and implementation of trusted relations among external systems and architectures. Assesses and mitigates system security threats/risks throughout the program life cycle. Contributes to the security planning, assessment, risk analysis, riskmanagement, certification and awareness activities for system and networking operations. Reviews certification and accreditation (C&A) documentation, providing feedback on completeness and compliance of its … to: system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification; authentication; and authorization; system integration; riskmanagement; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control … Support security authorization activities in compliance with NSA/CSS Information System Certification and Accreditation Process (NISCAP) and DoD Information Assurance Certification and Accreditation Process (DIACAP) process, the NIST RiskManagement Framework (RMF) process, and prescribed NSA/CSS business processes for security engineering. Level 1: Seven (7) years' experience as an ISSE on programs and contracts of More ❯
and networks combine to deliver a unique set of products and services that help people, businesses, and governments realize their greatest potential. Title and Summary Director, Business Administration - Supplier Management OVERVIEW The Bank of England (The Bank) recognises Vocalink as a Specified Service Provider of critical national infrastructure to multiple Recognised Payment System Operators (e.g., PayUK, LINK). This … As part of our regulatory obligations, there are rules around how we should engage with and manage our suppliers and the risks associated with using third parties. The Supplier Management function ensures we uphold our obligations to our regulators. Our goal is to demonstrate a clear understanding of our supply chain and associated risks, actively governing that supply base … within appropriate management frameworks based on the required level of oversight. Vocalink operates its own Supplier Management Framework to comply with regulatory requirements and industry best practices. The Supplier Management team ensures suppliers are managed in line with this framework. The team maintains a separate artefact repository containing key third-party governance documentation and evidence. ROLE This More ❯
and architectural blueprints for ServiceNow implementations. Cross-Module Expertise: Possess deep technical knowledge and architectural experience across a broad range of ServiceNow modules, including but not limited to: Integrated RiskManagement (IRM): Policy Management, Compliance & Audit Management, Vendor RiskManagement, Business Continuity Management. Security Operations (SecOps): Vulnerability Response, Security Incident Response, Security Dashboards. IT … Service Management (ITSM). IT Operations Management (ITOM). Customer Service Management (CSM). Integration Design: Design and oversee the implementation of complex integrations between ServiceNow and other enterprise systems, leveraging various integration methods (e.g., REST, SOAP, JDBC, MID Server). Technical Oversight & Quality Assurance: Provide technical oversight to development teams, ensuring adherence to architectural patterns, coding More ❯
and architectural blueprints for ServiceNow implementations. Cross-Module Expertise: Possess deep technical knowledge and architectural experience across a broad range of ServiceNow modules, including but not limited to: Integrated RiskManagement (IRM): Policy Management, Compliance & Audit Management, Vendor RiskManagement, Business Continuity Management. Security Operations (SecOps): Vulnerability Response, Security Incident Response, Security Dashboards. IT … Service Management (ITSM). IT Operations Management (ITOM). Customer Service Management (CSM). Integration Design: Design and oversee the implementation of complex integrations between ServiceNow and other enterprise systems, leveraging various integration methods (e.g., REST, SOAP, JDBC, MID Server). Technical Oversight & Quality Assurance: Provide technical oversight to development teams, ensuring adherence to architectural patterns, coding More ❯
and architectural blueprints for ServiceNow implementations. Cross-Module Expertise: Possess deep technical knowledge and architectural experience across a broad range of ServiceNow modules, including but not limited to: Integrated RiskManagement (IRM): Policy Management, Compliance & Audit Management, Vendor RiskManagement, Business Continuity Management. Security Operations (SecOps): Vulnerability Response, Security Incident Response, Security Dashboards. IT … Service Management (ITSM). IT Operations Management (ITOM). Customer Service Management (CSM). Integration Design: Design and oversee the implementation of complex integrations between ServiceNow and other enterprise systems, leveraging various integration methods (e.g., REST, SOAP, JDBC, MID Server). Technical Oversight & Quality Assurance: Provide technical oversight to development teams, ensuring adherence to architectural patterns, coding More ❯
and architectural blueprints for ServiceNow implementations. Cross-Module Expertise: Possess deep technical knowledge and architectural experience across a broad range of ServiceNow modules, including but not limited to: Integrated RiskManagement (IRM): Policy Management, Compliance & Audit Management, Vendor RiskManagement, Business Continuity Management. Security Operations (SecOps): Vulnerability Response, Security Incident Response, Security Dashboards. IT … Service Management (ITSM). IT Operations Management (ITOM). Customer Service Management (CSM). Integration Design: Design and oversee the implementation of complex integrations between ServiceNow and other enterprise systems, leveraging various integration methods (e.g., REST, SOAP, JDBC, MID Server). Technical Oversight & Quality Assurance: Provide technical oversight to development teams, ensuring adherence to architectural patterns, coding More ❯
