were looking for: 5+ years in tech risk, IT audit, cyber/digital resilience (FS sector) Strong knowledge of FCA/PRA Operational Resilience, DORA, ISO/NIST/COBIT Experience managing multi-workstream projects & producing board-level deliverables Excellent communicator with proven leadership skills Professional certifications (CISA, CRISC, CISM etc.) and cloud/AI knowledge are a bonus. This More ❯
regulations across UK and EU such as DORA, ECB’s EBA, PRA andrelated standards Informationand Cyber Security Frameworks and industry Standards (e.g., NIST/ISO 27001/COBIT/ITIL) Experience creating and delivering presentations and concise writing skills to produce clear documentation (security policy, senior management posture reports) Excellent inter-personal communication skills, able to liaise with More ❯
regulations across UK and EU such as DORA, ECB’s EBA, PRA andrelated standards Informationand Cyber Security Frameworks and industry Standards (e.g., NIST/ISO 27001/COBIT/ITIL) Experience creating and delivering presentations and concise writing skills to produce clear documentation (security policy, senior management posture reports) Excellent inter-personal communication skills, able to liaise with More ❯
Required 10+ years of experience in IT Risk, Internal/External Audit, or Risk Management (preferably within insurance). Strong understanding of industry frameworks such as NIST, ISO 27001, COBIT, or COSO. Proven ability to work independently while managing senior-level stakeholder relationships. Demonstrable experience with global regulatory environments (e.g., PRA/FCA, BMA, CBI). Strong analytical, verbal, andMore ❯
party regulations across UK and EU such as ECB's EBA, DORA andrelated standards Informationand Cyber Security Frameworks and industry Standards (e.g., NIST/ISO 27001/COBIT/ITIL) Experience creating and delivering presentations and concise writing skills to produce clear documentation (security policy, senior management posture reports) Excellent inter-personal communication skills, able to liaise with More ❯
party regulations across UK and EU such as ECB's EBA, DORA andrelated standards Informationand Cyber Security Frameworks and industry Standards (e.g., NIST/ISO 27001/COBIT/ITIL) Experience creating and delivering presentations and concise writing skills to produce clear documentation (security policy, senior management posture reports) Excellent inter-personal communication skills, able to liaise with More ❯
Ideally, you will also have: Knowledge of or certification in structured methodologies and a familiarity with industry standards such as ITIL for Infrastructure, Systems Development Life Cycle methods andCOBITfor IT Governance. What we offer you We will fuel your ambition and potential with future-focused skills development that equips you with state-of-the-art methodologies andtechnologyMore ❯
working within an ERP environment where ITGCs, and access/application controls are subject to routine audits Solid understanding of IT risk management principles , andcontrol frameworks (e.g., SOX, COBIT, COSO). Proven track record of handling or advising on secure and compliant solutions within large-scale Oracle Cloud ERP implementations. Hands-on experience with user access provisioning, SoD frameworks More ❯
fast-growing space. What youll need: 24 years experience in tech risk, IT audit, or digital resilience (FS sector). Knowledge of regulatory frameworks (DORA, FCA/PRA, ISO, COBIT, NIST). Strong communication and analytical skills. Experience using AI in your current role. This is an exciting opportunity to grow your career in a future-focused area of our More ❯
Edinburgh, Midlothian, United Kingdom Hybrid / WFH Options
Aberdeen
Strong collaboration skills; flexibility and comfort with ambiguity are essential Experience in an IT service or analysis discipline with a working knowledge of an IT governance framework (Such as COBIT) would be advantageous We are proud to be a Disability Confident Committed employer. If you have a disability and would like to apply to one of our UK roles under More ❯
sectors (eg, pharmaceuticals). IT Process Knowledge: Solid understanding of common IT processes, structures, and departmental functions. Risk Framework Proficiency: Working knowledge of recognized Risk Management Frameworks (eg, NIST, COBIT preferred). Stakeholder Engagement: Proven ability to communicate and influence effectively at all levels, including senior IT management. Data & Reporting Skills: Experience in developing risk dashboards, analytics, and performance metrics. More ❯
through to completion. The successful It Risk Management Specialist will have: Technology Knowledge: Work towards a detailed understanding of Technologyand cyber risk frameworks (e.g. NIST/ISO27001/COBIT/ITIL). SSSDLC Expertise: Understanding of the Secure Software/System Development Lifecycle, including secure design, development, testing, and deployment practices. Process Documentation: Experience in drafting, updating, and maintaining More ❯
assessment and risk assessment The ability to influence senior leaders and collaborate across business, technology, and vendor teams Relevant qualifications and ideally certifications such as CISSP, CRISC, CGEIT, CISM, COBIT, SABSA, TOGAF (Security), or equivalent. You'll join our Digital Security and Risk Team - a close-knit group of passionate professionals who thrive on collaboration, creativity, and making a real More ❯
Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
