Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
Out in Science, Technology, Engineering, and Mathematics
leave annually Your key responsibilities Evaluate the internal controls related to Technology supporting Compliance, Anti-Financial Crime, Legal, HR, and Records Management/Archiving, following Group Audit methodology and riskassessment frameworks Plan and undertake audit assignments, attend meetings, draft audit issues, track findings, and validate their closure Participate in meetings with business auditors and contribute to business … led audits Maintain broad regulatory knowledge, stay updated on industry changes, and assess their impact on audit plans and risk assessments Develop professional relationships with colleagues and stakeholders, working collaboratively across teams globally Your skills and experience Degree in IT, Computer Science, or related field, with professional certifications like CISA, CRISC, etc., preferred Significant experience in IT auditing, especially More ❯
Implementing and development of the DHS IT security standards • Gathering and organizing technical information about the lab's mission goals and needs, existing security products, and ongoing programs • Performing risk analyses which also includes riskassessment • Planning and leading major technology assignments • Evaluating performance results and recommends major changes affecting short-term project growth and success - Functioning More ❯
London, England, United Kingdom Hybrid / WFH Options
Financial Conduct Authority
needs Lead security education initiatives for development teams and product stakeholders Establish and enforce security requirements for new features, APIs and system enhancements Assess and improve security maturity, advocating risk-based methodologies, tooling and automation What will you get from the role? Opportunity to grow in a technology-focused career with meaningful skill development Supportive and collaborative team culture … supplier proposals and driving cost-effective security solutions Ability to integrate security with software innovation while ensuring adherence to organisational standards Expertise in security methodologies, including threat modelling and riskassessment Deep understanding of technology trends and industry standards in information security Proven track record of delivering security-focused assets, including incident reports, secure coding templates and training … Associate - Regulatory Advert Closing Date:Midnight 07 July (please submit your application by 11.59pm 06 July) CV Review/Shortlist: w/c 07 July First Round Case Study Assessment: w/c 14 July Competency Based Interview: w/c 28 July Your Recruiter will discuss the process in detail with you during screening for the role, therefore More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Financial Conduct Authority
needs Lead security education initiatives for development teams and product stakeholders Establish and enforce security requirements for new features, APIs and system enhancements Assess and improve security maturity, advocating risk-based methodologies, tooling and automation What will you get from the role? Opportunity to grow in a technology-focused career with meaningful skill development Supportive and collaborative team culture … supplier proposals and driving cost-effective security solutions Ability to integrate security with software innovation while ensuring adherence to organisational standards Expertise in security methodologies, including threat modelling and riskassessment Deep understanding of technology trends and industry standards in information security Proven track record of delivering security-focused assets, including incident reports, secure coding templates and training … Associate - Regulatory Advert Closing Date:Midnight 07 July (please submit your application by 11.59pm 06 July) CV Review/Shortlist: w/c 07 July First Round Case Study Assessment: w/c 14 July Competency Based Interview: w/c 28 July Your Recruiter will discuss the process in detail with you during screening for the role, therefore More ❯
London, England, United Kingdom Hybrid / WFH Options
Deutsche Bank
global matrix structure allows for flexible responses to challenges in the core areas of: Anti-Money Laundering (AML), Sanctions & Embargoes, Anti-Fraud, Bribery & Corruption, Investigations & Intelligence, Monitoring & Screening, and Risk Assessment. Our AFC Team will provide you with opportunities to learn, grow and define your career. We foster an open, diverse, and inclusive team culture, that is engaged and … prosperity and enjoyment of a life/work balance. The Screening Team supports the Bank to oversee maintenance of a robust AFC screening programme to manage Sanctions and AML risk in line with the Bank’s risk appetite. You will be responsible for oversight of the end-to-end name list (client) screening control environment. What we’ll … benefits The opportunity to support a wide ranging CSR programme + 2 days’ volunteering leave per year Your key responsibilities Support with driving the Bank’s sanctions and financial risk name list screening strategy for all business divisions in coordination with key stakeholders across business, technology and operations Understand and ensure appropriate oversight over screening systems, related data and More ❯
