Chief Operating Office of Markets, responsible for the design and implementation of Markets wide frameworks and practices that are integral and fundamental to the franchise's Operational and Compliance Risk Management. The Governance & Control group covers: 1) Control Framework; 2) Governance of Legal Vehicles and Products; 3) Regulatory Compliance; 4) Strategy and Transformation. As part of the Control Framework … group leads the oversight of the MCA Framework to ensure that best practices are employed across Markets and assist management in the monitoring and management of operational and compliance risk for the franchise. The MCA Framework group is a centralized team specializing in: designing and implementing standard solutions to meet policy and regulatory requirements and provide management with the … modified processes to review through the appropriate governance routines and launch with adequate controls which can be monitored and reported. Collaborates with Markets stakeholders and 2nd Line of Defense Risk Stripe SMEs in the documentation and drafting of process flows, risks-controls to show compliance with internal policies and laws, rules and regulations. Provides a comprehensive view of front More ❯
City of London, London, United Kingdom Hybrid / WFH Options
The MDU
a key aspect of the maturing IT organisation but something that can be hard to achieve when relying on collective responsibility. This role will demonstrate clear ownership for EITS Risk and Controls and deliver ongoing management of policies, procedures, risk reviews and a quarterly plan to address specific actions in this area. This is important to ensure consistency … across all areas of the EITS department, that controls remain active and up to date and we align to Enterprise Risk governance. Role Context The role is flexible in terms of location with remote (working from home within the UK) working available on a hybrid basis, attending the office as required by the role. Main Responsibilities The Risk … any relating incidents and work with Leadership and Management to ensure these are integrated with wider EITS process. Working across the EITS organisation, supported by EITS Leadership, responsibilities include: Risk Management Framework: Develop and implement a comprehensive risk management framework that aligns with the organizations strategic goals and objectives. This will be aligned to COBIT but also take More ❯
five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Technical Cyber RiskAssessment Manager will be responsible for the following: Develop an understanding of Deloitte's global line of business and its priorities, becoming an advocate for addressing cyber risk. … Demonstrate familiarity with the Three Lines of Defense (3LOD) model. Possess knowledge of risk management practices and the ability to conduct technical risk assessments. Work with the Global Technology Infrastructure team to integrate system cybersecurity assessments into their processes to ensure consistent implementation of security controls. Work with the Cybersecurity Architecture team and apply reference architectures for security … reported threats at peer organizations, and overall cybersecurity threats in the internet ecosystem and you will notify leadership of potential or existing threats and assist in the development of risk mitigating strategies of these items. Monitor security blogs, articles, and reports and remain current on related laws, regulations, and industry standards to keep up to date on the latest More ❯
St. Albans, Hertfordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Technical Cyber RiskAssessment Manager will be responsible for the following: Develop an understanding of Deloitte's global line of business and its priorities, becoming an advocate for addressing cyber risk. … Demonstrate familiarity with the Three Lines of Defense (3LOD) model. Possess knowledge of risk management practices and the ability to conduct technical risk assessments. Work with the Global Technology Infrastructure team to integrate system cybersecurity assessments into their processes to ensure consistent implementation of security controls. Work with the Cybersecurity Architecture team and apply reference architectures for security … reported threats at peer organizations, and overall cybersecurity threats in the internet ecosystem and you will notify leadership of potential or existing threats and assist in the development of risk mitigating strategies of these items. Monitor security blogs, articles, and reports and remain current on related laws, regulations, and industry standards to keep up to date on the latest More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Technical Cyber RiskAssessment Manager will be responsible for the following: Develop an understanding of Deloitte's global line of business and its priorities, becoming an advocate for addressing cyber risk. … Demonstrate familiarity with the Three Lines of Defense (3LOD) model. Possess knowledge of risk management practices and the ability to conduct technical risk assessments. Work with the Global Technology Infrastructure team to integrate system cybersecurity assessments into their processes to ensure consistent implementation of security controls. Work with the Cybersecurity Architecture team and apply reference architectures for security … reported threats at peer organizations, and overall cybersecurity threats in the internet ecosystem and you will notify leadership of potential or existing threats and assist in the development of risk mitigating strategies of these items. Monitor security blogs, articles, and reports and remain current on related laws, regulations, and industry standards to keep up to date on the