• Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
  • Sign in
  • Sign up
  • Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

13 jobs found

Email me jobs like this
Refine Search
Current Search
senior security grc manager
Yolk Recruitment Ltd
Senior Cyber Security Architect
Yolk Recruitment Ltd Cardiff, South Glamorgan
Job Title: Senior Cyber Security Architect Location: Remote Employment Type: Permanent, Full-Time Salary: £85,000 - £100,000 + excellent Benefits About the Role We're working with a well-established and highly regulated organisation in the utilities sector, who are seeking a Senior Cyber Security Architect to play a key role in their Cyber Resilience team. This is a senior technical position focused on designing and implementing robust cloud focused security architectures that protect critical systems and information assets. You'll be responsible for developing security strategies aligned with business goals, ensuring effective integration of controls across networks, applications, cloud environments, and enterprise systems. Reporting to the Cyber Resilience Manager, you'll work across technical and governance functions to ensure ongoing protection against an evolving threat landscape, while supporting incident response, architecture design, compliance, and risk management. Key Responsibilities Design and maintain enterprise-wide cloud security architectures aligned to business objectives and compliance requirements Implement security controls across infrastructure, applications, and cloud platforms Conduct risk assessments and collaborate with GRC teams to manage identified risks Integrate security measures into the software development lifecycle (SDLC) and broader IT processes Engage with architects, IT teams, and external suppliers to embed security into system design Develop and maintain technical incident response plans and support ongoing testing and refinement Monitor industry standards and regulatory changes (e.g., NIS regulations), ensuring ongoing compliance Contribute to internal security awareness and training programmes Evaluate emerging technologies and advise on their security implications Produce clear, well-documented architecture artefacts, policies, and procedures Benefits: Flexible working opportunities Discretionary bonus of up to 15% 25 days annual leave plus bank holidays Retirement Savings Plan (pension) with Aviva: 5% employee contribution, doubling your contribution at 10% - totalling 15% 14 x salary Life Insurance linked to membership of the Retirement Savings Plan "Choices" flexible benefit scheme options including corporate gym memberships, dental insurance, and health cash-plans Access to our Financial Wellbeing Programme - allowing you to manage your benefits flexibly to suit your financial needs Enhanced pay for parental leave Retail discounts and cashback scheme Annual salary review Company Sick Pay Why You Should Apply: This newly created role offers the chance to shape processes from the ground up while working in a supportive and forward-thinking IT team. If you're passionate about reducing service disruption, enhancing operational excellence, and driving real change, this could be your next big step. Ready to Apply? Contact Daniel Newton to find out more. Please apply with a CV and a cover letter outlining why you're perfect for the role. Know someone great for the job? We offer a referral scheme-just get in touch!
Aug 24, 2026
Full time
Job Title: Senior Cyber Security Architect Location: Remote Employment Type: Permanent, Full-Time Salary: £85,000 - £100,000 + excellent Benefits About the Role We're working with a well-established and highly regulated organisation in the utilities sector, who are seeking a Senior Cyber Security Architect to play a key role in their Cyber Resilience team. This is a senior technical position focused on designing and implementing robust cloud focused security architectures that protect critical systems and information assets. You'll be responsible for developing security strategies aligned with business goals, ensuring effective integration of controls across networks, applications, cloud environments, and enterprise systems. Reporting to the Cyber Resilience Manager, you'll work across technical and governance functions to ensure ongoing protection against an evolving threat landscape, while supporting incident response, architecture design, compliance, and risk management. Key Responsibilities Design and maintain enterprise-wide cloud security architectures aligned to business objectives and compliance requirements Implement security controls across infrastructure, applications, and cloud platforms Conduct risk assessments and collaborate with GRC teams to manage identified risks Integrate security measures into the software development lifecycle (SDLC) and broader IT processes Engage with architects, IT teams, and external suppliers to embed security into system design Develop and maintain technical incident response plans and support ongoing testing and refinement Monitor industry standards and regulatory changes (e.g., NIS regulations), ensuring ongoing compliance Contribute to internal security awareness and training programmes Evaluate emerging technologies and advise on their security implications Produce clear, well-documented architecture artefacts, policies, and procedures Benefits: Flexible working opportunities Discretionary bonus of up to 15% 25 days annual leave plus bank holidays Retirement Savings Plan (pension) with Aviva: 5% employee contribution, doubling your contribution at 10% - totalling 15% 14 x salary Life Insurance linked to membership of the Retirement Savings Plan "Choices" flexible benefit scheme options including corporate gym memberships, dental insurance, and health cash-plans Access to our Financial Wellbeing Programme - allowing you to manage your benefits flexibly to suit your financial needs Enhanced pay for parental leave Retail discounts and cashback scheme Annual salary review Company Sick Pay Why You Should Apply: This newly created role offers the chance to shape processes from the ground up while working in a supportive and forward-thinking IT team. If you're passionate about reducing service disruption, enhancing operational excellence, and driving real change, this could be your next big step. Ready to Apply? Contact Daniel Newton to find out more. Please apply with a CV and a cover letter outlining why you're perfect for the role. Know someone great for the job? We offer a referral scheme-just get in touch!
Third Party Cyber Risk Lead
Tokio Marine HCC
Third Party Cyber Risk LeadApplylocations: UK - London ( St Botolph )time type: Full timeposted on: Posted Todayjob requisition id: 2026-628 Job Title: Third Party Cyber Risk Lead Reporting to: Cyber Governance Manager Direct Reports: None Position Type: Permanent Why Tokio Marine HCC? Standing still is not an option in the current world of Insurance. TMHCC is one of the world's leading Specialty Insurers. With deep expertise in our chosen lines of business, our unparalleled track record and a solid balance sheet, TMHCC evaluates and manages risk like no one else in the industry. Looking beyond profit, empowering our people and delivering on our commitments are at the core of our customer values, along with a desire to grow and provide creative and innovative solutions to our clients. About Operations Operations sits at the heart of TMHCC, we ensure the smooth running of all business processes - from policy administration and claims handling to data, technology, and delivery. We focus on driving efficiency which enables our teams across the business to deliver exceptional results every day. Our value statement: Ops makes it happen. Operations is made up of 7 functions, this role sits within: IT We are the foundation for TMHCC's success - enabling the business to grow, compete, and innovate through technology, security, and solution design. From shaping strategy to delivering resilient operations, we ensure every capability is aligned to business value. Our inclusive and collaborative culture empowers everyone to explore ideas, solve meaningful challenges, and build fulfilling careers that make a real impact. Job Purpose: Reporting to the Cyber Governance Manager in the Business Information Security Office you will own and mature TMHCC International's third-party cyber risk management processes, streamlining processes as the vendor landscape grows. You will partner with internal teams such as Procurement and Legal to prioritise risk, remediate issues and deliver clear management information on cyber risk across the third-party portfolio. Key Responsibilities: Own, manage, and evolve the third-party security due diligence process for TMHCC International vendors, including onboarding and continuous monitoring. Establish and maintain a vendor criticality assessment process; Ensure the appropriate vendor due diligence and monitoring activities take place in accordance with vendor criticality. Own and maintain ongoing due diligence requirements for critical and high-risk suppliers in line with regulatory expectations, including DORA, NIS2, PRA and FCA requirements etc. Build MI and dashboards to showcase security due diligence and third-party risk management efforts for senior IT stakeholders and executives. Collaborate with IT, Procurement, and Legal teams to embed third party security risk management controls into the overall vendor risk management process. Ensure compliance with relevant industry regulations and standards (e.g., DORA, NIS2, CIS Controls, NIST, GDPR). Provide security guidance on third party due diligence, contract reviews, and other ad-hoc vendor security risk management queries. Create and maintain vendor security risk management documentation (including process documentation) and training materials. Stay current on emerging vendor security trends, tools, and technologies. Support the Cyber Governance Manager by providing metrics to the Divisional IT Risk Reporting and Dashboards. Escalate significant cyber risks and issues as they emerge to the Cyber Governance Manager and BISO for action or information. Performance Objectives: Develop a strong understanding on TMHCC's third party landscape and current organisational controls used within the vendor risk management process and take on responsibility for cyber third-party risk management. Identify gaps and improvement areas within the cyber third-party risk processes, develop plans to further mature cyber security controls within this area, and own the implementation of these plans going forward. Skills and Experience Specification: Essential: Experience in cyber/information security risk roles with a focus on third-party/vendor risk management. Bachelor's degree in information security, Technology Risk Management or a related field. Relevant professional certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Lead Auditor. Experience in regulated industries, implementing relevant regulations and expectations for third-party security risk management. Proven experience designing, running, and improving vendor security due diligence processes. Strong knowledge of security assurance certifications and assessments maintained by vendors (e.g., ISO 27001, SOC 2, CSA STAR/CAIQ, vendor security questionnaires) Deep understanding of and ability to articulate the risk associated with vendor risk posture to both technical and non-technical stakeholders. Ability to coordinate and chair regular meetings and workshops with multiple stakeholders to provide guidance, collaboration and oversight of third-party security risk management initiatives. Confidence in presenting information and acting as a source of SME knowledge and guidance. Analytical, conceptual thinking, planning and execution skills. Ability to drive improvements and take charge of initiatives, backed with excellent coordination strength as well as assertiveness. Results-orientated and able to manage to measurable targets and desired outcomes. A passion to champion a cyber security culture and continuous learning of latest cyber threat trends. Strong communication skills with the ability to explain complex security issues to non-technical stakeholders. Desirable: Experience with third party risk management platforms or GRC tooling. Capability and experience in building actionable MI and dashboards (e.g. using Power BI) and turning data into clear decisions and narratives. Experience of the Specialty and Lloyd's/Companies market insurance industry. What We Offer The Tokio Marine HCC Group of Companies offers a competitive salary and employee benefit package. We are a successful, dynamic organization experiencing rapid growth and are seeking energetic and confident individuals to join our team of professionals.The Tokio Marine HCC Group of companies is an equal opportunity employer. Please visit for more information about our companies. success is our priority. In a world that is rapidly changing, TMHCC enables you to take on opportunities with confidence. At Tokio Marine HCC, we pride ourselves on hiring the smartest, most conscientious people, who want to make a difference no matter their background. And then we give them the support and trust they need. We're always looking for curious, creative transformative thinkers who want to change the status quo and have a passion for doing the right thing. If this is you, then we want you on our team.