manager to support the global IT Internal audit function, with a specific focus on international operations. This role will be responsible for planning, executing, and managing IT audits and risk assessments across our international entities to ensure the integrity, security and effectiveness of IT systems and processes. This role will be based in London and will report to the … IT Audit Director. How you'll contribute: Plan and execute risk-based IT audits across international entities, including but not limited to, infrastructure, applications, cloud environments, cyber security, and third party/vendor risks. Evaluate IT general controls (ITGCs), application controls, and technology-related processes aligned with SOX, GDPR, NIST, ISO 27001, and other global compliance requirements. Partner with … teams to identify and assess IT risks, develop audit scopes, and execute testing procedures. Support integrated audits and special projects in coordination with other internal audit team members. Conduct riskassessment of assigned areas and systems in established/required timeline. Deliver audit reports with clear and actionable recommendations to senior management and stakeholders across different regions. Requirements More ❯
RFP products Review acquisition documents and provides comments with programmatic perspective to ensure consistency and accuracy. Documents may include, but are not limited to, ADMs, LCSP, Acquisition Strategies, APBs, Risk Management Plans, PMRs and milestone decision briefings Support, prepare, review and develop acquisition reports, including statutory and regulatory acquisition report and milestone review documentations identified in DoDI 5000.02 Support … and potential cost avoidance Assist with planning, evaluating and implementing program acquisition strategies. This includes DoD and AF policy and/or guidance; technical approach and/or requirements; riskassessment; and realism in achieving a product suitable for the warfighter within cost, schedule, and performance constraints. Also includes broad range of program acquisition strategies, market research, evaluating … in DoDI 5000.80, Operation of the Middle Tier of Acquisition and DoDI 5000.81, Urgent Capability Acquisition Support and coordinate with program level scheduling personnel Develop, maintain, and update program risk management plans IAW the Risk Management Guide for DoD Acquisition, AFPAM 63-128, and the Air Force RI3 Guidebook; facilitate program risk identification, risk analysis, riskMore ❯
software, and Microsoft Office Suite. * Construction Expertise: In-depth knowledge of construction project management and change management processes. * Scheduling Mastery: Demonstrated experience in developing and managing complex project schedules. * Risk Management: Proficient in TRA, QSRA, and other riskassessment methodologies. * Financial Acumen: Understanding of budgeting, cost estimation, and Earned Value Management (EVM). Please click here to More ❯
principles Act as the process owner and lead for all change and release activities, driving continuous improvement and operational excellence Chair the CAB and ECAB where necessary, ensuring accurate riskassessment, approval and scheduling of changes Coordinate with internal and external stakeholders to ensure timely and effective implementation of changes. Establish release governance, calendar management and deployment coordination … processes Conduct impact assessments for major changes, implementing risk mitigation strategies to prevent service disruption. Track and report on KPIs, SLAs, and other performance metrics for Change and Release Management. Conduct regular reviews of change and management processes, identifying areas for improvement and implementing necessary changes. Work closely with Service Delivery Managers to support them in their role and More ❯
City of London, England, United Kingdom Hybrid / WFH Options
Bridewell
Critical National Infrastructure. At the Senior Consultant level, you will be working with these clients to deliver a range of Cyber Security projects that could range from a single riskassessment to the development of a full ISMS to ensure a multi-national company gains accreditation in accordance with the appropriate international standards. Delivery of client engagements to … a high-quality, work would cover ISMS development, assisting companies gain ISO27001 certification, NIS2 compliance and assisting with other areas of governance, risk and compliance as required Staying on top of the latest developments within Cyber Security by attending training and conferences Working with the leadership and sales team to respond to tenders and provide pre-sales support Quality … as required Input into the development of Bridewell security methodologies. You will need to have experience in: Implementing security standards such as ISO27001, NCSC CAF, NIST Conducting Cyber Security risk assessments and managing risk management activities Good general knowledge of IT systems covering traditional infrastructure, cloud platforms and SaaS Working within an operational security role or security management More ❯
monitoring tools (e.g., Wireshark, SolarWinds, Nagios) and security incident management tools ️ Proficiency in network administration (e.g., TCP/IP, routing, switching, VLANs, DNS, DHCP) ️ Understanding of security best practices, riskassessment, and threat mitigation techniques ️ Relevant certifications such as CISSP, CISM, CCNP Security, or CompTIA Security+ ️ Strong analytical, troubleshooting, and problem-solving skills ️ Ability to work independently and More ❯
