logo Sustainability and design
talent Specialists
Recruiting?

Job Search

2477 Live jobs
  • Home
  • Search
(0)
Security Risk Manager
Added 21/09/2026
Reference: k0r9cqx8bxrgys4lxhh3

We are seeking an experienced Security Risk Manager to lead the identification, assessment and treatment of security risks... Read more

We are seeking an experienced Security Risk Manager to lead the identification, assessment and treatment of security risks across a complex organisation. In this role, you will provide expert advice to senior stakeholders, support informed decision-making and help strengthen the organisation’s resilience against operational, information, physical and third-party security threats. You will develop trusted relationships across business and technology teams, promoting a consistent and risk-aware approach to security management.

Your responsibilities will include maintaining the security risk management framework, policies, standards and reporting processes. You will conduct risk assessments, analyse emerging threats, evaluate control effectiveness and agree practical remediation plans with risk owners. You will monitor progress against agreed actions, escalate material risks where appropriate and prepare clear reports, dashboards and briefings for governance forums and senior leadership. The role will also involve supporting security incident reviews, business continuity planning, assurance activities, audits and the assessment of suppliers and strategic partners.

The successful candidate will have proven experience in security, enterprise risk, technology risk, information security or a related discipline, with a strong understanding of risk assessment methodologies, control frameworks and regulatory expectations. Professional qualifications such as CISSP, CISM, CRISC, ISO 27001, IRM or equivalent are desirable. You will be confident interpreting complex information, challenging constructively and communicating clearly with both technical and non-technical audiences. Strong analytical, organisational and stakeholder-management skills are essential, as is the ability to balance risk reduction with commercial and operational priorities. Experience developing governance materials and embedding risk management practices within a large or regulated environment would be advantageous.

Read less
COMPETITIVE SALARY

Warminster, England, United KingdomPermanent

Cyber Risk Manager
Added 21/09/2026
Reference: eaec8c26dhe95xds6gas

We are seeking an experienced Cyber Risk Manager to lead the identification, assessment and management of information and... Read more

We are seeking an experienced Cyber Risk Manager to lead the identification, assessment and management of information and cyber security risks across a complex business environment. This role will work closely with technology, security, compliance, audit and business teams to strengthen risk visibility, support informed decision-making and promote a proactive security culture. The successful candidate will translate technical and emerging cyber threats into clear business impacts, priorities and practical recommendations for senior stakeholders.

Key responsibilities will include maintaining and continually improving the cyber risk management framework, policies, standards and reporting processes. You will coordinate risk assessments, control reviews and remediation plans, monitor progress against agreed actions, and provide regular reporting on risk exposure, trends, exceptions and key indicators. The role will also support third-party and supply-chain risk assessments, contribute to security governance forums, and help ensure that cyber risks are considered within change, project, architecture and business continuity activities. You will advise on the interpretation of regulatory, legal and industry requirements and assist with incident, audit and assurance activities where required.

Applicants should have proven experience in cyber security, technology risk, information security governance or a related discipline, with a strong understanding of risk assessment methodologies and security control frameworks such as ISO 27001, NIST or COBIT. Experience of working with senior stakeholders, managing remediation activity and presenting complex information clearly is essential. Professional qualifications in cyber security, risk management or audit are desirable, as is experience within a regulated or highly complex environment. You will be analytical, organised and confident challenging established practices, while remaining pragmatic and collaborative. Strong written and verbal communication skills, sound judgement and the ability to prioritise competing demands are vital for success in this role.

Read less
COMPETITIVE SALARY

London, England, United KingdomPermanent

IT Risk Advisory - Consultant
Added 21/09/2026
Reference: 1pr58bej4s1p3hqk3wwo

We are seeking an IT Risk Advisory Consultant to support clients in identifying, assessing, and managing technology-related risks... Read more

We are seeking an IT Risk Advisory Consultant to support clients in identifying, assessing, and managing technology-related risks across their organisations. In this role, you will work with stakeholders to understand business processes, evaluate IT control environments, and provide practical recommendations that strengthen governance, risk management, and regulatory compliance. You will contribute to a range of engagements, including IT risk assessments, internal control reviews, technology audits, third-party risk assessments, and advisory projects involving systems, data, and cybersecurity.

