City Of Bristol, England, United Kingdom Hybrid / WFH Options
KPMG UK
KPMG; a diverse business requires diverse personalities, characters, and perspectives. There really is a place for you here. Why Join KPMG as a Manager - IGH GRCS? KPMG's Governance, Risk and Compliance Services (GRCS) practice within IGH is an area of the firm with tremendous growth potential. GRCS is an integral part of our Enterprise Risk advisory practice. … We provide services relating to internal audit, internal control, corporate governance, riskmanagement and related assurance projects. Clients are based in the public sector and our services deliver added value to clients using modern control assessment, riskmanagement and audit techniques focusing on strategic, management and operational issues as well as financial management and … reporting controls. We also work closely with other consulting teams including our colleagues in Technology Risk and Cyber Risk to ensure our clients receive the best possible advice and assurance. What will you be doing? • Creating annual internal audit plans for clients • Providing internal audit services on both outsourced and co-sourced contractual basis • Managing and directly delivering More ❯
Cheltenham, Gloucestershire, United Kingdom Hybrid / WFH Options
Michael Page (UK)
Operations to set the strategy for the Operations function, in line with overall strategy. Manage Bordereaux Processing: Provide guidance and direction to the Operations Team relating to reinsurance bordereaux management, Scheme eligibility, participant onboarding, industry service and support, claims processing and insurer audits. Contribute to the management of operational risks and controls: Own the Operations function's audit … functions including Reserving, Comms and Transition, Finance and Reinsurance. Work closely with the IT and change team to align on cross-disciplinary areas like transformation, process, data, governance, compliance, riskmanagement and internal control. Market Relationships: Work with the Market Engagement Team to build relationships and rapport with industry participants including insurers, MGAs and Delegated Authority schemes that … standard reports for the Operations Subcommittee and the Underwriting and Claims Committees Continuous improvement: Harnessing insights from performance monitoring & reporting to aid continuous improvement in Bordereaux processing and operational risk management. Routine External Partner Engagement: Own the day-to-day relationship with Operations' external partners and set the strategic direction and service plans for these engagements. Work with the More ❯
Corsham, Wiltshire, United Kingdom Hybrid / WFH Options
Experis
thinking organisation. Key Responsibilities: Design and deliver comprehensive security architectures aligned with MOD standards and cloud best practices Provide strategic guidance on secure cloud adoption, data protection, and architectural riskmanagement Conduct security assessments, identifying risks and proposing effective mitigation strategies Ensure compliance with MOD policies, including JSP 440, and NCSC cloud security principles Work closely with delivery … wider defence/public sector environments Strong understanding of MOD security protocols and delivery frameworks (JSP 440, DEFCONs, etc.) Demonstrable experience working within secure or classified settings Expertise in riskmanagement, security governance, and assurance practices Excellent stakeholder engagement and communication skills Active DV Clearance - applicants must hold current and valid Developed Vetting clearance prior to contract start … acting as an Employment Business in relation to this vacancy. People Source specialise in technology recruitment across niche markets including Information Technology, Digital TV, Digital Marketing, Project and Programme Management, SAP, Digital and Consumer Electronics, Air Traffic Management, Management Consultancy, Business Intelligence, Manufacturing, Telecoms, Public Sector, Healthcare, Finance and Oil & Gas. More ❯
Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
responsible for designing, implementing, and overseeing security infrastructure to protect products and systems from security threats. This role ensures security controls are integrated throughout the software development lifecycle, performs risk assessments, and collaborates with stakeholders to mitigate vulnerabilities. The Security Architect will also contribute to security compliance and best practices, ensuring products meet regulatory and industry standards. Key Responsibilities … Identify security requirements and integrate controls into product development. Conduct risk assessments, threat modeling, and vulnerability analysis. Develop and implement riskmanagement strategies using security frameworks. Collaborate with development teams to ensure security best practices and secure-by-design principles. Identify and mitigate security risks in solution architectures. Create security documentation (e.g., RMADS, Security Assurance Documents). … Provide security guidance and training to teams across the organization. Key Skills & Experience: Strong knowledge of security frameworks (ISO 27001, NIST 800-30/53, OWASP) . Experience with riskmanagement methodologies and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge More ❯
Bristol, Kendleshire, Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