london (city of london), south east england, united kingdom
HCLTech
and architectural blueprints for ServiceNow implementations. Cross-Module Expertise: Possess deep technical knowledge and architectural experience across a broad range of ServiceNow modules, including but not limited to: Integrated RiskManagement (IRM): Policy Management, Compliance & Audit Management, Vendor RiskManagement, Business Continuity Management. Security Operations (SecOps): Vulnerability Response, Security Incident Response, Security Dashboards. IT … Service Management (ITSM). IT Operations Management (ITOM). Customer Service Management (CSM). Integration Design: Design and oversee the implementation of complex integrations between ServiceNow and other enterprise systems, leveraging various integration methods (e.g., REST, SOAP, JDBC, MID Server). Technical Oversight & Quality Assurance: Provide technical oversight to development teams, ensuring adherence to architectural patterns, coding More ❯
the development, implementation and evaluation of information system security program policy; special emphasis placed upon integration of existing SAP network infrastructures Perform analysis of network security, based upon the RiskManagement Framework (RMF) with emphasize on Joint Special Access Program Implementation Guide (JSIG) authorization process Provides expert support, research and analysis of exceptionally complex problems, and processes relating … and implementation of trusted relations among external systems and architectures. Assesses and mitigates system security threats/risks throughout the program life cycle Contributes to the security planning, assessment, risk analysis, riskmanagement, certification and awareness activities for system and networking operations. Thinks independently and demonstrates exceptional written and oral communications skills. Applies advanced technical principles, theories … SSE IPT reviews. Provides expert level consultation and technical services on all aspects of Information Security Review ISSE related designs and provides security compliance recommendations. Develop and provide IA riskmanagement recommendations to the customer. Provide ISSE support for Mission and Training systems design and development. Assist with development and maintenance of the Program Protection Plan. Assist with More ❯
programmes and projects of a large size and complexity, including the shaping, planning, managing and delivery of engagements, the writing of client reports and quality assurance of work products Riskmanagement Supporting engagement riskmanagement and assurance and engagement commercials ensuring the Firm’s riskmanagement processes are implemented appropriately and effectively People development … an excellent team player with strong interpersonal and communication skills, a growth mindset with drive for impact and an ability to work with ambiguity Hands on knowledge of project management methodologies and preferably certified project/programme management or strong experience in leading large projects and/or process migrations and transitions with experience of delivering to deadlines More ❯
City of London, London, United Kingdom Hybrid / WFH Options
KPMG UK
programmes and projects of a large size and complexity, including the shaping, planning, managing and delivery of engagements, the writing of client reports and quality assurance of work products Riskmanagement Supporting engagement riskmanagement and assurance and engagement commercials ensuring the Firm’s riskmanagement processes are implemented appropriately and effectively People development … an excellent team player with strong interpersonal and communication skills, a growth mindset with drive for impact and an ability to work with ambiguity Hands on knowledge of project management methodologies and preferably certified project/programme management or strong experience in leading large projects and/or process migrations and transitions with experience of delivering to deadlines More ❯
london, south east england, united kingdom Hybrid / WFH Options
KPMG UK
programmes and projects of a large size and complexity, including the shaping, planning, managing and delivery of engagements, the writing of client reports and quality assurance of work products Riskmanagement Supporting engagement riskmanagement and assurance and engagement commercials ensuring the Firm’s riskmanagement processes are implemented appropriately and effectively People development … an excellent team player with strong interpersonal and communication skills, a growth mindset with drive for impact and an ability to work with ambiguity Hands on knowledge of project management methodologies and preferably certified project/programme management or strong experience in leading large projects and/or process migrations and transitions with experience of delivering to deadlines More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
KPMG UK
