Hart, Yorkshire, United Kingdom Hybrid / WFH Options
Serco
to support and enhance ERP systems while working closely with stakeholders to drive improvements and ensure compliance. If you have experience in ERP management, riskassessment, and IT controls, we want to hear from you! You will support day-to-day business-as-usual (BAU) tasks related to … delivery of audit data and the documentation of controls. Oversee the management of security vulnerabilities and ensure that security compliance is continuously monitored. Perform risk assessments and document controls to enhance the security and functionality of ERP systems. What you'll need to do the role: Expertise in SAP … Authorisation. Strong knowledge of business processes, risks associated with them, and IT controls. Proven ability to identify and address security vulnerabilities. Solid experience in riskassessment, documentation of controls, and monitoring security compliance. Knowledge of Security Weaver support or implementation. Familiarity with SAP GRC Access Control and agile More ❯
and RegTech solutions. The succesful applicant will work across Angular (frontend) and Django/Python (backend) to build high-performance applications for counterparty onboarding, riskassessment, and regulatory screening. Key Responsibilities: Develop and maintain secure, scalable applications with Angular and Django REST Framework. Design and implement RESTful APIs … ensuring data security (OAuth2, JWT). Create modern, responsive UI/UX experiences for compliance tools. Integrate with third-party riskassessment and compliance platforms. Embed automated testing into the development lifecycle. Ensure compliance with GDPR, ISO 27001, and industry best practices. Stay updated with advancements in AI More ❯
Hanover, Maryland, United States Hybrid / WFH Options
Lockheed Martin
test organizations to integrate T&E programs. The key responsibilities of this role include assisting with test planning and execution, conducting performance analysis and riskassessment, and developing and applying modeling and simulation for T&E. Additionally, the Test Engineer analyzes performance data and estimates confidence and performance … knowledge of government test and evaluation concepts, engineering, acquisition, and operations activities, modeling and simulation, data analysis and management, test planning and execution, and riskassessment and mitigation. Overall, the Test Engineer plays a critical role in ensuring the success of Offensive Cyber Missions. Why Join Us: Your More ❯
security culture, not just across the organisation, but also the culture of the security teams themselves. This role needs to be an enabler for risk-informed business growth. The CISO will be a pivotal insight across corporate and industry engagement, client delivery and internal systems, services and behaviours. Location … be UK-based with expected travel to various UK sites. Key Responsibilities Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program for the UK&I organisation. Provide in-depth security and risk reporting, demonstrating a clear ROI against security investments. Work directly … with the business units to facilitate riskassessment and risk management processes. Develop and enhance an information security management framework. Understand and interact with related disciplines through committees to ensure the development and consistent application of policies and standards across all technology projects, systems and services. Act More ❯
london, south east england, united kingdom Hybrid / WFH Options
VirtueTech Recruitment Group
IT Governance, Risk & Compliance Manager | Cross Asset Trading House| CISM, CRISC, CGEIT | Up to £1000/Day Outside IR35 | 6 months rolling | Hybrid LDN IT Governance, Risk and Compliance Manager is needed for a cross-asset trading house. With the rapid growth in profitability, acquisitions and business lines … of methodologies, teams/entire organisations quickly becoming apparent that the organisation now needs to be managed at the highest level. This IT Governance, Risk and Compliance Manager is centred around IT governance, risk management, compliance oversight, and audit management. This IT Governance, Risk & Compliance Manager will … ensure that IT operations align with corporate policies, regulatory requirements, and industry standards while maintaining security and efficiency. As an IT Governance, Risk and Compliance Manager you will lead regulatory compliance, risk management, and IT auditing. This includes establishing governance frameworks, ensuring adherence to regulations like GDPR and More ❯