Aug 21, 2026
Full time
Third Party Cyber Risk LeadApplylocations: UK - London ( St Botolph )time type: Full timeposted on: Posted Todayjob requisition id: 2026-628 Job Title: Third Party Cyber Risk Lead Reporting to: Cyber Governance Manager Direct Reports: None Position Type: Permanent Why Tokio Marine HCC? Standing still is not an option in the current world of Insurance. TMHCC is one of the world's leading Specialty Insurers. With deep expertise in our chosen lines of business, our unparalleled track record and a solid balance sheet, TMHCC evaluates and manages risk like no one else in the industry. Looking beyond profit, empowering our people and delivering on our commitments are at the core of our customer values, along with a desire to grow and provide creative and innovative solutions to our clients. About Operations Operations sits at the heart of TMHCC, we ensure the smooth running of all business processes - from policy administration and claims handling to data, technology, and delivery. We focus on driving efficiency which enables our teams across the business to deliver exceptional results every day. Our value statement: Ops makes it happen. Operations is made up of 7 functions, this role sits within: IT We are the foundation for TMHCC's success - enabling the business to grow, compete, and innovate through technology, security, and solution design. From shaping strategy to delivering resilient operations, we ensure every capability is aligned to business value. Our inclusive and collaborative culture empowers everyone to explore ideas, solve meaningful challenges, and build fulfilling careers that make a real impact. Job Purpose: Reporting to the Cyber Governance Manager in the Business Information Security Office you will own and mature TMHCC International's third-party cyber risk management processes, streamlining processes as the vendor landscape grows. You will partner with internal teams such as Procurement and Legal to prioritise risk, remediate issues and deliver clear management information on cyber risk across the third-party portfolio. Key Responsibilities: Own, manage, and evolve the third-party security due diligence process for TMHCC International vendors, including onboarding and continuous monitoring. Establish and maintain a vendor criticality assessment process; Ensure the appropriate vendor due diligence and monitoring activities take place in accordance with vendor criticality. Own and maintain ongoing due diligence requirements for critical and high-risk suppliers in line with regulatory expectations, including DORA, NIS2, PRA and FCA requirements etc. Build MI and dashboards to showcase security due diligence and third-party risk management efforts for senior IT stakeholders and executives. Collaborate with IT, Procurement, and Legal teams to embed third party security risk management controls into the overall vendor risk management process. Ensure compliance with relevant industry regulations and standards (e.g., DORA, NIS2, CIS Controls, NIST, GDPR). Provide security guidance on third party due diligence, contract reviews, and other ad-hoc vendor security risk management queries. Create and maintain vendor security risk management documentation (including process documentation) and training materials. Stay current on emerging vendor security trends, tools, and technologies. Support the Cyber Governance Manager by providing metrics to the Divisional IT Risk Reporting and Dashboards. Escalate significant cyber risks and issues as they emerge to the Cyber Governance Manager and BISO for action or information. Performance Objectives: Develop a strong understanding on TMHCC's third party landscape and current organisational controls used within the vendor risk management process and take on responsibility for cyber third-party risk management. Identify gaps and improvement areas within the cyber third-party risk processes, develop plans to further mature cyber security controls within this area, and own the implementation of these plans going forward. Skills and Experience Specification: Essential: Experience in cyber/information security risk roles with a focus on third-party/vendor risk management. Bachelor's degree in information security, Technology Risk Management or a related field. Relevant professional certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Lead Auditor. Experience in regulated industries, implementing relevant regulations and expectations for third-party security risk management. Proven experience designing, running, and improving vendor security due diligence processes. Strong knowledge of security assurance certifications and assessments maintained by vendors (e.g., ISO 27001, SOC 2, CSA STAR/CAIQ, vendor security questionnaires) Deep understanding of and ability to articulate the risk associated with vendor risk posture to both technical and non-technical stakeholders. Ability to coordinate and chair regular meetings and workshops with multiple stakeholders to provide guidance, collaboration and oversight of third-party security risk management initiatives. Confidence in presenting information and acting as a source of SME knowledge and guidance. Analytical, conceptual thinking, planning and execution skills. Ability to drive improvements and take charge of initiatives, backed with excellent coordination strength as well as assertiveness. Results-orientated and able to manage to measurable targets and desired outcomes. A passion to champion a cyber security culture and continuous learning of latest cyber threat trends. Strong communication skills with the ability to explain complex security issues to non-technical stakeholders. Desirable: Experience with third party risk management platforms or GRC tooling. Capability and experience in building actionable MI and dashboards (e.g. using Power BI) and turning data into clear decisions and narratives. Experience of the Specialty and Lloyd's/Companies market insurance industry. What We Offer The Tokio Marine HCC Group of Companies offers a competitive salary and employee benefit package. We are a successful, dynamic organization experiencing rapid growth and are seeking energetic and confident individuals to join our team of professionals.The Tokio Marine HCC Group of companies is an equal opportunity employer. Please visit for more information about our companies. success is our priority. In a world that is rapidly changing, TMHCC enables you to take on opportunities with confidence. At Tokio Marine HCC, we pride ourselves on hiring the smartest, most conscientious people, who want to make a difference no matter their background. And then we give them the support and trust they need. We're always looking for curious, creative transformative thinkers who want to change the status quo and have a passion for doing the right thing. If this is you, then we want you on our team.
Customer Success Manager (Strategic)
Vanta
At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. As Vanta's EMEA Customer Success Manager for the Strategic Segment, you will be responsible for a portfolio of Vanta's largest and most complex customers, organizations with 10,000+ employees operating in highly regulated, global environments. This is a senior, high-impact role focused on driving executive alignment, long-term value realization, and measurable business outcomes across complex stakeholder groups. You will serve as a strategic advisor to CISOs, CIOs, Heads of GRC, and executive sponsors, ensuring Vanta is embedded as a critical component of their security and compliance strategy. You will combine deep GRC domain expertise, executive presence, and sophisticated account leadership to drive retention, expansion, and long-term partnership. What you'll do as a Customer Success Manager, Strategic at Vanta: Own post-sales success for a portfolio of Strategic accounts (10,000+ employees), managing complex, global customer environments. Lead executive-level engagement, including C-suite alignment, executive business reviews, and multi-year roadmap planning. Develop and execute comprehensive account success plans tied to measurable business outcomes and customer security objectives. Drive large-scale onboarding and enterprise-wide adoption across multiple business units and geographies. Partner closely with Account Executives to identify and drive expansion opportunities across compliance frameworks, Trust Reports, Risk Management, and additional Vanta solutions. Serve as a trusted GRC advisor, guiding customers through complex regulatory environments such as SOC 2, ISO 27001, ISO 42001, GDPR, HIPAA, and custom frameworks. Provide strategic guidance on scaling security programs, operationalizing continuous compliance, and maturing risk management processes. Navigate and influence complex stakeholder ecosystems including security, IT, legal, procurement, and executive leadership. Act as the voice of the customer, influencing product strategy and cross-functional priorities to improve enterprise readiness and customer outcomes. Proactively manage risk across accounts, including renewal forecasting, stakeholder changes, organisational shifts, and evolving compliance landscapes. Lead cross-functional initiatives with Product, Engineering, Support, and Sales to resolve sophisticated customer challenges. How to be successful in this role: 8+ years of Customer Success experience in a SaaS environment, with at least 3+ years managing large enterprise or strategic accounts. Strong GRC domain expertise, with hands on experience in security compliance frameworks such as SOC 2, ISO 27001, HIPAA, GDPR, ISO 42001, or similar. Proven experience engaging and influencing C-level executives in complex, global organisations. Demonstrated success driving retention and expansion within large, multi-threaded accounts. Experience leading executive business reviews, building multi-year strategic plans, and delivering measurable business outcomes. Ability to manage ambiguity and operate effectively in highly matrixed customer organisations. Strong commercial acumen with experience partnering on large renewals and expansion motions. Exceptional communication skills, with the ability to translate technical security concepts into executive-level business value. Strong analytical and problem-solving skills, with the ability to identify risk and drive proactive account strategies. High level of ownership, accountability, and ability to influence without authority. Open to using AI to amplify their skills and strengthen their work-demonstrating curiosity, a willingness to learn, and sound judgment in applying AI responsibly to improve efficiency and impact. What you can expect as a Vanta'n: Industry-competitive salary and equity 100% covered medical, dental, and vision benefits with dependents coverage 16 weeks paid Parental Leave for all new parents Health & wellness stipend Remote workspace, internet, and mobile phone stipend Commuter benefits for team members who attend the office Pension matching 25 days of Annual Leave per year and unlimited sick time 8 company-paid holidays Virtual team building activities, lunch and learns, and other company-wide events! Offices in SF, NYC, London, Dublin, Tel Aviv, and Sydney At Vanta, we are committed to hiring diverse talent of different backgrounds and as such, it is important to us to provide an inclusive work environment for all. We do not discriminate on the basis of race, gender identity, age, religion, sexual orientation, veteran or disability status, or any other protected class. As an equal opportunity employer, we encourage and welcome people of all backgrounds to apply. About Vanta We started in 2018, in the wake of several high-profile data breaches. Online security was only becoming more important, but we knew firsthand how hard it could be for fast-growing companies to invest the time and manpower it takes to build a solid security foundation. Vanta was inspired by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a point-in-time check- is essential. Thousands of companies rely on Vanta to build, maintain and demonstrate their trust- all in a way that's real-time and transparent.
Aug 16, 2026
Full time
At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. As Vanta's EMEA Customer Success Manager for the Strategic Segment, you will be responsible for a portfolio of Vanta's largest and most complex customers, organizations with 10,000+ employees operating in highly regulated, global environments. This is a senior, high-impact role focused on driving executive alignment, long-term value realization, and measurable business outcomes across complex stakeholder groups. You will serve as a strategic advisor to CISOs, CIOs, Heads of GRC, and executive sponsors, ensuring Vanta is embedded as a critical component of their security and compliance strategy. You will combine deep GRC domain expertise, executive presence, and sophisticated account leadership to drive retention, expansion, and long-term partnership. What you'll do as a Customer Success Manager, Strategic at Vanta: Own post-sales success for a portfolio of Strategic accounts (10,000+ employees), managing complex, global customer environments. Lead executive-level engagement, including C-suite alignment, executive business reviews, and multi-year roadmap planning. Develop and execute comprehensive account success plans tied to measurable business outcomes and customer security objectives. Drive large-scale onboarding and enterprise-wide adoption across multiple business units and geographies. Partner closely with Account Executives to identify and drive expansion opportunities across compliance frameworks, Trust Reports, Risk Management, and additional Vanta solutions. Serve as a trusted GRC advisor, guiding customers through complex regulatory environments such as SOC 2, ISO 27001, ISO 42001, GDPR, HIPAA, and custom frameworks. Provide strategic guidance on scaling security programs, operationalizing continuous compliance, and maturing risk management processes. Navigate and influence complex stakeholder ecosystems including security, IT, legal, procurement, and executive leadership. Act as the voice of the customer, influencing product strategy and cross-functional priorities to improve enterprise readiness and customer outcomes. Proactively manage risk across accounts, including renewal forecasting, stakeholder changes, organisational shifts, and evolving compliance landscapes. Lead cross-functional initiatives with Product, Engineering, Support, and Sales to resolve sophisticated customer challenges. How to be successful in this role: 8+ years of Customer Success experience in a SaaS environment, with at least 3+ years managing large enterprise or strategic accounts. Strong GRC domain expertise, with hands on experience in security compliance frameworks such as SOC 2, ISO 27001, HIPAA, GDPR, ISO 42001, or similar. Proven experience engaging and influencing C-level executives in complex, global organisations. Demonstrated success driving retention and expansion within large, multi-threaded accounts. Experience leading executive business reviews, building multi-year strategic plans, and delivering measurable business outcomes. Ability to manage ambiguity and operate effectively in highly matrixed customer organisations. Strong commercial acumen with experience partnering on large renewals and expansion motions. Exceptional communication skills, with the ability to translate technical security concepts into executive-level business value. Strong analytical and problem-solving skills, with the ability to identify risk and drive proactive account strategies. High level of ownership, accountability, and ability to influence without authority. Open to using AI to amplify their skills and strengthen their work-demonstrating curiosity, a willingness to learn, and sound judgment in applying AI responsibly to improve efficiency and impact. What you can expect as a Vanta'n: Industry-competitive salary and equity 100% covered medical, dental, and vision benefits with dependents coverage 16 weeks paid Parental Leave for all new parents Health & wellness stipend Remote workspace, internet, and mobile phone stipend Commuter benefits for team members who attend the office Pension matching 25 days of Annual Leave per year and unlimited sick time 8 company-paid holidays Virtual team building activities, lunch and learns, and other company-wide events! Offices in SF, NYC, London, Dublin, Tel Aviv, and Sydney At Vanta, we are committed to hiring diverse talent of different backgrounds and as such, it is important to us to provide an inclusive work environment for all. We do not discriminate on the basis of race, gender identity, age, religion, sexual orientation, veteran or disability status, or any other protected class. As an equal opportunity employer, we encourage and welcome people of all backgrounds to apply. About Vanta We started in 2018, in the wake of several high-profile data breaches. Online security was only becoming more important, but we knew firsthand how hard it could be for fast-growing companies to invest the time and manpower it takes to build a solid security foundation. Vanta was inspired by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a point-in-time check- is essential. Thousands of companies rely on Vanta to build, maintain and demonstrate their trust- all in a way that's real-time and transparent.
