Newport, Gwent, Wales, United Kingdom Hybrid / WFH Options
Reed Technology
This role is crucial in ensuring IT risks are identified, measured, and actively managed to protect the organisation from potential impacts. You will develop and implement IT policies, conduct risk assessments, and ensure compliance with regulatory requirements while driving improvements in IT governance processes. Key Accountabilities * Identify, evaluate, and manage IT risks across infrastructure, data protection, and lifecycle management. … Own and maintain the IT risk register, ensuring mitigation plans are in place. * Align risk management frameworks with industry standards (ISO27001, NIST, CIS Critical Controls). * Lead IT audits, coordinate fieldwork, and track findings to ensure timely resolution. * Develop and implement IT policies, procedures, and security awareness initiatives. * Act as an SME, providing guidance on IT governance, compliance … and risk mitigation strategies. Required Skills & Qualifications * Proven experience in IT risk management, security governance, and compliance. * Strong knowledge of ISO27001, GDPR, PCI-DSS, and cybersecurity frameworks. * Experience in IT audit coordination and riskassessment methodologies. * Excellent communication and stakeholder management skills. * Desirable - Certifications such as CRISC, CISA, CISM, or CISSP Benefits * 10% discretionary performance related More ❯
Leatherhead, England, United Kingdom Hybrid / WFH Options
Hyundai Motor UK
deploying and monitoring adherence to policies, processes and standards related to organisational and technical security. Being a SPOC for all aspects of cybersecurity within HMUK and leading incidents resolution. RiskAssessment and Management - Assess and identify potential security threats, vulnerabilities and developing strategies to mitigate these risks. Establish a vulnerability management process aligned with headquarters guidelines. Policy Development … to policies, processes and standards related to organisational and technical security. Being a SPOC for all aspects of cybersecurity within HMUK and leading incidents resolution. We Want You To: RiskAssessment and Management - Assess and identify potential security threats, vulnerabilities and developing strategies to mitigate these risks. Establish a vulnerability management process aligned with headquarters guidelines. Policy Development … and policies to both technical and non-technical stakeholders. Good project management skills At least 5 years’ experience in an IT security role, dealing with security management principles, including riskassessment, threat analysis, incident response, and security architecture Track record of continuous learning in the cybersecurity field Desirable - Certified information systems security professional (CISSP) We offer: What We More ❯
and Takepayments. Our software platform and APIs enable our partners to offer flexible financing products, in their desired branding, to their merchant base. With YouLend's AI-driven credit riskassessment solutions, more merchants and SMEs than ever can receive fast, flexible and affordable funding. We operate in 9+ geographies across the UK, EU and the US. We … the Head of Regulatory Compliance with preparing updates to YouLend's Senior Management Team where necessary and embedding a governance framework that facilitates this. Horizon scanning - Through the identification, assessment, and ongoing monitoring of current and future regulatory risks, including gap analysis of new regulatory initiatives and guidance from the Youlend's regulators Advisory - Act as a trusted advisor … queries, audits, and ongoing communications with YouLend's Regulators. Regulatory Reporting - Lead regulatory reporting processes to ensure timely and accurate submissions to the FCA and other relevant authorities. Enterprise Risk Management - Support with the uplift of YouLend's Enterprise Risk Framework, working with risk owners across the business to develop and mature the identification, assessment and More ❯
Role Description The Global Risk and Compliance division (GR&C) exists to enable the FNZ Group to safely achieve its strategic objectives and protect value; to support the growth and delivery of services and propositions to the quality our clients and regulators expect. The Global Data Protection Officer (DPO) is responsible for designing, implementing, and overseeing the firm’s … regulators, and stakeholders across regions and business units to align data privacy strategies with the firm’s strategic objectives and evolving regulatory landscape. This role will collaborate with governance, risk, and compliance (GRC) specialists and analytics experts to ensure effective oversight, reporting, and continuous improvement of the firm’s data protection position. Reporting directly to the Group Enterprise Compliance … and standards, ensuring alignment with local data privacy regulatory obligations and industry best practices across Europe, the UK, North America, and APAC. Establish privacy governance objectives and key privacy risk indicators (KPIs/KRIs) that align with the firm’s risk appetite and compliance requirements. Implement systems and processes to monitor, identify, and mitigate data protection risks across More ❯
London, England, United Kingdom Hybrid / WFH Options
Eviden