responsible for designing, implementing, and overseeing security infrastructure to protect products and systems from security threats. This role ensures security controls are integrated throughout the software development lifecycle, performs risk assessments, and collaborates with stakeholders to mitigate vulnerabilities. The Security Architect will also contribute to security compliance and best practices, ensuring products meet regulatory and industry standards. Key Responsibilities … Identify security requirements and integrate controls into product development. Conduct risk assessments, threat modeling, and vulnerability analysis. Develop and implement riskmanagement strategies using security frameworks. Collaborate with development teams to ensure security best practices and secure-by-design principles. Identify and mitigate security risks in solution architectures. Create security documentation (e.g., RMADS, Security Assurance Documents). … Provide security guidance and training to teams across the organization. Key Skills & Experience: Strong knowledge of security frameworks (ISO 27001, NIST 800-30/53, OWASP) . Experience with riskmanagement methodologies and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
QinetiQ Limited
with cutting-edge technology in partnership with some of the most brilliant minds. The Role: As a Principal Cyber Security Consultant you will join our Information Assurance and Cyber Risk team that provides expert risk assessments, analysis and advice to clients within the Defence Sector. Day-to-day, you'll be a key stakeholder in the Security RiskManagement process, working closely with our clients to identify and respond to cyber threats and security risks. Your responsibilities will include: Leading cyber security consultancy with key customers at a senior level providing subject matter expertise, advice and guidance on security matters Implementing Secure by Design for systems across live, test and training environments Monitoring and reporting on … system security requirements and vulnerabilities, escalating unresolved vulnerabilities when appropriate Managing the effective coordination of all security-related activities, including but not limited to, queries, incident management, document reviews and testing Modelling Cyber security risks using established and novel frameworks Essential experience of the Principal Cyber Security Consultant: In-depth knowledge of MoD Security policy In-depth knowledge of More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Rolls-Royce plc
implementation, documentation, and maintenance of policies, procedures, associated guidelines, tools and training. Contribute to the security life cycle activities (concept through release) including regulatory certification/qualification (ie - The RiskManagement Framework, ED-202A/DO-326A, Secure By Design, IEC 62443, etc) Collaborate with government, customers, suppliers, and industry experts to meet system and program requirements. Provide … develop, implement, and secure such cyber-physical systems. Experience or interest in cybersecurity and cyber threats (ie - designing secure products, systems, and applications; intrusion detection; digital forensics; system recovery; risk assessment tools and methods; security solutions, policies, standards, and procedures, etc.). Knowledge and/or experience in applying Product Security policies and standards to the engineering of cyber … physical systems such as NIST SP 800-160, DO-326, UK Secure By Design, IEC 62443, the RiskManagement Framework (RMF), and DoDI 5000.83,. Excellent communications skills: able to influence without authority and describe complex ideas simply and succinctly to non-technical people. What we offer We offer excellent development opportunities, a competitive salary, and exceptional benefits. More ❯
Corsham, England, United Kingdom Hybrid / WFH Options
Paradigm Tech
Senior Cyber Security Consultant | Principal Cyber Security Consultant | Information Assurance | RiskManagement | Security Cleared Senior Cyber Security Consultant required for a leading Cyber Security Consultancy with a specialism in the Defence & Central Government sectors. This is a full-time, permanent position based from home with 1 day a week on-site with clients located in the South of … people highly skilled in Information Assurance, Compliance, Security frameworks & Secure by Design. You will need to be skilled in leading projects and teams too so any line or project management experience would be beneficial. They're also looking for people with strong ties to the Defence/Government sectors either working directly for them or working into them via … + bonus and benefits. Please apply and I - Ben Griffiths - will be in touch to discuss. Senior Cyber Security Consultant | Principal Cyber Security Consultant | Information Assurance | RiskManagement | Security Cleared More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
The Boeing Company
and security challenges. An exciting opportunity has arisen for a Lead Information Security Adviser to join Boeing Defence UK in the support of the Defence Equipment Engineering and Asset Management System (DEEAMS) programme. Due to continued business growth there is an opportunity to join a multi-skilled security team that delivers all aspects of protective security to Boeing Defence … UK (BDUK), including information security and assurance, personnel security, business continuity and counter threat support and risk advice. The successful candidate would be a part of a supportive team of around 26, with access to varied work and opportunities to progress their career alongside the growth of the business. At Boeing we're committed to rewarding excellence and fostering … liaise with the customer and other agencies as required and deliver other programme contractual deliverables as required. The post holder will also have experience of information security, defence security management and defence cyber protection partnership processes. Post initial operating capability the role will be integral to maintaining the continued authority to operate by maintaining the Information Security ManagementMore ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