Head of Compliance
Beqom North America Inc Manchester, Lancashire
Join beqom - where tech meets impact beqom is a high-growth B2B SaaS company that provides industry-leading tools for pay equity and transparency, compensation, and performance management. Trusted by some of the world's most respected companies, beqom enables HR and business leaders to navigate global compliance and make smarter pay decisions that attract, retain, and motivate top talent. Founded in Switzerland and serving clients worldwide, our powerful, enterprise-ready products are fuelled by beqom pay intelligence. Role Overview We are looking for an experienced and pragmatic GRC Manager to build, own, and continuously strengthen beqom's governance, risk, and compliance function. This role will ensure that beqom operates with a robust, scalable, and commercially effective GRC framework across our international footprint - while meeting the expectations of enterprise customers in highly regulated sectors, including banking and financial services. Reporting to the Head of Legal, you will own the company's compliance governance model, working closely with Legal, Security, Product, Engineering, Finance, People, and Go-to-Market teams. The role combines strategic ownership with hands-on execution, and will be central to reinforcing trust with customers, partners, auditors, and other external stakeholders. What you'll be doing Compliance Strategy & Governance Design, implement, and evolve the company's global compliance framework across all relevant jurisdictions. Establish and maintain policies, standards, controls, governance forums, and reporting routines. Lead enterprise-wide compliance risk assessments and maintain the compliance risk register. Define monitoring, testing, and issue-management processes to identify, elevate, and remediate compliance gaps. Provide regular reporting to the Head of Legal and executive team on compliance risks, incidents, trends, and remediation progress. Privacy & Regulatory Compliance Oversee the company's compliance approach to data protection and privacy requirements - including GDPR and other applicable privacy obligations - in partnership with Legal and Security. Ensure the organisation can demonstrate accountability through proportionate documentation, reporting, and governance. Support regulatory-readiness activities and coordinate external inquiries where relevant. Customer & Partner Assurance Act as the senior GRC lead for customer due diligence, regulated-sector questionnaires, control reviews, and audit requests. Support strategic deals by addressing compliance, governance, and assurance requirements from enterprise customers, especially in banking and other regulated sectors. Partner with Sales, Solution Advisory, Security, and Legal to strengthen trust materials and compliance positioning. Third-Party Risk & Resilience Build and oversee the compliance aspects of third-party risk management - including vendor assessments, subprocessors, outsourcing controls, and ongoing monitoring. Ensure the company's control environment supports the expectations of financial-services clients regarding resilience, oversight, and risk management. Partner with Security and Operations on incident governance, escalation, and post-incident remediation tracking. Controls, Certifications & Audit Oversee GRC readiness for external assurance frameworks and certifications, including SOC 2, ISO 27001, and related control programmes. Coordinate internal and external audits and ensure effective follow-through on findings and corrective actions. Maintain evidence, documentation, and policy governance required to support customer and audit assurance. Business Partnership & Enablement Provide compliance input into new products, AI-related use cases, commercial initiatives, customer contracts, and market expansion plans. Deliver practical training and awareness programmes to embed a strong culture of compliance and accountability. Advise leaders on how to balance compliance rigour with operational scalability and business growth. Skills & Experience What you'll bring Proven experience in a GRC, compliance, risk, governance, or regulatory assurance role. Experience in a B2B SaaS, fintech, regtech, payments, or other technology environment serving regulated customers. Demonstrated success building or scaling a compliance or GRC function in an international company. Strong working knowledge of privacy, control frameworks, policy governance, audit coordination, and third-party risk management. Experience supporting enterprise customer due diligence and audits. Strong judgement and stakeholder management skills - comfortable engaging at senior and executive level. Ability to operate strategically while remaining hands-on. Bonus points if you have Experience working with banking, financial-services, or insurance-sector customers. Familiarity with DORA, EBA outsourcing expectations, or equivalent financial-sector third-party governance requirements. Experience with SOC 2, ISO 27001, and related assurance frameworks. Experience across both Europe and the US. Relevant certifications such as CIPP/E, CRISC, CRCM, CISSP, or ISO 27001-related credentials. Why join us? Your career, your design. Unleash your ambition in our dynamic, autonomous environment. Drive meaningful change. Build a fairer future for every employee by joining a market leader that is improving the world of work. Belong to something bigger. Collaborate with a passionate, diverse and talented team around the globe.
Jul 31, 2026
Full time
Join beqom - where tech meets impact beqom is a high-growth B2B SaaS company that provides industry-leading tools for pay equity and transparency, compensation, and performance management. Trusted by some of the world's most respected companies, beqom enables HR and business leaders to navigate global compliance and make smarter pay decisions that attract, retain, and motivate top talent. Founded in Switzerland and serving clients worldwide, our powerful, enterprise-ready products are fuelled by beqom pay intelligence. Role Overview We are looking for an experienced and pragmatic GRC Manager to build, own, and continuously strengthen beqom's governance, risk, and compliance function. This role will ensure that beqom operates with a robust, scalable, and commercially effective GRC framework across our international footprint - while meeting the expectations of enterprise customers in highly regulated sectors, including banking and financial services. Reporting to the Head of Legal, you will own the company's compliance governance model, working closely with Legal, Security, Product, Engineering, Finance, People, and Go-to-Market teams. The role combines strategic ownership with hands-on execution, and will be central to reinforcing trust with customers, partners, auditors, and other external stakeholders. What you'll be doing Compliance Strategy & Governance Design, implement, and evolve the company's global compliance framework across all relevant jurisdictions. Establish and maintain policies, standards, controls, governance forums, and reporting routines. Lead enterprise-wide compliance risk assessments and maintain the compliance risk register. Define monitoring, testing, and issue-management processes to identify, elevate, and remediate compliance gaps. Provide regular reporting to the Head of Legal and executive team on compliance risks, incidents, trends, and remediation progress. Privacy & Regulatory Compliance Oversee the company's compliance approach to data protection and privacy requirements - including GDPR and other applicable privacy obligations - in partnership with Legal and Security. Ensure the organisation can demonstrate accountability through proportionate documentation, reporting, and governance. Support regulatory-readiness activities and coordinate external inquiries where relevant. Customer & Partner Assurance Act as the senior GRC lead for customer due diligence, regulated-sector questionnaires, control reviews, and audit requests. Support strategic deals by addressing compliance, governance, and assurance requirements from enterprise customers, especially in banking and other regulated sectors. Partner with Sales, Solution Advisory, Security, and Legal to strengthen trust materials and compliance positioning. Third-Party Risk & Resilience Build and oversee the compliance aspects of third-party risk management - including vendor assessments, subprocessors, outsourcing controls, and ongoing monitoring. Ensure the company's control environment supports the expectations of financial-services clients regarding resilience, oversight, and risk management. Partner with Security and Operations on incident governance, escalation, and post-incident remediation tracking. Controls, Certifications & Audit Oversee GRC readiness for external assurance frameworks and certifications, including SOC 2, ISO 27001, and related control programmes. Coordinate internal and external audits and ensure effective follow-through on findings and corrective actions. Maintain evidence, documentation, and policy governance required to support customer and audit assurance. Business Partnership & Enablement Provide compliance input into new products, AI-related use cases, commercial initiatives, customer contracts, and market expansion plans. Deliver practical training and awareness programmes to embed a strong culture of compliance and accountability. Advise leaders on how to balance compliance rigour with operational scalability and business growth. Skills & Experience What you'll bring Proven experience in a GRC, compliance, risk, governance, or regulatory assurance role. Experience in a B2B SaaS, fintech, regtech, payments, or other technology environment serving regulated customers. Demonstrated success building or scaling a compliance or GRC function in an international company. Strong working knowledge of privacy, control frameworks, policy governance, audit coordination, and third-party risk management. Experience supporting enterprise customer due diligence and audits. Strong judgement and stakeholder management skills - comfortable engaging at senior and executive level. Ability to operate strategically while remaining hands-on. Bonus points if you have Experience working with banking, financial-services, or insurance-sector customers. Familiarity with DORA, EBA outsourcing expectations, or equivalent financial-sector third-party governance requirements. Experience with SOC 2, ISO 27001, and related assurance frameworks. Experience across both Europe and the US. Relevant certifications such as CIPP/E, CRISC, CRCM, CISSP, or ISO 27001-related credentials. Why join us? Your career, your design. Unleash your ambition in our dynamic, autonomous environment. Drive meaningful change. Build a fairer future for every employee by joining a market leader that is improving the world of work. Belong to something bigger. Collaborate with a passionate, diverse and talented team around the globe.