regulated industry. Experience in large, complex enterprise environments (e.g., multiple sites, technologies). Hands-on leadership in technical InfoSec initiatives. Strong understanding and implementation of control frameworks (NIST CSF, COBIT). Ability to run threat intelligence and vulnerability assessments. Experience collaborating with 2nd and 3rd line governance teams (e.g., audit, compliance). Strong stakeholder engagement and influencing skills. Reasonable Adjustments More ❯
infrastructure, SDLC, and operational resilience frameworks. Proven experience of working in Agile framework and banking domain. Must have experience in SQL Experience with governance tools and methodologies (e.g., ITIL, COBIT, TRMF). Familiarity with AI technologies and their infrastructure requirements. Excellent documentation, stakeholder engagement, and analytical skills. More ❯
frameworks and third-party risk management. Excellent stakeholder management and communication skills. Professional qualifications such as CIPS, CPSM, CTPE , or familiarity with SFIA are desirable. Experience with ITIL or COBIT is a plus. If you have the above and are looking to secure a pivotal role within the firm facing off to senior stakeholders across the business (including C-Level More ❯
for example data catalogue (e.g. Collibra, Alation etc), data quality (e.g. Collibra, Anomalo etc). Able to demonstrate an in-depth understanding of data governance frameworks (e.g., DAMA-DMBOK, COBIT) and standards (e.g., ISO/IEC 27001, GDPR). Knowledge of applying data management principles to practical scenarios, with a good understanding of data quality, governance & protection best practices. Experience More ❯
take their career to the next level. Key responsibilities/Experience Hands-on experience implementing NIST CSF (not just reviewing or auditing) Strong knowledge of frameworks like ISO 27001, COBIT, etc. The ability to connect and translate across frameworks Proven stakeholder engagement and influencing skills Experience in a complex, multi-stakeholder environment A proactive, practical mindset - ready to 'do the More ❯
a robust IT oversight framework. Working closely with Compliance and Strategic Development teams. Testing and assessing IT controls to ensure regulatory compliance. Gaining exposure to industry frameworks such as COBIT, NIST, and ITIL . We are unable to consider candidates requiring visa sponsorship. More ❯
a robust IT oversight framework. Working closely with Compliance and Strategic Development teams. Testing and assessing IT controls to ensure regulatory compliance. Gaining exposure to industry frameworks such as COBIT, NIST, and ITIL . We are unable to consider candidates requiring visa sponsorship. More ❯
a robust IT oversight framework. Working closely with Compliance and Strategic Development teams. Testing and assessing IT controls to ensure regulatory compliance. Gaining exposure to industry frameworks such as COBIT, NIST, and ITIL . We are unable to consider candidates requiring visa sponsorship. More ❯
risk management. Excellent stakeholder engagement skills , with exposure to C-Level environments. Professional qualifications such as CIPS, CPSM, CTPE , or familiarity with SFIA are desirable. Experience with ITIL or COBIT is a plus. Why This Role? This is more than a Commercial Contracts Lead — it’s a chance to take full ownership and influence on strategic vendor decisions , work closely More ❯
background or large multinational experience . Experienced in audit (external and internal) and familiar with Internal Audit standards. Technology Risk/Technology Audit/Technology Controls Certifications: CISA, ITIL, COBIT (CISSP, CISM, CRISC, Prince2 ISO27001 desirable) Able to make a high impact on management, to manage stakeholders and to communicate clearly. Display a passion for working in teams and help … drive personal development. IT process knowledge e.g. as defined in standards like ITIL, Cobit, ISO, or British Standards Possess IT knowledge on IT networks, operating systems, databases, and applications, ideally including the Microsoft stack, Cloud technologies and SAP. Well-versed in assessing business andtechnology risks and controls, be able to articulate the risks, and recommend business-focused solutions. Able More ❯
background or large multinational experience . Experienced in audit (external and internal) and familiar with Internal Audit standards. Technology Risk/Technology Audit/Technology Controls Certifications: CISA, ITIL, COBIT (CISSP, CISM, CRISC, Prince2 ISO27001 desirable) Able to make a high impact on management, to manage stakeholders and to communicate clearly. Display a passion for working in teams and help … drive personal development. IT process knowledge e.g. as defined in standards like ITIL, Cobit, ISO, or British Standards Possess IT knowledge on IT networks, operating systems, databases, and applications, ideally including the Microsoft stack, Cloud technologies and SAP. Well-versed in assessing business andtechnology risks and controls, be able to articulate the risks, and recommend business-focused solutions. Able More ❯
background or large multinational experience . Experienced in audit (external and internal) and familiar with Internal Audit standards. Technology Risk/Technology Audit/Technology Controls Certifications: CISA, ITIL, COBIT (CISSP, CISM, CRISC, Prince2 ISO27001 desirable) Able to make a high impact on management, to manage stakeholders and to communicate clearly. Display a passion for working in teams and help … drive personal development. IT process knowledge e.g. as defined in standards like ITIL, Cobit, ISO, or British Standards Possess IT knowledge on IT networks, operating systems, databases, and applications, ideally including the Microsoft stack, Cloud technologies and SAP. Well-versed in assessing business andtechnology risks and controls, be able to articulate the risks, and recommend business-focused solutions. Able More ❯