as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or CISA (Certified Information Systems Auditor) are highly desirable. Strong knowledge of security frameworks (e.g., ISO 27001, COBIT), security technologies, tools, and best practices across EU, UK, and USA Proficiency in risk management processes, vulnerability assessments, and incident response strategies. Current technical and hands-on experience with security More ❯
Act) and industry-specific regulations Experience implementing compliance andcontrol frameworks Proficiency in IT governance and quality standards Knowledge of security management frameworks like ISO/IEC 27001, ITIL, COBIT, NIST standards Strong stakeholder management skills High integrity and professionalism in handling confidential matters Familiarity with risk management tools like OneTrust or similar is preferred Benefits: At Sword, we value More ❯
our Global Insurance Clients on a 6 month contract. Please note the role is Inside IR35. Experience Required: Strong knowledge of risk andcontrol frameworks (e.g., NIST, ISO 27001, COBIT). Deep understanding of IT general controls, cyber security principles, andtechnology risk domains. Experience in control ownership, control testing, and remediation planning. Familiarity with GRC platforms andcontrol lifecycle More ❯
data models and reporting frameworks. Ensure alignment of analytics and reporting outputs with enterprise risk management andcontrol frameworks. Strong knowledge of risk management frameworks (e.g., NIST, ISO 27001, COBIT) andcontrol environments. Deep understanding of IT general controls, cyber security principles, andtechnology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
one end to end programme process including the use of ServiceNow Integrated Risk Management module to support integrated IT risk Management processes. An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001, SOC2. Cybersecurity or IT Risk Management experience which should include either control testing or compliance assessment experience. A strong understanding of system development life cycles approaches More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
one end to end programme process including the use of ServiceNow Integrated Risk Management module to support integrated IT risk Management processes. An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001, SOC2. Cybersecurity or IT Risk Management experience which should include either control testing or compliance assessment experience. A strong understanding of system development life cycles approaches More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
one end to end programme process including the use of ServiceNow Integrated Risk Management module to support integrated IT risk Management processes. An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001, SOC2. Cybersecurity or IT Risk Management experience which should include either control testing or compliance assessment experience. A strong understanding of system development life cycles approaches More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
one end to end programme process including the use of ServiceNow Integrated Risk Management module to support integrated IT risk Management processes. An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001, SOC2. Cybersecurity or IT Risk Management experience which should include either control testing or compliance assessment experience. A strong understanding of system development life cycles approaches More ❯
Client stakeholders. Review the outcomes of the transition projects to capture learnings & disseminate across organization Technical Skills – Basic Knowledge on security models such as ITIL, ISO27002, PCI DSS andCobit 5 Experience on Security tools & Technologies Integration of testing mechanisms with industry best practices such as OWASP & NIST Good Understanding of IT security policy, procedure, design, and implementation. Behavioral Skills More ❯
Deep understanding of UK/EU regulatory drivers (e.g., FCA/PRA Operational Resilience Policy, DORA, SYSC 8, PS 21/3, CP4/24) and relevant industry frameworks (COBIT, ITIL, ISO 27001/22301, NIST CSF). Strong analytical skills with the ability to translate complex technical issues into clear, business-focused recommendations. Possession of strong team working andMore ❯
issue management-related processes and services. Experience in Risk Management aligned to certification requirements (ISO27001, ISO31000 or similar) required Knowledge of relevant security/governance frameworks (NIST CSF, ISO27001, CobiT, ) required Experience in service build up a plus Security Governance/Risk Management certification (CISSP, CGEIT, CISM, CRISC ) is a plus Qualified individuals with a disability may request a reasonable More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
NACBA
with team members both locally and globally. Your skills and experience University degree in InformationTechnology, Computer Science, or related discipline and professional certification (e.g., CISA, CRISC, CCSP, ITIL, COBIT, CIA, CFE, CPA, etc.) preferred. Significant, demonstrable experience of IT auditing, including audits of automated business controls and implementation of new systems. Experience of audits of IT general controls is More ❯
