Associates have collaborated with our consultancy division to help in their search for an Information Security GRC Manager. You will work towards refining the entire GRC programme - frameworks, audits, risk assessments, stakeholder communication - across a regulated environment. You'll also work with vendors and internal teams to ensure compliance and strong governance. Key Responsibilities: Build and refine information security … governance and risk frameworks Lead audits (internal/external) and drive compliance (ISO 27001, GDPR, NIST) Own vendor risk, supplier assurance, and contract governance Communicate risks and policies across the business Support KPI development and risk strategy planning Requirements: Degree in Computer Science/IT or relevant industry certifications such as CISA, CRISC, CISMP, ISO 27001 Lead … legal/security needs in housing association sector and its regulatory environment Solid grasp of ISO 27001, NIST, GDPR, and PCI-DSS Proven experience in GRC leadership Skilled in riskanalysis, audit reporting, and policy writing Excellent stakeholder management and communication skills Understanding of cloud security and Microsoft tools If you are interested, please apply immediately as first More ❯
complete end-to-end security services covering our clients’ security from every angle. Our services include Managed Security, Cyber Security Testing, Incident Response, Security Integration, PCI Compliance and Cyber Risk & Assurance services. What sets Integrity360 apart is our excellent team of people that drive the business forward. The company was founded with a focus on technical expertise and that … technical), coordination, monitoring and managing these plans) Assessing our clients' cybersecurity posture against current norms and regulations (ISO 27001, NIS 2, IEC 62443, Cyber Resilience Act...) and through cybersecurity riskanalysis (ISO 27005/EBIOS RM) Integrating cybersecurity into our clients' projects Supporting our clients' CISOs in their daily activities: defining cybersecurity processes, drafting policies and documentation, conducting … enterprises and SMEs, across private and public sectors – industry, energy, luxury, maritime, transportation, institutions... in France and Worldwide. Hard Skills Required: You understand basic security concepts (CIA triad, vulnerability, risk, threat...) You have a technical mindset and understand core security components, their principles: systems and networks, security devices (firewalls, AV/EDR, VPN...), cloud (AWS, Azure, Google...) Familiarity with More ❯
complete end-to-end security services covering our clients’ security from every angle. Our services include Managed Security, Cyber Security Testing, Incident Response, Security Integration, PCI Compliance and Cyber Risk & Assurance services. What sets Integrity360 apart is our excellent team of people that drive the business forward. The company was founded with a focus on technical expertise and that … technical), coordination, monitoring and managing these plans) Assessing our clients' cybersecurity posture against current norms and regulations (ISO 27001, NIS 2, IEC 62443, Cyber Resilience Act...) and through cybersecurity riskanalysis (ISO 27005/EBIOS RM) Integrating cybersecurity into our clients' projects Supporting our clients' CISOs in their daily activities: defining cybersecurity processes, drafting policies and documentation, conducting … enterprises and SMEs, across private and public sectors – industry, energy, luxury, maritime, transportation, institutions... in France and Worldwide. Hard Skills Required: You understand basic security concepts (CIA triad, vulnerability, risk, threat...) You have a technical mindset and understand core security components, their principles: systems and networks, security devices (firewalls, AV/EDR, VPN...), cloud (AWS, Azure, Google...) Familiarity with More ❯
Associates have collaborated with our consultancy division to help in their search for an Information Security GRC Manager. You will work towards refining the entire GRC programme - frameworks, audits, risk assessments, stakeholder communication - across a regulated environment. You'll also work with vendors and internal teams to ensure compliance and strong governance. Key Responsibilities Build and refine information security … governance and risk frameworks Lead audits (internal/external) and drive compliance (ISO 27001, GDPR, NIST) Own vendor risk, supplier assurance, and contract governance Communicate risks and policies across the business Support KPI development and risk strategy planning Requirements Degree in Computer Science/IT or relevant industry certifications such as CISA, CRISC, CISMP, ISO 27001 Lead … legal/security needs in housing association sector and its regulatory environment Solid grasp of ISO 27001, NIST, GDPR, and PCI-DSS Proven experience in GRC leadership Skilled in riskanalysis, audit reporting, and policy writing Excellent stakeholder management and communication skills Understanding of cloud security and Microsoft tools If you are interested, please apply immediately as first More ❯
where you’ll lead the development and implementation of advanced security frameworks, ensuring resilience against evolving threats and compliance with global standards. You’ll collaborate with senior leadership, conduct risk assessments, and design security solutions that protect business objectives while enabling innovation. Key Responsibilities Lead the design and execution of enterprise-wide security architecture Perform threat modelling and riskanalysis across IT assets Implement encryption, IAM, and authorization technologies Conduct vendor and third-party security reviews Advise leadership on emerging threats and best practices Ensure alignment with regulatory standards (e.g., NIST, GDPR, HIPAA) What You Bring 7–15 years of experience in security architecture, ideally in a Service Provider setting Expertise in Mainframe Security (z/OS More ❯