Your responsibilities will include planning and delivering client assignments, documenting business and IT processes, identifying control gaps, and assessing the potential impact of operational, security, and technology risks. You will help develop risk and control matrices, test the design and operating effectiveness of controls, analyse findings, and prepare clear reports and presentations for management. You will also support the development of remediation plans, track agreed actions, and provide guidance on industry frameworks, policies, and standards. The role involves collaborating with multidisciplinary teams, managing priorities across multiple engagements, and maintaining strong relationships with clients and internal stakeholders.

The successful candidate will have experience in IT risk, technology assurance, internal audit, information security, compliance, or a related advisory environment. A good understanding of common IT controls, risk assessment methodologies, governance frameworks, and areas such as access management, change management, business continuity, infrastructure, and data protection is expected. Familiarity with frameworks or standards such as COBIT, ISO 27001, NIST, or relevant regulatory requirements would be advantageous. You should possess strong analytical, communication, report-writing, and organisational skills, with the ability to explain technical issues clearly to both technical and non-technical audiences. Professional qualifications in audit, risk, information security, or technology are desirable, as is experience using data analysis or governance, risk, and compliance tools.

Read less
COMPETITIVE SALARY

London, England, United KingdomPermanent

Technology and Cyber Employee Platforms Risk - Executive Director
Added 18/09/2026
Reference: zy4c2ejzc1ivnlrtpvsx

We are seeking an experienced Technology and Cyber Employee Platforms Risk Executive Director to lead the development and... Read more

We are seeking an experienced Technology and Cyber Employee Platforms Risk Executive Director to lead the development and execution of risk management strategies across technology, cybersecurity, and employee-facing platforms. This senior role will provide independent challenge and expert guidance to technology and business leaders, ensuring that risks are identified, assessed, managed, and reported in line with regulatory expectations and organisational risk appetite. The successful candidate will operate across a complex, highly regulated environment and influence decisions at executive and board level.

Key responsibilities include setting the strategic direction for technology and cyber risk oversight; maintaining effective risk and control frameworks; reviewing risk assessments, control designs, and remediation plans; and monitoring emerging threats, vulnerabilities, resilience concerns, and third-party exposures. You will oversee risk reporting, ensure material issues are escalated appropriately, and provide clear analysis and recommendations to senior governance forums. The role will also support audits, regulatory reviews, incident investigations, control testing, and transformational programmes involving employee platforms, identity and access management, cloud services, data protection, and operational resilience. Success will require close collaboration with technology, cybersecurity, compliance, legal, internal audit, and business stakeholders.

Applicants should bring significant experience in technology risk, cyber risk, operational risk, internal controls, or a related discipline, ideally gained within a large, complex, or regulated organisation. A strong understanding of cybersecurity principles, technology architecture, risk governance, control frameworks, and relevant regulatory requirements is essential. You will be an influential communicator with the confidence to challenge constructively, simplify complex issues, and engage effectively with executive audiences. Strong analytical, decision-making, stakeholder management, and written communication skills are required, together with a proven ability to lead through ambiguity and deliver practical, sustainable outcomes. Professional qualifications in risk, technology, cybersecurity, audit, or information security would be advantageous.

Read less
COMPETITIVE SALARY

Bournemouth, England, United KingdomPermanent

Cyber Risk Analyst
Added 17/09/2026
Reference: tu7bvgwqw7cfqmazw6y6

We are seeking a Cyber Risk Analyst to support the identification, assessment and management of information security and... Read more

We are seeking a Cyber Risk Analyst to support the identification, assessment and management of information security and technology risks across the organisation. The successful candidate will help strengthen the cyber risk framework, improve visibility of the threat landscape and provide clear, practical advice to stakeholders. This role will work closely with technology, security, compliance, audit and business teams to ensure that cyber risks are understood, appropriately prioritised and managed in line with internal policies and regulatory expectations.