Operational Risk - Principal
Athene
Operational Risk - PrincipalApplylocations: London 1 Soho Placetime type: Full timeposted on: Posted 3 Days Agojob requisition id: R254437 Position Overview The ideal candidate for this role will be responsible for leading the Operational Risk Management (ORM) program in London, whilst supporting EMEA and global initiatives. They work collaboratively to deliver strategic, innovative and insightful solutions by leveraging emerging and standardized risk frameworks, data analytics (including AI) and their risk management experience. The Principal, Operational Risk will provide support to the function's leadership in driving the execution of the team's target operating model as the organization enhances its strategic remit to be more focused on alignment with the company's key growth priorities. In this role, the candidate will be heavily involved in developing and managing a broad range of risk initiatives (e.g., Risk and Control Inventory Governance, Risk Assessment Planning and Prioritization, etc.) and training alongside key stakeholders across the firm and will regularly have exposure to senior management. Primary Responsibilities The Principal, Operational Risk will be a critical risk adviser within ORM and to the firm, who will assist in embedding risk management practices into day-to-day business processes primarily focused on London, but also supporting ORM activities within EMEA and globally. Responsibilities include: Risk Program Oversight Oversee adherence to Apollo operational risk management framework within London and supporting efforts across the EMEA region, including the governance of the Risk and Control Inventory (RCI), Incident Management, Issue Management, Risk Assessment and Key Risk Indicator Management. Ensure regular reviews of risk procedures and standards aligned with firm objectives, regulatory standards and client expectations. Reporting to the Head of ORM, with a dotted line to the Regional COO, help the team prioritise and deliver against a planned book of work, representing key messages and themes to Risk Forums/ Committees and other key internal stakeholders. Risk Management Activity Support The role will include basic aspects of leading the administrative and governance activities of the ORM team, including the coordination of local or regional risk forum(s), other meeting agendas, regular Policy/ Procedure reviews, contribution to risk related client/prospect due diligence meetings and/or questionnaires, etc.) Risk Strategy & Execution Support the Head of Operational Risk in all aspects of execution of their Target Operating Model (TOM). This includes contributing to the definition of strategic objectives and measures of success, risk assessment pipeline development, management and prioritization of work, risk reporting and governance. Key to this is developing and driving core risk analytics, in conjunction with business partners and the COO community, that prove the impact of strong and consistent risk management practices aligned to firms' strategic priorities. Collaboration within control functions and business COO's is key to success. Develop & Maintain Risk Training Program Assist with enhancing existing risk training program to ensure alignment with any regulatory requirements and industry standards. Qualifications & Experience 15 + years' experience in financial services (preference for asset management/ credit/ private equity), risk management, internal controls, or organizational transformation initiatives. Outstanding leadership skills, proven ability to engage and influence senior business leaders, earning trust as a strategic partner and advisor. A proactive and organized self-starter with a positive attitude, great work ethic, strong attention to detail and advanced knowledge of Excel and PowerPoint, GRC tools (e.g., Archer). Critical thinker with strong quantitative and analytical skills who expresses their thoughts and ideas clearly both in oral and written communications. A change cultivator, with a strong risk and technology background with a focus on automation and process improvements. Experience implementing internal capital and risk assessment ( ICARA ) processes for an asset management firm a plus. Confident in using technology, including AI, to analyze big data and drive quick insights an advantage. Experience in Enterprise Risk or working in other risk areas e.g. market or credit risk a positive. Bachelor's degree from an accredited institution required. About Apollo Apollo is a high-growth, global alternative asset manager. In our asset management business, we seek to provide our clients excess return at every point along the risk-reward spectrum from investment grade credit to private equity. For more than three decades, our investing expertise across our fully integrated platform has served the financial return needs of our clients and provided businesses with innovative capital solutions for growth. Through Athene, our retirement services business, we specialize in helping clients achieve financial security by providing a suite of retirement savings products and acting as a solutions provider to institutions. Our patient, creative, and knowledgeable approach to investing aligns our clients, businesses we invest in, our employees, and the communities we impact, to expand opportunity and achieve positive outcomes. As of March 31, 2026, Apollo had approximately $1.0 trillion of assets under management.
Jul 31, 2026
Full time
Operational Risk - PrincipalApplylocations: London 1 Soho Placetime type: Full timeposted on: Posted 3 Days Agojob requisition id: R254437 Position Overview The ideal candidate for this role will be responsible for leading the Operational Risk Management (ORM) program in London, whilst supporting EMEA and global initiatives. They work collaboratively to deliver strategic, innovative and insightful solutions by leveraging emerging and standardized risk frameworks, data analytics (including AI) and their risk management experience. The Principal, Operational Risk will provide support to the function's leadership in driving the execution of the team's target operating model as the organization enhances its strategic remit to be more focused on alignment with the company's key growth priorities. In this role, the candidate will be heavily involved in developing and managing a broad range of risk initiatives (e.g., Risk and Control Inventory Governance, Risk Assessment Planning and Prioritization, etc.) and training alongside key stakeholders across the firm and will regularly have exposure to senior management. Primary Responsibilities The Principal, Operational Risk will be a critical risk adviser within ORM and to the firm, who will assist in embedding risk management practices into day-to-day business processes primarily focused on London, but also supporting ORM activities within EMEA and globally. Responsibilities include: Risk Program Oversight Oversee adherence to Apollo operational risk management framework within London and supporting efforts across the EMEA region, including the governance of the Risk and Control Inventory (RCI), Incident Management, Issue Management, Risk Assessment and Key Risk Indicator Management. Ensure regular reviews of risk procedures and standards aligned with firm objectives, regulatory standards and client expectations. Reporting to the Head of ORM, with a dotted line to the Regional COO, help the team prioritise and deliver against a planned book of work, representing key messages and themes to Risk Forums/ Committees and other key internal stakeholders. Risk Management Activity Support The role will include basic aspects of leading the administrative and governance activities of the ORM team, including the coordination of local or regional risk forum(s), other meeting agendas, regular Policy/ Procedure reviews, contribution to risk related client/prospect due diligence meetings and/or questionnaires, etc.) Risk Strategy & Execution Support the Head of Operational Risk in all aspects of execution of their Target Operating Model (TOM). This includes contributing to the definition of strategic objectives and measures of success, risk assessment pipeline development, management and prioritization of work, risk reporting and governance. Key to this is developing and driving core risk analytics, in conjunction with business partners and the COO community, that prove the impact of strong and consistent risk management practices aligned to firms' strategic priorities. Collaboration within control functions and business COO's is key to success. Develop & Maintain Risk Training Program Assist with enhancing existing risk training program to ensure alignment with any regulatory requirements and industry standards. Qualifications & Experience 15 + years' experience in financial services (preference for asset management/ credit/ private equity), risk management, internal controls, or organizational transformation initiatives. Outstanding leadership skills, proven ability to engage and influence senior business leaders, earning trust as a strategic partner and advisor. A proactive and organized self-starter with a positive attitude, great work ethic, strong attention to detail and advanced knowledge of Excel and PowerPoint, GRC tools (e.g., Archer). Critical thinker with strong quantitative and analytical skills who expresses their thoughts and ideas clearly both in oral and written communications. A change cultivator, with a strong risk and technology background with a focus on automation and process improvements. Experience implementing internal capital and risk assessment ( ICARA ) processes for an asset management firm a plus. Confident in using technology, including AI, to analyze big data and drive quick insights an advantage. Experience in Enterprise Risk or working in other risk areas e.g. market or credit risk a positive. Bachelor's degree from an accredited institution required. About Apollo Apollo is a high-growth, global alternative asset manager. In our asset management business, we seek to provide our clients excess return at every point along the risk-reward spectrum from investment grade credit to private equity. For more than three decades, our investing expertise across our fully integrated platform has served the financial return needs of our clients and provided businesses with innovative capital solutions for growth. Through Athene, our retirement services business, we specialize in helping clients achieve financial security by providing a suite of retirement savings products and acting as a solutions provider to institutions. Our patient, creative, and knowledgeable approach to investing aligns our clients, businesses we invest in, our employees, and the communities we impact, to expand opportunity and achieve positive outcomes. As of March 31, 2026, Apollo had approximately $1.0 trillion of assets under management.
Customer Success Manager
OneClickComply
LocationSunderland, United Kingdom# Customer Success Manager at OneClickComplyLocationSunderland, United KingdomSalary£32500 - £60000 /yearJob TypeFull-timeDate PostedApril 30th, 2026Apply NowOneClickComply is changing how businesses think about cybersecurity compliance. We've built a platform that automates the hard parts - technical control implementation, policy generation, continuous monitoring, and real-time audit evidence - so that achieving certifications like ISO 27001, SOC 2, Cyber Essentials, and CIS v8 takes weeks instead of months. We work with a growing network of audit and enablement partners and serve clients across every industry who need to prove they take security seriously.We're a small, fast-moving team where your ideas don't get lost in layers of hierarchy. If you've ever been frustrated by how unnecessarily painful compliance can be, you'll understand exactly why we exist. The Opportunity This role puts you right at the heart of the client experience. You'll own the post-sale relationship across every channel - live chat, phone, video calls, and email - making sure every customer gets real, measurable value from our platform and feels genuinely supported from their very first onboarding call through to renewal and beyond.You'll be the person our clients turn to when they need help navigating the platform, understanding where they are on their compliance journey, or figuring out what comes next. When they need deeper technical guidance, you'll bring in our Security Compliance Specialists. When they're ready for penetration testing or a formal audit, you'll make the introductions to the right enablement partners. You're the thread that ties the whole experience together.This isn't a passive support role. You'll have genuine influence over how we onboard, engage, and grow our client base - and over the direction of the customer success function as we scale. There's also a real financial incentive to grow accounts: with a base salary of £32,500 plus uncapped commission on upsells, your OTE will be in the region of £60,000. What You'll Be Doing Owning the client relationship across every touchpoint. You'll manage a portfolio of B2B accounts, providing responsive, high-quality support via live chat, telephone, email, and scheduled video calls. You'll be the consistent, trusted point of contact that clients know they can rely on - whether it's a quick question on chat or a detailed walkthrough over the phone. Running onboarding that sets clients up for success . You'll lead onboarding calls and implementation sessions for every new client, walking them through platform configuration, control setup, dashboards, and integrations. You'll build and refine onboarding playbooks so that every client's first experience is smooth, structured, and confidence-building. Working hand in hand with our Security Compliance Specialists . You'll be the first point of contact for clients, triaging their needs and bringing in our Compliance Advisory team when deeper technical or framework-specific expertise is required. You'll stay close to those conversations so you always understand where each client is on their journey and can follow up effectively. Connecting clients with the right enablement partners . When clients are ready for penetration testing, vulnerability assessments, formal audits, or other specialist services, you'll make warm introductions to our network of trusted enablement partners - including penetration testers, auditors, and certification bodies. You'll coordinate scheduling, manage expectations on both sides, and make sure the handoff is seamless. Delivering webinars and group enablement . You'll plan and host regular webinars covering platform features, compliance best practices, framework updates, and tips for getting the most from OneClickComply. These sessions will help scale your impact beyond one-to-one interactions and position us as a trusted voice in the compliance space. Conducting regular check-ins and business reviews . You'll run quarterly business reviews with key accounts, track adoption metrics and health scores, and make sure every client has a clear path to their compliance goals. You'll stay ahead of churn risk by spotting disengagement early and acting on it. Driving upsell and expansion revenue . You'll identify opportunities to expand accounts - whether that's additional frameworks, more seats, or premium services - and you'll be rewarded for it. Commission on successful upsells forms a meaningful part of your compensation, so the better your clients do, the better you do. Being the voice of the customer internally . You'll work closely with product, engineering, and sales to relay what clients are asking for, where they're