A FTSE 100 Technology organisation located in Central London require a Senior IT Auditor to join their Internal Audit team. You will support Internal Audit in providing risk-based independent assurance on the effectiveness of the Group’s internal controls to senior management and the Group Audit and Risk Committee within the area of Technology. This is … of relevant and forward-looking IT audits across all Operating Companies. Be(come) the subject matter expert within the Technology domain in the areas of IT operations, IT service management, IT resilience, information security, etc.. Enhance audit effectiveness through data analytics Identify evolving threats and assess risks in advanced technologies Liaise with Technology managers in tracking progress in addressing … organisation. Build, maintain and indirectly manage a community of IT auditors across our global business. Skills & experience - Senior Technology Auditor Experience in the area of IT controls/IT riskmanagement/IT audit - either in implementation, operation or assessment role - from a Big 4 background or large multinational experience . Experienced in audit (external and internal) and More ❯
A FTSE 100 Technology organisation located in Central London require a Senior IT Auditor to join their Internal Audit team. You will support Internal Audit in providing risk-based independent assurance on the effectiveness of the Group’s internal controls to senior management and the Group Audit and Risk Committee within the area of Technology. This is … of relevant and forward-looking IT audits across all Operating Companies. Be(come) the subject matter expert within the Technology domain in the areas of IT operations, IT service management, IT resilience, information security, etc.. Enhance audit effectiveness through data analytics Identify evolving threats and assess risks in advanced technologies Liaise with Technology managers in tracking progress in addressing … organisation. Build, maintain and indirectly manage a community of IT auditors across our global business. Skills & experience - Senior IT Auditor Experience in the area of IT controls/IT riskmanagement/IT audit - either in implementation, operation or assessment role - from a Big 4 background or large multinational experience . Experienced in audit (external and internal) and More ❯
City of London, London, England, United Kingdom Hybrid / WFH Options
WTW
/maturity of enterprise-wide capabilities and enablers. The Role The individual will be required to drive or support multiple initiatives including developing/enhancing resilience-based tooling, data management, governance and reporting capabilities as part of the overall organizational Operational Resilience strategic goals and ambitions. The role will require extensive collaboration with multiple internal teams and stakeholders including … Technology, Information & Cyber Security, Supplier Risk and Enterprise RiskManagement to ensure initiative outcomes are met within prescribed timelines. Support the ongoing execution of the operational resilience strategy and plans, including development/maintenance of project plans, governance materials and status updates for the organization. Further support the implementation of specific operational resilience maturity driven initiatives including … but not limited to):, The development, design and operationalization of a new global operational resilience and business continuity planning tool. The day-to-day management of the product, ensuring its smooth operation and reliability. This includes addressing user issues and requests, coordinating with the supplier for updates and improvements, and overseeing change management processes to ensure that all More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Willis Towers Watson
on ensuring implementation/maturity of enterprise-wide capabilities and enablers. The Role The position will drive or support multiple initiatives including developing/enhancing resilience-based tooling, data management, governance and reporting capabilities as part of the overall organizational Operational Resilience strategic goals and ambitions. The role will require extensive collaboration with multiple internal teams and stakeholders including … Technology, Information & Cyber Security, Supplier Risk and Enterprise RiskManagement to ensure initiative outcomes are met within prescribed timelines. Support the ongoing execution of the operational resilience strategy and plans, including development/maintenance of project plans, governance materials and status updates for the organization. Further support the implementation of specific operational resilience maturity driven initiatives including … but not limited to): The development, design and operationalization of a new global operational resilience and business continuity planning tool. The day-to-day management of the product, ensuring its smooth operation and reliability. This includes addressing user issues and requests, coordinating with the supplier for updates and improvements, and overseeing change management processes to ensure that all More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Willis Towers Watson