Key responsibilities will include maintaining risk registers, conducting cyber and information security risk assessments, reviewing control effectiveness and supporting the remediation of identified weaknesses. You will monitor emerging threats, vulnerabilities and changes in the regulatory environment, assessing their potential impact on business operations. The role will also contribute to risk reporting, management information and governance forums, translating technical findings into concise updates for senior audiences. Additional duties may include supporting third-party and supplier risk assessments, assisting with control testing, tracking remediation actions and contributing to incident reviews, resilience assessments and assurance activities.

Applicants should have experience in cyber security, technology risk, information security, internal controls, audit or a related discipline. A sound understanding of risk management principles, security frameworks and common control standards is required, along with the ability to analyse complex information and identify practical improvements. Familiarity with frameworks such as ISO 27001, NIST Cybersecurity Framework, COBIT or CIS Controls would be advantageous. Relevant professional qualifications or certifications, such as CISA, CRISC, CISSP, CISM or equivalent experience, are desirable. Strong written and verbal communication skills are essential, as is the confidence to engage with both technical and non-technical stakeholders. You will be organised, analytical and detail-oriented, with the ability to manage competing priorities, challenge constructively and work collaboratively in a changing environment.

Read less
COMPETITIVE SALARY

Stirling, Scotland, United KingdomPermanent

Cyber Risk Analyst
Added 17/09/2026
Reference: qx5w9g5q4s8nh1aenept

We are seeking a Cyber Risk Analyst to support the identification, assessment, and management of information and cyber... Read more

We are seeking a Cyber Risk Analyst to support the identification, assessment, and management of information and cyber security risks across the organisation. In this role, you will work with technology, security, compliance, and business teams to maintain a clear view of the cyber risk landscape and help ensure that appropriate controls are designed, implemented, and monitored. You will contribute to risk assessments for systems, applications, suppliers, projects, and business processes, providing practical recommendations that support informed decision-making.

Your responsibilities will include maintaining risk registers, reviewing control effectiveness, tracking remediation activities, and preparing clear reports for risk and governance forums. You will support the development and monitoring of key risk indicators, assist with security assurance and audit activities, and help assess the impact of emerging threats, vulnerabilities, and regulatory requirements. You will also contribute to third-party risk reviews, policy and standards updates, incident lessons learned, and continuous improvement of cyber risk management processes. The role requires you to communicate complex technical and risk issues clearly to both technical and non-technical stakeholders.

Applicants should have experience in cyber security, technology risk, information security, audit, compliance, or a related discipline, together with a sound understanding of risk management principles and security frameworks such as ISO 27001, NIST, or CIS Controls. Familiarity with governance, risk, and compliance tools, vulnerability management, cloud environments, data protection, and supplier assurance would be advantageous. Strong analytical, writing, organisational, and stakeholder-management skills are essential, along with the ability to challenge constructively and prioritise competing demands. Relevant professional qualifications, such as CRISC, CISA, CISSP, or equivalent experience, are desirable. You will be expected to demonstrate integrity, attention to detail, curiosity, and a proactive approach to identifying and reducing cyber risk.

Read less
COMPETITIVE SALARY

Edinburgh, Scotland, United KingdomPermanent

Principal Cyber Security Risk Manager
Added 17/09/2026
Reference: gmr6jo8ou4rdyvlcdqxw

We are seeking a Principal Cyber Security Risk Manager to lead the development and delivery of a mature,... Read more

We are seeking a Principal Cyber Security Risk Manager to lead the development and delivery of a mature, enterprise-wide cyber security risk management framework. In this senior role, you will provide authoritative advice on cyber risk, resilience and control effectiveness, helping business and technology leaders make informed decisions in a complex and evolving threat landscape. You will work across multiple functions to ensure that security risks are identified, assessed, recorded and managed in line with agreed risk appetite and regulatory expectations.

Your responsibilities will include defining risk management methodologies, standards and reporting practices; overseeing risk assessments for strategic initiatives, systems, suppliers and major change programmes; and challenging control owners to develop effective remediation plans. You will maintain clear oversight of cyber risk exposure, emerging threats, vulnerabilities and control gaps, providing concise reports and insights to senior governance forums. You will also support the development of key risk indicators, risk acceptance processes, scenario analysis and assurance activities, while contributing to incident, crisis and operational resilience planning where appropriate.