materials Supporting workshop delivery and client meetings Conducting research and analysis Client Engagement Support Typical activities include: Leading client workshops such as security strategy sessions, Cloud security architecture reviews, Riskassessment workshops, technology evaluation sessions. Producing client materials including, Security assessment reports, technical architecture diagrams, implementation roadmaps and project status updates. Conducting security assessments by gathering and …/security experience in the Defence Sector Demonstrable experience of one or more of the following areas: MoD Security GRC/Assurance Processes Secure by Design and RMADs/RiskAssessment Cloud Security Cloud security architecture documentation, s ecurity controls mapping and c ompliance checking automation MoD Cyber Operations SOC tool evaluation support, SIEM use case development, Metrics … and reporting frameworks, and Technology integration assessment. Cyber Vulnerability Investigations Identity & Access IAM architecture reviews, p rivileged access solutions, authentication technology assessment, and Zero Trust implementation planning OT Security OT RiskAssessment/Assurance and OT Vulnerability Management Key Strengths Detail-oriented with a strong focus on quality Well-organised and committed to developing customer service skills More ❯
Officer Apply locations London - United Kingdom, Edinburgh WRS - United Kingdom Time type: Full time Posted on: Posted 4 Days Ago Job requisition id: REQ-13864 Role Description The Global Risk and Compliance division (GR&C) exists to enable the FNZ Group to safely achieve its strategic objectives and protect value; to support the growth and delivery of services and … regulators, and stakeholders across regions and business units to align data privacy strategies with the firm's strategic objectives and evolving regulatory landscape. This role will collaborate with governance, risk, and compliance (GRC) specialists and analytics experts to ensure effective oversight, reporting, and continuous improvement of the firm's data protection position. Reporting directly to the Group Enterprise Compliance … and standards, ensuring alignment with local data privacy regulatory obligations and industry best practices across Europe, the UK, North America, and APAC. Establish privacy governance objectives and key privacy risk indicators (KPIs/KRIs) that align with the firm's risk appetite and compliance requirements. Implement systems and processes to monitor, identify, and mitigate data protection risks across More ❯
adheres to best practices and legislation in data protection, information security, quality management, environmental compliance and industry-specific security standards. The ideal candidate will have experience in compliance management, riskassessment, audits, security frameworks and policy implementation. They will need to work across teams such as IT, Operations, Finance, Delivery and Engineering to ensure robust governance, risk … and compliance Information security and Cyber Essentials Plus Oversee Cyber Essentials Plus compliance ensuring security controls are in place Work closely with the IT team to assess vulnerabilities, manage risk and implement cyber security policies Work with the Head of IT to manage incident response planning and ensure security incidents are managed in line with best practices Data protection … Assessments (DPIAs) Implement processes around Data Subject Access Requests (DSARs) and breach management Ensure compliance with any client and third-party data processing agreements (DPAs) and data retention rules Risk management and policy development Review, update, maintain and enforce policies and procedures related to: Information security Data protection Environmental sustainability Business continuity Incident response Supplier security assessment Maintain More ❯
adheres to best practices and legislation in data protection, information security, quality management, environmental compliance and industry-specific security standards. The ideal candidate will have experience in compliance management, riskassessment, audits, security frameworks and policy implementation. They will need to work across teams such as IT, Operations, Finance, Delivery and Engineering to ensure robust governance, risk … and compliance Information security and Cyber Essentials Plus Oversee Cyber Essentials Plus compliance ensuring security controls are in place Work closely with the IT team to assess vulnerabilities, manage risk and implement cyber security policies Work with the Head of IT to manage incident response planning and ensure security incidents are managed in line with best practices Data protection … Assessments (DPIAs) Implement processes around Data Subject Access Requests (DSARs) and breach management Ensure compliance with any client and third-party data processing agreements (DPAs) and data retention rules Risk management and policy development Review, update, maintain and enforce policies and procedures related to: Information security Data protection Environmental sustainability Business continuity Incident response Supplier security assessment Maintain More ❯