London, England, United Kingdom Hybrid / WFH Options
Bridewell Consulting Limited
doing Work would include the delivery of client engagements to a high level, implementing Data Privacy frameworks aligned to legal requirements and standards, such as ISO27701 and NIST Privacy RiskAssessment Methodology. You’ll work with the leadership and sales team to respond to tenders and provide pre-sales support, whilst also quality assuring other consultants' work and … Practical experience of developing, maintaining and implementing Data Privacy Frameworks in a variety of organisations including during times of large-scale transformation. Practical experience of applying a range of risk management approaches, conducting risk assessments and being able to articulate risk effectively. Practical experience of providing independent support and advice on a wide variety of privacy issues. … to share options and travel expenses. Speak to our Team Embark on a journey to increase your cyber resilience, improve your cyber security posture, and reduce your cyber security risk with our comprehensive Security Advisory services. #J-18808-Ljbffr More ❯
Client Engagement & Relationship Building: Develop and maintain strong, long-term relationships with school and academy clients. Provide expert, tailored data protection solutions that meet each client’s unique needs. RiskAssessment & Compliance: Conduct thorough assessments of clients’ data protection practices. Identify risks and deliver clear, actionable recommendations to strengthen GDPR compliance. Incident Response & Crisis Management: Lead on data … breach investigations, providing swift, strategic guidance to contain incidents and mitigate impact. Advise clients on effective resolution strategies and future risk prevention. Policy Development & Implementation: Draft, review, and update data protection policies and procedures in line with current regulations. Ensure clients’ policies remain robust and adaptable to evolving legal requirements. Training & Education: Deliver engaging, practical training sessions (both virtual More ❯
and Takepayments. Our software platform and APIs enable our partners to offer flexible financing products, in their desired branding, to their merchant base. With YouLend's AI-driven credit riskassessment solutions, more merchants and SMEs than ever can receive fast, flexible and affordable funding. We operate in 9+ geographies across the UK, EU and the US. We … will play a key role in winning, scaling, and optimising partnerships, supporting strategic initiatives that drive revenue growth and market expansion. You will work closely with the Partnerships, Product, Risk, and Operations teams to ensure commercial success, developing data-driven insights and supporting partner-facing initiatives. You will be responsible for analysing partnership performance, pricing, supporting RFPs, preparing and … is eager to make an impact. Depending on experience, we are hiring at both Analyst (Graduate) and Associate (2-4 years of experience) levels. Requirements Work closely with Product, Risk, and Operations to optimise partnerships and ensure commercial success. Evaluate commercial performance, customer behaviour, and transaction data to identify trends and opportunities for partner expansion. Analyse data to generate More ❯
to engage the PS solutions engineering organization and ensure speed and accuracy Drive consistency in proposal quality, format, and content across all regions Implement governance processes to ensure appropriate riskassessment and profitability analysis Develop strategies to differentiate professional services offerings from competitors Partner with sales leaders to develop and execute joint go-to-market strategies for professional … capabilities Strategic thinking with strong commercial acumen Advanced negotiation and influencing skills Ability to translate complex technical concepts into business value propositions Strong analytical capabilities for pricing, scoping, and riskassessment Excellent problem-solving and creative thinking skills Education & Certifications Bachelor's degree required; MBA or other advanced degree preferred Technical certifications relevant to the company's products More ❯
posture, and actively safeguard the systems that make critical projects a success. Key Responsibilities: Cybersecurity & Compliance •Support implementation, monitoring, and continuous improvement of cybersecurity controls in accordance with the Risk Management Framework (RMF). •Maintain and update System Security Plans (SSPs), POA&Ms, risk assessments, and continuous monitoring documentation. •Perform vulnerability assessments, penetration testing, and security audits using … provisioning, patch management, secure configurations, and network monitoring. •Evaluate and recommend security solutions that meet DoD and federal requirements for processing classified information. •Participate in security authorization activities, including RiskAssessment Reports, Certification and Accreditation packages, and System Requirements Traceability Matrices (SRTMs). •Support security awareness training and insider threat mitigation programs. •Maintain thorough documentation for all security More ❯