programmes and projects of a large size and complexity, including the shaping, planning, managing and delivery of engagements, the writing of client reports and quality assurance of work products Riskmanagement Supporting engagement riskmanagement and assurance and engagement commercials ensuring the Firm’s riskmanagement processes are implemented appropriately and effectively People development … an excellent team player with strong interpersonal and communication skills, a growth mindset with drive for impact and an ability to work with ambiguity Hands on knowledge of project management methodologies and preferably certified project/programme management or strong experience in leading large projects and/or process migrations and transitions with experience of delivering to deadlines More ❯
slough, south east england, united kingdom Hybrid / WFH Options
KPMG UK
programmes and projects of a large size and complexity, including the shaping, planning, managing and delivery of engagements, the writing of client reports and quality assurance of work products Riskmanagement Supporting engagement riskmanagement and assurance and engagement commercials ensuring the Firm’s riskmanagement processes are implemented appropriately and effectively People development … an excellent team player with strong interpersonal and communication skills, a growth mindset with drive for impact and an ability to work with ambiguity Hands on knowledge of project management methodologies and preferably certified project/programme management or strong experience in leading large projects and/or process migrations and transitions with experience of delivering to deadlines More ❯
for who they are and what they bring to the table, supporting one another as we continue to deliver for our customers. LI-KS1 Create & Maintain an information security management system (ISMS) capable of demonstrating compliance against internal security requirements and external commitments including certification and regulatory requirements. Provide subject matter expertise in the application of established standards including … existing programme of work. Prepare and support internal and/or external compliance audit activities. Manage remediation of any audit (internal & External) non-conformities. Ensure security policies (on a risk-based approach) are produced, signed off by relevant stakeholders, published, and communicated. Also, ensure that policies are managed throughout their lifecycle and updated through yearly or ad-hoc reviews. … in consultation with Technical teams. Lead on providing information to Three UK Customers (B2B) regarding Three UK's security practices. Support proactive and effective oversight of technology and security riskmanagement frameworks, methodologies, processes, assurance, remediation, and reporting activities across the company. Assist in designing, building, and implementing a Technology and Security Risk framework in collaboration with More ❯
onsite to Aurora CO. What You Will Do Assessing current customer requirements; evaluating trends; developing security architecture and requirements, and design architecture artifacts, plans, and policies. Support and develop RiskManagement Framework (RMF) assessment documentation and conduct controls validation testing resulting in the Authorization to Operate (ATO) decision. Collect, capture, report, and perform analysis on cybersecurity collected data … features and/or vulnerability analysis of various operating systems. DOD 8570.01-M IASAE Level II or Level III Compliant Certification (e.g. Security+, CISSP, or equivalent). Experience in RiskManagement Framework, IA certification, accreditation, IA controls and developing and maintaining associated documentation Experience with security systems engineering involving various computer hardware and software S/W operating … alone and in LAN/WAN configurations. Relevant Experience any/all of the following security disciplines: Cybersecurity, systems security or hardening Information Technology Compliance-based auditing using the RiskManagement Framework (RMF) Working with and/or supporting computer technologies (such as databases, operating systems, computer network hardware, software programs, hardware troubleshooting or electronics) Project or program More ❯
Perform cross-program analysis to assist in responding to Investment Portfolio (IP) actions and producing execution reports. Draftacquisition and program documents such as TTOs, Statements of Work (SOWs), Program Management Plans (PMPs), RiskManagement Plans, program schedules, Technical CICA memorandums, and Acquisition Strategies. Prepare presentations to report analysis findings as well as program/portfolio status. The … allocation and tracking of resources; recommend funding adjustments as appropriate (contract staffing, facilities, and budgets). • Assist program managers in developing program documentation (TTOs, Statements of Work (SOWs), Program Management Plans (PMPs), RiskManagement Plans, program schedules, Technical CICA memorandums, and Acquisition Strategies), creating program schedules, tracking program status, evaluating operational and technical alternatives, performing risk assessment and managing integrated product teams. • Provide support to GPMs to assure execution within the cost, schedule, and performance baselines. Utilize program management tools (e.g., Plan-It, MS Excel) to assist GPM with planning, documenting, executing, and reporting of all program details (e.g., spend plans), for both current year (FY) and out-years (FYDP). • Attend contract reviews More ❯