latest More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The Technical Cyber RiskAssessment Manager will be responsible for the following: Develop an understanding of Deloitte's global line of business and its priorities, becoming an advocate for addressing cyber risk. … Demonstrate familiarity with the Three Lines of Defense (3LOD) model. Possess knowledge of risk management practices and the ability to conduct technical risk assessments. Work with the Global Technology Infrastructure team to integrate system cybersecurity assessments into their processes to ensure consistent implementation of security controls. Work with the Cybersecurity Architecture team and apply reference architectures for security … reported threats at peer organizations, and overall cybersecurity threats in the internet ecosystem and you will notify leadership of potential or existing threats and assist in the development of risk mitigating strategies of these items. Monitor security blogs, articles, and reports and remain current on related laws, regulations, and industry standards to keep up to date on the latest More ❯
materials Supporting workshop delivery and client meetings Conducting research and analysis Client Engagement Support Typical activities include: Leading client workshops such as security strategy sessions, Cloud security architecture reviews, Riskassessment workshops, technology evaluation sessions. Producing client materials including, Security assessment reports, technical architecture diagrams, implementation roadmaps and project status updates. Conducting security assessments by gathering and …/security experience in the Defence Sector Demonstrable experience of one or more of the following areas: MoD Security GRC/Assurance Processes: Secure by Design and RMADs/RiskAssessment Cloud security architecture documentation, s ecurity controls mapping and c ompliance checking automation MoD Cyber Operations: SOC tool evaluation support, SIEM use case development, Metrics and reporting … frameworks, and Technology integration assessment. Cyber Vulnerability Investigations Identity & Access: IAM architecture reviews, p rivileged access solutions, authentication technology assessment, and Zero Trust implementation planning OT Security OT RiskAssessment/Assurance and OT Vulnerability Management Key Strengths Detail-oriented with a strong focus on quality Well-organised and committed to developing customer service skills Enthusiastic about More ❯
Barrow-In-Furness, Cumbria, North West, United Kingdom Hybrid / WFH Options
Morson Talent
contributor in ensuring safe submarines by design. You will engage with a wide range of engineering stakeholders across our programmes to develop and embed fire safety requirements, conduct fire risk assessments and reduce risks from fire hazards. Responsibilities Taking a lead role in fire riskassessment activities Developing, producing and maintaining fire safety process documentation Producing and … reviewing fire and explosion safety strategies and risk assessments Engaging with engineering stakeholders to develop and implement fire safety requirements Production and review of safety case documentation (relevant to fire safety) Providing support to regulatory compliance Chairing fire and explosion safety workshops and working groups Proven Ability/Key Skills Fire riskassessment proven ability gained from … construction environment Knowledge of working in a fire safety engineering environment and applying various fire safety guidance including Defence Standards, ADB, BS 9999 and relevant NFPA standards. Application of risk based approaches to fire safety engineering Safety case development proven ability Fire hazard identification and analysis Fire riskassessment production and review Fire strategies Safety case authoring More ❯
Services. The business partners withinstitutional investorstoenhance their portfolio returns through intrinsic value securities lending, liquidity management, and collateral optimization. Citi's key strengths include unsurpassed global branch network, robust risk management, real-time controls, product innovation, dynamic reporting, and market thought leadership. What you'll do: Lead the RiskAssessment of new and existing business products and … drive changes when needed. Monitor industry trends and articulate Citi's position to Senior Management. This includes providing ongoing updates to Chief Risk Officer's, Product Managers and Sr. Management related to Fraud trends, forecast, performance and opportunities. Identify new tools, vendors and capabilities to mitigate current fraud and anticipated changes/shifts in fraud tactics. Develop strategic vision … of work-streams, customer communication and detection capabilities. The position requires substantial interaction and collaboration with Policy, Operations, and other functional business partners to optimize Fraud needs Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations More ❯
Sale, Cheshire, England, United Kingdom Hybrid / WFH Options
Broster Buchanan Ltd
Interim Technology focused risk management 3-6 month contract Remote based Role Summary: We are seeking an experienced Technology Risk Consultant on a 3–6 month contract to establish and embed a more structured and effective approach to managing technology and cyber-related risks across our telecommunications services business.This hands-on role is ideal for a proactive and … independent risk professional who can assess the current environment, identify key gaps, and design and implement a practical, scalable risk management framework tailored to the needs of a complex, high-availability telecom services environment. Key Deliverables: Technology Risk Framework Design & Implementation: Review existing risk management structures, policies, and practices within Technology and Network functions. Design a … fit-for-purpose Technology Risk Management Framework that aligns with business needs and industry standards (e.g. ISO 27001, NIST, COBIT). Develop practical tools such as risk registers, heatmaps, control libraries, and riskassessment templates. Stakeholder Engagement & Knowledge Transfer: Work closely with internal stakeholders to understand current risks and control environment. Facilitate risk workshops and More ❯
