Cyber Risk and Assurance Specialist

Reference: s4s417ctqajizwb0pi8z

We are seeking a Cyber Risk and Assurance Specialist to support the identification, assessment and management of cyber security risks across a complex technology and business environment. This role will help strengthen security governance, provide assurance over key controls and promote practical, risk-based improvements that protect information, systems and services. You will work closely with technology, operational risk, compliance, audit and business stakeholders to ensure cyber risks are understood, appropriately documented and managed within agreed tolerance levels.

Key responsibilities will include maintaining cyber risk and control registers; conducting risk assessments for projects, suppliers, systems and emerging technologies; reviewing security policies, standards and procedures; and monitoring remediation plans through to completion. You will coordinate and contribute to assurance activities, including control testing, internal reviews, regulatory assessments and audit engagements. The role will also involve analysing security metrics, preparing clear reports for senior stakeholders, supporting risk acceptance decisions and advising teams on appropriate security controls. You will help track changes in the threat landscape and translate relevant developments into actionable recommendations.

The successful candidate will have experience in cyber security risk, information assurance, technology risk, IT audit or a related discipline, together with a sound understanding of security frameworks and control environments. Familiarity with standards such as ISO 27001, NIST, CIS Controls or COBIT is desirable, as is experience of third-party risk management, cloud security or regulatory compliance. Strong analytical, communication and influencing skills are essential, along with the ability to explain technical and risk concepts to both specialist and non-specialist audiences. Professional certifications such as CISA, CRISC, CISSP, ISO 27001 Lead Implementer or equivalent would be advantageous. You should be organised, pragmatic and confident working independently while collaborating effectively across multiple teams and priorities.

COMPETITIVE SALARY
Added 04/09/2026
Reference: s4s417ctqajizwb0pi8z

Cyber Risk and Assurance Specialist

Luton, England, United Kingdom Permanent Information Assurance

Other similar jobs

Technical Specialist (cyber related), Operational Risk and Resilience, R&CGI Operational Risk and Resilience Team - Insurance Directorate

Added 24/07/2026

We are seeking a highly skilled Technical Specialist with a strong focus on cyber-related issues to join our Operational Risk and Resilience Team within the Insurance Directorate. In this role, you will be responsible for identifying, assessing, and mitigating cyber risks that could impact the organization's operational resilience. You will work closely with cross-functional teams to develop and implement strategies aimed at enhancing the cybersecurity posture and ensuring compliance with relevant regulations and industry standards. Your expertise will be critical in conducting risk assessments, analyzing potential threats, and recommending appropriate risk management solutions. The ideal candidate will have a solid...

Learn more

Senior Security Assurance Specialist , AWS Compliance and Security Assurance EMEA

Added 19/08/2026

We are seeking a Senior Security Assurance Specialist to join our team, focusing on compliance and security assurance across the EMEA region. In this role, you will be responsible for leading security assessments, audits, and compliance initiatives to ensure alignment with industry standards and regulatory requirements. You will collaborate with various stakeholders, including engineering, product management, and legal teams, to develop and implement security policies, procedures, and best practices. Your expertise will be crucial in identifying vulnerabilities and recommending effective mitigation strategies to enhance security posture. The ideal candidate will have a strong background in information security, risk management, and...

Learn more

Security Assurance Specialist , AWS Compliance and Security Assurance EMEA

Added 19/08/2026

We are seeking a detail-oriented Security Assurance Specialist to join our dynamic team focused on compliance and security assurance within the EMEA region. In this role, you will be responsible for evaluating and implementing security measures to protect sensitive information and ensure compliance with industry regulations. Your expertise will be crucial in assessing risks, conducting audits, and developing strategies to enhance the security posture of our cloud services. You will collaborate with cross-functional teams to identify vulnerabilities and recommend solutions that align with best practices and compliance requirements. The ideal candidate will possess a strong understanding of cloud security frameworks...

Learn more

Junior Cyber Risk and Assurance Analyst

Added 01/09/2026

We are seeking a motivated Junior Cyber Risk and Assurance Analyst to support the development, maintenance and continuous improvement of cyber security risk and assurance activities. This is an excellent opportunity for someone at the early stage of their cyber security career who is keen to build practical experience across governance, risk management, compliance and security assurance. You will work with colleagues across technology, risk and business functions to help identify, assess and manage cyber security risks in a structured and consistent way. Key responsibilities will include supporting cyber risk assessments, maintaining risk registers and action plans, and assisting with...

Learn more

Head of Operational Information Security, Risk and Assurance

Added 04/09/2026

We are seeking an experienced Head of Operational Information Security, Risk and Assurance to lead the development and delivery of a robust operational security, risk and assurance function. This is a senior leadership role with responsibility for protecting information assets, strengthening resilience and ensuring that security practices support organisational objectives. You will provide clear direction across information security operations, technology risk, governance, compliance and assurance, while promoting a culture of shared accountability for security. You will oversee the identification, assessment and treatment of information and technology risks, ensuring that effective controls are designed, implemented and continuously improved. Responsibilities will include...

Learn more

Certification and Assurance - Senior Security/Technology Risk Analyst

Added 20/08/2026

We are seeking a skilled and experienced Senior Security/Technology Risk Analyst to join our dynamic team. In this role, you will be responsible for identifying, assessing, and managing risks associated with technology and security across various platforms. You will conduct thorough risk assessments, ensuring compliance with regulatory requirements and internal policies. This includes evaluating the effectiveness of existing security controls and making recommendations for enhancements to safeguard our systems and data. You will also collaborate with cross-functional teams to implement security best practices and promote a culture of risk awareness within the organization. The ideal candidate will possess a deep...