risk and controls processes. Good understanding of the retail industry and its needs towards technology risks and controls. Strong understanding with various control frameworks and regulatory requirements, such as COBIT, NIST-CSF, Sarbanes-Oxley (SOX), Privacy (CCPA, GDPR, etc.), and other leading practice frameworks. An ability to communicate complex and technical issues to diverse audiences, orally and in writing, in More ❯
/or existing IT General Controls from across access, change, and operations domains drawing on experience to do so independently and/or with minimal support. Working knowledge of COBIT/ITIL Frameworks Comfortable performing IT Risk Assessments across a variety of IT domains. Strong analytical and problem-solving skills, being able to decipher sometimes complex information, analyse and report More ❯
Identity and Access Management functions and experience designing and deploying IGA solutions at the enterprise level. Demonstrated successful implementation of security control frameworks and standards such as ISO 27001, COBIT, ITIL, NIST. Certification in Information Security relevant areas such as CISSP, SANS and/or equivalent business experience in a matrix Organisation. High level of personal integrity with the ability More ❯
of Practice (TCoP) and UK Digital/Data Strategies Experience in major enterprise architecture engagements e.g. application optimisation/rationalisation, re-platforming, modernization of enterprise data architecture Certified in COBIT, TOGAF, DCAM and/or AWS/Azure/GCP solution architecture Knowledge of DAMA-DMBOK Familiarity with applying key frameworks such as APQC Process Classification Framework, Zachman Framework, ITIL More ❯
of Practice (TCoP) and UK Digital/Data Strategies Experience in major enterprise architecture engagements e.g. application optimisation/rationalisation, re-platforming, modernization of enterprise data architecture Certified in COBIT, TOGAF, DCAM and/or AWS/Azure/GCP solution architecture Knowledge of DAMA-DMBOK Familiarity with applying key frameworks such as APQC Process Classification Framework, Zachman Framework, ITIL More ❯
of Practice (TCoP) and UK Digital/Data Strategies Experience in major enterprise architecture engagements e.g. application optimisation/rationalisation, re-platforming, modernization of enterprise data architecture Certified in COBIT, TOGAF, DCAM and/or AWS/Azure/GCP solution architecture Knowledge of DAMA-DMBOK Familiarity with applying key frameworks such as APQC Process Classification Framework, Zachman Framework, ITIL More ❯
of Practice (TCoP) and UK Digital/Data Strategies Experience in major enterprise architecture engagements e.g. application optimisation/rationalisation, re-platforming, modernization of enterprise data architecture Certified in COBIT, TOGAF, DCAM and/or AWS/Azure/GCP solution architecture Knowledge of DAMA-DMBOK Familiarity with applying key frameworks such as APQC Process Classification Framework, Zachman Framework, ITIL More ❯
/or existing IT General Controls from across access, change, and operations domains, drawing on experience to do so independently and/or with minimal support. Working knowledge of COBIT/ITIL Frameworks Comfortable performing IT Risk Assessments across a variety of IT domains. Strong analytical and problem-solving skills, being able to decipher complex information, analyse and report on More ❯
/or existing IT General Controls from across access, change, and operations domains, drawing on experience to do so independently and/or with minimal support. Working knowledge of COBIT/ITIL Frameworks Comfortable performing IT Risk Assessments across a variety of IT domains. Strong analytical and problem-solving skills, being able to decipher complex information, analyse and report on More ❯
preston, lancashire, north west england, united kingdom
Hays
/or existing IT General Controls from across access, change, and operations domains, drawing on experience to do so independently and/or with minimal support. Working knowledge of COBIT/ITIL Frameworks Comfortable performing IT Risk Assessments across a variety of IT domains. Strong analytical and problem-solving skills, being able to decipher complex information, analyse and report on More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Oliver James
findings to relevant stakeholders What We're Looking For: Previous experience in IT audit, information security, or risk management (in-house or external) Knowledge of audit tools, frameworks (e.g. COBIT, NIST), and security standards Strong understanding of IT general controls (ITGCs), infrastructure, and networks Excellent analytical, problem-solving, and communication skills Experience working within data centres or critical infrastructure environments More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Adecco
develop action plans, identify owners and track through to completion. Requirements: Technology Knowledge: Work towards a detailed understanding of Technologyand cyber risk frameworks (e.g. NIST/ISO27001/COBIT/ITIL). SSSDLC Expertise: Understanding of the Secure Software/System Development Lifecycle, including secure design, development, testing, and deployment practices. Process Documentation: Experience in drafting, updating, and maintaining More ❯
and influence. What we're looking for Proven experience in IT risk, cyber, or governance Strong communication, stakeholder engagement, and training delivery skills Deep understanding of control frameworks like COBIT, ISO2700x, CRISC, ITIL Comfortable working in a regulated environment with high attention to detail Skilled in Excel and risk reporting A proactive mindset and adaptability to change InterQuest Group is More ❯