compliance with international standards, and fostering a culture of security awareness. You'll work closely with IT, compliance, and executive teams to align security measures with business objectives. Responsibilities RiskAssessment: Conduct thorough risk assessments to identify vulnerabilities, threats, and potential impacts on information security. Strategy Development: Develop and implement risk management strategies, policies, and procedures … degree in Computer Science, Information Security, or a related field; Master's degree preferred. Experience: Minimum of 7 years in information security with at least 3 years in a risk management role. Certifications: Preferably CISSP, CISM, or CRISC. Additional certifications in risk management are advantageous. Skills: Strong understanding of cybersecurity frameworks, riskassessment methodologies, and compliance … requirements. Excellent analytical, strategic planning, and decision-making skills. Ability to communicate complex security concepts to non-technical stakeholders. Proficient in using risk management tools and technologies. Personal Attributes: Proactive, detail-oriented, with a strong ethical compass and leadership abilities. Health & Wellness: Comprehensive health insurance, including dental and vision, plus wellness programs. Professional Development: Continuous learning opportunities through workshops More ❯
organization culture Monitoring and assessing the effectiveness of compliance programs Keeping pace with and understanding the impact of complex, changing regulatory environments on organizations' business models and processes Developing risk strategies and frameworks for compliance and regulatory risks Leveraging analytics and data to optimize compliance risk assessments and compliance monitoring What you will do: As a Gartner analyst … Compliance & Ethics Officer, CEO, and Board of Directors). Knowledge of and experience with the chief compliance officer role, the obligations and requirements of compliance & ethics programs, and compliance risk management (riskassessment processes, key stakeholders involved, etc.) in general. Familiarity and experience with compliance program management systems and tools for regulatory tracking, policy management, riskassessment, and reporting. Effective verbal and written communication skills; ability to adjust style to different audiences. Executive presence; can immediately establish credibility with executives and additional stakeholders. Ability to navigate and thrive in a highly matrixed work environment Willingness to offer flexible working hours within reason to serve Gartner's global client base Ability to travel on occasion More ❯
a company that simplifies and enhances financial opportunities using state-of-the-art technology. About the Position Interactive Brokers (U.K.) Limited, based in central London, is looking for a RiskAssessment Analyst to join our New Accounts department. We seek applicants with a keen attention to detail to join our Enhanced Due Diligence process. If you have experience … public domain searches for negative information about applicants and associated entities. Provide advice on issues and escalations to other New Accounts Teams to address difficult applications and independently recommend risk-based decisions to AML. Responsible for timely escalations of suspected financial crime to AML; Work closely with other New Account Teams and AML to review and evaluate all financial … concentration in Finance, Law, Accounting, or Information Systems, etc. Minimum of 2 years' experience and familiarity, preferably gained in brokerage or corporate banking environment, with onboarding or reviewing high-risk client relationships and carrying out EDD. Excellent written and oral communication skills in English. Strong research, investigatory, and problem-solving skills. Ability to make risk-based recommendations and More ❯
Birmingham, West Midlands, West Midlands (County), United Kingdom Hybrid / WFH Options
Michael Page
specialist advice and recommend approaches across teams and various stakeholders communicate widely with other stakeholders, agencies and National Technical Authorities Advise on important security-related technologies and assess the risk associated with proposed changes Inspire and influence others to execute security principles Help review other people's work Recommend a security riskassessment approach and vulnerability analyses … Collaborative and inclusive ways of working and can build trust across diverse teams and stakeholders Working knowledge of security architecture principles and best practices. Demonstrable experience in security architecture, riskassessment and incident response Experience & Technical Skills: Essential criteria: Experience in designing and implementing security solutions, preferably in a government or public sector environment. Working knowledge of security More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
Michael Page (UK)