development, and we are growing quickly. We are looking to staff a Sr. Program Analyst for one of our DoD clients, the Office of Naval Research. Key Responsibilities: Technology Assessment: Evaluate the feasibility, relevance, and potential impact of new technologies on naval operations. Provide recommendations to senior leadership. Collaboration: Foster collaboration with internal and external stakeholders, including scientists, engineers … government agencies, and industry partners, to build strategic alliances and leverage expertise. Budget Management: Manage project budgets, allocate resources efficiently, and ensure cost-effectiveness. RiskAssessment: Identify potential risks, challenges, and opportunities associated with research projects and/or S&T portfolio planning and implementation. Reporting and Documentation: Prepare detailed reports, presentations, and documentation as necessary to effectively More ❯
known as the CASP+) Certification required Must have a solid understanding of security practices and policies and hands-on vulnerability testing experience using Customer tools. Must have experience applying Risk Management Framework. Must have experience formulating and assessing IT security policy. Must have demonstrated knowledge of and experience with common security tools, such as Nessus, NMAP and Wireshark hardware … Five (05) years of experience with Defense in Depth Principals/technology (including access control, authorization, identification and authentication, public key infrastructure, network and enterprise security architecture) and applying riskassessment methodology to system development. Experience developing/implementing integrated security services management processes, such as assessing and auditing network penetration testing, anti-virus planning assistance, riskMore ❯
and more exclusive features. SecurityScorecard is the global leader in cybersecurity ratings, with over 12 million companies continuously rated, operating in 64 countries. Founded in 2013 by security and risk experts Dr. Alex Yampolskiy and Sam Kassoumeh and funded by world-class investors, SecurityScorecard’s patented rating technology is used by over 25,000 organizations for self-monitoring, third … party risk management, board reporting, and cyber insurance underwriting; making all organizations more resilient by allowing them to easily find and fix cybersecurity risks across their digital footprint. Headquartered in New York City, our culture has been recognized by Inc Magazine as a "Best Workplace,” by Crain’s NY as a "Best Places to Work in NYC," and as … to manage cybersecurity risk. We leverage massive datasets sourced by our internal Threat Intelligence teams to create the core rating models that our customers use for assessing third-party risk and self-assessment. We also build LLM-powered systems for automating and accelerating cybersecurity riskassessment workflows. About the Role: As an ML Engineer, you will design More ❯
security, including security groups, network ACLs and load balancers in cloud environments Strong knowledge of IAM solutions with desired experience in Microsoft Entra ID Strong application and Network security riskassessment skills to identify gaps in security configuration and design Expert-level problem-solving and analytical skills Strong written and oral English communication skills, and ability to convey More ❯
of experience managing IT projects in the banking or financial services sector. Strong understanding of banking applications, core banking systems, and digital channels. Skilled in project planning, resource management, riskassessment, and stakeholder communication. Proficient with project management methodologies (Agile, Waterfall) and tools (Jira, MS Project). Strong understanding of compliance , information security , and regulatory requirements in banking. More ❯
of experience managing IT projects in the banking or financial services sector. Strong understanding of banking applications, core banking systems, and digital channels. Skilled in project planning, resource management, riskassessment, and stakeholder communication. Proficient with project management methodologies (Agile, Waterfall) and tools (Jira, MS Project). Strong understanding of compliance , information security , and regulatory requirements in banking. More ❯
Borehamwood, Hertfordshire, England, United Kingdom
Elysium Healthcare
technical teams and SME’s fostering a culture of continuous improvement and innovation. Line management of Solution architect. Develop training programs and workshops to enhance team capabilities and knowledge. Risk Management: Identify and mitigate architectural risks to ensure the stability and security of IT systems. Implement riskassessment frameworks and develop contingency plans to address potential threats More ❯
technical teams and SME's fostering a culture of continuous improvement and innovation. Line management of Solution architect. Develop training programs and workshops to enhance team capabilities and knowledge. Risk Management: Identify and mitigate architectural risks to ensure the stability and security of IT systems. Implement riskassessment frameworks and develop contingency plans to address potential threats More ❯
technical teams and SME's fostering a culture of continuous improvement and innovation. Line management of Solution architect. Develop training programs and workshops to enhance team capabilities and knowledge. Risk Management: Identify and mitigate architectural risks to ensure the stability and security of IT systems. Implement riskassessment frameworks and develop contingency plans to address potential threats More ❯