our infrastructure. Oversee the deployment of security solutions, working closely with internal teams to strengthen our defences. Collaborate with external security partners to ensure high-quality support and proactive risk management. Regularly report on security metrics and provide insights to senior management. Conduct thorough risk assessments and ensure compliance with industry standards and regulatory requirements. What We’re … Looking For: Professional certification such as CISSP, CISM, or similar. Significant experience in cybersecurity management, ideally within a medium-to-large organisation. Extensive knowledge of security technologies, riskassessment, and vulnerability management. Hands-on experience with security monitoring tools and incident response. Familiarity with compliance standards such as ISO 27001, GDPR, and NIST frameworks. Strong analytical skills with More ❯
London, England, United Kingdom Hybrid / WFH Options
PROSPECTUS
include: Governance review and task backlog creation Work phasing, including quick wins and long-term planning Highlighting interdependencies between tasks Delivering quick wins and groundwork for longer-term projects Risk management, including updating the organisational risk register and reviewing risk appetite Working with leadership, committees, and the board to understand and set risk appetite Overseeing IT … backlog creation, work phasing, and delivering quick wins You should have a strong background in project management with experience in at least two of the following areas: charity governance, riskassessment, HR, or IT. Knowledge of charity processes, excellent communication skills, high organisation, multi-tasking ability, and IT proficiency are essential. You should be a collaborative self-starter More ❯
with technology team and senior management to define detailed business requirements for systems initiatives aimed at improving the operating efficiencies and monitoring capabilities of the group. Ensuring an effective risk-based AML/CTF/Sanctions Compliance Programme including anti-money laundering, anti-terrorist financing and government and economic sanctions requirements. Maintaining an AML riskassessment framework … for the Firm tailored to the Firm's money laundering and terrorist financing risk profile and ensuring adequate policies, procedures and controls are in place that are commensurate with the FDA Ltd assessment of the risks identified. Conducting assurance testing programme on the AML/CTF controls and procedures of the Firm. Assist in the running of the More ❯
our infrastructure. Oversee the deployment of security solutions, working closely with internal teams to strengthen our defences. Collaborate with external security partners to ensure high-quality support and proactive risk management. Regularly report on security metrics and provide insights to senior management. Conduct thorough risk assessments and ensure compliance with industry standards and regulatory requirements. What We’re … approach. Key qualifications include: Professional certification such as CISSP, CISM, or similar. Significant experience in cybersecurity management, ideally within a medium-to-large organisation. Extensive knowledge of security technologies, riskassessment, and vulnerability management. Hands-on experience with security monitoring tools and incident response. Familiarity with compliance standards such as ISO 27001, GDPR, and NIST frameworks. Strong analytical More ❯
our infrastructure. Oversee the deployment of security solutions, working closely with internal teams to strengthen our defences. Collaborate with external security partners to ensure high-quality support and proactive risk management. Regularly report on security metrics and provide insights to senior management. Conduct thorough risk assessments and ensure compliance with industry standards and regulatory requirements. What We’re … approach. Key qualifications include: Professional certification such as CISSP, CISM, or similar. Significant experience in cybersecurity management, ideally within a medium-to-large organisation. Extensive knowledge of security technologies, riskassessment, and vulnerability management. Hands-on experience with security monitoring tools and incident response. Familiarity with compliance standards such as ISO 27001, GDPR, and NIST frameworks. Strong analytical More ❯
our infrastructure. Oversee the deployment of security solutions, working closely with internal teams to strengthen our defences. Collaborate with external security partners to ensure high-quality support and proactive risk management. Regularly report on security metrics and provide insights to senior management. Conduct thorough risk assessments and ensure compliance with industry standards and regulatory requirements. What We’re … approach. Key qualifications include: Professional certification such as CISSP, CISM, or similar. Significant experience in cybersecurity management, ideally within a medium-to-large organisation. Extensive knowledge of security technologies, riskassessment, and vulnerability management. Hands-on experience with security monitoring tools and incident response. Familiarity with compliance standards such as ISO 27001, GDPR, and NIST frameworks. Strong analytical More ❯
