IT Risk & Controls Analyst

Reference: 3c82j9p2ooz2cw1kxsq3

We are seeking an IT Risk & Controls Analyst to support the effective identification, assessment and management of technology-related risks across the organisation. This role will help strengthen the control environment by assessing whether IT processes, systems and activities are designed and operating effectively, while providing practical recommendations to address weaknesses and improve resilience.

Key responsibilities will include supporting risk and control assessments, maintaining risk and control documentation, and coordinating the review and testing of IT general controls, application controls and key technology processes. You will assist with internal and external audit activities, track remediation plans, validate evidence, and monitor outstanding actions through to completion. The role will also involve preparing clear reports and management information, escalating material issues appropriately, and contributing to the development of policies, procedures, control standards and risk awareness initiatives. You will work closely with technology, security, compliance, audit and business stakeholders to promote consistent risk management practices and support regulatory and assurance requirements.

The successful candidate will have experience in IT risk, controls, audit, compliance or a related technology governance function, with a sound understanding of control frameworks, risk assessment methodologies and audit principles. Familiarity with frameworks such as COBIT, ITIL, ISO 27001, NIST or similar would be advantageous. You should be confident reviewing evidence, analysing control gaps and translating technical information into concise business-focused conclusions. Strong communication, organisation and stakeholder management skills are essential, along with the ability to manage multiple priorities and work independently. Relevant qualifications in information technology, risk, audit, cybersecurity or a related discipline are desirable, as is experience using governance, risk and compliance tools or reporting platforms.

COMPETITIVE SALARY
Added 25/08/2026
Reference: 3c82j9p2ooz2cw1kxsq3

Other similar jobs

Business Analyst (Cyber Controls & Compliance) - Contract

Added 17/09/2026

We are seeking an experienced Business Analyst to support cyber controls and compliance activities on a contract basis. The successful candidate will work with cybersecurity, technology, risk, audit and business stakeholders to understand regulatory obligations, assess control effectiveness and help strengthen the organisation’s overall control environment. This role is suited to someone who can translate complex security and compliance requirements into practical, clearly documented processes and actionable improvements. Key responsibilities will include gathering and analysing business and control requirements; documenting current and future-state processes; mapping controls to relevant policies, standards and regulatory frameworks; and identifying gaps, risks, dependencies and opportunities...

Learn more

Cybersecurity Controls Analyst (SDLC/Deployment)

Added 11/08/2026

We are seeking a detail-oriented Cybersecurity Controls Analyst to join our dynamic team, focusing on the Software Development Life Cycle (SDLC) and deployment processes. In this role, you will be responsible for assessing and implementing cybersecurity controls throughout the development lifecycle, ensuring that security requirements are integrated into all phases from design to deployment. You will collaborate with cross-functional teams to identify potential vulnerabilities, assess risks, and develop strategies to mitigate them effectively. Your expertise will be crucial in conducting security assessments, audits, and compliance reviews to ensure adherence to organizational and regulatory standards. The ideal candidate will have a...

Learn more

Cyber Security Controls Tester (Contractor)

Added 11/09/2026

We are seeking an experienced Cyber Security Controls Tester to support the assessment, validation and continuous improvement of security controls across a complex technology environment. Working on a contract basis, you will help determine whether controls are appropriately designed, consistently implemented and operating effectively in line with internal policies, recognised security frameworks and applicable regulatory requirements. You will work closely with control owners, technology teams, risk specialists and internal stakeholders to gather evidence, clarify processes and communicate findings. Your responsibilities will include planning and executing control testing activities across areas such as access management, vulnerability management, change management, incident response,...

Learn more

Lead Software Engineer, Cyber Security Controls Automation

Added 02/09/2026

We are seeking a Lead Software Engineer, Cyber Security Controls Automation to design, build and lead the delivery of scalable solutions that strengthen security control compliance across a complex technology environment. You will work at the intersection of software engineering, cyber security, cloud platforms and governance, translating control requirements into reliable, automated capabilities that improve visibility, reduce operational risk and support continuous assurance. In this role, you will provide technical leadership across the full software development lifecycle, from discovery and architecture through development, testing, deployment and ongoing optimisation. You will develop automation for security control monitoring, evidence collection, exception management,...

Learn more

Cybersecurity Controls Testing Assistant Manager

Added 01/09/2026

We are seeking a Cybersecurity Controls Testing Assistant Manager to support the evaluation of information security controls across technology, business, and third-party environments. In this role, you will help assess whether controls are appropriately designed, implemented, and operating effectively against internal policies, recognised security frameworks, and applicable regulatory requirements. You will contribute to risk-focused testing plans, coordinate review activities, and provide clear, evidence-based conclusions to stakeholders. Key responsibilities include performing and reviewing control testing, documenting procedures and results, identifying control gaps, and assessing the impact of exceptions. You will work with control owners to obtain supporting evidence, challenge responses where...

Learn more

1st Line Security Controls Testing Manager

Added 26/08/2026

We are seeking a 1st Line Security Controls Testing Manager to lead the effective delivery of first-line security control testing across a complex and evolving environment. You will be responsible for establishing and maintaining a robust testing approach that provides clear assurance over the design, implementation and operating effectiveness of key information and cyber security controls. Working closely with control owners, risk teams, internal audit and technology stakeholders, you will help identify weaknesses, assess risk exposure and drive timely remediation. Your responsibilities will include developing risk-based testing plans; prioritising activities in line with regulatory, business and threat requirements; overseeing control...

