Business Information Risk Analyst page is loaded Business Information Risk Analyst Apply locations London time type Full time posted on Posted 2 Days Ago job requisition id R18274 Ideas People Trust We're BDO. An accountancy and business advisory firm, providing the advice and solutions entrepreneurial organisations need to navigate today's changing world. We work with the … companies that are Britain's economic engine - ambitious, entrepreneurially-spirited and high growth businesses that fuel the economy - and directly advise the owners and management teams that lead them. We'll broaden your horizons The Quality and RiskManagement Team (QRM) provides leadership, guidance, and tools to help partners and staff manage quality and risk matters. … You'll be encouraged to identify and draw attention to opportunities for enhancing our delivery and providing additional services to organisations we work with. Role Purpose The Business Information Risk Analyst's (BIRA) role is responsible for supporting the Chief Information Security Office (CISO) service to BDO's business streams to effectively manage information security risk. This role will More ❯
employee at M.C. Dean, you will join forces with more than 5,800 professionals who engineer and deploy automated, secure and resilient power and technology systems; and deliver the management platforms essential for long-term system sustainability. Together, we transform the way complex, large-scale systems are designed, delivered, and sustained-enhancing client outcomes, improving lives, and changing the … and implementation of trusted relations among external systems and architectures. Assess and mitigate system security threats/risks throughout the program life cycle. Contribute to the security planning, assessment, risk analysis, riskmanagement, certification and awareness activities for system and networking operations. Review assessment and accreditation (A&A) documentation, provide feedback on completeness and compliance of its … to: system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification; authentication; and authorization; system integration; riskmanagement; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control More ❯
Insurance clients on a 12-month contract. Inside IR35 Hybrid Responsibilities: Analyze large datasets to identify trends, anomalies, and emerging risks across technology and cyber domains. Support governance and risk forums with timely and accurate reporting on key risk indicators (KRIs), control effectiveness, and remediation progress. Develop and maintain dashboards and reports to visualize technology and cyber risk and control data. Collaborate with risk and control owners to ensure accurate data capture and interpretation of risk metrics. Contribute to the development and enhancement of risk data models and reporting frameworks. Ensure alignment of analytics and reporting outputs with enterprise riskmanagement and control frameworks. Strong knowledge of riskmanagement frameworks … e.g., NIST, ISO 27001, COBIT) and control environments. Deep understanding of IT general controls, cyber security principles, and technology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau, or similar tools). Familiarity with GRC platforms and risk data management practices. Experience in a riskmanagement, IT More ❯
Insurance clients on a 6-month contract. Inside IR35 Hybrid Responsibilities: Analyze large datasets to identify trends, anomalies, and emerging risks across technology and cyber domains. Support governance and risk forums with timely and accurate reporting on key risk indicators (KRIs), control effectiveness, and remediation progress. Develop and maintain dashboards and reports to visualize technology and cyber risk and control data. Collaborate with risk and control owners to ensure accurate data capture and interpretation of risk metrics. Contribute to the development and enhancement of risk data models and reporting frameworks. Ensure alignment of analytics and reporting outputs with enterprise riskmanagement and control frameworks. Strong knowledge of riskmanagement frameworks … e.g., NIST, ISO 27001, COBIT) and control environments. Deep understanding of IT general controls, cyber security principles, and technology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau, or similar tools). Familiarity with GRC platforms and risk data management practices. Experience in a riskmanagement, IT More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Leidos