Learn more

Certification and Assurance - Senior Security/Technology Risk Analyst

Added 13/08/2026

We are seeking a highly skilled Senior Security/Technology Risk Analyst to join our dynamic team. In this role, you will be responsible for assessing and mitigating security risks associated with technology and information systems. You will conduct thorough risk assessments, develop risk management strategies, and ensure compliance with industry standards and regulations. The ideal candidate will possess a deep understanding of security frameworks and have experience in implementing security controls across diverse environments. Your duties will include collaborating with cross-functional teams to identify and evaluate security vulnerabilities, conducting audits and assessments, and providing expert guidance on best practices. You will...

Learn more

Security Assurance Solutions Architect, AWS Security Assurance Services

Added 09/09/2026

We are seeking a Security Assurance Solutions Architect to help customers design, implement and validate secure solutions across cloud environments. In this role, you will act as a trusted security advisor, translating complex assurance requirements into practical technical architectures, controls and implementation plans. You will work with security, risk, compliance, engineering and business stakeholders to understand their objectives and guide them towards resilient, compliant and scalable outcomes. Key responsibilities include developing security assurance strategies; mapping regulatory, contractual and industry requirements to technical and organisational controls; reviewing architectures and identifying security gaps; and recommending pragmatic remediation approaches. You will support customer...

Learn more

Security Assurance Solutions Architect, AWS Security Assurance Services

Added 09/09/2026

We are seeking a Security Assurance Solutions Architect to help customers design, implement, and operate secure, resilient technology environments. In this role, you will serve as a trusted security advisor, translating complex regulatory, risk, and compliance requirements into practical technical solutions. You will work closely with security, engineering, architecture, risk, and compliance teams to develop assurance strategies that support business objectives while maintaining strong security controls. Your responsibilities will include assessing customer environments, identifying security and compliance gaps, and recommending improvements across governance, identity and access management, data protection, infrastructure security, monitoring, incident response, and resilience. You will create and...

Learn more

Security Assurance Manager, Security Assurance

Added 19/08/2026

We are seeking a dedicated Security Assurance Manager to oversee and enhance our security assurance framework. In this pivotal role, you will be responsible for identifying, assessing, and mitigating security risks across all operations. You will lead a team of security professionals in conducting thorough security assessments, audits, and risk analyses to ensure compliance with industry standards and regulatory requirements. Your expertise will be instrumental in developing and maintaining security policies, procedures, and best practices that safeguard our assets and data integrity. As a Security Assurance Manager, you will collaborate with cross-functional teams to implement effective security controls and provide...

Learn more

Cyber Assurance & Risk Analyst

Added 24/08/2026

Are you passionate about safeguarding digital assets and ensuring robust cyber risk management? We are seeking a skilled Cyber Assurance & Risk Analyst to join our dynamic team. In this role, you will be responsible for assessing and enhancing the organisation's cybersecurity posture by identifying risks, developing mitigation strategies, and ensuring compliance with relevant frameworks and standards. You will collaborate closely with IT, operations, and compliance teams to conduct risk assessments, support internal and external audits, and monitor the effectiveness of security controls. Your key duties will include evaluating existing information security policies, recommending improvements, and assisting with the implementation...

Learn more

Information Security Governance, Risk, and Compliance (GRC) Specialist

Added 09/09/2026

An opportunity is available for an Information Security Governance, Risk, and Compliance (GRC) Specialist to support the development, implementation, and continuous improvement of information security governance and risk management practices. The successful candidate will help ensure that security policies, controls, and processes align with business objectives, regulatory obligations, and recognised industry frameworks. This role will work closely with technology, operational, legal, privacy, and business stakeholders to promote a consistent and effective approach to managing information security risk. Key responsibilities will include maintaining information security policies, standards, procedures, and control documentation; coordinating risk assessments and tracking remediation activities; supporting internal and...

Learn more

Information Security Governance, Risk, and Compliance (GRC) Specialist

Added 18/08/2026

We are seeking a dedicated Information Security Governance, Risk, and Compliance (GRC) Specialist to join our team. In this role, you will be responsible for developing and maintaining the organization's information security policies and procedures, ensuring compliance with applicable regulations and standards. You will conduct risk assessments, identify vulnerabilities, and implement effective mitigation strategies to protect sensitive data. Collaborating with cross-functional teams, you will lead initiatives to enhance the organization’s overall security posture and ensure that all security measures align with business objectives. Your expertise will be crucial in conducting regular audits and assessments to evaluate the effectiveness of current...

Learn more

Head of Security Standards, Risk & Assurance

Added 02/09/2026

We are seeking an experienced Head of Security Standards, Risk & Assurance to lead the development and continuous improvement of security governance, risk management and assurance activities across a complex organisation. This is a senior role responsible for establishing clear security standards, strengthening risk-based decision-making and providing confidence that critical services, systems and information are protected effectively. You will work closely with technology, business, legal, compliance, audit and operational teams to embed proportionate, practical and measurable security controls. Your responsibilities will include owning the security standards and control framework; maintaining policies, principles and guidance aligned with recognised industry practices and...

Learn more

Risk Manager - Tech & Cyber Risk

Added 22/07/2026

We are seeking a skilled Risk Manager specializing in Tech & Cyber Risk to join our dynamic team. In this role, you will be responsible for identifying, assessing, and mitigating risks associated with technology and cybersecurity within the organization. You will develop and implement risk management strategies to safeguard sensitive data and maintain compliance with industry regulations. Collaborating closely with IT, legal, and operational teams, you will conduct thorough risk assessments, create risk reports, and present findings to senior management while ensuring that risk policies are upheld and communicated effectively across the organization. To excel in this role, you will...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.