IT Governance, Risk & Compliance Manager | Cross Asset Trading House| CISM, CRISC, CGEIT | Up to £1000/Day Outside IR35 | 6 months rolling | Hybrid LDN IT Governance, Risk and Compliance Manager is needed for a cross-asset trading house. With the rapid growth in profitability, acquisitions and business lines … of methodologies, teams/entire organisations quickly becoming apparent that the organisation now needs to be managed at the highest level. This IT Governance, Risk and Compliance Manager is centred around IT governance, risk management, compliance oversight, and audit management. This IT Governance, Risk & Compliance Manager will … ensure that IT operations align with corporate policies, regulatory requirements, and industry standards while maintaining security and efficiency. As an IT Governance, Risk and Compliance Manager you will lead regulatory compliance, risk management, and IT auditing. This includes establishing governance frameworks, ensuring adherence to regulations like GDPR and More ❯
Strategic Partnerships, and other commercial functions. This is a senior leadership role responsible for ensuring compliance with AML, fraud prevention, financial crime regulations, and risk management across all client and customer interactions. This is a single position that can be based in either Riga, Latvia or London, UK. Please … the relevant location. Key Responsibilities Lead commercial compliance operations, ensuring adherence to AML, fraud, and financial crime regulations. Oversee key compliance controls, including client riskassessment, sanctions screening, and payments screening. Make final decisions on onboarding and service upgrades for Low and Medium Risk clients, escalating High … and Very High-Risk clients to the AML Compliance Team. Present high-risk cases to the Client Risk Committee and contribute to the handling of compliance-related claims and complaints. Conduct reviews of existing clients for potential suspension or de-risking. Partner with the Sales, Relationship Management More ❯
Strategic Partnerships, and other commercial functions. This is a senior leadership role responsible for ensuring compliance with AML, fraud prevention, financial crime regulations, and risk management across all client and customer interactions. This is a single position that can be based in either Riga, Latvia or London, UK. Please … the relevant location. Key Responsibilities Lead commercial compliance operations, ensuring adherence to AML, fraud, and financial crime regulations. Oversee key compliance controls, including client riskassessment, sanctions screening, and payments screening. Make final decisions on onboarding and service upgrades for Low and Medium Risk clients, escalating High … and Very High-Risk clients to the AML Compliance Team. Present high-risk cases to the Client Risk Committee and contribute to the handling of compliance-related claims and complaints. Conduct reviews of existing clients for potential suspension or de-risking. Partner with the Sales, Relationship Management More ❯
Laurel, Maryland, United States Hybrid / WFH Options
GTSC Talent Solutions
to support our customer in the Laurel, MD area. This position requires expertise in CAMEO, cloud security, business system interoperability, and business system implementation risk management. The ideal candidate will play a key role in identifying and managing risks, leading Integrated Product Teams (IPTs) and Working Groups (WGs) to … and implementation. Expertise in business system interoperability, with the ability to manage and optimize system integrations and workflows. Demonstrated experience in business system implementation risk management, including riskassessment, analysis, and mitigation strategies. Experience leading Integrated Product Teams (IPTs) and Working Groups (WGs) to reduce risks in … Familiarity with cloud security standards (e.g., ISO/IEC 27001, NIST). Experience with ERP, CRM, or other business management systems. Strong knowledge of risk management processes, including risk assessments and mitigation strategies. Preferred Skills: Strong problem-solving and analytical skills. Ability to lead cross-functional teams, including More ❯
Laurel, Maryland, United States Hybrid / WFH Options
GTSC Talent Solutions
and implementation. Expertise in business system interoperability, with the ability to manage and optimize system integrations and workflows. Demonstrated experience in business system implementation risk management, including riskassessment, analysis, and mitigation strategies. Experience leading Integrated Product Teams (IPTs) and Working Groups (WGs) to reduce risks in … Familiarity with cloud security standards (e.g., ISO/IEC 27001, NIST). Experience with ERP, CRM, or other business management systems. Strong knowledge of risk management processes, including risk assessments and mitigation strategies. Preferred Skills: Strong problem-solving and analytical skills. Ability to lead cross-functional teams, including … written and verbal, to interact with stakeholders at all levels. Detail-oriented with a focus on quality and accuracy in systems analysis, implementation, and risk management. Ability to manage multiple projects simultaneously while meeting deadlines. Education and Required Qualification A Bachelor's degree in Computer Science, Information Technology, Business More ❯