specialist advice and recommend approaches across teams and various stakeholders communicate widely with other stakeholders, agencies and National Technical Authorities Advise on important security-related technologies and assess the risk associated with proposed changes Inspire and influence others to execute security principles Help review other people's work Recommend a security riskassessment approach and vulnerability analyses … Collaborative and inclusive ways of working and can build trust across diverse teams and stakeholders Working knowledge of security architecture principles and best practices. Demonstrable experience in security architecture, riskassessment and incident response Experience & Technical Skills: Essential criteria: Experience in designing and implementing security solutions, preferably in a government or public sector environment. Working knowledge of security More ❯
following: Shape the development of technology control management including scoping, development of and testing ServiceNow tools for ITRM processes in DT to allow for an effective, efficient and adaptable risk governance capability and contribute to its continuous improvement. Direct control development across DT, driving a consistent approach utilising the IRM capabilities within ServiceNow. Deliver the DT control library architecture … and control data management. Secure commitment from member firms and stakeholders in the global firm to participate in the Technology Standards and Maturity Assessment with the objective to assess the member firm's overall IT capability/maturity and to help them establish their own priorities. Keep abreast of new and emerging technologies being deployed and ensure riskassessment processes are appropriately applied and advise on decisions with technology risk impacts as new activities and other change management/transformational initiatives. Leverage available technical resources/tools to research; expand technology risk knowledge to enhance work product, to remain up to date on member firms and line of businesses hot topics while sharing the More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
following: Shape the development of technology control management including scoping, development of and testing ServiceNow tools for ITRM processes in DT to allow for an effective, efficient and adaptable risk governance capability and contribute to its continuous improvement. Direct control development across DT, driving a consistent approach utilising the IRM capabilities within ServiceNow. Deliver the DT control library architecture … and control data management. Secure commitment from member firms and stakeholders in the global firm to participate in the Technology Standards and Maturity Assessment with the objective to assess the member firm's overall IT capability/maturity and to help them establish their own priorities. Keep abreast of new and emerging technologies being deployed and ensure riskassessment processes are appropriately applied and advise on decisions with technology risk impacts as new activities and other change management/transformational initiatives. Leverage available technical resources/tools to research; expand technology risk knowledge to enhance work product, to remain up to date on member firms and line of businesses hot topics while sharing the More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
following: Shape the development of technology control management including scoping, development of and testing ServiceNow tools for ITRM processes in DT to allow for an effective, efficient and adaptable risk governance capability and contribute to its continuous improvement. Direct control development across DT, driving a consistent approach utilising the IRM capabilities within ServiceNow. Deliver the DT control library architecture … and control data management. Secure commitment from member firms and stakeholders in the global firm to participate in the Technology Standards and Maturity Assessment with the objective to assess the member firm's overall IT capability/maturity and to help them establish their own priorities. Keep abreast of new and emerging technologies being deployed and ensure riskassessment processes are appropriately applied and advise on decisions with technology risk impacts as new activities and other change management/transformational initiatives. Leverage available technical resources/tools to research; expand technology risk knowledge to enhance work product, to remain up to date on member firms and line of businesses hot topics while sharing the More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
following: Shape the development of technology control management including scoping, development of and testing ServiceNow tools for ITRM processes in DT to allow for an effective, efficient and adaptable risk governance capability and contribute to its continuous improvement. Direct control development across DT, driving a consistent approach utilising the IRM capabilities within ServiceNow. Deliver the DT control library architecture … and control data management. Secure commitment from member firms and stakeholders in the global firm to participate in the Technology Standards and Maturity Assessment with the objective to assess the member firm's overall IT capability/maturity and to help them establish their own priorities. Keep abreast of new and emerging technologies being deployed and ensure riskassessment processes are appropriately applied and advise on decisions with technology risk impacts as new activities and other change management/transformational initiatives. Leverage available technical resources/tools to research; expand technology risk knowledge to enhance work product, to remain up to date on member firms and line of businesses hot topics while sharing the More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
