Senior Risk Manager – Technology and Change (Second Line) Job Introduction The Risk function serves as the independent risk control unit within the organisation, acting as the second line of defence (2LOD) and providing oversight and challenge across the organisation’s principal risks — including credit, financial, and operational risks. The Technology and Change Risk Team is responsible … for risk oversight of IT Risk, Data Risk, Information Security, Change Management, Operational Resilience, and Intra-Group Risk. The team also ensures there is a consistent and objective view of all technology-related risks, as well as shared risks between Business and IT such as Payments Risk, Third Party Risk, and Operational Resilience. The function … the organisation’s business lines and supporting functions. Main Responsibilities The role holder will be expected to take ownership or contribute to the following key areas throughout the year: Risk Advisory and Guidance Independent Risk Oversight Annual Regulatory Returns Change Oversight and Change Assurance Ideal Candidate Proven experience working directly with senior Technology leadership (e.g., Heads of Functions More ❯
digital estate, encompassing enterprise IT, operational technology (OT), and research platforms. This role sits within the Information & Cyber Security Group and provides subject matter expertise in security architecture, cyber risk governance, and assurance frameworks. This is a cross-functional role with both advisory and hands-on responsibilities, focusing on security assurance, risk management and supporting architecture reviews, vulnerability … management, risk assessments, cyber defence posture, driving technical assurance, and embedding risk-aligned security controls across IT and OT systems and secure-by-design practices. You will work across hybrid environments including cloud, infrastructure, applications, and OT systems. You will be responsible for designing and advising on security architecture patterns, reviewing and maintaining risk registers, leading assurance … Cyber Essentials (CE and CE+) while supporting the secure operation of core services. The role requires strong stakeholder engagement, technical depth, and a sound understanding of UK-specific cyber risk frameworks. You will help shape and maintain a secure posture across UKAEA. A degree in Cybersecurity, Information Technology, or a STEM subject (or equivalent experience). Essential o Security More ❯
safety, security and overall improvement, adhering to the Target Operating Model. The Information Security Analyst will manage the delivery of all cyber security related services. This will include cyber risk management, Data Security Protection Toolkit (DSPT) compliance against cyber relatedassertions, policy and procedure lifecycle management, and ensuring theTrust's information compliance adheres to the Cyber Assurance Framework (CAF) and … inform the recruitment team. Job description Job responsibilities PRINCIPAL RESPONSIBILITIESSupport the CISO in developing, implementing and monitoring a strategic, comprehensive cyber, enterprise information security, resilience, information governance and IT risk management strategy and plan.Provide expert cyber security advice to senior stakeholders and technical teams across the organisation.Work directly with key stakeholders to facilitate riskassessment and risk … that risks in relation to cyber, resilience and information integrity and security are addressed appropriately.Develop business cases and propose funding allocations based around intelligence on the areas of greatest risk and benefit.Develop and implement a cyber, resilience and information integrity and security strategy, ensuring all partners endorse the strategy.Ensure that all local information and cyber security strategies and activities More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Anson McCade
direction, and ensuring security-by-design across complex AI systems and data pipelines. You’ll define and deliver AI security strategies, develop reference architectures, and provide expert guidance on risk management, data protection, and ethical AI governance. You’ll also play a key role in client engagement, helping shape proposals, define solutions, and drive pre-sales activity. To justify … consulting experience and commercial awareness alongside deep technical expertise. Key areas of focus Define and implement enterprise-level AI/ML security strategies, policies, and architectures. Lead on AI riskassessment, threat modelling, and mitigation planning. Ensure compliance with GDPR, the EU AI Act, and international security frameworks (ISO 27001, NIST, TOGAF, SABSA). Build and maintain secure More ❯
future demands and support growth. 3. Analytical and Judgement Skills Technical Problem Solving : Act as escalation point for complex issues, using analytical skills to interpret logs and performance data. RiskAssessment : Identify and mitigate risks including security vulnerabilities and hardware failures. Decision-Making : Make informed decisions on upgrades and expansions, balancing technical needs with financial constraints. 4. Planning More ❯