getting stuck, and what would make the biggest difference to their experience. Your insights will directly shape the roadmap. Writing support articles and client-facing content . You'll build out our knowledge base by writing clear, practical support articles, how-to guides, and FAQs that help clients self-serve and get to value faster. You'll also produce walkthrough videos, best-practice materials, and webinar follow-up content - reducing inbound support volume and giving every client the resources to succeed on their own terms. What We're Looking For You'll have at least 2 years of experience in a customer success, account management, or client-facing role within a B2B SaaS environment. This is a firm requirement - we need someone who already understands the rhythms of SaaS onboarding, adoption, renewal cycles, and the metrics that matter.You're confident and personable on the phone and on camera. You're the kind of person who can jump from a live chat conversation to an onboarding call to a webinar and bring the same energy and clarity to each. You build relationships quickly and earn trust by being organised, proactive, and genuinely helpful.You're a strong writer. Whether it's a support article, a follow-up email, or a webinar script, you can take something complex and make it clear and practical without dumbing it down.You're comfortable having strategic conversations with senior stakeholders and equally happy rolling up your sleeves for a hands-on platform walkthrough with an end user. You've got a track record of identifying and closing upsell or expansion opportunities, and you're motivated by a compensation model that rewards you for growing accounts.Experience in cybersecurity, compliance, GRC, or RegTech is a strong plus but not essential - if you're a quick learner with a genuine curiosity about the space, we'll get you up to speed. Familiarity with frameworks like ISO 27001, SOC 2, or Cyber Essentials is a bonus.You'll thrive here if you're naturally data-minded, comfortable using CRM and CS tools to manage your book of business, and energised by the challenge of building processes in a company that's still defining them. Compensation £32,500 base salary plus uncapped commission on upsell and expansion revenue, with on-target earnings (OTE) in the region of £60,000. Your earning potential grows as your accounts grow. Why Join Us You'll be joining at a stage where you can genuinely shape how customer success works at OneClickComply. Your understanding of what clients need won't just improve retention - it will directly influence how the product evolves. There's no red tape, no death by committee. Just a team that cares about making compliance less painful for everyone. The Benefits We've put together a benefits package that we think goes well beyond what you'd expect from a company our size. Your health and wellbeing come first. You and your family get 24/7 access to GP appointments and prescriptions, unlimited telephone, face-to-face, and video counselling, virtual physiotherapy, and unlimited eye testing. You'll also have access to virtual gym classes and discounted
Jul 30, 2026
Full time
LocationSunderland, United Kingdom# Customer Success Manager at OneClickComplyLocationSunderland, United KingdomSalary£32500 - £60000 /yearJob TypeFull-timeDate PostedApril 30th, 2026Apply NowOneClickComply is changing how businesses think about cybersecurity compliance. We've built a platform that automates the hard parts - technical control implementation, policy generation, continuous monitoring, and real-time audit evidence - so that achieving certifications like ISO 27001, SOC 2, Cyber Essentials, and CIS v8 takes weeks instead of months. We work with a growing network of audit and enablement partners and serve clients across every industry who need to prove they take security seriously.We're a small, fast-moving team where your ideas don't get lost in layers of hierarchy. If you've ever been frustrated by how unnecessarily painful compliance can be, you'll understand exactly why we exist. The Opportunity This role puts you right at the heart of the client experience. You'll own the post-sale relationship across every channel - live chat, phone, video calls, and email - making sure every customer gets real, measurable value from our platform and feels genuinely supported from their very first onboarding call through to renewal and beyond.You'll be the person our clients turn to when they need help navigating the platform, understanding where they are on their compliance journey, or figuring out what comes next. When they need deeper technical guidance, you'll bring in our Security Compliance Specialists. When they're ready for penetration testing or a formal audit, you'll make the introductions to the right enablement partners. You're the thread that ties the whole experience together.This isn't a passive support role. You'll have genuine influence over how we onboard, engage, and grow our client base - and over the direction of the customer success function as we scale. There's also a real financial incentive to grow accounts: with a base salary of £32,500 plus uncapped commission on upsells, your OTE will be in the region of £60,000. What You'll Be Doing Owning the client relationship across every touchpoint. You'll manage a portfolio of B2B accounts, providing responsive, high-quality support via live chat, telephone, email, and scheduled video calls. You'll be the consistent, trusted point of contact that clients know they can rely on - whether it's a quick question on chat or a detailed walkthrough over the phone. Running onboarding that sets clients up for success . You'll lead onboarding calls and implementation sessions for every new client, walking them through platform configuration, control setup, dashboards, and integrations. You'll build and refine onboarding playbooks so that every client's first experience is smooth, structured, and confidence-building. Working hand in hand with our Security Compliance Specialists . You'll be the first point of contact for clients, triaging their needs and bringing in our Compliance Advisory team when deeper technical or framework-specific expertise is required. You'll stay close to those conversations so you always understand where each client is on their journey and can follow up effectively. Connecting clients with the right enablement partners . When clients are ready for penetration testing, vulnerability assessments, formal audits, or other specialist services, you'll make warm introductions to our network of trusted enablement partners - including penetration testers, auditors, and certification bodies. You'll coordinate scheduling, manage expectations on both sides, and make sure the handoff is seamless. Delivering webinars and group enablement . You'll plan and host regular webinars covering platform features, compliance best practices, framework updates, and tips for getting the most from OneClickComply. These sessions will help scale your impact beyond one-to-one interactions and position us as a trusted voice in the compliance space. Conducting regular check-ins and business reviews . You'll run quarterly business reviews with key accounts, track adoption metrics and health scores, and make sure every client has a clear path to their compliance goals. You'll stay ahead of churn risk by spotting disengagement early and acting on it. Driving upsell and expansion revenue . You'll identify opportunities to expand accounts - whether that's additional frameworks, more seats, or premium services - and you'll be rewarded for it. Commission on successful upsells forms a meaningful part of your compensation, so the better your clients do, the better you do. Being the voice of the customer internally . You'll work closely with product, engineering, and sales to relay what clients are asking for, where they're getting stuck, and what would make the biggest difference to their experience. Your insights will directly shape the roadmap. Writing support articles and client-facing content . You'll build out our knowledge base by writing clear, practical support articles, how-to guides, and FAQs that help clients self-serve and get to value faster. You'll also produce walkthrough videos, best-practice materials, and webinar follow-up content - reducing inbound support volume and giving every client the resources to succeed on their own terms. What We're Looking For You'll have at least 2 years of experience in a customer success, account management, or client-facing role within a B2B SaaS environment. This is a firm requirement - we need someone who already understands the rhythms of SaaS onboarding, adoption, renewal cycles, and the metrics that matter.You're confident and personable on the phone and on camera. You're the kind of person who can jump from a live chat conversation to an onboarding call to a webinar and bring the same energy and clarity to each. You build relationships quickly and earn trust by being organised, proactive, and genuinely helpful.You're a strong writer. Whether it's a support article, a follow-up email, or a webinar script, you can take something complex and make it clear and practical without dumbing it down.You're comfortable having strategic conversations with senior stakeholders and equally happy rolling up your sleeves for a hands-on platform walkthrough with an end user. You've got a track record of identifying and closing upsell or expansion opportunities, and you're motivated by a compensation model that rewards you for growing accounts.Experience in cybersecurity, compliance, GRC, or RegTech is a strong plus but not essential - if you're a quick learner with a genuine curiosity about the space, we'll get you up to speed. Familiarity with frameworks like ISO 27001, SOC 2, or Cyber Essentials is a bonus.You'll thrive here if you're naturally data-minded, comfortable using CRM and CS tools to manage your book of business, and energised by the challenge of building processes in a company that's still defining them. Compensation £32,500 base salary plus uncapped commission on upsell and expansion revenue, with on-target earnings (OTE) in the region of £60,000. Your earning potential grows as your accounts grow. Why Join Us You'll be joining at a stage where you can genuinely shape how customer success works at OneClickComply. Your understanding of what clients need won't just improve retention - it will directly influence how the product evolves. There's no red tape, no death by committee. Just a team that cares about making compliance less painful for everyone. The Benefits We've put together a benefits package that we think goes well beyond what you'd expect from a company our size. Your health and wellbeing come first. You and your family get 24/7 access to GP appointments and prescriptions, unlimited telephone, face-to-face, and video counselling, virtual physiotherapy, and unlimited eye testing. You'll also have access to virtual gym classes and discounted
Oscar Technology
Cyber Security Delivery Manager
Oscar Technology Portsmouth, Hampshire
Cyber Security Delivery Manager £80-90k Portsmouth (Hybrid) SC Clearance Eligibility essential Are you a senior cyber security professional who can lead from the front - advising at board level one day and getting hands-on with a security architecture review the next? We're recruiting on behalf of a well-regarded cyber security consultancy based in Hampshire. They work with a range of clients on complex, meaningful security challenges - and they're looking for an experienced Cyber Manager to join the senior team. This isn't a purely strategic role. You'll lead engagements, grow client relationships, and help shape the direction of the business - but you'll also roll your sleeves up when the work demands it. Salary: £ Package: Gym, private medical insurance, company pension, work from home flex Working Structure: Hybrid remote in Portsmouth (2 days onsite) Security Clearance: Active or Eligible for SC clearance. The Role: As Cyber Security Delivery Manager, you'll take ownership of client engagements from start to finish, covering risk assessments, security architecture reviews, policy development, incident response planning, and governance work. You'll be the senior point of contact on engagements, ensuring quality and consistency across everything that goes out the door. What You'll Be Doing: Leading end-to-end cyber security engagements across advisory and hands-on delivery Managing multiple projects simultaneously, ensuring delivery quality and client satisfaction Building and maintaining strong relationships with clients, including at CISO and board level Leading proposals and bids, contributing to go-to-market strategy and service development Supporting and developing junior and mid-level consultants through active mentoring Putting sensible operational processes in place and keeping day-to-day delivery on track Contributing to hiring decisions as the team grows What You'll Need: Significant experience delivering cyber security projects in a consultancy or professional services environment Strong technical knowledge across core cyber domains - risk management, security architecture, governance, assurance, or incident response CISSP, CISM, or equivalent professional certification A proven track record of leading teams and managing senior client relationships The ability to communicate complex security topics clearly to both technical and non-technical stakeholders Eligibility to obtain or active SC (Security Clearance) Self-motivated, decisive, and comfortable operating with a high degree of autonomy Desired but not essential: Experience across multiple disciplines such as GRC, penetration testing, SOC, cloud security, or OT security Familiarity with frameworks including NIST, ISO 27001, CAF, or Cyber Essentials Experience working with government, defence, or critical national infrastructure clients Additional certifications such as CREST, OSCP, or NCSC Certified Professional If this sounds like the right next step, apply now or get in touch for a confidential conversation. Candidates must be eligible to work in the UK and able to obtain Security Clearance. Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
May 23, 2026
Full time