on ensuring implementation/maturity of enterprise-wide capabilities and enablers. The Role The position will drive or support multiple initiatives including developing/enhancing resilience-based tooling, data management, governance and reporting capabilities as part of the overall organizational Operational Resilience strategic goals and ambitions. The role will require extensive collaboration with multiple internal teams and stakeholders including … Technology, Information & Cyber Security, Supplier Risk and Enterprise RiskManagement to ensure initiative outcomes are met within prescribed timelines. Support the ongoing execution of the operational resilience strategy and plans, including development/maintenance of project plans, governance materials and status updates for the organization. Further support the implementation of specific operational resilience maturity driven initiatives including … but not limited to): The development, design and operationalization of a new global operational resilience and business continuity planning tool. The day-to-day management of the product, ensuring its smooth operation and reliability. This includes addressing user issues and requests, coordinating with the supplier for updates and improvements, and overseeing change management processes to ensure that all More ❯
standards, and methodologies. Maintains operational security posture for an information system or program to ensure information systems security policies, standards, and procedures are established and followed. Assists with the management of security aspects of the information system and performs day-to-day security operations of the system. Evaluates security solutions to ensure they meet security requirements for processing classified … information. Performs vulnerability/risk assessment analysis to support certification and accreditation. Provides configuration management (CM) for information system security software, hardware, and firmware. Manages changes to system and assesses the security impact of those changes. Prepares and reviews documentation to include System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System … Requirements Traceability Matrices (SRTMs). Supports security authorization activities in compliance with NSA/CSS Information System Certification and Accreditation Process (NISCAP) and DoD RiskManagement Framework (RMF). Requirements A current and active TS/SCI Clearance with a Polygraph.No CCA's will be accepted at this time. Bachelor of Science degree in Computer Science, Information Assurance More ❯
LINUX, to include command-line proficiency; understanding LINUX file systems and networking concepts; scripting & automation; system administration. • Compliance with DOD and Army training requirements in DOD 8140.01, Cyberspace Workforce Management; DFARS , Information Assurance Contractor Training and Certification; AR 25-2, Information Assurance. • Subject to investigative and assignment requirements IAW AR 25-2, AR 380-67, Personnel Security Program, and … development, integration, test, certification, and accreditation of security solutions for DOD or IC intelligence systems. • 8+ years of cybersecurity experience supporting DOD acquisition programs/projects. • 5+ years applying RiskManagement Framework (ICD 503) for the accreditation of DOD or IC Information Technology Systems. Desired Qualifications • DOD and Army training requirements - DOD 8140.01, Cyberspace Workforce Management; DFARS … LINUX, to include command-line proficiency; understanding LINUX file systems and networking concepts; scripting & automation; system administration. Compliance with DOD and Army training requirements in DOD 8140.01, Cyberspace Workforce Management; DFARS , Information Assurance Contractor Training and Certification; AR 25-2, Information Assurance. Subject to investigative and assignment requirements IAW AR 25-2, AR 380-67, Personnel Security Program, and More ❯
service and not for profit, we measure our success in the impact of our service. Position Summary: ANSER is seeking a Sr. Mission Assurance Analyst to conduct Base Defense RiskManagement Process Assessments (BDRMP) at selected Pacific bases. You will support the pre-site survey analysis, mission decomposition function, scheduling function and risk assessment working book development … the threats and hazards, as well as provide training during the site visit for BDRMP and Antiterrorism Level II for installation personnel. Day to Day Responsibilities: Coordinate with Enterprise RiskManagement Mission Assurance RiskManagement Systems and SharePoint or other designated systems to receive, transmit and archive BDRMP analysis Provide Tactical, Operational and Strategic understanding of … Defense and DoD Mission Assurance Assessment (MAA) Concept of Operations (CONOP) and MA Strategy Implementation Framework Gather information, provide formalized feedback, and conduct analysis in support of Base Defense Risk Assessments to include Mission Assurance Assessments, Weapon System Security Deviations, Task Critical Assets, Critical Infrastructure and Protection Level Deviations. Conduct MA analysis in support of the Headquarters (HQ) Pacific More ❯