The Boeing Company
defence and security challenges. An exciting opportunity has arisen for an Information Security Adviser to join Boeing Defence UK in the support of the Defence Equipment Engineering and Asset Management System (DEEAMS) programme. Due to continued business growth there is an opportunity to join a multi-skilled security team that delivers all aspects of protective security to Boeing Defence … UK (BDUK), including information security and assurance, personnel security, business continuity and counter threat support and risk advice. The successful candidate would be a part of a supportive team of around 26, with access to varied work and opportunities to progress their career alongside the growth of the business. At Boeing we're committed to rewarding excellence and fostering … liaise with the customer and other agencies as required and deliver other programme contractual deliverables as required. The post holder will also have experience of information security, defence security management and defence cyber protection partnership processes. Post initial operating capability the role will be supportive in maintaining the continued authority to operate by maintaining the Information Security ManagementMore ❯
Almondsbury, Gloucestershire, United Kingdom Hybrid / WFH Options
Frontier Resourcing
product portfolio-encompassing software, hardware, and services-by embedding robust security controls throughout the development lifecycle, identifying and mitigating risks, and ensuring compliance with defence-grade standards. Key Responsibilities Risk Assessments & Vulnerability Management Conduct comprehensive security risk assessments at each product phase (design, implementation, deployment). Identify vulnerabilities in architectures, codebases, and configurations; drive remediation with development …/27005, NIST 800-30/53, JSP 440/604, Def Stan 05-series). Lead the creation and maintenance of security documentation (RMADS, Security Assurance Documents, Security Management Plans). Testing & Assurance Design and execute penetration tests and automated vulnerability scans; validate fixes. Oversee third-party security assessments as required. Continuous Improvement Drive security tooling and automation … and security technologies; evangelise best practices across teams. Qualifications & Experience Proven experience (5+ years) in product or application security within defence, government, or security-cleared environments. Deep knowledge of riskmanagement frameworks (ISO 27001/2/5/31000, NIST 800-series) and Defence Standards (JSPs, Def Stan 05-138/139). Hands-on experience with More ❯
Bath, Somerset, United Kingdom Hybrid / WFH Options
Bmt Defence Services LTD
Consultant to join our team and engage in a diverse range of client projects within the defence, national security, environmental, and research sectors. This includes the provision of strategic riskmanagement advice and/or technical consultancy within the context of cybersecurity. You will join a team of highly skilled professionals dedicated to safeguarding technologies and systems, many … this outcome, you must be passionate about cyber security and apply your deep understanding and experience of HMG, NCSC, and international cyber standards. The role will require excellent stakeholder management and communication skills to build the trust and support necessary for successful outcomes. You will be supported by team members in a highly collaborative environment, a structured learning and … love to hear from you. About You We'd love to hear from you if you can demonstrate expertise in at least one of the following areas : Security governance, risk and compliance (GRC), aligned with HMG cybersecurity and information assurance policies, standards, and guidance with experience in consultancy or supplier roles. Securing OT (Operational Technologies) with knowledge and understanding More ❯
Bristol, Avon, England, United Kingdom Hybrid / WFH Options
Hays Specialist Recruitment Limited
to resolve blockers, implement process improvement and manage a small team of two Procurement Business Partners. Your responsibilities will include: * Lead strategic procurement delivery across IT, Hard & Soft Facilities Management, and Customer Communications categories, managing a spend portfolio of approximately £163 million.* Design and implement category strategies that align with business objectives and deliver measurable value.* Build strong relationships … efficiency and compliance.* Manage and develop a team of two Procurement Business Partners, providing leadership, coaching, and support.* Oversee end-to-end procurement activities, including sourcing, contract negotiation, supplier management, and performance tracking when needed.* Ensure procurement practices comply with public sector regulations (old UCR15 frameworks and PA23)* Monitor market trends and supplier innovations to inform strategic sourcing decisions … and maintain competitive advantage. What you'll need to succeed: * Extensive experience in IT procurement is essential, with Facilities Management category experience being highly desirable* Proven line management experience, with the ability to lead, coach, and develop high-performing teams.* Demonstrated success in managing procurement portfolios of a similar scale (circa £150 million).* Strong understanding of public More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Risktec Solutions Ltd
