governance, risk and compliance (GRC), who can deliver complex projects and build trusted client relationships. As a Security Consultant , you will work on a variety of Defence and Public Sector assignments, requiring current SC clearance. … Projects will range from risk assessments and ISO 27001 implementations to developing full ISMS frameworks and supporting clients through accreditation. You'll provide expert guidance across standards such as NIST, CAF, and Secure by Design. Security Consultant role is highly client-facing, requiring excellent communication skills and the ability to collaborate with technical teams. You'll stay ahead of … industry developments, contribute to tender responses, and help shape innovative solutions. We are looking for a Security Consultant with experience in security assurance, accreditation, secure by design, and riskmanagement, alongside recognised qualifications such as CISSP, CISM, or ISO 27001 Lead Implementer. Ideally you will be familiar with GRC practices in similar environments also. In return, you'll More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Experis
+ Benefits Are you an experienced Security Consultant looking for your next challenge? We are seeking passionate cyber security professionals with strong expertise in governance, risk and compliance (GRC), who can deliver complex projects and build trusted client relationships. As a Security Consultant , you will work on a variety of Defence and Public Sector assignments, requiring current SC clearance. … Projects will range from risk assessments and ISO 27001 implementations to developing full ISMS frameworks and supporting clients through accreditation. You'll provide expert guidance across standards such as NIST, CAF, and Secure by Design. Security Consultant role is highly client-facing, requiring excellent communication skills and the ability to collaborate with technical teams. You'll stay ahead of … industry developments, contribute to tender responses, and help shape innovative solutions. We are looking for a Security Consultant with experience in security assurance, accreditation, secure by design, and riskmanagement, alongside recognised qualifications such as CISSP, CISM, or ISO 27001 Lead Implementer. Ideally you will be familiar with GRC practices in similar environments also. In return, you'll More ❯
company and industry! Some of what you will be involved in: Identify security requirements and ensure the integration of security controls during the product development lifecycle Develop and implement riskmanagement strategies Perform security threat modelling and risk assessments applying security controls to mitigate any threats identified Collaborate with the development teams to ensure the adoption of … of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST 800-30, NIST 800-53 or OWASP Working with riskmanagement frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST 800-30, NIST 800-53) If this all sounds like something you will be interested … is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically More ❯
company and industry! Some of what you will be involved in: Identify security requirements and ensure the integration of security controls during the product development lifecycle Develop and implement riskmanagement strategies Perform security threat modelling and risk assessments applying security controls to mitigate any threats identified Collaborate with the development teams to ensure the adoption of … of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST 800-30, NIST 800-53 or OWASP Working with riskmanagement frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST 800-30, NIST 800-53) If this all sounds like something you will be interested … is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
BT Group
# Head of Contract Management, DefenceJob Req ID: 47553Posting Date: 3 Jun 2025Function: Sales and CommercialUnit: BusinessLocation: Assembly, Bristol, United KingdomSalary: Competitive plus benefits Location: your contractual base can be Bristol or London Enhanced Security Clearance: if successful, you must be willing and able to undergo Developed Vetting (DV) level security clearance. Part of the requirements to gain this … performance culture founded on clear career progression and the drive and determination to become the UK's best sales force Why this job matters As the Head of Contract Management, Defence, you'll play a pivotal role in delivering exceptional value to BT's Defence customers, while being directly accountable for a portfolio greater than £1 billion in total … leadership role-it's a unique opportunity to serve the UK's national interests, support critical public services, and help keep the nation safe.You'll lead the Defence contract management and Contract Management Office (CMO) teams, ensuring BT meets its contractual obligations with precision, integrity, and strategic foresight. This role is deeply rewarding-your work will directly impact More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
of multi-workstream procurement and commercial transformation programmes, including strategic sourcing, commercial strategies & procurement execution, digital sourcing and procurement, transformation of operating model, cost reduction, integration of third party riskmanagement and contract management services and innovation Bringing the expertise necessary to provide leadership and coaching of the team whilst broadening and enhancing our internal capabilities Development … access to on the job coaching and an array of training options, as well as developing more junior members of your teams through effective and supportive coaching and performance management Playing a lead role in development of the Deloitte business, brand and reputation Connect to your skills and professional experience You're a creative thinker. Someone who can listen … Exposure and knowledge of digital procurement technology software such as Coupa, SAP Ariba, Oracle and/or other procurement technologies. Demonstrable experience in managing procurement, sourcing and third party risk client relationships and identifying, developing and supporting business opportunities. Understanding of the project sales cycle, including structuring a programme with appropriate resources and cost modelling. Experience coaching and developing More ❯