implementation, coordination, and enforcement of cybersecurity policies and procedures in alignment with government and agency-specific standards. Your work will ensure systems operate securely and in compliance with the RiskManagement Framework (RMF), while also supporting day-to-day operations and strategic initiatives. Key Responsibilities: Provide cybersecurity support for programs, systems, or organizational enclaves Develop, implement, and enforce … methodologies Maintain the operational security posture of systems under your purview Coordinate and manage security authorization processes (A&A) Prepare and maintain documentation including SSPs, SCTMs, POA&Ms, and Risk Assessments Evaluate and implement security controls to meet NIST, DoD, and IC requirements Perform and document vulnerability/risk assessments and baseline evaluations Support configuration management and … flow and system architecture Lead and support corrective actions when vulnerabilities are discovered Maintain system compliance through ongoing assessment and remediation Required Skills & Qualifications: Strong understanding of the NIST RiskManagement Framework (RMF) Familiarity with security tools, encryption technologies, and communication protocols Knowledge of applicable IA policies, controls, and continuous monitoring strategies Ability to lead system authorization activities More ❯
Candidates will need to be located and willing to commute in and around the Washington, DC metro region. In this role, you will oversee all aspects of call order management, ensuring alignment with scope, schedule, and budget while maintaining full compliance with federal policies and standards. This position offers the opportunity to manage cross-functional teams, collaborate with government … stakeholders, and deliver solutions that support both operational excellence and strategic workforce transformation. From directing riskmanagement and quality assurance efforts to driving workforce requirements analysis and organizational assessments, you'll be instrumental in helping our federal client meet its mission-critical goals. If you're a proactive leader with experience managing complex projects and a passion for … of call orders, ensuring alignment with scope, budget, and timeline - Developing detailed project plans, allocating resources, managing budgets, and ensuring compliance with government regulations and policies - Providing supervision of riskmanagement and quality assurance while providing regular progress updates to stakeholders, including government representatives - Leading and coordinating internal teams and external contractors, resolving issues, mitigating risks, and ensuring More ❯
requirements elicitation, detailed analysis, and functional allocation. Conduct comprehensive systems requirements reviews. Develop concepts of operation, interface standards, and detailed system architectures. Perform technical and non-technical assessments and management activities, including end-to-end flow analysis. Develop comprehensive Service-Oriented Architecture (SOA) solutions. Create operational views, technical standards views, and system/service views, aligning with the Department … of Defense Architecture Framework (DoDAF) standards. Provide subject matter expertise and leadership for Cyber Mission Management and Cyber System Development initiatives. Oversee integration of systems such as Signal Analysis Knowledge Base (SAKB) into broader community systems, ensuring compliance with information assurance and cybersecurity standards. Collaborate within Integrated Product Teams (IPTs) and Configuration Control Boards to review interface control documentation … acquisition lifecycle. Required Experience: Minimum 10 years of relevant professional experience; preference for candidates with 20+ years in Cyber and Systems Engineering. Proven experience developing and deploying Cybersecurity and RiskManagement strategies within DoD and DHS frameworks. Extensive knowledge and practical application of RiskManagement Framework (RMF) procedures. Demonstrated history in supporting major government cybersecurity initiatives More ❯
Farnborough, Hampshire, United Kingdom Hybrid / WFH Options
DXC Technology Inc
Job Description: Job Title: Second Line Risk Officer Location: Remote Working Type: Permanent, Full-time (37.5 hours per week) About the company Velonetic represents the joint ventures between DXC Technology, the International Underwriting Association (IUA), and Lloyd's of London. Previously referred to as the London Market Joint Ventures, we have been operating for over 20 years in the … through the processing lifecycle with greater efficiency and speed, releasing time to drive innovation and focus on higher value activities. About the job We are seeking a Second Line Risk Officer who will actively participate in the full riskmanagement lifecycle, including risk and control identification workshops, supporting and challenging risk and control assessments, and … candidate will be joining at a particularly interesting period where we are implementing significant RMF improvements including the roll out of a new GRC system. This is an enterprise risk role; however, the preferred candidate will have a solid foundation in operational risk. Experience with using GRC systems is essential. Experience/Qualifications: Proven experience in a professional riskMore ❯