You will bring significant experience in cyber security, technology risk, information security or a closely related discipline, with a proven record of operating at a strategic or principal level. Strong knowledge of recognised security and risk frameworks, control principles, regulatory requirements and third-party risk management is essential. You should be confident interpreting complex technical issues and translating them into clear business impacts and practical recommendations for senior stakeholders. Excellent communication, influencing and relationship-building skills are required, alongside the ability to work independently, manage competing priorities and provide constructive challenge. Professional certifications in cyber security, audit, risk or governance would be advantageous.

Read less
£57,515.00 - £82,430.00
Per annum

Leeds, England, United KingdomPermanent

Cyber Risk Analyst
Added 17/09/2026
Reference: qdwn8gplcfqahwiv7gb2

We are seeking a Cyber Risk Analyst to support the identification, assessment and management of information security and... Read more

We are seeking a Cyber Risk Analyst to support the identification, assessment and management of information security and technology risks across the organisation. In this role, you will work with stakeholders across technology, operations, compliance and internal audit to assess cyber risks, maintain accurate risk records and promote effective risk management practices. You will help ensure that security risks are understood, prioritised and addressed in line with business objectives, regulatory expectations and established policies.

Your responsibilities will include conducting cyber and technology risk assessments; reviewing control effectiveness; identifying gaps and recommending practical remediation actions; maintaining risk registers, issues logs and supporting documentation; and preparing clear reports for management and relevant governance forums. You will contribute to third-party and supplier risk assessments, support security reviews for projects and changes, monitor remediation progress and assist with the development of risk metrics and dashboards. You may also support incident and control reviews, policy updates, audit activity and the ongoing improvement of risk management frameworks, procedures and reporting.

The successful candidate will have experience in cyber security, information technology risk, technology controls, compliance or a related discipline, together with a sound understanding of common security principles, risk assessment methodologies and control frameworks. Familiarity with standards such as ISO 27001, NIST, COBIT or similar frameworks is desirable. You should be analytical, well organised and comfortable interpreting technical information for both technical and non-technical audiences. Strong written and verbal communication skills, sound judgement and the ability to manage competing priorities are essential. Relevant professional qualifications in information security, risk management or audit are advantageous. This role offers the opportunity to influence security outcomes, build relationships across the business and contribute to a mature, risk-aware culture.

Read less
COMPETITIVE SALARY

Edinburgh, Scotland, United KingdomPermanent

Cyber Risk Analyst
Added 17/09/2026
Reference: 8r5yuk20w08w05rxk5c9

We are seeking a Cyber Risk Analyst to support the identification, assessment, and management of information and cyber... Read more

We are seeking a Cyber Risk Analyst to support the identification, assessment, and management of information and cyber security risks across the organisation. In this role, you will work with technology, business, and security stakeholders to evaluate risks, recommend appropriate controls, and help strengthen the overall cyber risk management framework. You will contribute to risk assessments for systems, applications, suppliers, projects, and business processes, ensuring that security considerations are embedded throughout the organisation.

Key responsibilities will include maintaining cyber risk registers, analysing threats and vulnerabilities, reviewing control effectiveness, and tracking remediation activities through to completion. You will support the development of risk reports, dashboards, and management information, highlighting key trends, emerging risks, and areas requiring attention. The role will also involve assisting with security assessments, policy and control reviews, audit activities, exception management, and the monitoring of compliance with relevant regulatory, contractual, and industry requirements. You will help promote consistent risk practices by providing guidance to stakeholders and contributing to awareness and continuous improvement initiatives.

The successful candidate will have experience in cyber security, information security, technology risk, IT audit, or a related discipline, together with a sound understanding of risk management principles and security controls. You should be comfortable interpreting technical information, assessing business impact, and communicating findings clearly to both technical and non-technical audiences. Strong analytical, organisational, and stakeholder management skills are essential, as is the ability to manage competing priorities and work collaboratively. Familiarity with recognised security and risk frameworks, such as ISO 27001, NIST, CIS Controls, or similar, would be advantageous. Relevant certifications in cyber security, audit, risk, or information security are desirable but not essential.