where you’ll lead the development and implementation of advanced security frameworks, ensuring resilience against evolving threats and compliance with global standards. You’ll collaborate with senior leadership, conduct risk assessments, and design security solutions that protect business objectives while enabling innovation. Key Responsibilities Lead the design and execution of enterprise-wide security architecture Perform threat modelling and riskanalysis across IT assets Implement encryption, IAM, and authorization technologies Conduct vendor and third-party security reviews Advise leadership on emerging threats and best practices Ensure alignment with regulatory standards (e.g., NIST, GDPR, HIPAA) What You Bring 7–15 years of experience in security architecture, ideally in a Service Provider setting Expertise in Mainframe Security (z/OS More ❯
Offered: Full-time, Permanent, Onsite working. Working Hours/Shifts: 40 hours per week, Monday to Friday. What does this role involve? This role is responsible for network security analysis, monitoring and incident response, as well as maintenance and configuration of network security tools. Security Analysts will work with the latest technologies to detect, analyse, and limit intrusions and … in a fast-paced environment. Demonstrable Experience in implementing security in cloud platforms (M365, Defender/Endpoint/Identity, Conditional Access, etc). An understanding of approaches of: ISMS, riskanalysis, the CIA triad, attack vectors including social engineering. Strong understanding of Cyber Security controls and Security concepts. Cyber/Cloud Security certification (e.g. AZ-500, SC More ❯
branch environments Lead strategic network transformation projects, focusing on Cisco-based security technologies (Firepower, ASA, ISE, Umbrella, etc.) Develop network security policies, best practices, and high-availability solutions Perform riskanalysis, vulnerability assessments, and network hardening Collaborate with cross-functional teams to align network architecture with business goals What We’re Looking For: CCIE (Security or Enterprise Infrastructure More ❯
that is clear, accurate, and defensible. Reporting deliverables will include: Security assessment reports that communicate technical findings and vulnerabilities identified through activities such as penetration tests, vulnerability assessments, and risk analyses. System architecture and design documentation that describes the architecture, components, data flows, and security assurance properties of systems under evaluation, with emphasis on security compliance, risk posture … will work independently or side-by-side within a team structure to draft, edit, and review a variety of technical and security-focused reports including vulnerability assessments, penetration tests, risk assessments, system architecture and design documentation, and compliance and attestation reports[CH1] [AK2] with an emphasis on accuracy, clarity, and consistency. Additional key responsibilities include: Tailoring reports and communications … documentation practices such as data flow diagrams, control matrices, and system security plans (SSPs). Demonstrated experience, writing security assessments or audit reports such as vulnerability assessments, penetration tests, risk assessments, and security compliance reports. Ability to synthesize technical security findings into language, appropriate for executive, legal, and regulatory audiences. Understanding of legal and regulatory considerations related to security More ❯
this job and more exclusive features. Direct message the job poster from Paritas Recruitment Paritas is aligned with a leading & global asset management client who is seeking a Senior Risk Analyst to support across multi-strategy, multi-asset portfolios. The nature of the role demands a quantitative mindset, programming ability, and good knowledge of factor models and derivatives. You … will possess good communication and interpersonal skills, a good understanding of risk models and different investment processes, combined with self-sufficiency and initiatives. You will: Design processes to ensure that accurate risk analytics are available on a timely basis. Analyse risk attribution reports for use by the Portfolio Managers, Head's of, Asset Class Heads, and other … interested users of the data, such as senior management, board directors, marketing, and compliance. Work with Portfolio Managers in regular risk review meetings, as well as off-cycle focus discussions, covering all aspects of investment risk, performance and other relevant metrics to ensure portfolios are managed in the client’s best interest. Partner with investment teams on fund More ❯
Overview: Our client is currently seeking an experienced Security Risk Analyst to join their team on a contract basis through the end of the year. This role sits inside IR35 and will require three days per week onsite at their Central London office. You ll play a key role in assessing and managing information security risks across the business … and IT landscape. Key Responsibilities: Conduct risk assessments across both IT and business units , ensuring compliance with internal security policies and relevant regulatory frameworks (eg, ISO 27001, NIST, FCA ). Collaborate with key stakeholders to gather and analyze technical security data for accurate risk evaluation and remediation. Work closely with Vulnerability Assessment & Penetration Testing (VAPT) , Threat Intelligence , and … Incident Response teams to understand technical risks and validate that appropriate controls are in place. Contribute to the ongoing improvement of Governance, Risk, and Compliance (GRC) practices by incorporating findings from technical assessments and adapting to emerging threat landscapes. Prepare clear and concise documentation and reporting for senior leadership, audit committees, and regulatory authorities. Support internal and external audit More ❯