Oak Ridge, Tennessee, United States Hybrid / WFH Options
Epsilon Inc
s Mission: In support of an Energy customer, you will assist ensuring security and regulatory compliance of enterprise networks, through application of the NIST Risk Management framework and industry best practices. An average day: As RMF Analyst II, you will directly liaison with the government customer to manage the … review, audit, and authorization of Risk Management Framework (RMF) assessment and authorization (A&A)/ATO Packages and for IT systems of varying size and complexity. This role will perform hands-on artifact review along with package management and review. In this position you will: Directly support the … customer in the oversight of multiple system boundaries. Make recommendations regarding the selection of cost-effective security controls to mitigate risk (e.g., protection of information, systems and processes). Ensure consistent application of cybersecurity standards across multiple information systems. Ensure all new cybersecurity projects meet or integrate cybersecurity standards More ❯
IEC 27001 and SOC 2 certification). What you'll be doing Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program. Work directly with the business units to facilitate riskassessment and risk management processes. Develop and enhance an information … projects, systems and services. Provide leadership to the enterprise's information security organization. Partner with business stakeholders across the company to raise awareness of risk management concerns. Assist with the overall business technology planning, providing a current knowledge and future vision of technology, data and systems. Developing internal data … bring to the team Degree in business administration or a technology-related field required. Professional security management certification. Extensive experience in a combination of risk management, information security and IT jobs. Knowledge of common regulatory and information security management frameworks, such as ISO/IEC 27001, NIST, SOC More ❯
IEC 27001 and SOC 2 certification). What you’ll be doing Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program. Work directly with the business units to facilitate riskassessment and risk management processes. Develop and enhance an information … projects, systems and services. Provide leadership to the enterprise's information security organization. Partner with business stakeholders across the company to raise awareness of risk management concerns. Assist with the overall business technology planning, providing a current knowledge and future vision of technology, data and systems. Developing internal data … bring to the team Degree in business administration or a technology-related field required. Professional security management certification. Extensive experience in a combination of risk management, information security and IT jobs. Knowledge of common regulatory and information security management frameworks, such as ISO/IEC 27001, NIST, SOC More ❯
you hold a British Citizenship or Dual Citizenship. As an Aker Lead Security Architect, you will be a recognised subject matter expert in security, risk management and compliance with demonstrable experience in highly regulated industries, specifically UK Government and/or Defence. You will build effective working relationships with … on the public cloud (Azure, AWS, GCP), cloud native platforms (Docker, Kubernetes, etc.), and Software as a Service (SaaS) solutions. Formulate HMG Information Assurance RiskAssessment and Risk Treatment Plans Establish security requirements for cloud-based solutions by evaluating business strategies and requirements, implementing security standards such … and CSA Identify and deliver appropriate controls based on industry standards (e.g. CCM) to drive cloud and customer security solutions framework based on business risk and cloud native threats. Provide oversight and guidance on government security procedures and processes. Continually evaluate new threats in the cloud, to identify the More ❯
a IT Service Continuity Manager. The role will be an initial 3 month contract and will provide you with the opportunity to use formal riskassessment and management processes to reduce risks for IT services. To agree minimum acceptable levels and to plan and prepare for the recovery … of IT services. Key Responsibilities Ensure the Service Continuity and Risk documentation is regularly reviewed and maintained Liaise with Technical Architects and Service Delivery Managers, for the review of documentation Develop and deliver a Service Continuity annual exercise schedule Obtain service recovery assurance from third party Service Providers Identify … upon request, monitoring the health of the IT Disaster Recovery/failover services, identifying issues and remediation activities Supplier governance Work closely with the Risk Manager, in the overall management of IT and business risks. Own and maintain the IT Service Continuity Management (ITSCM) Process and Plan Identify opportunities More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Experis - ManpowerGroup