Read less
COMPETITIVE SALARY

Stirling, Scotland, United KingdomPermanent

Principal Cyber Security Risk Manager
Added 15/09/2026
Reference: kfrphkix4u41acztf2pr

We are seeking an experienced Principal Cyber Security Risk Manager to lead the development and continual improvement of... Read more

We are seeking an experienced Principal Cyber Security Risk Manager to lead the development and continual improvement of cyber security risk management across a complex organisation. In this senior role, you will provide expert advice to executives, technology leaders and business stakeholders, helping them understand cyber threats, make informed risk-based decisions and strengthen the organisation’s overall security posture. You will operate as a trusted authority on cyber risk, influencing strategy, governance and investment priorities across a broad range of services, systems and transformation programmes.

Your responsibilities will include establishing and maintaining cyber security risk frameworks, policies, standards and assessment methodologies. You will oversee the identification, analysis, treatment and reporting of information and cyber security risks, ensuring that key risks are clearly documented, appropriately owned and actively managed. You will lead complex risk assessments, review security controls and provide challenge and assurance across projects, suppliers, cloud services and operational environments. The role will also involve maintaining risk reporting for senior governance forums, monitoring risk appetite and tolerance, tracking remediation activity, and escalating significant or emerging concerns when required. You will contribute to incident preparedness, threat-informed decision-making, regulatory compliance and the continuous improvement of security governance.

To succeed, you will bring substantial experience in cyber security risk, governance, assurance or a closely related discipline, together with a strong understanding of security principles, control frameworks and risk management practices. Experience with recognised standards such as ISO 27001, NIST or CIS is desirable, as is knowledge of cloud security, third-party risk and modern technology environments. You will be an excellent communicator, able to translate complex technical issues into clear business impacts and practical recommendations. Strong influencing, stakeholder management, analytical and decision-making skills are essential, along with the credibility to challenge constructively at senior levels. Relevant professional qualifications in information security, risk management or audit are advantageous.

Read less
COMPETITIVE SALARY

Birmingham, England, United KingdomPermanent

logo Sustainability and design
talent Specialists
logo
  • +44(0)20 7422 7300
  • info@edenbrown.com

Navigation

  • About Us
  • Job Seekers
  • Employers
  • Contact us
  • News

Policies

  • Privacy Policy
  • Data Protection Queries
  • Terms of Use
  • Cookie Policy
  • Modern Slavery
  • Carbon Plan
  • Social Value Policy
  • ESG Strategy

Socials

  • Linkedin

Cookie Management

  • Manage Cookie Preferences

Cookie Management

  • Manage Cookie Preferences

COPYRIGHT © 2025 COMMUNITY RESOURCING LIMITED T/A EDEN BROWN BUILT ENVIRONMENT - PART OF NGAGE SPECIALIST RECRUITMENT LIMITED. ALL RIGHTS RESERVED. COMPANY REGISTERED IN ENGLAND AND WALES WITH COMPANY NUMBER 04123649.

  • Job Search
  • Job Seekers
    • Our Specialisms
      • Our Specialisms
      • Architecture and Design
      • Building Services
      • Commercial Fit Out
      • Sustainability
    • Timesheets
  • Employers
    • Our Specialisms
      • Our Specialisms
      • Architecture and Design
      • Building Services
      • Commercial Fit Out
      • Sustainability
    • Case Studies
  • About Us
    • Social Value
    • Work for Eden Brown
    • Media hub
  • News
  • Contact Us
Login
Register

Find your new role

Enter your details to access your account.

Trouble logging in?
Required for two factor authentication
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
ATTACH CV *
Your file must be a doc, docx or pdf. No larger than 5MB.

Apply for...

Added
COMPETITIVE SALARY

Your file must be a doc, docx or pdf. No larger than 5MB.
New cv path

Please refer to our Privacy Policy for details on how we use your data

Refer a friend


Please refer to our Privacy Policy for details on how we use your data

No saved jobs available

All your saved jobs are no longer available or you've already applied.

Create a job alert

for the following search criteria

Frequency :

Create an account

To receive personalised job alerts, please create an account below.

Already have an account? Log in

Let us know you agree to cookies

We use cookies to provide you with the best possible browsing experience on our website. You can find out more here.