Cyber Security Delivery Manager £80-90k Portsmouth (Hybrid) SC Clearance Eligibility essential Are you a senior cyber security professional who can lead from the front - advising at board level one day and getting hands-on with a security architecture review the next? We're recruiting on behalf of a well-regarded cyber security consultancy based in Hampshire. They work with a range of clients on complex, meaningful security challenges - and they're looking for an experienced Cyber Manager to join the senior team. This isn't a purely strategic role. You'll lead engagements, grow client relationships, and help shape the direction of the business - but you'll also roll your sleeves up when the work demands it. Salary: £ Package: Gym, private medical insurance, company pension, work from home flex Working Structure: Hybrid remote in Portsmouth (2 days onsite) Security Clearance: Active or Eligible for SC clearance. The Role: As Cyber Security Delivery Manager, you'll take ownership of client engagements from start to finish, covering risk assessments, security architecture reviews, policy development, incident response planning, and governance work. You'll be the senior point of contact on engagements, ensuring quality and consistency across everything that goes out the door. What You'll Be Doing: Leading end-to-end cyber security engagements across advisory and hands-on delivery Managing multiple projects simultaneously, ensuring delivery quality and client satisfaction Building and maintaining strong relationships with clients, including at CISO and board level Leading proposals and bids, contributing to go-to-market strategy and service development Supporting and developing junior and mid-level consultants through active mentoring Putting sensible operational processes in place and keeping day-to-day delivery on track Contributing to hiring decisions as the team grows What You'll Need: Significant experience delivering cyber security projects in a consultancy or professional services environment Strong technical knowledge across core cyber domains - risk management, security architecture, governance, assurance, or incident response CISSP, CISM, or equivalent professional certification A proven track record of leading teams and managing senior client relationships The ability to communicate complex security topics clearly to both technical and non-technical stakeholders Eligibility to obtain or active SC (Security Clearance) Self-motivated, decisive, and comfortable operating with a high degree of autonomy Desired but not essential: Experience across multiple disciplines such as GRC, penetration testing, SOC, cloud security, or OT security Familiarity with frameworks including NIST, ISO 27001, CAF, or Cyber Essentials Experience working with government, defence, or critical national infrastructure clients Additional certifications such as CREST, OSCP, or NCSC Certified Professional If this sounds like the right next step, apply now or get in touch for a confidential conversation. Candidates must be eligible to work in the UK and able to obtain Security Clearance. Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
Reed
Cyber Governance Risk and Compliance Manager
Reed Sheffield, Yorkshire
Cyber Governance Risk and Compliance Manager Contract Duration: Until 13 November 2027 Location: Hybrid (2 days onsite - office based in London or Sheffield) Job Type: Contract We are seeking an experienced Cyber Governance Risk and Compliance (GRC) Manager to join our team. This role involves driving risk assurance, compliance oversight, and certification delivery across a complex, multi-entity environment. The successful candidate will be a hands-on GRC Manager who can operate with autonomy, bring structure to ambiguity, and engage effectively across business and technology stakeholders. Day-to-day of the role : Subsidiary Risk Assurance & Governance : Conduct risk assessments, develop risk heat maps, and produce executive-level summaries. ISO 27001 & Cyber Essentials Delivery : Oversee readiness assessments, provide governance oversight, and validate compliance with standards. Reporting & Stakeholder Engagement : Deliver regular reports, manage stakeholder engagement, and maintain centralised dashboards. Strategic Roadmapping : Develop a 3-year cyber compliance roadmap, detailing priorities, timelines, and resource requirements. Compliance & Advisory : Provide ongoing support for compliance, interpret regulatory requirements, and ensure alignment with industry standards. Incident Leadership & Management : Lead the coordination of high-severity cyber incidents, ensuring effective communication and structured execution. Required Skills & Qualifications: Core Experience : Proven experience in Cyber Incident Response or Major Incident Management, preferably in a SOC or Security Operations environment. Stakeholder & Leadership Skills : Excellent communication skills, ability to influence and negotiate under pressure, and experience with senior stakeholders. Operational Capability : Experience managing incident bridges/war rooms and strong decision-making skills in high-pressure situations. Technical Understanding (Desirable) : Knowledge of cyber security concepts, Endpoint Detection & Response, SIEM platforms, and ServiceNow. To apply for the Cyber Governance Risk and Compliance Manager position, please submit your CV and a member of the Reed Professional Services Talent Team will be in touch
May 19, 2026
Seasonal
Cyber Governance Risk and Compliance Manager Contract Duration: Until 13 November 2027 Location: Hybrid (2 days onsite - office based in London or Sheffield) Job Type: Contract We are seeking an experienced Cyber Governance Risk and Compliance (GRC) Manager to join our team. This role involves driving risk assurance, compliance oversight, and certification delivery across a complex, multi-entity environment. The successful candidate will be a hands-on GRC Manager who can operate with autonomy, bring structure to ambiguity, and engage effectively across business and technology stakeholders. Day-to-day of the role : Subsidiary Risk Assurance & Governance : Conduct risk assessments, develop risk heat maps, and produce executive-level summaries. ISO 27001 & Cyber Essentials Delivery : Oversee readiness assessments, provide governance oversight, and validate compliance with standards. Reporting & Stakeholder Engagement : Deliver regular reports, manage stakeholder engagement, and maintain centralised dashboards. Strategic Roadmapping : Develop a 3-year cyber compliance roadmap, detailing priorities, timelines, and resource requirements. Compliance & Advisory : Provide ongoing support for compliance, interpret regulatory requirements, and ensure alignment with industry standards. Incident Leadership & Management : Lead the coordination of high-severity cyber incidents, ensuring effective communication and structured execution. Required Skills & Qualifications: Core Experience : Proven experience in Cyber Incident Response or Major Incident Management, preferably in a SOC or Security Operations environment. Stakeholder & Leadership Skills : Excellent communication skills, ability to influence and negotiate under pressure, and experience with senior stakeholders. Operational Capability : Experience managing incident bridges/war rooms and strong decision-making skills in high-pressure situations. Technical Understanding (Desirable) : Knowledge of cyber security concepts, Endpoint Detection & Response, SIEM platforms, and ServiceNow. To apply for the Cyber Governance Risk and Compliance Manager position, please submit your CV and a member of the Reed Professional Services Talent Team will be in touch
Reed
Cyber Governance Risk and Compliance Manager
Reed
Cyber Governance Risk and Compliance Manager Contract Duration: Until 13 November 2027 Location: Hybrid (2 days onsite - office based in London or Sheffield) Job Type: Contract We are seeking an experienced Cyber Governance Risk and Compliance (GRC) Manager to join our team. This role involves driving risk assurance, compliance oversight, and certification delivery across a complex, multi-entity environment. The successful candidate will be a hands-on GRC Manager who can operate with autonomy, bring structure to ambiguity, and engage effectively across business and technology stakeholders. Day-to-day of the role : Subsidiary Risk Assurance & Governance : Conduct risk assessments, develop risk heat maps, and produce executive-level summaries. ISO 27001 & Cyber Essentials Delivery : Oversee readiness assessments, provide governance oversight, and validate compliance with standards. Reporting & Stakeholder Engagement : Deliver regular reports, manage stakeholder engagement, and maintain centralised dashboards. Strategic Roadmapping : Develop a 3-year cyber compliance roadmap, detailing priorities, timelines, and resource requirements. Compliance & Advisory : Provide ongoing support for compliance, interpret regulatory requirements, and ensure alignment with industry standards. Incident Leadership & Management : Lead the coordination of high-severity cyber incidents, ensuring effective communication and structured execution. Required Skills & Qualifications: Core Experience : Proven experience in Cyber Incident Response or Major Incident Management, preferably in a SOC or Security Operations environment. Stakeholder & Leadership Skills : Excellent communication skills, ability to influence and negotiate under pressure, and experience with senior stakeholders. Operational Capability : Experience managing incident bridges/war rooms and strong decision-making skills in high-pressure situations. Technical Understanding (Desirable) : Knowledge of cyber security concepts, Endpoint Detection & Response, SIEM platforms, and ServiceNow. To apply for the Cyber Governance Risk and Compliance Manager position, please submit your CV and a member of the Reed Professional Services Talent Team will be in touch
May 19, 2026
Seasonal
Cyber Governance Risk and Compliance Manager Contract Duration: Until 13 November 2027 Location: Hybrid (2 days onsite - office based in London or Sheffield) Job Type: Contract We are seeking an experienced Cyber Governance Risk and Compliance (GRC) Manager to join our team. This role involves driving risk assurance, compliance oversight, and certification delivery across a complex, multi-entity environment. The successful candidate will be a hands-on GRC Manager who can operate with autonomy, bring structure to ambiguity, and engage effectively across business and technology stakeholders. Day-to-day of the role : Subsidiary Risk Assurance & Governance : Conduct risk assessments, develop risk heat maps, and produce executive-level summaries. ISO 27001 & Cyber Essentials Delivery : Oversee readiness assessments, provide governance oversight, and validate compliance with standards. Reporting & Stakeholder Engagement : Deliver regular reports, manage stakeholder engagement, and maintain centralised dashboards. Strategic Roadmapping : Develop a 3-year cyber compliance roadmap, detailing priorities, timelines, and resource requirements. Compliance & Advisory : Provide ongoing support for compliance, interpret regulatory requirements, and ensure alignment with industry standards. Incident Leadership & Management : Lead the coordination of high-severity cyber incidents, ensuring effective communication and structured execution. Required Skills & Qualifications: Core Experience : Proven experience in Cyber Incident Response or Major Incident Management, preferably in a SOC or Security Operations environment. Stakeholder & Leadership Skills : Excellent communication skills, ability to influence and negotiate under pressure, and experience with senior stakeholders. Operational Capability : Experience managing incident bridges/war rooms and strong decision-making skills in high-pressure situations. Technical Understanding (Desirable) : Knowledge of cyber security concepts, Endpoint Detection & Response, SIEM platforms, and ServiceNow. To apply for the Cyber Governance Risk and Compliance Manager position, please submit your CV and a member of the Reed Professional Services Talent Team will be in touch
Ashdown Group
Security GRC Manager
Ashdown Group Lincoln, Lincolnshire
Cyber Security Governance, Risk and Compliance Manager - Lincolnshire based (hybrid) - Full time permanent role with a large business - Salary circa £60k plus bonus, great pension and more! We're partnering with a well-established, values-driven organisation looking to appoint a Cyber GRC Manager to strengthen governance, risk, and compliance across their technology and cyber landscape. This is a key role where you'll help shape and embed best-practice frameworks, ensuring the business remains secure, compliant, and resilient in an evolving threat environment. The Role You'll take ownership of cyber governance and risk management, working closely with senior stakeholders to identify, assess, and mitigate risk while ensuring alignment with regulatory requirements and industry standards. Key Responsibilities Leading cyber risk management activities, including maintaining risk registers Supporting governance frameworks, policies, and controls Delivering risk-based audits across IT and cyber environments Collaborating with internal teams and external partners Providing clear reporting and insight to senior stakeholders About You Experience within cyber GRC, IT audit, or risk management Strong understanding of frameworks such as ISO 27001, NIST, or similar Confident communicator, able to translate technical risks into business impact Proactive and detail-oriented, with a collaborative approach
May 08, 2026
Full time
Cyber Security Governance, Risk and Compliance Manager - Lincolnshire based (hybrid) - Full time permanent role with a large business - Salary circa £60k plus bonus, great pension and more! We're partnering with a well-established, values-driven organisation looking to appoint a Cyber GRC Manager to strengthen governance, risk, and compliance across their technology and cyber landscape. This is a key role where you'll help shape and embed best-practice frameworks, ensuring the business remains secure, compliant, and resilient in an evolving threat environment. The Role You'll take ownership of cyber governance and risk management, working closely with senior stakeholders to identify, assess, and mitigate risk while ensuring alignment with regulatory requirements and industry standards. Key Responsibilities Leading cyber risk management activities, including maintaining risk registers Supporting governance frameworks, policies, and controls Delivering risk-based audits across IT and cyber environments Collaborating with internal teams and external partners Providing clear reporting and insight to senior stakeholders About You Experience within cyber GRC, IT audit, or risk management Strong understanding of frameworks such as ISO 27001, NIST, or similar Confident communicator, able to translate technical risks into business impact Proactive and detail-oriented, with a collaborative approach
Awin
Information Security Risk Manager (f/m/d)
Awin