a highly organized and detail-oriented PTI - Property Administrator who is responsible for overseeing the governance, compliance, and operational execution of all functions related to the proposal, administration, and riskmanagement of Government-accountable equipment. This role ensures accurate property accountability through inventory management, asset tagging/barcoding, and meticulous recordkeeping in compliance with applicable regulations. The … Conduct regular updates and maintenance of property records and accountability systems. Coordinate and oversee annual physical inventories of Government-accountable equipment. Develop and execute processes for property control and risk mitigation in compliance with regulatory standards (e.g., FAR, DFARS). Support internal and external audits, including Government property reviews and assessments. Contribute to governance and organizational development initiatives related … to property accountability. Assist in developing and enforcing property management policies, procedures, and compliance documentation. Identify and mitigate risks associated with property accountability and ensure corrective actions are taken when discrepancies arise. Collaborate with program teams, logistics, procurement, and compliance to ensure accurate property records throughout the lifecycle of equipment. Basic Qualifications TS/SCI w/Poly clearance More ❯
We are seeking a highly motivated Mid-Level SAP Analyst to support the Navy Enterprise Resource Planning (ERP) system, with a focus on the User Management (UM) module. The ideal candidate will play a critical role in managing user access, ensuring compliance with cybersecurity policies, and supporting audit-readiness initiatives. This position supports the U.S. Navy's mission to … modernize, sustain, and secure its enterprise financial system. Key Responsibilities: Configure, maintain, and troubleshoot user roles and authorizations within the SAP Navy ERP system, focusing on the User Management module. Support onboarding, offboarding, and role provisioning processes in compliance with DoD cybersecurity and identity management policies. Work closely with functional and technical teams to analyze segregation of duties … SoD) conflicts, role mapping, and user access issues. Maintain audit trails and documentation to support financial system compliance, audit readiness, and RMF (RiskManagement Framework) controls. Analyze and resolve access-related incidents and service requests via Remedy or other ITSM platforms. Contribute to system enhancement efforts, role redesign, and access optimization in support of business process improvements. Collaborate More ❯
join the Technology Audit Team. Our Internal Audit Department is an independent function accountable to the Audit Committee of the Board of Directors, the Office of the Chairman, senior management, and our global and local regulators. Internal Audit comprises over 1,000 auditors located worldwide, responsible for assessing the adequacy of control environments across the firm's lines of … financial audit specialists. Job Responsibilities Collaborate with business and technology audit colleagues to identify and assess key risks in the audit coverage program. Assist in all audit aspects, including risk assessments, planning, testing, control evaluation, report drafting, and follow-up. Perform audit work adhering to department and professional standards efficiently. Ensure accuracy and completeness of audit coverage with attention … to detail. Write audit work papers and reports with minimal supervision. Partner with stakeholders and control community members to evaluate, test, and report on management controls, providing recommendations for improvement, either through specific audits or ongoing projects. Required Qualifications, Capabilities, and Skills Extensive experience in internal or external technology or risk & controls work. Strong understanding of internal control More ❯
control concepts (e. g. SE Linux extensions to RHEL, PitBull, and Windows), Oracle/MS SQL database security, and Apache/IIS Web server security. • Support security planning, assessment, risk analysis, and risk management. • Identify overall security requirements for the proper handling of Government data. • Contribute to the security planning, assessment, risk analysis, riskmanagement … following: system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification, authentication, and authorization; system integration; riskmanagement; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control … and security testing. • Support security authorization activities in compliance with Information System Certification and Accreditation Process (ICD 503), the NIST RiskManagement Framework (RMF) process, and prescribed ICs business processes for security engineering. • Assist architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application of government security policy and enterprise More ❯
would apply, and provide recommendations for program updates accordingly. The ideal candidate will have excellent verbal and written communication skills, ability to read and apply Regulatory requirements, strong stakeholder management experience and the ability to manage several projects at one time. Previous experience in the business continuity field is essential. Key Responsibilities: Conduct business impact analysis’ with BC Coordinators … Compliance and Legal. Recommend recovery strategies and assist with implementation of recovery solutions. Plan and coordinate regular testing exercises and simulations to test the effectiveness of BC/incident management plans and to fulfill various regulatory requirements. Participate in any internal and industry wide tabletop exercises Support and lead Business Continuity awareness training for new employees and recurring training … Assist in the management of all aspects of the Business Continuity program, including monitoring of BC KRIs/KPIs, management of BCP technologies such as DR-BCP machines, and other remote technologies. Help provide support to management and business units, as requested, when a business disruption occurs and assist with recovery efforts Help Maintain the internal Business More ❯