teams. The post holder will contribute to clinical governance, and responsibility for setting and monitoring standards in the use of digital technology. Overseeing the safety of clinical systems, managing risk and ensuring compliance with relevant clinical safety policies, using clinical safety officer framework. Leading a network of digital Nurses/AHPs, Digital Champions, and Training/Floorwalking team members … job pack. Person Specification Education Essential Relevant Healthcare Degree Registration with appropriate Professional Body (NMC/AHP) Desirable Masters Degree or equivalent experience Project/change management qualification Clinical Risk Management training/qualification Knowledge, Behaviours and Experience Essential Extensive experience in clinical practice as a senior nurse/manager Sounds working knowledge of medicines management Change management experience … advanced communication and presentation skills Experience of clinical information systems Experience and knowledge of the wider NHS informatics agenda Sound knowledge and skills in EPR functionality including care planning, riskassessment and physical health care Knowledge and experience of quality governance Desirable Experience implementing clinical information systems Experience of EPMA implementation Project management experience Person Specification Education Essential More ❯
skills alongside a flexible and enthusiastic approach to working within a busy team. About The Role (External) Here are some of the duties your role will include: - Evaluate and risk assess examination reports for a varied asset portfolio in accordance with functional policy, systems and standards, to ensure their continued safety and performance. Determine, specify and prioritise actions to … address defects, risks, comments and other issues raised in these reports, in accordance with standards and functional policy, for inclusion in work plans. Schedule examinations, inspections, monitoring and assessment of assets. Oversee the development, implementation and handover of prioritised maintenance work items to enable the required outputs to be realised. Produce route specific and asset type management regimes. Develop … and any changes are agreed. Assist with the approval in principle of designs and support acceptance of detailed design certification. Determine and implement mitigation measures required following the structural assessment of the asset or where proposed management actions are deferred. Engage with internal and external stakeholders to ensure the optimal risk management solution is identified and implemented. Determine More ❯
Document findings and work with various stakeholders, including senior management, to agree recommendations and implementation plans to address any compliance deficiencies. Lead the delivery of the Internal Controls Self-Assessment Programme. Develop and roll out new compliance policies, as required. Advise the COO and leadership team on regulatory developments and required actions. Oversee regulatory reporting, audit readiness, and interaction … knowledge of UK regulatory frameworks including FCA CONC, Consumer Credit Act, and GDPR. Experience with QA methodologies and performance monitoring tools, ideally within data-heavy contexts. Excellent problem-solving, riskassessment, and communication skills. Ability to manage multiple projects and stakeholders in a fast-paced, growing business. Professional certifications in compliance, risk, or quality (e.g. ICA, ISO More ❯
Epsom, England, United Kingdom Hybrid / WFH Options
AtkinsRéalis
support to our clients’ offshore cable projects. You will act Technical Lead for our offshore cable routing scopes of work, leading GIS based route analysis and offshore Cable Burial RiskAssessment (CBRA) scopes of work. This will include mentoring of junior members of staff in these activities. You will take the lead in developing AtkinsRéalis’ offshore cable routing … enhancement activities. Acting as a champion for offshore cable routing within AtkinsRéalis’ Marine Geoscience team. Providing technical input to bids for subsea cable routing scopes. Input to Cable Burial Risk Assessments (CBRA) and Depth of Lowering Assessments. Routing of offshore and onshore cables using GIS based analysis. GIS based analysis of geophysical, geospatial and geotechnical data and data management. … working as part of a multi-disciplinary team. Experience of offshore cable routing using ArcGIS, Makai Plan or AutoCAD. Experience in analyzing geotechnical and geospatial data for Cable Burial Risk Assessments (CBRA), or Depth of Lowering (DoL) assessments. Excellent interpersonal and technical skills and the ability to work independently or as part of a team on subsea cables projects. More ❯
here is what we are looking for: Significant experience in a security-related role, with demonstrable achievements. A passion for security and a willingness to learn. Strong understanding of RiskAssessment frameworks and methodologies. Ability to communicate complex security issues to non-technical audiences. Knowledge of cloud security, particularly Azure and O365. Understanding of various technologies, system design More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
Snc-Lavalin
to our clients’ offshore cable projects. You will act as Technical Lead for our offshore cable routing scopes of work, leading GIS-based route analysis and offshore Cable Burial RiskAssessment (CBRA) scopes of work. This will include mentoring of junior members of staff in these activities. You will take the lead in developing AtkinsRéalis’ offshore cable routing … enhancement activities. Acting as a champion for offshore cable routing within AtkinsRéalis’ Marine Geoscience team. Providing technical input to bids for subsea cable routing scopes. Input to Cable Burial Risk Assessments (CBRA) and Depth of Lowering Assessments. Routing of offshore and onshore cables using GIS-based analysis. GIS-based analysis of geophysical, geospatial, and geotechnical data and data management. … working as part of a multi-disciplinary team. Experience of offshore cable routing using ArcGIS, Makai Plan, or AutoCAD. Experience in analyzing geotechnical and geospatial data for Cable Burial Risk Assessments (CBRA), or Depth of Lowering (DoL) assessments. Excellent interpersonal and technical skills and the ability to work independently or as part of a team on subsea cables projects. More ❯