Description Risk and Business Continuity Manager Programme Name: LCST Location: Bristol, UK - The role will be hybrid, with expectations to be in our Bristol, UK office at least one day per week and some UK travel will be required. Are you ready for your next career challenge? Role Overview: Leidos Europe Ltd (as Prime contractor) is seeking a UK … based Programme level Risk and Business Continuity Manager who is a motivated self-starter who can work independently and as part of a team in a dynamic environment. They will be a dedicated resource to the Logistics Division working on the Ministry of Defence Logistics, Commodities and Services Transformation (LCST) Programme. Reporting to the Head of Compliance, the Programme … Risk and Business Continuity Manager will be supported by a Risk and Business Continuity Advisor. This role is the programme focal point for riskmanagement and business continuity across the Prime contract as part of the functions stakeholder management duties defined below. The role will be hybrid, with expectations to be in our Bristol, UK More ❯
About the team The Data, IT and Cyber Risk Team is part of the wider riskmanagement function responsible for providing check and challenge to the first line over their risk profile. What you will be doing? As the new Senior Risk Manager - IT & Cyber Risk, you willprovide an IT and Cyber risk second line opinion to the IT and Cyber first line risk champions over related risks (within Riskonnect) to ensure that first line work within their risk appetite. Your responsibilities will include The management of the IT and Cyber Risk Team and its delivery of the annual plan. this includes the line management of the … IT and Cyber Risk Team across the Group and supporting any external resource Ensure that IT and Cyber riskmanagement is aligned to the Group wider riskmanagement framework, industry good practice standards and regulatory expectations, ensuring consistency in application across all 1LOD business and control functions. Support and manage the process to conduct IT More ❯
Our client is seeking a highly motivated Market Risk Business Analyst to join their growing RiskManagement team. In this role, you will play a critical part in identifying, measuring, and reporting market risk across trading activities and investment portfolios. You will leverage your strong analytical and programming skills to build and maintain robust risk models and data pipelines, ensuring the accuracy and efficiency of their riskmanagement framework. We are looking for a self-starter who can collaborate with other teams and communicate effectively with stakeholders. Requirements Responsibilities Partner with traders, portfolio managers, and quantitative analysts to understand market risk exposures and develop risk mitigation strategies. Design, develop, and … implement quantitative models to assess Value at Risk (VaR), portfolio sensitivities, and other market risk metrics. Utilize Python programming language and relevant libraries (Pandas, NumPy, SciPy) to manipulate, analyze, and visualize market data. Build and maintain data pipelines for efficient ingestion, transformation, and cleansing of financial data from various sources. Conduct back-testing and stress-testing exercises to More ❯
About the team: The Data, IT and Cyber Risk Team is part of the wider riskmanagement function responsible for providing check and challenge to the first line over their risk profile. What you will be doing: As the new Senior Risk Manager - IT & Cyber Risk, you will provide an IT and Cyber risk second line opinion to the IT and Cyber first line risk champions over related risks (within Riskonnect) to ensure that first line work within their risk appetite. Your responsibilities will include... The management of the IT and Cyber Risk Team and its delivery of the annual plan. this includes the line management of the … IT and Cyber Risk Team across the Group and supporting any external resource Ensure that IT and Cyber riskmanagement is aligned to the Group wider riskmanagement framework, industry good practice standards and regulatory expectations, ensuring consistency in application across all 1LOD business and control functions. Support and manage the process to conduct IT More ❯
Job Title: Risk and Compliance Manager Location: Cambridge (Hybrid) Salary: £65,000 to £70,000 plus package Function: Risk & Compliance within a Fintech/Technology-focused company Primary Objective To lead and manage compliance and riskmanagement operationsensuring the company remains compliant with internal policies, external standards (like ISO27001, GDPR), and regulatory bodies. Key Responsibilities Policy … Compliance Management Review and enhance existing compliance policies Draft new policies aligned with standards like ISO27001 Audits & Controls Conduct internal audits; support external audits Validate and test the effectiveness of risk controls Training & Awareness Organise workshops and training sessions for staff on compliance topics RiskManagement Perform risk assessments Define risk tolerance and implement … control measures Manage riskmanagement software and reporting Stakeholder Communication Prepare reports for executives Advise leadership on risk mitigation strategies External Engagement Keep up-to-date with evolving regulations Build relationships with regulators and industry bodies Required Skills & Experience Essential 5+ years in a similar Risk and Compliance role ISO27001 GDPR Experience managing audits Policy and More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Vinarchy