current and desired system security architecture. Assessing and mitigating system security threats and risks throughout the program life cycle. Leading and/or contributing to the security planning, assessment, risk analysis, riskmanagement, certification and awareness activities for various system and networking operations. Effectively collaborating with other internal technical experts on a day-to-day basis. Communicating … Auditing and assessing system security configuration settings using common methodologies and tools. Managing and enforcing security strategies and policies that effect various components of geographically distributed systems. Providing configuration management for security-relevant information system software. Serving as a subject matter expert in security architecture to include providing advice to Program Managers, Customer technical experts, and internal program teams. … Formulating security compliance requirements for new system features. Identifying and remediating security issues throughout the system. Supporting risk assessment, riskmanagement, security control assessment, continuous monitoring, service design, and other IA program support functions. Working with development teams to enrich team-wide understanding of different types of vulnerabilities, attack vectors and remediation approaches. Planning and conducting security More ❯
cyber threats, cyber security measures, and experience in identifying, assessing, and tracking cyber risks. A working knowledge of the principles related to our most critical operating environments. Excellent stakeholder management skills, demonstrated through the coordination of complex deliverables across multiple high-level stakeholders. Experience or working knowledge of the steps and processes needed for effective through-life management of technology. Valued additional skills Project management skills, with a track record of delivering projects within demanding timelines. A strong background in network security, including segmentation and access controls. Experience in assessing cyber risks and identifying necessary remediation actions. Good presentation skills and the ability to chair meetings effectively. You may also be assessed on key skills such … as risk and controls, change and transformation, business acumen, strategic thinking, digital and technology skills, and job-specific technical expertise. This role will be based in our Knutsford/Northampton office. Purpose of the role To serve as the primary liaison between the business, technology, and security functions, ensuring the confidentiality, integrity, and availability of information, and supporting the More ❯
Southampton, Hampshire, South East, United Kingdom
AWD Online
Chief Operating Officer with proven senior leadership/management experience in a multi-site organisation, operational management experience including finance, facilities and IT and exceptional communication skills is required to join a well-established multi-academy trust, comprising of three schools, based in Hedge End, Southampton, Hampshire. SALARY: £54,358 - £61,123 per annum (Grade G) + Benefits … Friday, 52 weeks START DATE: 1 st September 2025 JOB OVERVIEW We have a fantastic new job opportunity for a Chief Operating Officer with proven senior leadership/management experience in a multi-site organisation, operational management experience including finance, facilities and IT and exceptional communication skills. The Chief Operating Officer will be a key member of the … Senior Leadership Team, responsible for the strategic leadership and operational management of all non-educational functions across the Trust. As the Chief Operating Officer you will ensure the efficient and effective delivery of all support services, including finance, human resources, facilities, IT, and compliance. A significant aspect of this role will be the direct line management and strategic More ❯
is on ensuring compliance with security standards and controls, developing, maintaining, and monitoring a consolidated remediation roadmap to reduce security risks to acceptable levels. The individual will oversee security risk reduction reporting, uphold strong security risk practices, and promote a positive risk culture organization-wide. Collaboration with technical, operational, compliance, and audit teams is essential to create … and internal policies. Lead security governance to manage adherence to security policies, rectify exceptions, and align security risks. Oversee remediation review lifecycle, testing evidence, and producing reports on risk trends. Collaborate on vulnerability and patch management monitoring, ensuring timely remediation to mitigate risks. Train and guide teams on security gaps, remediation strategies, and ongoing monitoring. Manage repositories of … improvements. Review and optimize security policies, standards, and controls in line with regulations and company strategy. Integrate processes with Cyber Threat Intelligence for threat monitoring and response. Align security riskmanagement with organizational risk frameworks and ensure consistent practices across security functions. Leadership Lead by example, demonstrating technical and professional skills. Communicate effectively with stakeholders. Innovate by More ❯