Learn more

MD - Chief Controls Officer - Technology, Cyber & Resilience

Added 20/08/2026

We are seeking a dynamic and experienced professional for the role of Chief Controls Officer in the Technology, Cyber & Resilience sector. The successful candidate will be responsible for overseeing the development and implementation of robust control frameworks to ensure compliance with regulatory standards and internal policies. This role involves collaborating with various departments to assess and mitigate risks associated with technology and cyber operations, ensuring that resilience strategies are in place to protect organizational assets and data integrity. The Chief Controls Officer will lead a team dedicated to identifying control weaknesses and developing actionable plans to enhance operational effectiveness....

Learn more

Senior Data Scientist - (Privacy & Security Controls)

Added 20/08/2026

We are seeking a highly skilled Senior Data Scientist specializing in Privacy & Security Controls to join our dynamic team. In this role, you will lead the development and implementation of advanced analytical models to ensure data privacy and security across various platforms. You will be responsible for analyzing complex datasets, identifying vulnerabilities, and creating solutions that adhere to compliance regulations. Collaborating with cross-functional teams, you will help to design and enhance privacy and security features within our products while ensuring that data handling practices meet industry standards. The ideal candidate will possess a strong background in data science, machine...

Learn more

Senior Data Scientist - (Privacy & Security Controls)

Added 19/08/2026

We are seeking a highly skilled Senior Data Scientist specializing in Privacy & Security Controls to join our dynamic team. In this role, you will be responsible for developing and implementing advanced data analytics solutions that ensure the privacy and security of sensitive information. You will work closely with cross-functional teams to design data-driven strategies that mitigate risks, enhance compliance, and promote best practices in data governance. Your expertise will be pivotal in analyzing large datasets to identify vulnerabilities and recommend actionable insights that support organizational objectives. The ideal candidate will possess a deep understanding of data privacy regulations, security...

Learn more

Digital Product Manager - Cybersecurity, Controls & Compliance (hybrid/remote)

Added 27/07/2026

We are seeking a skilled Digital Product Manager specializing in Cybersecurity, Controls & Compliance to join our dynamic team in a hybrid/remote capacity. In this role, you will be responsible for leading the development and management of innovative digital products that enhance our security posture and ensure compliance with industry regulations. You will collaborate closely with cross-functional teams, including engineering, design, and compliance, to define product vision, strategy, and roadmap. Your expertise will help shape the direction of our cybersecurity initiatives and drive product improvements based on user feedback and market analysis. Key responsibilities include conducting market research to identify...

Learn more

Vice President, Enterprise Risk Management & Legal Entity Risk

Added 25/08/2026

We are seeking a Vice President, Enterprise Risk Management & Legal Entity Risk to provide strategic leadership across the enterprise risk framework and legal entity governance environment. This senior role will oversee the identification, assessment, monitoring and management of key risks, ensuring that risk practices support business objectives, regulatory expectations and sustainable growth. The successful candidate will serve as a trusted adviser to senior leaders and governance committees, providing clear, independent insight into the organisation’s risk profile and emerging exposures. Key responsibilities include leading the development and ongoing enhancement of the enterprise risk management framework, risk appetite statement, policies, standards...

Learn more

Technical Specialist (cyber related), Operational Risk and Resilience, R&CGI Operational Risk and Resilience Team - Insurance Directorate

Added 24/07/2026

We are seeking a highly skilled Technical Specialist with a strong focus on cyber-related issues to join our Operational Risk and Resilience Team within the Insurance Directorate. In this role, you will be responsible for identifying, assessing, and mitigating cyber risks that could impact the organization's operational resilience. You will work closely with cross-functional teams to develop and implement strategies aimed at enhancing the cybersecurity posture and ensuring compliance with relevant regulations and industry standards. Your expertise will be critical in conducting risk assessments, analyzing potential threats, and recommending appropriate risk management solutions. The ideal candidate will have a solid...

Learn more

Risk Manager - Tech & Cyber Risk

Added 22/07/2026

We are seeking a skilled Risk Manager specializing in Tech & Cyber Risk to join our dynamic team. In this role, you will be responsible for identifying, assessing, and mitigating risks associated with technology and cybersecurity within the organization. You will develop and implement risk management strategies to safeguard sensitive data and maintain compliance with industry regulations. Collaborating closely with IT, legal, and operational teams, you will conduct thorough risk assessments, create risk reports, and present findings to senior management while ensuring that risk policies are upheld and communicated effectively across the organization. To excel in this role, you will...

Learn more

Cyber Risk Analyst

Added 17/09/2026

We are seeking a Cyber Risk Analyst to support the identification, assessment and management of information security and technology risks across the organisation. The successful candidate will help strengthen the cyber risk framework, improve visibility of the threat landscape and provide clear, practical advice to stakeholders. This role will work closely with technology, security, compliance, audit and business teams to ensure that cyber risks are understood, appropriately prioritised and managed in line with internal policies and regulatory expectations. Key responsibilities will include maintaining risk registers, conducting cyber and information security risk assessments, reviewing control effectiveness and supporting the remediation of...

Learn more

Cyber Risk Analyst

Added 17/09/2026

We are seeking a Cyber Risk Analyst to support the identification, assessment, and management of information and cyber security risks across the organisation. In this role, you will work with technology, business, and security stakeholders to evaluate risks, recommend appropriate controls, and help strengthen the overall cyber risk management framework. You will contribute to risk assessments for systems, applications, suppliers, projects, and business processes, ensuring that security considerations are embedded throughout the organisation. Key responsibilities will include maintaining cyber risk registers, analysing threats and vulnerabilities, reviewing control effectiveness, and tracking remediation activities through to completion. You will support the development...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.