London, England, United Kingdom Hybrid / WFH Options
Harnham
actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base pay range Direct message the job poster from Harnham Building Credit Risk, Fraud,and Pricing Analytics Teams in Lending and Insurance I The Talent Driving The Data and AI Revolution £60,000 – £80,000 + up to 15% bonus London (Hybrid … a fast-growing fintech firm specialising in embedded finance. This role offers the chance to work with high-profile global partners and play a key part in shaping credit risk strategy through data-driven insights and advanced analytics. The Company This award-winning fintech operates across the UK, EU, and US, empowering tech firms, payment platforms, and e-commerce … leaders to offer flexible, branded financing to their merchant bases through a cutting-edge software. The Role Perform in-depth portfolio-level credit riskanalysis using statistical methods and data modelling Monitor and evaluate customer segment performance to identify risk trends and opportunities Contribute to the design and enhancement of credit risk policies, pricing models, and More ❯
to receive details of all suitable consulting projects, invitations to networking events, and training workshops. Project Summary B2E Consulting is seeking an experienced Business Analyst with expertise in Investment Risk and Operations to join our client's Investment re-platforming programme. This role involves transitioning to the BlackRock Aladdin platform. The project requires a consultant who: Has a strong … understanding of investment data and riskanalysis Possesses deep knowledge of derivatives products and risk modelling Has BlackRock Aladdin experience and a good understanding of its applications Key Areas of Work The key services you'll provide include: Providing expertise in investment risk modelling, risk sensitivities, and quantitative analytics to support risk management objectives … business analysts to ensure seamless integration of the Aladdin platform with existing systems Mandatory Skills/Experience Successful candidates will demonstrate: Extensive experience in investment data and operations/risk functions, with a solid understanding of front-to-back office processes Proven expertise with the BlackRock Aladdin platform, including its applications and functionalities Strong knowledge of derivatives, portfolio management More ❯
experience to join our central cyber security team. This role offers the opportunity to work across a broad stakeholder base within the UK and Europe, contributing to essential cyber risk management and operational security initiatives. Key Responsibilities As a Cyber Security Operations Analyst, you will play a key role in supporting riskanalysis, security policy implementation, and … the Secure by Design framework across Operational Technology (OT) and Information Technology (IT). You will contribute to: Risk Management: Conduct riskanalysis and interpret first-line operational outputs to support VPI's overall cyber security risk posture. Operational Security: Assist in incident response testing, data management, and coordination of cyber security with physical and personnel … security teams. Human Risk Management: Develop cyber security awareness materials, manage phishing protection programmes, and handle external threat intelligence. Software Development & Cloud Security: Support the integration of security policies into DevOps processes and cloud-based tools. Business & Change Management: Contribute to risk mitigation strategies for business development and internal change projects. Incident Response: Act as a responder within More ❯
Immingham, Lincolnshire, United Kingdom Hybrid / WFH Options
Rullion Managed Services
experience to join our central cyber security team. This role offers the opportunity to work across a broad stakeholder base within the UK and Europe, contributing to essential cyber risk management and operational security initiatives. Key Responsibilities As a Cyber Security Operations Analyst, you will play a key role in supporting riskanalysis, security policy implementation, and … the Secure by Design framework across Operational Technology (OT) and Information Technology (IT). You will contribute to: * Risk Management: Conduct riskanalysis and interpret first-line operational outputs to support VPI's overall cyber security risk posture. * Operational Security: Assist in incident response testing, data management, and coordination of cyber security with physical and personnel … security teams. * Human Risk Management: Develop cyber security awareness materials, manage phishing protection programmes, and handle external threat intelligence. * Software Development & Cloud Security: Support the integration of security policies into DevOps processes and cloud-based tools. * Business & Change Management: Contribute to risk mitigation strategies for business development and internal change projects. * Incident Response: Act as a responder within More ❯
Employment Type: Permanent
Salary: £40000 - £43000/annum Pension,Medical,Incentive plan,25 Ho