a IT Service Continuity Manager. The role will be an initial 3 month contract and will provide you with the opportunity to use formal riskassessment and management processes to reduce risks for IT services. To agree minimum acceptable levels and to plan and prepare for the recovery … of IT services. Key Responsibilities Ensure the Service Continuity and Risk documentation is regularly reviewed and maintained Liaise with Technical Architects and Service Delivery Managers, for the review of documentation Develop and deliver a Service Continuity annual exercise schedule Obtain service recovery assurance from third party Service Providers Identify … upon request, monitoring the health of the IT Disaster Recovery/failover services, identifying issues and remediation activities Supplier governance Work closely with the Risk Manager, in the overall management of IT and business risks. Own and maintain the IT Service Continuity Management (ITSCM) Process and Plan Identify opportunities More ❯
allowing for personalized product recommendations. Marketing Campaigns: Use AI to target customers with tailored marketing campaigns based on their transaction history and preferences. 5. Risk Management RiskAssessment: AI can analyze market trends and economic indicators to provide early warnings about potential risks. Compliance Monitoring: Automate compliance … checks and monitoring to ensure adherence to regulations and reduce the risk of non-compliance penalties. 6. Operational Efficiency Process Automation: Use robotic process automation (RPA) to handle repetitive tasks such as data entry, account reconciliation, and report generation. Workflow Optimization: AI can optimize workflows by identifying bottlenecks and … suggesting improvements. Implementation Strategy Assessment: Evaluate the current state of digital banking operations and identify areas where AI can add value. Pilot Projects: Start with pilot projects to test AI applications in a controlled environment. Scalability: Ensure that AI solutions are scalable and can handle increasing volumes of data More ❯
Albuquerque, New Mexico, United States Hybrid / WFH Options
MELE Associates, Inc
requirements Track cost, schedule, and performance of projects to ensure they continue to meet the objectives of the program Advise the program team on riskassessment and risk management, business and contracting strategies, and technology transfers. Assist with developing and tracking budgets and spend plans for a More ❯
Immingham, Lincolnshire, North East, United Kingdom Hybrid / WFH Options
Rullion Limited
Cyber Risk Management Lead Location: Immingham or London Contract Type: Permanent Salary: £70,000 - £75,000 About the Role An established power generation company is seeking a Cyber Risk Management Lead to enhance and oversee its cyber risk management framework across Operational Technology (OT) and Information Technology … IT) domains. This role is critical in ensuring security governance, compliance, and risk mitigation while working closely with regulators, senior stakeholders, and cross-functional teams. This hybrid role can be based in Immingham or London , with travel to other sites as required ( 3 days in the office ). Key … Responsibilities Lead cyber riskassessment activities across IT and OT environments, correlating outputs into strategic risk tracking. Manage the cyber security risk toolkit , including threat modelling, attack trees, and scenario-based exercises. Develop and implement cyber security policies, processes, and staff training aligned with Secure by More ❯
Are you ready to shape the future of cyber risk and security? Can you combine technical expertise with business insight to deliver exceptional results? Location: London Flexibility: Enjoy hybrid working arrangements, empowering you to balance office collaboration with remote flexibility. Aon is in the business of better decisions. At … one inclusive, diverse team, and we are passionate about helping our colleagues and clients succeed. What the day will look like As a Cyber Risk Consultant, you will be responsible for advising clients on handling cybersecurity risks and enhancing their cybersecurity maturity, whilst also understanding the importance of, and … link to, cyber insurance. The role involves supporting quantification projects, risk assessments, and developing cybersecurity strategies across a diverse range of clients and industry verticals. Alongside this, there will be an expectation to maintain strong client relationships and stay up to date on the latest cybersecurity trends and threats. More ❯
Huntsville, Alabama, United States Hybrid / WFH Options
Noblis