in place, continuously improved, and fully compliant with Australian legislation and global standards. You'll take the lead in supplier engagement, reporting, and resolving quality issues, helping to minimise risk while maintaining strong controls. If you have a keen eye for detail, a collaborative mindset, and experience working with quality management systems like ISO 9001, BRC, IFS, or … HACCP we want to hear from you! Key Responsibilities Include: Evaluate and enhance the Quality Management Systems to drive continuous improvement and embed Best Practice philosophies. Manage large projects and end-to-end processes with minimal oversight, ensuring delivery to scope, quality, and timelines. Partner with third parties to ensure full compliance with Vinarchys Quality Management and Food … standards and implement system improvements to support quality audits across relevant sites. Embed compliance activities consistently across all internal operations and third-party partners. Produce monthly reports on Quality Management and Food Safety KPIs, identifying emerging trends and areas for intervention. Contribute to the Global RiskManagement Plan, shaping company policy and direction for Quality RiskMore ❯
Description/Key Responsibilities: • Provides System Engineering and Technical Assistance (SETA) program support services for PM Tactical Network's portfolio of tactical communications systems. • Provide direct Program Analyst and RiskManagement support for the multiple long-term and new start programs and support additional programs as requested. • Serve as a program office acquisition strategy/life cycle subject … AR 750-10) o Army Operation of the Adaptive Acquisition Framework (AR 70-1) • Support in the areas of program analysis to include day-to-day program analysis and management for multiple programs. • Serve as an acquisition milestone subject matter expert providing guidance to multiple ACAT 1, 2, 3, 4, modification programs and new start programs in areas such … and resolutions. • Participate and assist program leadership with managing efforts of large cross-functional teams to meet program milestone decision reviews. • Assist new start programs with the development of riskmanagement plans, processes, and initial risk identification. • Track, manage and advise programs on the documentation required in the Adaptive Acquisition Framework Document Identification Tool (AAFDID) to support More ❯
About the Role: As the Vice President of Business Resiliency & Risk, you will lead the design and execution of the company's comprehensive enterprise business continuity management program, including advancing the strategic vision for the program, working collaboratively with cross-functional partners. As a member of the Enterprise RiskManagement & Resiliency department's leadership team, you … will also help drive our ongoing maturation of the enterprise riskmanagement framework, aligning risk and resiliency. Your proven leadership will drive the direction and build an effective collaborative environment for the program, ensuring the organization's business continuity management framework and related components align with regulatory requirements, industry-standard methodologies, and the ERM framework. Primary … Responsibilities: Lead and define the business continuity management program and advise appropriate committees and senior leaders on the organization's resiliency efforts. Lead the enterprise crisis management program, including by leading the execution of enterprise crisis management plans in coordination with domain-specific leaders (including Technology, Cybersecurity, Workplace/People, Communications, Law), maintaining enterprise policies, and coordinating More ❯
Description: The Program Analyst (SME) will provide program management and acquisition lifecycle expertise to a Government Program Management Office (PMO) commensurate with the scale and complexity of a large Department of Defense (DoD) program. The Program Analyst (SME) will drive all aspects of program execution, to include schedule, risk, cost and budget, contract management, metrics definition … and analysis, knowledge management (including documentation), and reporting. The Program Analyst (SME) will leverage deep knowledge of the DoD Acquisition lifecycle, from requirements generation through product delivery, to inform planning, strategy, and decision-making. The Program Analyst (SME) will engage with external and internal stakeholders and provide forward-leaning insights into DoD policies and compliance frameworks to enable successful … high-quality briefings, reports, and analysis products that clearly communicate complex programmatic issues and recommendations to leadership and stakeholders. Duties and Responsibilities: • Lead/support all aspects of program management, to include schedule management, riskmanagement, cost management, contract management, metrics definition and analysis, and program reporting • Use knowledge of the DoD program managementMore ❯