derivatives pricing and theory is preferred. Responsibilities Drive clearing house margin, stress and collateral management models R&D. Define business requirements and specifications for model upgrades and enhancements. Perform riskanalysis and develop risk solutions for various products across all asset classes. Develop and support in-house quantitative R&D platform and analytics tools Contribute strongly to … hands-on" and ad-hoc requests for development and solutions in time-critical situations. Document and present risk models and risk reports for clearing members, regulators, risk committees and boards. Interact with risk departments to provide support for existing clearing house quantitative models. Interact with technology groups for production implementation design. Knowledge and Experience PhD or … of a team. Excellent oral and written communication skills. Capable to articulate complex concepts to senior management on a regular basis. Strong mathematical knowledge of financial derivatives pricing and risk management models preferred. More ❯
derivatives pricing and theory is preferred. Responsibilities Drive clearing house margin, stress and collateral management models R&D. Define business requirements and specifications for model upgrades and enhancements. Perform riskanalysis and develop risk solutions for various products across all asset classes. Develop and support in-house quantitative R&D platform and analytics tools Contribute strongly to … hands-on” and ad-hoc requests for development and solutions in time-critical situations. Document and present risk models and risk reports for clearing members, regulators, risk committees and boards. Interact with risk departments to provide support for existing clearing house quantitative models. Interact with technology groups for production implementation design. Knowledge and Experience PhD or … of a team. Excellent oral and written communication skills. Capable to articulate complex concepts to senior management on a regular basis. Strong mathematical knowledge of financial derivatives pricing and risk management models preferred. #J-18808-Ljbffr More ❯
London, England, United Kingdom Hybrid / WFH Options
AltFi Ltd
with decisions driven by balancing security risks faced by the business along with customer or market requirements Perform threat modeling, secure code reviews, and secure design reviews for high-risk applications, evaluate new technology stacks and frameworks Perform vulnerability research, serve as technical security/risk advisor for new technology/applications developed by S&P Ratings Determine … engineering roles Demonstrated subject matter expertise in Application Security, Web services security, GenAI/LLM security Programming expertise – Java, Python, Agile SDLC processes Experience with threat modeling, design reviews, riskanalysis and control design Experience architecting and leading security for Cloud native applications In depth knowledge of network security, authentication and authorization Advanced understanding of vulnerability exploitation chaining … and vulnerability remediation Demonstrated expertise in product/application security architecture – Service oriented architecture (SOA), Network security, application security, web services, Angular, JavaScript Security audit, Vulnerability assessment and packet analysis skills TCP/IP stack knowledge, Encryption expertise, TLS, DTLS, ECC, PKI/Certificates Identity & Access Management: AD/LDAP Preferred Qualifications: Experience with AI technologies and services (e.g. More ❯
your diverse background, talents, ideas, and expertise, which make our global team stronger and more innovative. Responsibilities Serve as a bridge between the Dynatrace business units and the Security Risk Management organization to promote and facilitate the adaptation and involvement with the Dynatrace Risk Management Framework. Create, conduct, and report on security audits and assessments for all systems … and applications (custom and 3rd Party). Train and coordinate with systems application owners, data custodians, technical leads, and business impact analysts on security standards, guidelines, and vendor risk management. Provide guidance and support to teams to meet risk management requirements and industry control frameworks. Contribute to the development and implementation of security policies, procedures, and controls. What … will help you succeed Technical Skills: Experience with Governance, Risk, and Compliance (GRC) tools (preferred: OneTrust). Familiarity with AGILE methodologies, preferably Atlassian/Jira. Understanding of Application Security (OWASP Top 10). Knowledge of web development technologies and programming languages. Proficiency with security assessment tools and techniques. Understanding of legal and regulatory obligations related to information security. RiskMore ❯
ensure that the Bank maintains high standards of security, privacy, and compliance, contributing to our mission of promoting sustainable development across our regions of operation. About the Department Operational Risk Management (ORM) is part of the Bank’s Risk Management group and forms the second line of defence. ORM is responsible for independently identifying, assessing, and supporting the … data subject requests and support the Personal Data Review Panel on personal data-related complaints. Advise on IT and business projects with respect to InfoSec and privacy risks. Maintain risk registers, provide ongoing riskanalysis, and contribute to risk mitigation plans. Support completion and review of Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs … . Manage BAU activities, including: Social engineering exercises. Supplier assurance assessments. Risk assessments for business processes and technologies. Research emerging threats and evaluate applicability to the Bank’s operations. Monitor changes in regulations and best practices, document and propose updates, agree on changes with the Head of Information Security, and implement project plans. Work extensively with IT, particularly the More ❯