Noblis ESI and Noblis MSD, we have excellent teams of smart, collaborative, proactive experts and professionals. We are actively seeking a Cybersecurity Compliance and Risk Management Engineer to join our team of talented professionals who possess the experience, vision, commitment, and integrity to successfully support the strategic goals of … the Department of Defense Missile Defense Agency (MDA). PRINCIPAL DUTIES/RESPONSIBILITIES: Lead data research and analysis while conducting threat, vulnerability, risk and maturity assessments Apply critical thinking, develop plans for the improvement of risk management-related programs Execute Cybersecurity Controls Validation Test events Assess cybersecurity risks … innovation and improvement Required Qualifications Bachelors degree in Computer Science, Information Systems, Engineering or related field 15+ years of experience in Cybersecurity field & extensive Risk Management Framework, JSIG and Cybersecurity RiskAssessment experience Must possess at least one of the following certifications: CASP+ CE CCNP Security CISA More ❯
Winchester, Hampshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
make and action we take, guiding us to deliver impact how and where it matters most. Connect to your opportunity As a Technology Controls - Risk & Compliance Senior Consultant, you will be responsible for driving the day-to-day Technology Controls activities to effectively identify regulatory, legal, privacy and other … compliance risk exposures. This position plays a crucial role in ensuring quality, data protection and security matters related to our innovative audit products and solutions, environments, and frameworks, throughout the software development lifecycle (SDLC). This exciting and challenging role invites you to drive quality as part of the … SDLC process and ideate ways to creatively solve challenges around legal, risk, regulatory and privacy matters. This role will utilize established risk and control frameworks to ensure that development, hosting, deployment and other risk decisions around our audit products and solutions comply with existing firm policies, professional More ❯
Herndon, Virginia, United States Hybrid / WFH Options
VTG
you do? System Security Management: Oversee the implementation and management of system security measures in compliance with National Industrial Security Program Operating Manual (NISPOM), Risk Management Framework (RMF), Intelligence Community Directives (ICDs), and other applicable regulations. Maintain the security posture of classified systems by ensuring compliance with Assessment and Authorization (A&A) requirements. RiskAssessment and Mitigation: Conduct regular risk assessments, vulnerability scans, and security audits to identify and mitigate potential threats. Develop, implement, and manage security policies and procedures to address identified risks. Monitoring and Incident Response: Monitor system activity and respond to … to prevent recurrence. Documentation and Reporting: Prepare and maintain security documentation, including System Security Plans (SSPs), Plan of Action and Milestones (POA&M), and risk assessments. Submit reports on system security status to senior leadership and government security officials as required. Compliance and Training: Ensure all personnel accessing SCIF More ❯
services. Led by Amar Kuchinad, Copper's Global CEO, the firm provides a comprehensive suite of custody, trading and settlement solutions that reduce counterparty risk and bring greater capital and operational efficiency to digital asset markets. At the heart of Copper's offering is Multi-Party Computation (MPC) technology … on top of this state-of-the-art custody, ClearLoop is the first solution in the market that overcomes a growing industry challenge; counterparty risk with exchanges. This solution underpins a full prime services offering, connecting global exchanges, and enabling customers to trade and settle directly from the safety … adherence to SLA timelines. Dashboards: Maintain SharePoint Dashboards for tracking/approving Conflicts of Interest, Gifts & Entertainment, Outside Business Interests, Marketing and Financial Promotions. RiskAssessment: Conduct risk assessments and monitor compliance risks, implementing measures to mitigate potential issues. Training and Education: Coordinate and conduct compliance training More ❯
Norfolk, Virginia, United States Hybrid / WFH Options
Watershed Security, LLC
identified threats and vulnerabilities. Reviews and approves test and evaluation activities to validate those threats and vulnerabilities are mitigated. Performs system security reviews and Assessment and Authorization (A&A). Conducts A&A process for IT systems and networks in accordance with the DoD Risk Management Framework process. … with DoD 8500.2. Assists with development and tracking of the POA&M in eMASS. Supports RMF Checkpoint meetings. Assists with the System Categorization and RiskAssessment Report and consults on the SLCM Strategy. Develops the Security Plan, Security Assessment Plan, Security Assessment Report, and Executive Summaries. More ❯