following: Shape the development of technology control management including scoping, development of and testing ServiceNow tools for ITRM processes in DT to allow for an effective, efficient and adaptable risk governance capability and contribute to its continuous improvement. Direct control development across DT, driving a consistent approach utilising the IRM capabilities within ServiceNow. Deliver the DT control library architecture … and control data management. Secure commitment from member firms and stakeholders in the global firm to participate in the Technology Standards and Maturity Assessment with the objective to assess the member firm's overall IT capability/maturity and to help them establish their own priorities. Keep abreast of new and emerging technologies being deployed and ensure riskassessment processes are appropriately applied and advise on decisions with technology risk impacts as new activities and other change management/transformational initiatives. Leverage available technical resources/tools to research; expand technology risk knowledge to enhance work product, to remain up to date on member firms and line of businesses hot topics while sharing the More ❯
Role overview: As a Security Consultant, specialising in Threat and Risk Assessments, you will lead enterprise customers through security landscape intelligence reviews and improvements. You will utilise your technical expertise to provide advice and recommendations to address customer IT Security challenges and business issues. Main tasks and responsibilities: This role will work across the full project lifecycle of design … build, test, operate and improve. Your core focus areas within Threat and RiskAssessment Consultancy are: Threat Modelling Threat Simulation Risk Assessments Risk Mitigation Cyber Security Maturity Assessments Breach Simulation and Assessment Cyber Resilience Pre-requisites: Demonstrable Track record within a Consultancy role. A history of Threat & Risk activities Further info: Competitive Basic, Bonus More ❯
years. Join us to discover a culture that is rooted in innovation and thrives on collaboration. Imagine loving what you do and where you do it. Job Category Risk Control Target Openings 1 What Is the Opportunity? As Nat CAT Modelling and Analytics Lead, you will be responsible for leading our NAT CAT modelling and analytics team within the … CAT Risk function, reporting directly to the AVP for CAT Risk and Capital. Your role includes complex pricing support, portfolio analysis and optimisation, model validation, VoR, and other related areas. You should have a deep understanding of CAT models, hands-on experience validating and implementing new perils and regions. You will manage 2 senior direct reports and collaborate … with industry-leading experts within our Enterprise Cat function. Candidates should hold qualifications such as the Certified Specialist in Catastrophe Risk (CSCR), Certified Catastrophe Risk Management Professional (CCRMP), or a CAT modelling designation from vendors like Verisk's CEEM. Technical skills required include proficiency in Microsoft Suite, SQL, geospatial tools, and statistical packages. Experience in model validation, leadership More ❯
in moving to the beautiful county of Derbyshire, we can provide a generous relocation package of up to £8,000 and the key duties are: Provide psychiatric assessments, including assessment of risk to self and others. Manage patients under the care of the CAMHS Crisis and Liaison pathway including riskassessment and management. Liaison with community More ❯
key stakeholders). Help Members establish key performance indicators (KPIs) to measure the effectiveness of their information security programme. Supporting Members to complete the annual Mutual Accountability Framework self-assessment and coordinating resulting mitigation plans Support riskassessment activities to identify and prioritize potential security threats. Support the development of appropriate risk management processes where not … recruitment process: Application review by our recruiting team based on your CV and cover letter Two-stage competency-based interviews with the hiring team Some recruitmentmay include an additional assessment or case study stage, or a third stage interview If successful, you will receive a conditional offer of employment, followed by your contract subject to passing background checks We More ❯
City of London, London, United Kingdom Hybrid / WFH Options
IPS Group
Assist in establishing a comprehensive resilience framework that meets DORA standards and other recognised guidelines (e.g. ISO 22301, ISO 27001, NIST). Draft internal controls, policies, training content, and riskassessment methodologies. Contribute to core DORA workstreams such as ICT risk management, scenario-based testing, and oversight of third-party providers. Stakeholder Engagement Coordinate workshops and sessions … operational leads. Monitor implementation progress and support a smooth transition into standard business processes. Training & Culture Develop and deliver resilience-focused training across various teams. Promote best practices in risk and continuity planning. Embed a culture of awareness, accountability, and continuous improvement. What Were Looking For: A degree in Risk Management, Cyber Security, Information Technology, or a related … resilience, cybersecurity, or regulatory roles. Solid understanding of UK and EU regulatory frameworks, with hands-on experience relating to DORA. Demonstrable experience conducting regulatory gap analyses, resilience testing, and risk assessments. Strong organisational skills and the ability to manage competing priorities in a deadline-driven environment. Excellent interpersonal and stakeholder management skills, particularly in regulated settings. Desirable Attributes: Relevant More ❯