Sr. Data Scientist US A2A Payments & Open Banking As a Sr. Data Scientist, you will report to the Sr. Director of Data Science & Machine Learning and partner with risk, engineering and product to provide cutting-edge decision science to A2A payment risk. The right candidate will possess strong data science and machine learning background, with demonstrated experience in building … training, implementing and optimizing advanced ML models for payments. The successful candidate will have experience in riskmanagement for payments, preferably in open banking, and a solid understanding of both fraud and credit risk. They will be able to partner with product and engineering teams to scope solutions to deliver real time transaction decisioning. This role represents an … with strong attention to detail, and excellent collaboration skills. Responsibilities Be an out-of-the-box thinker who is passionate about brainstorming innovative ways to use data to manage risk in open banking Use predictive modeling and mine data from company databases and/or open banking sources to decrease payment losses while optimizing the consumer and merchant experience More ❯
an Operations Alternative Specialist in our SEI Wealth Platform Business. The SEI Wealth Platform (the Platform) is an outsourcing solution for wealth managers encompassing wealth processing services and wealth management programs, combined with business process expertise. With the Platform, SEI provides wealth management organizations with the infrastructure, operations, and administrative support necessary to capitalize on their strategic objectives … and the systems to support the ongoing business. Complex query analysis and resolution including client queries & internal issues. Preparing and supporting the preparation, monitoring and reporting on the RCSA (risk & control self-assessment) for teams in the UK Private Banking unit (including Operations, SWP and Technology) feeding the SIEL firm wide RCSA. Responsibilities include: Supporting the development, monitoring and … maintenance of risk registers The development and analysis of key risk indicators Key control testing and assessment Monitoring and reporting of operational risk events Work closely with the business and control function to identify risks Undertake and report on operational risk trend analysis Plan, report and track remediation plans/actions related to gaps in RCSA More ❯
Contingent Upon Award Join Synertex LLC and bring your expertise to a mission that matters. We're looking for a Cybersecurity Subject Matter Expert (SME) with a background in riskmanagement, cybersecurity frameworks, and IT defense strategies to support critical government and intelligence initiatives. If you're passionate about protecting systems from evolving threats and thrive in a … mission-critical, analytical, and leadership-oriented role-this opportunity is for you. RESPONSIBILITIES Conduct cybersecurity risk assessments and vulnerability analyses Design and implement security frameworks (e.g., NIST, RMF, Zero Trust) for enterprise systems Develop, evaluate, and refine defense-in-depth strategies and incident response plans Collaborate with stakeholders to ensure compliance with federal cybersecurity regulations Provide guidance on security … architecture and secure system development lifecycle practices Track emerging threats and propose solutions to reduce cyber risk exposure Prepare detailed reports and briefings for executive leadership and technical teams REQUIREMENTS TS/SCI clearance required, including additional security screenings Full Performance: High school diploma/GED with 8 years, associate's with 6 years, bachelor's with 4 years More ❯
this particular Job have now closed. Sector: Financial Services, Commerce and Industry, Banking View job & apply Job type: Permanent A high profile investment fund is seeking an experienced investment risk professional to join its View job & apply Location: New York Salary: up to $160,000 Job type: Permanent Job Title: Product Control Analyst - Physical Natural Gas Job Title: Product … London Company: Leading International Commodity Firm About Us: We are a globally recognized leader in commodity trading, with a strong emphasis on oil and energy markets. Specializing in the management and trading of key energy commodities, we drive innovation, sustainability, and operational excellence across our diverse team and global operations. Our focus on high-performance, transparency, and cutting-edge … Control Analyst to join our team, specializing in Physical Natural Gas . The role offers an excellent opportunity to work in a high-stakes environment, with exposure to senior management and key stakeholders. The ideal candidate will have extensive experience working with the Openlink Endur ETRM system and in-depth knowledge of natural gas trading and risk management. More ❯