cross-program analysis to assist in responding to Investment Portfolio (IP) actions and producing execution reports. Draft acquisition and program documents such as TTOs, Statements of Work (SOWs), Program Management Plans (PMPs), RiskManagement Plans, program schedules, Technical CICA memorandums, and Acquisition Strategies. Prepare presentations to report analysis findings as well as program/portfolio status. The … allocation and tracking of resources; recommend funding adjustments as appropriate (contract staffing, facilities, and budgets). Assist program managers in developing program documentation (TTOs, Statements of Work (SOWs), Program Management Plans (PMPs), RiskManagement Plans, program schedules, Technical CICA memorandums, and Acquisition Strategies), creating program schedules, tracking program status, evaluating operational and technical alternatives, performing risk assessment and managing integrated product teams. Provide support to GPMs to assure execution within the cost, schedule, and performance baselines. Utilize program management tools (e.g., Plan-It, MS Excel) to assist GPM with planning, documenting, executing, and reporting of all program details (e.g., spend plans), for both current year (FY) and out-years (FYDP). Attend contract reviews More ❯
cross-program analysis to assist in responding to Investment Portfolio (IP) actions and producing execution reports. Draft acquisition and program documents such as TTOs, Statements of Work (SOWs), Program Management Plans (PMPs), RiskManagement Plans, program schedules, Technical CICA memorandums, and Acquisition Strategies. Prepare presentations to report analysis findings as well as program/portfolio status. The … allocation and tracking of resources; recommend funding adjustments as appropriate (contract staffing, facilities, and budgets). • Assist program managers in developing program documentation (TTOs, Statements of Work (SOWs), Program Management Plans (PMPs), RiskManagement Plans, program schedules, Technical CICA memorandums, and Acquisition Strategies), creating program schedules, tracking program status, evaluating operational and technical alternatives, performing risk assessment and managing integrated product teams. • Provide support to GPMs to assure execution within the cost, schedule, and performance baselines. Utilize program management tools (e.g., Plan-It, MS Excel) to assist GPM with planning, documenting, executing, and reporting of all program details (e.g., spend plans), for both current year (FY) and out-years (FYDP). • Attend contract reviews More ❯
VIRGINIA - URGENT Job Type: Full-time Clearance Level: Top secret/SCI Work Arrangement: Remote Job Location: Arlington VA Salary: 250k - 300k Background Utilize expert knowledge and experience regarding riskmanagement strategies in support of a major DoD program Collaborate between the Cyber Risk assessor/security Control assessor and the program as well as DoD senior … and metrics for body of evidence and authorization conditions Develop and implement security policies, procedures, and guidelines to ensure compliance with applicable laws, regulations, and industry best practices Conduct risk assessments and identify potential vulnerabilities and threats to information systems Develop and implement risk mitigation strategies and controls to minimize the impact of security incidents Collaborate with system … Conduct periodic security audits and assessments to evaluate the effectiveness of security controls and identify areas for improvement Maintain accurate and up-to-date security documentation, including security plans, risk assessments, and incident reports Provide regular reports to the Government customer on the status of information security and any identified risks or vulnerabilities Provide support regarding the DoD's More ❯
that just opened in Scottsdale, AZ. In this role, you will work with a small team to design, build, test, deploy and support enterprise web applications to modernize the management of data and design information developed for our customers. The web applications will allow the product development team to store project data in a relational database, where the data … U.S. citizenship is required. The Web Software Developer we seek will work with a small team to design, build, test, deploy and support enterprise web applications to modernize the management of data and design information developed for our customers. The web applications will allow the product development team to store project data in a relational database, where the data … field. Also requires 5+ years of job-related experience, or a Master's degree plus 3 years of job-related experience. Agile experience preferred. Develop and implement a comprehensive riskmanagement plan for the MUOS program Identify and assess potential risks that could impact project scope, schedule, cost, and quality Collaborate with cross-functional teams to develop opportunities More ❯
responsible for ensuring the health, safety, and welfare of employees, contractors, and visitors by developing and maintaining a positive safety culture, managing the ISO 45001 occupational health and safety management system, and ensuring full compliance with all UK health and safety legislation. This role is critical to maintaining operational resilience, minimising risk, and supporting the wellbeing of the … business teams Key Responsibilities 1. Policy, Compliance & Governance * Maintain and continuously improve H&S policies, procedures, and management systems in line with ISO 45001, legal obligations (e.g., HASAWA 1974), and industry best practices * Ensure policies are communicated, implemented, and consistently followed across all business units and office locations * Oversee the organisation's Occupational Health and Safety Management System … OHMS), conducting regular audits and management reviews 2. RiskManagement * Conduct risk assessments across offices and working environments, including workstation assessments, fire risk assessments, and task-specific reviews * Ensure risk mitigation measures are documented, implemented, and monitored * Perform specialist assessments such as return-to-work, new and expectant mother risk assessments, and process More ❯