Purpose of Position As Information Security Risk Manager (f/m/d) you will own and drive Awin's global Information Security Risk Management capability end-to-end, ensuring the business not only understands its risks but takes measurable action to reduce them. You will be accountable for embedding a strong culture of risk ownership across the organisation, proactively identifying gaps, and driving remediation through to completion. This role requires structured risk identification, assessment, and reporting whilst acting as a advisor to senior leadership and the board. It ensures that risk appetite is clearly defined, actively used in decision-making, and consistently monitored. Your location: Ideally in Berlin, Munich, Madrid, Warsaw, London, Milan, Ia?i, Stockholm, or Paris (or in Germany, Spain, Poland, UK, Italy, Romania, Sweden, or France) Key Tasks Lead enterprise-wide risk identification and assessment across strategic initiatives, technology, and third parties. Ensure risks are prioritised and clearly articulated in business terms (financial, regulatory, reputational) to enable effective decision-making. Drive risk remediation to closure, holding risk owners accountable for delivery and escalating where progress stalls. Ensure risk management is embedded in cross-functional initiatives and considered as part of key business decisions. Own and maintain the Information Security Risk Register, ensuring it reflects true risk exposure, progress, and outcomes, not just status updates. Facilitate risk reviews that are focused on decisions, accountability, and measurable progress. Define, embed, and maintain the organisation's risk appetite, ensuring it is actively used in both business and technology decision-making. Establish and track KPIs that measure real improvements in risk posture, not just activity. Provide clear, opinionated, and actionable risk insights to senior management and the board. Act as the bridge between technical and business teams, ensuring risks are clearly understood and acted upon. Confidently challenge and influence stakeholders to ensure risks are neither understated nor inappropriately accepted. Own and continuously improve Awin's global information security risk management framework, aligned to ISO 27001 and regulatory requirements. Monitor control effectiveness, proactively identify weaknesses, and drive improvements. Embed risk management into business processes so that risks are considered early and proactively, rather than retrospectively. As the most senior member of the team, mentor and develop GRC team members, building capability in risk management and assurance. Lead horizon scanning across emerging threats, regulatory changes, and industry developments, translating these into practical risk implications and actions for the business. Skills & Expertise Proven track record of owning and delivering risk management initiatives end-to-end Experience driving risk remediation across teams without direct authority Strong experience presenting and defending risk positions to senior leadership and boards Hands-on experience within an ISO 27001-certified ISMS environment Strong knowledge of frameworks such as ISO 27001 Experience designing, implementing, or improving control frameworks Experience with GRC platforms (e.g. Hyperproof) Confident communicator (with very good English skills) - able to build relationships and challenge/influence senior stakeholders Our Offer Flexi-Week and Work-Life Balance : We prioritise your mental health and well-being, offering you a flexible four-day Flexi-Week at full pay and with no reduction to your annual holiday allowance. We also offer a variety of different paid special leaves as well as volunteer days. Remote Working Allowance: You will receive a monthly allowance to cover part of your running costs. In addition, we will support you in setting up your remote workspace appropriately. Pension: Awin offers access to an additional pension insurance to all employees in Germany. Flexi-Office: We offer an international culture and flexibility through our Flexi-Office and hybrid/remote work possibilities to work across Awin regions Development : We've built our extensive training suite Awin Academy to cover a wide range of skills that nurture you professionally and personally, with trainings conveniently packaged together to support your overall development. Appreciation : Thank and reward colleagues by sending them a voucher through our peer-to-peer program Established in 2000, Awin is proud of our dynamic, social and inclusive culture. Like all businesses, we've had to adapt and nurture our culture in a virtual environment. Our virtual hub brings our colleagues from across the globe together for various social activities. Diversity & Inclusion are paramount to us, and we proudly pursue and hire diverse team members. We champion uniqueness and authenticity; this is who we are at our core. Our network of affiliate partnerships are diverse and transparent, as are the employees powering our vision to build the world's leading open partner ecosystem. We welcome all backgrounds, identities, and experiences. If you need support at any point in the application or interview process, please let us know. Awin is part of the Axel Springer group.Learn more at , and explore the Axel Springer Essentials here: Apply now to begin the next stage of your career at a progressive company that supports both your professional and personal development.
May 08, 2026
Full time
Purpose of Position As Information Security Risk Manager (f/m/d) you will own and drive Awin's global Information Security Risk Management capability end-to-end, ensuring the business not only understands its risks but takes measurable action to reduce them. You will be accountable for embedding a strong culture of risk ownership across the organisation, proactively identifying gaps, and driving remediation through to completion. This role requires structured risk identification, assessment, and reporting whilst acting as a advisor to senior leadership and the board. It ensures that risk appetite is clearly defined, actively used in decision-making, and consistently monitored. Your location: Ideally in Berlin, Munich, Madrid, Warsaw, London, Milan, Ia?i, Stockholm, or Paris (or in Germany, Spain, Poland, UK, Italy, Romania, Sweden, or France) Key Tasks Lead enterprise-wide risk identification and assessment across strategic initiatives, technology, and third parties. Ensure risks are prioritised and clearly articulated in business terms (financial, regulatory, reputational) to enable effective decision-making. Drive risk remediation to closure, holding risk owners accountable for delivery and escalating where progress stalls. Ensure risk management is embedded in cross-functional initiatives and considered as part of key business decisions. Own and maintain the Information Security Risk Register, ensuring it reflects true risk exposure, progress, and outcomes, not just status updates. Facilitate risk reviews that are focused on decisions, accountability, and measurable progress. Define, embed, and maintain the organisation's risk appetite, ensuring it is actively used in both business and technology decision-making. Establish and track KPIs that measure real improvements in risk posture, not just activity. Provide clear, opinionated, and actionable risk insights to senior management and the board. Act as the bridge between technical and business teams, ensuring risks are clearly understood and acted upon. Confidently challenge and influence stakeholders to ensure risks are neither understated nor inappropriately accepted. Own and continuously improve Awin's global information security risk management framework, aligned to ISO 27001 and regulatory requirements. Monitor control effectiveness, proactively identify weaknesses, and drive improvements. Embed risk management into business processes so that risks are considered early and proactively, rather than retrospectively. As the most senior member of the team, mentor and develop GRC team members, building capability in risk management and assurance. Lead horizon scanning across emerging threats, regulatory changes, and industry developments, translating these into practical risk implications and actions for the business. Skills & Expertise Proven track record of owning and delivering risk management initiatives end-to-end Experience driving risk remediation across teams without direct authority Strong experience presenting and defending risk positions to senior leadership and boards Hands-on experience within an ISO 27001-certified ISMS environment Strong knowledge of frameworks such as ISO 27001 Experience designing, implementing, or improving control frameworks Experience with GRC platforms (e.g. Hyperproof) Confident communicator (with very good English skills) - able to build relationships and challenge/influence senior stakeholders Our Offer Flexi-Week and Work-Life Balance : We prioritise your mental health and well-being, offering you a flexible four-day Flexi-Week at full pay and with no reduction to your annual holiday allowance. We also offer a variety of different paid special leaves as well as volunteer days. Remote Working Allowance: You will receive a monthly allowance to cover part of your running costs. In addition, we will support you in setting up your remote workspace appropriately. Pension: Awin offers access to an additional pension insurance to all employees in Germany. Flexi-Office: We offer an international culture and flexibility through our Flexi-Office and hybrid/remote work possibilities to work across Awin regions Development : We've built our extensive training suite Awin Academy to cover a wide range of skills that nurture you professionally and personally, with trainings conveniently packaged together to support your overall development. Appreciation : Thank and reward colleagues by sending them a voucher through our peer-to-peer program Established in 2000, Awin is proud of our dynamic, social and inclusive culture. Like all businesses, we've had to adapt and nurture our culture in a virtual environment. Our virtual hub brings our colleagues from across the globe together for various social activities. Diversity & Inclusion are paramount to us, and we proudly pursue and hire diverse team members. We champion uniqueness and authenticity; this is who we are at our core. Our network of affiliate partnerships are diverse and transparent, as are the employees powering our vision to build the world's leading open partner ecosystem. We welcome all backgrounds, identities, and experiences. If you need support at any point in the application or interview process, please let us know. Awin is part of the Axel Springer group.Learn more at , and explore the Axel Springer Essentials here: Apply now to begin the next stage of your career at a progressive company that supports both your professional and personal development.
GUARDIAN NEWS AND MEDIA
Information Security GRC Risk Manager
GUARDIAN NEWS AND MEDIA
Join our team at the Guardian and be a part of a diverse and inclusive global organisation that delivers fearless, investigative journalism, and holds power to account. Our team of award-winning journalists, cutting-edge commercial professionals, and industry-leading digital experts are committed to making a difference and represent a wide range of backgrounds and perspectives. We offer a challenging and exciting environment for career development, with a focus on training, growth and fostering an inclusive culture. We are now looking for an Information Security GRC Risk Manager to join the Group Technology & Data team. You'll support the Information Security (InfoSec) GRC Lead to deliver effective risk management, ensuring risks are consistently identified, assessed and managed and that appropriate governance, including policies and standards, supports effective risk mitigation across the organisation. You'll act as a key driver between InfoSec and the wider business, providing oversight and challenge to ensure risks are appropriately managed. About the role: Own and operate the Information Security risk management framework, ensuring alignment with enterprise risk management (ERM) practices Identify and manage emerging risks, including those associated with AI/ML systems (e.g. bias, privacy, security, and model integrity) Own and deliver risk reporting to senior stakeholders and governance forums, providing clear visibility of risk exposure and remediation progress Lead responses to information security risk queries, assessments, and assurance activities Deliver targeted risk training and awareness to embed a strong risk management culture Own and maintain the Information Security policy framework, ensuring policies and standards remain current, aligned to risk appetite, and meet regulatory requirements Highlight systemic issues, control weaknesses, and emerging threats, driving visibility and action at leadership level Benchmark practices against industry standards and evolving regulatory expectations, ensuring continuous improvement About you: Strong interpersonal skills with the ability to influence, challenge, and engage senior stakeholders, translating technical risk into clear business impact Strong experience in identifying, assessing, and managing information security risks, with the ability to apply structured risk methodologies and align to business risk appetite Highly disciplined and methodical approach to risk analysis, with the ability to break down complex issues and provide clear, actionable insights Experience producing clear, concise risk reporting, including KPIs/KRIs, and presenting insights to leadership Strong organisational skills with the ability to manage multiple priorities, maintain momentum on risk treatment, and ensure follow-through Awareness of emerging technology risks, including AI/ML-related risks, and the ability to incorporate these into risk assessments Working knowledge of industry frameworks and standards (e.g. ISO 27005, ISO 42001, NIST CSF 2.0, NIST 800-53) and relevant regulations (e.g. GDPR, EU AI Principles) Solid understanding of security controls and experience supporting or performing control assessments and testing, with the ability to identify gaps and track remediation Experience with GRC tools (e.g. Diligent One GRC etc.) and risk tracking systems We actively encourage applications from groups traditionally underrepresented in the UK media We operate in a hybrid environment working 3 days a week from our offices in Kings Cross and 2 days a week remotely. We value and respect all differences (seen and unseen) in all people. We aspire to have inclusive working experiences and an environment that reflects the audience we serve, where our people have equal access to career development opportunities, their voices are heard and can contribute to our future. We actively encourage applications from people of all backgrounds. Many of our staff work flexibly and we will consider all requests for flexible working arrangements. How to apply To apply, please upload your latest CV and a cover letter which outlines why you'd love to take on this role, and why you're a great match for what we're looking for. We appreciate the time taken to prepare each application we receive. We do not use AI-assisted technology to review applications; every application is reviewed by a member of our recruitment team. The closing date for applications is Monday 11th May 2026. All roles at the Guardian are open for everybody to apply. It is important to us that you feel supported and comfortable throughout your recruitment process, in order to perform your best. Please let us know if there are any changes we could make to help your application, this includes providing documents in accessible formats or personalising the process to better support your needs. Please contact Anna Vipers on to discuss further so we can work with you to support you through your application. Benefits at the Guardian You'll have 30 days of annual leave per year (plus bank holidays) with the option to purchase an additional 5 days. Our pension scheme is generous; if you contribute 5% then we will contribute 8-12% (depending on your age). We believe in giving back, which is why employees are given 2 volunteering days annually and the option of payroll giving. Season ticket loans are also available. You are entitled to private healthcare, life cover, income protection, and eye tests. You can also opt in to dental insurance. We have enhanced maternity, paternity, adoption and shared parental leave policies in place. We also support our employees by offering an IVF, menopause, baby loss, and trans equality policy. Culture and wellbeing We want everyone to feel like they belong at the Guardian and we champion diversity of thought. Our various employee forums provide a platform to use their voice to foster an inclusive workplace. We became the first major media organisation to achieve B Corp status. We offer tools to help you prioritise your wellbeing including access to our employee benefits platform which provides tailored support for health and wellbeing. In addition, we also offer free yoga and pilates classes. These run alongside our corporate gym membership and cycle to work scheme. Our canteen has views overlooking the Regents Canal and caters for breakfast, lunch and dinner. Learning and development We encourage personal and professional growth. Employees have access to a broad range of tools and solutions, and we are happy to support the pursuit of professional qualifications through vocational courses and apprenticeships.