Risk Manager Immediate Opportunity Onsite CSEngineering is looking to add a Risk Manager to our growing team! REQUIRED CERTIFICATIONS AND QUALIFICATIONS Security Clearance: TS/SCI clearance Education: Bachelor's degree in engineering (Aerospace, Systems, Electrical, Mechanical, or related field) is required. Systems Engineering Expertise: Minimum of 5-7 years of experience in systems engineering, with a focus … on complex systems, preferably within the space industry. Experience with System of Systems (SoS) engineering principles is highly desirable. Demonstrated experience in riskmanagement processes and techniques is essential. Strong understanding of the systems engineering lifecycle (requirements definition, design, development, integration, testing, verification, validation, and operations). Experience with systems engineering methodologies (e.g., Agile, Model-Based Systems Engineering … documentation. System of Systems (SoS) Engineering: Familiarity with SoS concepts, architectures, and challenges. Experience in integrating heterogeneous systems and managing interdependencies. Understanding of emergent behaviour and SoS-specific risks. RiskManagement: Proficiency in risk identification, assessment, mitigation, and monitoring. Experience with riskmanagement frameworks and tools (e.g., ISO 31000). Ability to develop and implement More ❯
City of London, London, England, United Kingdom Hybrid / WFH Options
WTW
WTW are seeking a highly skilled and experiencedTechnology and Cyber Risk Analytics Subject Matter Expert (SME)to lead and support the development, execution, and continuous improvement of our risk and control analytics capabilities. This role is pivotal in enhancing our understanding of technology and cyber risks through data-driven insights, supporting risk identification, assessment, and treatment activities … across the enterprise. The ideal candidate will have expertise in risk and control environments, strong analytical acumen, and a solid understanding of technology and cyber security frameworks. You will work closely with global stakeholders to ensure that risk data is accurately captured, analyzed, and reported to support informed decision-making and effective risk management. This role is … London and follows a hybrid work model, requiring travel to the London office when needed. The Role: This role will support the ongoing operations of WTW Technology and Cyber Risk and Controls & Regulatory engagement function in: Lead the design and execution of analytics to support risk identification, assessment, and treatment across technology and cyber domains. Collaborate with riskMore ❯
WTW are seeking a highly skilled and experienced Technology and Cyber Risk Analytics Subject Matter Expert (SME) to lead and support the development, execution, and continuous improvement of our risk and control analytics capabilities. This role is pivotal in enhancing our understanding of technology and cyber risks through data-driven insights, supporting risk identification, assessment, and treatment … activities across the enterprise. The ideal candidate will have expertise in risk and control environments, strong analytical acumen, and a solid understanding of technology and cyber security frameworks. You will work closely with global stakeholders to ensure that risk data is accurately captured, analyzed, and reported to support informed decision-making and effective risk management. This role … London and follows a hybrid work model, requiring travel to the London office when needed. The Role: This role will support the ongoing operations of WTW Technology and Cyber Risk and Controls & Regulatory engagement function in: Lead the design and execution of analytics to support risk identification, assessment, and treatment across technology and cyber domains. Collaborate with riskMore ❯
Bath, Somerset, United Kingdom Hybrid / WFH Options
Mayden
About The Role We are looking to appoint a highly experienced cyber and information security leadto join our growing business. Mayden has a flat management structure and a coaching culture, with team members working together and supporting one another to make things happen. This means that job titles can look a little different, but also means our roles focus … public sector. You may already be operating at CISO level in a small company, or have ambitions to reach the next level in your career. Mayden's flagship patient management system, iaptus, is used by more than 200 mental health services in the UK, Australia and Canada. Theseus, our case management system for addiction and healthy lifestyle services … lines. Compliance: Ensure the company's security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO27001:2022 and other relevant frameworks. Riskmanagement: Lead the information security riskmanagement program, including identification, assessment, mitigation, and monitoring of information security risks across all systems, applications, and operations. Policy and More ❯