have experience working with large datasets, developing insightful reports and dashboards using Tableau, Power BI, and Matplotlib, and supporting fraud detection, anti-money laundering (AML), and other financial crime risk initiatives. Job Title: Data Analyst – FinCrime (Banking Domain) Location: Gurgaon, Bangalore, Chennai - India Experience: 7+ Years Job Type: Full-time, Permanent Job Summary We are looking for a Data … have experience working with large datasets, developing insightful reports and dashboards using Tableau, Power BI, and Matplotlib, and supporting fraud detection, anti-money laundering (AML), and other financial crime risk initiatives. Key Responsibilities Design and develop BI dashboards and reports using Tableau, Power BI, and Matplotlib to support FinCrime investigations and decision-making. Analyze and interpret large financial datasets … to identify suspicious activities, fraud patterns, and potential financial crime risks. Collaborate with compliance, risk management, and fraud prevention teams to improve data-driven insights for FinCrime monitoring. Extract, transform, and analyze structured and unstructured data from banking systems and external sources. Support the development of machine learning models for fraud detection and AML monitoring. Conduct data profiling, data More ❯
This candidate will be an innovative and forward thinking individual who possess in-depth knowledge and will be identifying Information Security compliance risks, drive Security Governance, Security Assurance and Risk Management efforts, manage regional regulatory compliance and contribute to emerging regulations and technology standards globally, partnering with Security Experts of Global Amazon Information Security teams. Your work directly impacts … external regulatory audits - Review Implementation of Security best practices and standards, drive continuous improvements - Influence Security Control Assessment Automation efforts, for security and compliance at scale. - Skilled in security riskanalysis and making complex business/risk trade-off recommendations and decisions - Maintaining C-level relationships with peers, stakeholders, boardrooms, and/or customers, often becoming the … Also, create and maintain a trusted relationship with regulators and industry forums About the team The objective of Payments Security Compliance (PSC) is to oversee & manage Information Security Governance, Risk and Compliance (IS-GRC) for the Payments entities globally as part of Amazon's WW SRC team. The tenets for Payments Security Compliance team (Unless you know better ones More ❯
system design, deployment, and ongoing operations. Define cybersecurity requirements within the client’s environment, including rail-specific systems, legacy OT, and modern industrial platforms. Support developing and delivering security risk assessments, threat models, and control frameworks following the relevant standards. Contribute to the production and review of assurance artefacts, including security cases, risk registers, control implementation evidence, and … depth understanding of operational technology (OT) environments, including SCADA systems, field devices, industrial protocols, and control network architectures. Firm grounding in cybersecurity principles for critical infrastructure, including threat modelling, riskanalysis, defence-in-depth, and zero-trust architectures. Demonstrated ability to define, implement, and assure security controls across complex OT/IT systems within large engineering or infrastructure … safety standards. Strong communication and stakeholder engagement skills, with the ability to liaise confidently across engineering, programme delivery, assurance, and regulatory audiences. Ability to produce high-quality documentation, including risk assessments, technical guidance, assurance artefacts, and audit-ready deliverables. Familiarity with UK cybersecurity regulations and sector guidance, including the NIS Regulations, CNI expectations, and industry-specific frameworks. Capable of More ❯
Improve SOC processes, including incident response, threat hunting, and vulnerability management. Demonstrate expert understanding of security concepts and apply them to a technical level, at the highest levels of risk and customer complexity. Influence and challenge clients to define clear outcomes and problem statements, from which to design appropriate solutions and opportunities. Effectively translate and accurately communicate security and … risk implications at the most senior client levels, across technical and non-technical stakeholders. Manage stakeholder expectations across high risk and complexity or under constrained timescales. Identify new technology opportunities and design the use of these to meet customer needs and pain points. Provide mentorship across delivery team members, operating as an escalation expert for both internal and … client facing issues. Designing, developing, and continuously improving vulnerability assessment, security testing, and riskanalysis methods. Designing, developing, and continuously improving the security posture, effectiveness and efficiency of the company's products and services Providing developers with remediation guidance and advice Designing, developing, and continuously improving security operations Recommending and providing technical leadership for the implementation of security More ❯
branch environments Lead strategic network transformation projects, focusing on Cisco-based security technologies (Firepower, ASA, ISE, Umbrella, etc.) Develop network security policies, best practices, and high-availability solutions Perform riskanalysis, vulnerability assessments, and network hardening Collaborate with cross-functional teams to align network architecture with business goals What We’re Looking For: CCIE (Security or Enterprise Infrastructure More ❯