position is not linked to a specific project, but rather encompasses a broad range of critical subject areas, including: Conducting and overseeing Data Protection Impact Assessments (DPIAs) for high-risk processing activities. Managing third-party vendor data protection risk, from initial due diligence through to ongoing monitoring. Overseeing personal data breach incident response, ensuring timely containment, investigation, and … and continuous improvement in data protection. Essential Skills and Attributes Demonstrable expertise in data protection and privacy compliance (e.g. GDPR or equivalent frameworks). Strong understanding of data protection riskassessment and mitigation processes. Proven experience in data breach management and incident response coordination. Desirable Skills and Attributes Collaboratively curious — keen to engage with colleagues to find pragmatic More ❯
Eton, Berkshire, United Kingdom Hybrid / WFH Options
Connect Recruitment
the director(s) to confirm, re-arrange and ensure that the director has all necessary documents and proof prepared for their visit. 7. A strong understanding of commercial lending, riskassessment and financial analysis is required. 8. Absolute professionalism whilst representing the company is essential. 9. Strong time management is vital in this role. Role Responsibilities • Support the More ❯
Prepare structured reports and presentations for leadership, ensuring alignment with business goals and compliance standards. Report on technical, ethical, and operational considerations for AI-driven process execution. Conduct AI risk assessments and identify vulnerabilities (e.g., data leakage, model poisoning) and propose mitigation strategies. Audit AI outputs for bias and ensure alignment with company ethics and compliance policies. Collaborate with … IT, HR, and Legal to implement governance controls for AI deployments. Produce technical documentation, including usage guides and riskassessment templates. Present findings and recommendations to stakeholders through structured viability reports. Recognise personal development needs and proactively seek learning opportunities to support growth in AI and automation. You Will Need To: Currently pursuing or recently completed a qualification More ❯
technical depth : bridge AI agent capabilities and security workflows for both engineers and customers. What You’ll Bring Security domain expertise (must-have): hands-on familiarity with vulnerability management, riskassessment, EDR/NDR, cloud security, or adjacent areas. 4–7 years in product management with shipped products that moved business metrics. Technical fluency across CI/CD … zoom between strategy and execution without losing the thread. Customer obsession : genuine curiosity for security workflows and pain points. Nice to Have Experience at security product companies (vuln management, risk platforms, detection). Background as a backend/infrastructure engineer turned PM. Product marketing or technical content track record. AI/ML or agent-based systems experience. Exposure to More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Anson McCade
experience securing ML/AI systems (not theoretical knowledge). Deep technical expertise in AI/ML architectures, data pipelines, and model lifecycle security. Strong understanding of threat modeling, riskassessment, and security controls in AI/ML contexts. Previous experience as a Security Architect or senior security consultant. Excellent problem-solving, communication, and stakeholder management skills. Must More ❯
Essential Experience and skills: A Chartered Architect or member of an appropriate institution A sound knowledge of applicable policies, standards, national and European legislation. Knowledge of safety management and risk assessment. Demonstrable experience of the application of inclusive design principles Extensive experience in railway operational buildings and stations, particularly in terms of placemaking within large-scale infrastructure projects, preferably More ❯
a hybrid opportunity with 1-2 days per week in their London office. Responsibilities Lead the end-to-end commercial strategy for all renewals within the portfolio, from initial riskassessment through to final contract execution Collaborate with internal teams to drive success across renewals processes Act as the lead negotiator on all commercial, legal, and procurement discussions More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Lawrence Harvey
your stamp on one of the most ambitious Tech Transformations for one of the most renowned Investment Management firms in the UK. Responsibilities Perform hands-on security threat modelling, riskassessment and vulnerability remediation. Evaluate, architect, implement and support security focused tools and services. Work closely with Development teams to ensure security and privacy are built in by More ❯