May 02, 2026
Full time
Join our team at the Guardian and be a part of a diverse and inclusive global organisation that delivers fearless, investigative journalism, and holds power to account. Our team of award-winning journalists, cutting-edge commercial professionals, and industry-leading digital experts are committed to making a difference and represent a wide range of backgrounds and perspectives. We offer a challenging and exciting environment for career development, with a focus on training, growth and fostering an inclusive culture. We are now looking for an Information Security GRC Risk Manager to join the Group Technology & Data team. You'll support the Information Security (InfoSec) GRC Lead to deliver effective risk management, ensuring risks are consistently identified, assessed and managed and that appropriate governance, including policies and standards, supports effective risk mitigation across the organisation. You'll act as a key driver between InfoSec and the wider business, providing oversight and challenge to ensure risks are appropriately managed. About the role: Own and operate the Information Security risk management framework, ensuring alignment with enterprise risk management (ERM) practices Identify and manage emerging risks, including those associated with AI/ML systems (e.g. bias, privacy, security, and model integrity) Own and deliver risk reporting to senior stakeholders and governance forums, providing clear visibility of risk exposure and remediation progress Lead responses to information security risk queries, assessments, and assurance activities Deliver targeted risk training and awareness to embed a strong risk management culture Own and maintain the Information Security policy framework, ensuring policies and standards remain current, aligned to risk appetite, and meet regulatory requirements Highlight systemic issues, control weaknesses, and emerging threats, driving visibility and action at leadership level Benchmark practices against industry standards and evolving regulatory expectations, ensuring continuous improvement About you: Strong interpersonal skills with the ability to influence, challenge, and engage senior stakeholders, translating technical risk into clear business impact Strong experience in identifying, assessing, and managing information security risks, with the ability to apply structured risk methodologies and align to business risk appetite Highly disciplined and methodical approach to risk analysis, with the ability to break down complex issues and provide clear, actionable insights Experience producing clear, concise risk reporting, including KPIs/KRIs, and presenting insights to leadership Strong organisational skills with the ability to manage multiple priorities, maintain momentum on risk treatment, and ensure follow-through Awareness of emerging technology risks, including AI/ML-related risks, and the ability to incorporate these into risk assessments Working knowledge of industry frameworks and standards (e.g. ISO 27005, ISO 42001, NIST CSF 2.0, NIST 800-53) and relevant regulations (e.g. GDPR, EU AI Principles) Solid understanding of security controls and experience supporting or performing control assessments and testing, with the ability to identify gaps and track remediation Experience with GRC tools (e.g. Diligent One GRC etc.) and risk tracking systems We actively encourage applications from groups traditionally underrepresented in the UK media We operate in a hybrid environment working 3 days a week from our offices in Kings Cross and 2 days a week remotely. We value and respect all differences (seen and unseen) in all people. We aspire to have inclusive working experiences and an environment that reflects the audience we serve, where our people have equal access to career development opportunities, their voices are heard and can contribute to our future. We actively encourage applications from people of all backgrounds. Many of our staff work flexibly and we will consider all requests for flexible working arrangements. How to apply To apply, please upload your latest CV and a cover letter which outlines why you'd love to take on this role, and why you're a great match for what we're looking for. We appreciate the time taken to prepare each application we receive. We do not use AI-assisted technology to review applications; every application is reviewed by a member of our recruitment team. The closing date for applications is Monday 11th May 2026. All roles at the Guardian are open for everybody to apply. It is important to us that you feel supported and comfortable throughout your recruitment process, in order to perform your best. Please let us know if there are any changes we could make to help your application, this includes providing documents in accessible formats or personalising the process to better support your needs. Please contact Anna Vipers on to discuss further so we can work with you to support you through your application. Benefits at the Guardian You'll have 30 days of annual leave per year (plus bank holidays) with the option to purchase an additional 5 days. Our pension scheme is generous; if you contribute 5% then we will contribute 8-12% (depending on your age). We believe in giving back, which is why employees are given 2 volunteering days annually and the option of payroll giving. Season ticket loans are also available. You are entitled to private healthcare, life cover, income protection, and eye tests. You can also opt in to dental insurance. We have enhanced maternity, paternity, adoption and shared parental leave policies in place. We also support our employees by offering an IVF, menopause, baby loss, and trans equality policy. Culture and wellbeing We want everyone to feel like they belong at the Guardian and we champion diversity of thought. Our various employee forums provide a platform to use their voice to foster an inclusive workplace. We became the first major media organisation to achieve B Corp status. We offer tools to help you prioritise your wellbeing including access to our employee benefits platform which provides tailored support for health and wellbeing. In addition, we also offer free yoga and pilates classes. These run alongside our corporate gym membership and cycle to work scheme. Our canteen has views overlooking the Regents Canal and caters for breakfast, lunch and dinner. Learning and development We encourage personal and professional growth. Employees have access to a broad range of tools and solutions, and we are happy to support the pursuit of professional qualifications through vocational courses and apprenticeships.
Intec Select Ltd
Lead Cyber Security Solution Architect
Intec Select Ltd City, London
Lead Cyber Security Solution Architect - Banking - London - Up to 120,000 Basic Salary + Hybrid Working Overview We are seeking an experienced Lead Cyber Security Solution Architect to lead a team of Governance, Risk, and Control (GRC) specialists. This team is responsible for conducting Secure-by-Design assessments on technology projects, ensuring compliance with IT security policies and requirements. Role and Responsibilities Lead and manage the Secure-by-Design team across multiple business entities. Oversee security reviews for technology projects prior to implementation. Define KPIs for the team and monitor performance. Engage with business and technology stakeholders to assess technical and non-technical controls. Review reports and validate evidence of control effectiveness. Develop and implement testing strategies for IT security controls. Identify and document risks, gaps, findings, and recommend actions. Ensure timely completion of security assessments and manage team workload effectively. Essential Skills & Experience Proven ability to manage complex tasks with broad scope and ambiguity. Strong background in cybersecurity assurance, policies, and standards. Expertise across IT security domains: Governance, IAM, Risk Management, Security Testing, Incident Management, Vulnerability Management. Experience in senior stakeholder engagement and management reporting. Ability to coach and mentor team members. Deep understanding of IT security frameworks (SOX, FFIEC, ISO27001, NIST, PCI-DSS, Cloud Security Alliance). Strong managerial and leadership skills. Hands-on experience as an IT auditor, security auditor, or GRC analyst. Excellent planning, prioritization, and documentation skills. Broad technical knowledge of IT systems (OS, databases, firewalls, SIEM, DLP). Cloud Platforms: AWS and Azure. AI Knowledge: Understanding of AI principles and security implications. Solutions / Technical Network Architecture: Ability to design secure technical solutions and network architectures. Controls Experience: Strong background in implementing and assessing security controls. Splunk Knowledge: Familiarity with SIEM tools and log analysis. CyberArk: Experience with privileged access management solutions. Package Salary: Up to 120,000 Up to 20% Bonus Hybrid, with travel to London Career Development Opportunities Benefits: Pension scheme, professional training, paid holiday Lead Cyber Security Solution Architect - Banking - London - Up to 120,000 Basic Salary + Hybrid Working
Jan 21, 2026
Full time
Lead Cyber Security Solution Architect - Banking - London - Up to 120,000 Basic Salary + Hybrid Working Overview We are seeking an experienced Lead Cyber Security Solution Architect to lead a team of Governance, Risk, and Control (GRC) specialists. This team is responsible for conducting Secure-by-Design assessments on technology projects, ensuring compliance with IT security policies and requirements. Role and Responsibilities Lead and manage the Secure-by-Design team across multiple business entities. Oversee security reviews for technology projects prior to implementation. Define KPIs for the team and monitor performance. Engage with business and technology stakeholders to assess technical and non-technical controls. Review reports and validate evidence of control effectiveness. Develop and implement testing strategies for IT security controls. Identify and document risks, gaps, findings, and recommend actions. Ensure timely completion of security assessments and manage team workload effectively. Essential Skills & Experience Proven ability to manage complex tasks with broad scope and ambiguity. Strong background in cybersecurity assurance, policies, and standards. Expertise across IT security domains: Governance, IAM, Risk Management, Security Testing, Incident Management, Vulnerability Management. Experience in senior stakeholder engagement and management reporting. Ability to coach and mentor team members. Deep understanding of IT security frameworks (SOX, FFIEC, ISO27001, NIST, PCI-DSS, Cloud Security Alliance). Strong managerial and leadership skills. Hands-on experience as an IT auditor, security auditor, or GRC analyst. Excellent planning, prioritization, and documentation skills. Broad technical knowledge of IT systems (OS, databases, firewalls, SIEM, DLP). Cloud Platforms: AWS and Azure. AI Knowledge: Understanding of AI principles and security implications. Solutions / Technical Network Architecture: Ability to design secure technical solutions and network architectures. Controls Experience: Strong background in implementing and assessing security controls. Splunk Knowledge: Familiarity with SIEM tools and log analysis. CyberArk: Experience with privileged access management solutions. Package Salary: Up to 120,000 Up to 20% Bonus Hybrid, with travel to London Career Development Opportunities Benefits: Pension scheme, professional training, paid holiday Lead Cyber Security Solution Architect - Banking - London - Up to 120,000 Basic Salary + Hybrid Working

Modal Window

  • Home
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Google Plus
  • LinkedIn
Parent and Partner sites: IT Job Board | Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | Construction Job Board | Property jobs | myJobsnearme.com | Jobs near me
© 2008-2026 Jobsite Jobs | Designed by Web Design Agency