Principal/Senior Nuclear Safety Engineer Location: Bristol, London or Great Yarmouth Type: Permanent, Full-Time Working Environment: Flexible Background Risktec Solutions Ltd is an established, independent engineering and riskmanagement consultancy. Our mission is to help our clients, and hence society, meet their evolving energy and infrastructure needs in a safe, sustainable, and ethical way. Our people … to plant, including: Undertaking plant obsolescence assessments. Authoring specifications for new equipment. Reviewing design proposals and producing design substantiation reports. Authoring testing and commissioning strategies and functional test procedures. Management of projects, project teams and interfacing with clients. Bid proposal management and other business development activities. This role offers the opportunity to support the development of wider company … development: Access to certified CPD courses and a university postgraduate education programme, delivered in partnership with Liverpool John Moores University, including the opportunity to enrol on the MSc in Risk and Safety Management. Support to individuals working towards Chartership including company mentor scheme and institution fees reimbursed. Additional Information Due to the nature of the work, the candidates must More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Core 3 Ltd
is a pivotal role leading finance across the UK business. As a strategic partner to the executive team, you'll be responsible for financial leadership, insight-driven reporting, commercial risk management. Own the monthly management accounts process, providing timely and insightful reporting. Lead budgeting, forecasting, and cost challenge initiatives across the business. Manage statutory reporting, annual audit, and … compliance with IFRS and group standards. Oversee treasury, FX exposure, and multi-currency cash flow. Drive margin protection and riskmanagement across projects ranging from £500k-£5m. Deliver accurate, visual dashboards and business KPIs to influence decision-making. Lead and evolve the IT function to ensure system reliability, data integrity, and alignment with global infrastructure. Optimise the use More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
insight and workforce analysis and understanding. Lead complex, large-scale Technology & Transformation projects for top Financial Services institutions. Help clients adapt to the changing landscape of digital banking, new risk models, and innovative distribution channels. As an Associate Director, you will: Lead complex, large-scale transformation projects for leading Financial Services organisations, focusing on organisational design, transformation and the … roles, and organisations for functions within Financial Services - This could include experience with Digital Transformation initiatives, Mergers and Acquisitions, or new operating models in areas such as Banking, Asset Management, or Insurance Demonstrate a strong understanding and experience of applying emerging technology context to organisation transformation such as the growing capability of AI and GenAI Acute awareness of riskmanagement and managing risks associated with people, processes, systems, change, and commercials. Strong analytical, problem-solving, and communication skills. Passion for innovation and driving change in a dynamic environment. Innovative mindset and keen interest in the newest thinking around transformation, the future of work, and technology disruptors. Ability to explore options in a structured way, deploying techniques such More ❯
Gloucester, Gloucestershire, United Kingdom Hybrid / WFH Options
Eplass
landscape of construction software, Thinkproject seamlessly integrates the most extensive portfolio of mature solutions with an innovative platform, providing unparalleled features, integrations, user experiences, and synergies. By combining information management expertise and in-depth knowledge of the building, infrastructure, and energy industries, Thinkproject empowers customers to efficiently deliver, operate, regenerate, and dispose of their built assets across their entire … s ISO 27001 certification, Cyber Essentials Plus, and BSI C5. Actively participate in on-call and platform service, troubleshooting, resolving issues, and handling escalations to other technical teams, senior management, or account managers. Create and maintain technical documentation. Contribute to technical projects including riskmanagement and reporting. Understand and improve the Thinkproject DR processes and actively participate More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Somerset Bridge
and support the group's strategic objectives. The successful candidate will lead the development of a formal data governance framework, including data ownership models, stewardship engagement, and quality management processes. They will work closely with data architects, engineers, analysts, compliance, and business functions to ensure data is governed, understood, and fit for purpose across its lifecycle. Additionally, the role … change programmes (e.g. EDW, AI/ML). Support the data strategy by promoting a culture of data accountability, literacy, and stewardship. What you'll need: Degree in Data Management, Information Governance, Information Systems, or a related field (or equivalent experience). Professional certifications preferred (e.g. DAMA CDMP, DCAM, ISO 8000). Proven experience in defining and implementing enterprise … standards (e.g. DPA 2018, GDPR, FCA SYSC, PRA SS1/21). Experience with Azure Purview, Unity Catalog, or similar data governance and metadata tools. Excellent understanding of data management principles including data quality, metadata, lineage, classification, and stewardship. Experience leading data governance initiatives in regulated environments such as financial services or insurance. Strong influencing skills to drive governance More ❯