Europe. Since spinning out of a large brokerage firm in 2016, DV Trading has rapidly scaled as an independent proprietary trading firm utilizing its own capital, trading strategies, and riskmanagement methodologies to provide liquidity to worldwide financial markets and hedging opportunities to commodity producers and users. Now, DV group affiliates include two broker dealers, a cryptocurrency market … adviser. DV Commodities is a rapidly growing division that specializes in trading crude oil, refined products, natural gas, and related energy markets across US, Europe, and Asia. Our proprietary riskmanagement and trading methodologies along with a strong ability to adapt to changing conditions has allowed DV Commodities to grow into one of the largest financial participants within … products. DV Commodities is a rapidly growing division that specializes in trading crude oil, refined products, natural gas, and other commodities across US, European, and Asian markets. Our combined riskmanagement, world class technology, and human capital have enabled us to become one of the largest liquidity providers within the global energy complex. We are looking for an More ❯
Senior Manager Cyber Risk page is loaded Senior Manager Cyber Risk Apply locations London, United Kingdom time type Full time posted on Posted Yesterday job requisition id R About us: LSEG (London Stock Exchange Group) is more than a diversified global financial markets infrastructure and data business. We are dedicated, open-access partners with a dedication to excellence … services our customers expect from us. With extensive experience, deep knowledge and worldwide presence across financial markets, we enable businesses and economies around the world to fund innovation, manage risk and create jobs. It's how we've contributed to supporting the financial stability and growth of communities and economies globally for more than 300 years. Through a comprehensive … rooted in a culture of growth, opportunity, diversity and innovation, LSEG is a place where everyone can grow, develop and fulfil your potential with meaningful careers. The LSEG Cyber Risk team provides guidance and oversight for cyber risk across the Group. This involves financial sector cyber risk activities. Key elements of the role include: Cyber RiskMore ❯
I'm currently recruiting for a highly skilled Cyber Risk Manager to lead the development and implementation of a cyber riskmanagement programme. Key Responsibilities Design and deliver a robust cyber security riskmanagement framework. Conduct regular risk and vulnerability assessments. Work collaboratively across departments to define risk tolerance and align with strategic … objectives. Analyse cyber security data to identify risks and recommend mitigation strategies. Maintain comprehensive risk documentation, including registers, impact analyses, and treatment plans. Communicate risk insights and recommendations clearly to stakeholders. Develop and monitor key risk indicators (KRIs) and key performance indicators (KPIs). Support project teams in embedding riskmanagement throughout the project lifecycle. … Collaborate with internal and external partners to enhance incident response and cyber resilience. Candidate Requirements Experience in a cyber security riskmanagement role. Strong understanding of cyber security frameworks and standards (ISO 27001, SOC2, NIST, GDPR). Excellent analytical, communication, and stakeholder engagement skills. Proficient in risk assessment tools and methodologies. Professional certifications such as CRISC, CISM More ❯
Risk Reporting Data Engineering Lead Central London/Hybrid Financial Risk Data/Data Analytics/International Banking Base salary: c. £135k + bonus + comprehensive bens. As a tech recruitment partner for this international bank, we're assisting in hiring a Technical Lead for the Risk Reporting team, which involves designing technologies for data warehousing, mining … You Ready to Lead in a Fast-Paced, Global Environment? The client seeks a Data & Analytics Engineering Lead to head an international team (10-15 members), driving innovation in Risk Reporting. As the organisation evolves with regulations and tech, they need someone with strong technical leadership, a passion for data, and a drive to architect impactful riskmanagement solutions. Main Purpose Lead and develop a high-performing team of 10-15 Engineers delivering robust, scalable risk reporting solutions globally. Key Responsibilities Mentor an international team focused on risk data ingestion, transformation, and reporting. Act as SME in database and reporting solutions, working with Risk stakeholders to meet business needs. Design innovative, fault-tolerant systems More ❯
City of London, London, Coleman Street, United Kingdom
Deerfoot Recruitment Solutions Limited