London, England, United Kingdom Hybrid / WFH Options
Coalition, Inc
Get AI-powered advice on this job and more exclusive features. Coalition is the world's first Active Insurance provider designed to help prevent digital risk before it strikes. Founded in 2017, Coalition combines comprehensive insurance coverage and innovative cybersecurity tools to help businesses manage and mitigate potential cyberattacks. Opportunities to make an impact with bold thinking are real … responsible for measuring, understanding, and helping optimize Coalition’s underwriting. You will perform statistical analysis to provide data-driven insights. You will help us understand and improve our cyber risk selection and reduction, pricing and automation in order to grow our revenue in a safe and efficient manner. Responsibilities Analyze diverse datasets including claims data, cybersecurity risk signals … and underwriting databases to extract meaningful patterns and insights Large scale data analysis with the objective of producing valuable risk signals to be used for underwriting or risk evaluation of organizations Create comprehensive reports on underwriting efficiency metrics and risk selection quality to inform strategic decisions Apply statistical techniques to evaluate and improve our cyber riskMore ❯
strong security culture and advise on security risks and mitigations. Maintain knowledge of security threats, vulnerabilities, and compliance standards. Lead efforts in security monitoring and incident response. Support security risk management and compliance with standards like PCI, GDPR, ISO. Perform other duties as assigned. Qualifications 10+ years of experience in information security, including vulnerability assessment, incident response, and … audits. 5+ years working with business leadership and managing projects in a complex environment. Knowledge of security technologies and concepts such as firewalls, intrusion detection, encryption, cloud security, and risk assessment. 3+ years in security compliance and audit support (PCI DSS, GDPR, etc.). Bachelor’s degree in IT or Security, with relevant certifications like CISSP, CRISC, or CISA. More ❯
Leatherhead, England, United Kingdom Hybrid / WFH Options
Hyundai Motor Europe GmbH
to policies, processes and standards related to organisational and technical security. Being a SPOC for all aspects of cybersecurity within HMUK and leading incidents resolution. We Want You To: RiskAssessment and Management - Assess and identify potential security threats, vulnerabilities and developing strategies to mitigate these risks. Establish a vulnerability management process aligned with headquarters guidelines. Policy Development … and policies to both technical and non-technical stakeholders. Good project management skills At least 5 years' experience in an IT security role, dealing with security management principles, including riskassessment, threat analysis, incident response, and security architecture Track record of continuous learning in the cybersecurity field Desirable - Certified information systems security professional (CISSP) What We Offer: Competitive More ❯
for AI/ML models, data pipelines, and related infrastructure. Develop security policies and procedures specific to AI systems. Evaluate and select security tools and technologies for AI environments. RiskAssessment and Management: Conduct thorough risk assessments to identify vulnerabilities and threats specific to AI systems. Develop and implement risk mitigation strategies for AI-related security More ❯
London, Edinburgh and Chester, Leeds. Job Description - Lead and Manage Obsolescence Projects: Oversee the full lifecycle of projects aimed at addressing hardware, software, and system obsolescence within the bank. - RiskAssessment and Mitigation: Identify critical systems nearing obsolescence, assess associated risks, and develop comprehensive mitigation strategies to ensure continuity and compliance. - Cross-Functional Collaboration: Work closely with IT … meet agreed SLAs and deliverables, particularly in upgrading or replacing obsolete technologies. - Regulatory Compliance: Ensure all obsolescence management efforts comply with regulatory requirements, including data protection, cybersecurity, and operational risk guidelines. Qualifications - Experience: Minimum of 5 years experience in project management within the financial services industry, ideally within an investment bank. - Technical Knowledge: Strong understanding of IT infrastructure, software … obsolescence challenges in the banking sector. - Project Management Skills: Proven track record of managing complex, large-scale IT projects with multiple stakeholders. PMP, PRINCE2, or other relevant certification preferred. - Risk and Compliance Knowledge: Familiarity with regulatory requirements related to IT systems, including cybersecurity and data protection laws. - Leadership and Communication: Strong leadership skills with the ability to influence and More ❯