Gloucester, Gloucestershire, United Kingdom Hybrid / WFH Options
Benefact Group plc
evaluate their potential impact on the organisation Develop and advocate for innovative solutions that drive business value and operational efficiency Contribute to the development of IT strategies and roadmaps RiskManagement : Assess and mitigate technical risks associated with architectural decisions and solution implementations Ensure solutions are scalable, secure, and compliant with relevant regulations and standards Knowledge, skills and … regulated environment/financial services (ideally insurance industry) Desirable:Proven track record of designing and implementing complex technical solutions in insurance, including policy administration, claims processing, underwriting, and customer management systems Technical Skills : Ideally knowledge of insurance industry standards, regulations, and best practices Proficiency in architecture frameworks and methodologies (e.g., TOGAF, Zachman) Experience with cloud platforms (e.g., Azure (preferred More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Evodia Limited
Identification of necessary artefacts in comparison to existing security reports Mature the artefacts in discussion with Subject Matter Experts (SMEs) and functional and prime Contractor input. Finalise the Security Management Plan (SyMP) Plan security-related activities required for CUP2 A-phase and beyond Representation at various security working groups. SKILLS & QUALIFICATIONS: Demonstrable expertise in securing and assuring complex, mission … by Design methodologies and their application in system and network design. Strong knowledge of securing cloud environments, software applications, and networked systems. Strong analytical skills with a focus on riskmanagement and continuous security improvement. Able to collaborate effectively with cross-disciplinary teams to develop compliant, secure solutions. Excellent communicator capable of translating complex technical security concepts for More ❯
Templecombe, Somerset, South West, United Kingdom Hybrid / WFH Options
Morson Talent
less experienced team members. Manage own elements of logistics engineering work package and support others. Contribute to relevant Engineering Communities of Interest. Take responsibility for contributing to team planning, riskmanagement, quality and HSE. Seek & share good practice & knowledge to continuously improve own and team practices. Contribute to the development & continuation of successful local supply chain relationships. Proven More ❯
bath, south west england, united kingdom Hybrid / WFH Options
Morson Talent
less experienced team members. Manage own elements of logistics engineering work package and support others. Contribute to relevant Engineering Communities of Interest. Take responsibility for contributing to team planning, riskmanagement, quality and HSE. Seek & share good practice & knowledge to continuously improve own and team practices. Contribute to the development & continuation of successful local supply chain relationships. Proven More ❯
Bristol, Avon, England, United Kingdom Hybrid / WFH Options
Sanderson
Proficiency in network automation and IaC tools Familiarity with VMware, Windows Server, client environments. Experience with Cisco network (Brocade and Extreme desirable) Demonstrated experience working within regulatory frameworks and risk management. Knowledge of cost optimization strategies Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and More ❯
South West London, London, England, United Kingdom Hybrid / WFH Options
Sphere Digital Recruitment
We're Hiring: Senior Client Success Manager (Remote/Hybrid, UK-based) Looking to take your client success career to the next level? Join a fast-growing company transforming riskmanagement in the aviation industry. We're looking for a Senior Client Success Manager to build and nurture long-term relationships with key enterprise clients. This role is More ❯
South West London, London, United Kingdom Hybrid / WFH Options
GNA Group
drives innovation in engineering, construction, and commissioning, prioritizing safety, quality, and collaboration. Job Purpose: We are seeking two Asset Information Delivery Technicians to join our central Data and Information Management Team for an 8-month contract. This delivery-focused role supports the rollout of a consistent Asset Information Framework (AIF) across the project and its tier 1 supply chain. … manuals). Develop asset information products, including asset classifications, data dictionaries, breakdown structures, labelling requirements, and equipment catalogues. Configure asset data requirements, ensuring compliance with security, quality, and change management standards. Create templated or digital form solutions for asset information delivery. Produce guidance and training materials to support AIF product adoption. Document progress, prepare reports, and facilitate user feedback … stored in the designated SharePoint site, adhering to governance protocols. Identify and escalate risks, integrating supplier feedback to enhance solutions. Essential Skills and Experience: Extensive experience in asset information management or data management for large infrastructure or construction projects. Proven ability to write formal reports and document findings from stakeholder engagements. Strong analytical skills for extracting and assessing More ❯