Risk Reporting Data Engineering Lead Central London/Hybrid Financial Risk Data/Data Analytics/International Banking Base salary: c. £135k + bonus + comprehensive bens. As a tech recruitment partner for this international bank, we're assisting in hiring a Technical Lead for the Risk Reporting team, which involves designing technologies for data warehousing, mining … You Ready to Lead in a Fast-Paced, Global Environment? The client seeks a Data & Analytics Engineering Lead to head an international team (10-15 members), driving innovation in Risk Reporting. As the organisation evolves with regulations and tech, they need someone with strong technical leadership, a passion for data, and a drive to architect impactful riskmanagement solutions. Main Purpose Lead and develop a high-performing team of 10-15 Engineers delivering robust, scalable risk reporting solutions globally. Key Responsibilities Mentor an international team focused on risk data ingestion, transformation, and reporting. Act as SME in database and reporting solutions, working with Risk stakeholders to meet business needs. Design innovative, fault-tolerant systems More ❯
Employment Type: Permanent
Salary: £135000/annum bonus + good benefits package
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Raisin GmbH
our growth. Our success is your success. Couldn't find the right position? About Raisin About Raisin Bank About Raisin US About Raisin UK Team At Raisin UK, our Risk & Compliance team is at the forefront of responsible innovation in the fintech space. As part of our second line of defence, we help ensure our savings platform operates safely … compliance framework-giving you both strategic exposure and real impact. You'll be joining a small, hands-on team where your contributions will be seen and valued. From shaping risk frameworks to staying ahead of regulatory change, we collaborate across all parts of the business to support our growth and maintain our integrity. Tech Stack Your Responsibilities As Risk & Compliance Associate , you'll play a central role in managing Raisin UK's risk landscape and supporting our compliance monitoring. You'll help ensure our processes remain strong, scalable, and aligned with FCA requirements-while also having the chance to shape and improve how we operate. Your key responsibilities will include: RiskManagement Support the execution More ❯
/?? ???????? ????-???????? ?????????????? ???????? ???????????? ?????????? ?? ?????????? ?????????????? ???????????????? I'm currently recruiting for a highly skilled ?????????? ???????????????? ???????? ?????????????? to lead the development and implementation of a cyber riskmanagement programme. Key Responsibilities Design and deliver a robust cyber security riskmanagement framework. Conduct regular risk and vulnerability assessments Work collaboratively across departments to define risk tolerance and align with strategic objectives. Analyse cyber … security data to identify risks and recommend mitigation strategies. Maintain comprehensive risk documentation, including registers, impact analyses and treatment plans. Communicate risk insights and recommendations clearly to stakeholders. Develop and monitor key risk indicators (KRIs) and key performance indicators (KPIs). Support project teams in embedding riskmanagement throughout project lifecycle. Collaborate with internal and … external partners to enhance incident response and cyber resilience. Candidates will have; Experience in a cyber security riskmanagement role. Strong understanding of cyber security frameworks and standards (ISO 27001, SOC2, NIST, GDPR). Excellent analytical, communication, and stakeholder engagement skills. Proficient in risk assessment tools and methodologies. Professional certifications such as CRISC, CISM or CISSP are More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Hargreaves Lansdown
in the delivery of security compliance assurance to frameworks such as PCI-DSS and NIST Cyber Security Framework. You will be managing security governance processes including Third Party Security RiskManagement, and delivering controls assurance. What you'll be doing Assisting in meeting compliance requirements within HL, such as PCI-DSS and in line with frameworks such as … SWIFT CSCF, CSA CCM and NIST CSF. Assist with the technical security aspects of third-party security risk by conducting security due diligence and risk assessments for vendors, suppliers, partners, and contractors. Develop and mature processes and procedures for third party security riskmanagement, including due diligence and third-party incident management. Work closely with stakeholders … to provide advice in relation to third party information security risks, recommending risk mitigation strategies and/or advising on risk exceptions based on the business' risk appetite. Driving policy & standard governance processes including creating new policies and standards where required. Managing framework alignments, identifying gaps and engaging stakeholders to remediate. Managing Security process documentation including review More ❯
Employment Type: Permanent, Part Time, Work From Home