An exciting opportunity has arisen for an experienced Model Implementation Lead to join a high-performing risk team at a leading financial institution. This role is critical in driving the successful deployment of corporate credit risk models, working at the intersection of front office, risk, and quantitative modelling functions. You will lead initiatives that ensure models are … not only regulatory compliant (IRB, Basel 3.1, IFRS 9) but also operationally embedded into decision-making, capital planning, and riskmanagement frameworks. Key Responsibilities: Lead the end-to-end implementation of corporate credit risk and impairment models across the banking book. Collaborate with Quantitative Modelling, Risk, and Front Office teams to align model outputs with business … needs. Support capital planning and balance sheet optimisation via model-driven insights. Enhance tools, governance frameworks and data pipelines to drive risk modelling efficiency and control. Translate complex quantitative methodologies into clear, actionable strategies for risk and business teams. Champion change initiatives around model deployment and regulatory compliance. Work cross-functionally to deliver limit management tools, early More ❯
increase market accessibility for global SMEs. We do so across our 4 key businesses: Alipay+, Antom, WorldFirst and ANEXT Bank. What You'll Do: Primarily support Worldfirst's fraud riskmanagement in UK/EEA. Require an in-depth understanding of cross-border trade and payment business models, and independently conduct risk assessments, identify potential risks, and … the business team. Leverage innovative capabilities to facilitate business goal achievement. Manage solution-based projects and coordinate with internal stakeholders across functions (e.g., product and technical teams) to ensure risk solutions are timely delivered and continuously track their effectiveness. Participate in the development of new products and business processes. Efficiently develop or update SOPs based on business and riskmanagement requirements. Provide training to cross-functional team members. Proactively identify new fraud and cybercrime threats by reviewing and investigating suspected or fraud cases. Continuously refine the internal risk control framework, policies, fraud management engine, and operational procedures to mitigate risks. Continuously identify and analyze business and customer pain points. Design innovative and intelligent operational solutions More ❯
increase market accessibility for global SMEs. We do so across our 4 key businesses: Alipay+, Antom, WorldFirst and ANEXT Bank. What You'll Do: Primarily support Worldfirst's fraud riskmanagement in UK/EEA. Require an in-depth understanding of cross-border trade and payment business models, and independently conduct risk assessments, identify potential risks, and … the business team. Leverage innovative capabilities to facilitate business goal achievement. Manage solution-based projects and coordinate with internal stakeholders across functions (e.g., product and technical teams) to ensure risk solutions are timely delivered and continuously track their effectiveness. Participate in the development of new products and business processes. Efficiently develop or update SOPs based on business and riskmanagement requirements. Provide training to cross-functional team members. Proactively identify new fraud and cybercrime threats by reviewing and investigating suspected or fraud cases. Continuously refine the internal risk control framework, policies, fraud management engine, and operational procedures to mitigate risks. Continuously identify and analyze business and customer pain points. Design innovative and intelligent operational solutions More ❯
increase market accessibility for global SMEs. We do so across our 4 key businesses: Alipay+, Antom, WorldFirst and ANEXT Bank. What You'll Do: Primarily support Worldfirst's fraud riskmanagement in UK/EEA. Require an in-depth understanding of cross-border trade and payment business models, and independently conduct risk assessments, identify potential risks, and … the business team. Leverage innovative capabilities to facilitate business goal achievement. Manage solution-based projects and coordinate with internal stakeholders across functions (e.g., product and technical teams) to ensure risk solutions are timely delivered and continuously track their effectiveness. Participate in the development of new products and business processes. Efficiently develop or update SOPs based on business and riskmanagement requirements. Provide training to cross-functional team members. Proactively identify new fraud and cybercrime threats by reviewing and investigating suspected or fraud cases. Continuously refine the internal risk control framework, policies, fraud management engine, and operational procedures to mitigate risks. Continuously identify and analyze business and customer pain points. Design innovative and intelligent operational solutions More ❯