We are seeking a Cyber Portfolio Governance Analyst to support the effective planning, oversight and delivery of a... Read more
We are seeking a Cyber Portfolio Governance Analyst to support the effective planning, oversight and delivery of a portfolio of cybersecurity initiatives. This role will provide governance coordination across multiple projects and programmes, ensuring that activities align with strategic priorities, approved investment cases, risk appetite and regulatory expectations. You will work with cybersecurity, technology, risk, finance and business stakeholders to maintain clear visibility of portfolio performance and support informed decision-making.
Key responsibilities will include maintaining portfolio governance frameworks, standards, processes and reporting tools; coordinating governance forums, preparing agendas and producing accurate management information; tracking milestones, budgets, benefits, dependencies, risks, issues and resource requirements; and ensuring that actions and decisions are recorded, communicated and followed through. You will support the development and review of investment proposals, business cases, delivery roadmaps and portfolio plans, while helping to identify emerging pressures, delivery conflicts and opportunities for improvement. The role will also involve monitoring compliance with governance controls and contributing to assurance activity, audits and continuous improvement initiatives.
The successful candidate will have experience in portfolio, programme, project or cybersecurity governance, preferably within a complex or regulated environment. You should be confident working with senior stakeholders and translating detailed information into concise, meaningful reports and recommendations. Strong organisational, analytical and communication skills are essential, along with the ability to manage competing priorities, challenge constructively and work collaboratively across diverse teams. Experience with portfolio management methodologies, risk and issue management, financial tracking, benefits realisation and reporting tools will be highly valued. A sound understanding of cybersecurity concepts, technology delivery lifecycles and common governance practices is desirable. This is an opportunity to contribute to a structured, transparent and outcome-focused approach to cyber investment and delivery.
Read lessDerby, England, United KingdomPermanent
We are seeking an Advisory Engineer, AI Governance and Product Security to help build safe, secure and trustworthy... Read more
We are seeking an Advisory Engineer, AI Governance and Product Security to help build safe, secure and trustworthy artificial intelligence products. This role will provide practical technical guidance across the product lifecycle, from early research and design through deployment, monitoring and continuous improvement. You will work closely with software engineers, product managers, data scientists, security specialists, legal advisers and risk teams to translate emerging AI governance expectations into clear, workable engineering practices.
Your responsibilities will include assessing AI systems for security, privacy, safety and regulatory risks; developing threat models and control requirements; advising on secure architecture, data protection, access management and model integration; and supporting the design of testing, monitoring and incident response processes. You will help establish standards for responsible AI development, including documentation, risk assessments, human oversight, transparency and lifecycle governance. The role will also involve reviewing technical designs, conducting assurance activities, tracking remediation plans and communicating complex risks and recommendations to both technical and non-technical stakeholders. You may contribute to internal policies, playbooks, training materials and governance forums, while staying informed about evolving threats, standards and legislation affecting AI-enabled products.
The successful candidate will have experience in product security, application security, platform engineering, risk management or a related technical discipline, together with a strong understanding of AI and machine learning systems. You should be comfortable analysing complex systems, identifying practical controls and influencing delivery teams without relying solely on formal authority. Experience with secure software development, cloud environments, privacy engineering, model evaluation, adversarial testing or AI assurance is highly desirable. Strong written and verbal communication skills are essential, as is the ability to balance innovation, usability and risk. Relevant certifications or equivalent professional experience are welcome. Above all, you will bring sound judgement, curiosity and a collaborative approach to helping teams deliver secure, compliant and responsible AI products.
Read lessFarnborough, England, United KingdomPermanent
We are seeking an experienced Information and Security Governance Lead to strengthen organisational resilience, information assurance and security... Read more
We are seeking an experienced Information and Security Governance Lead to strengthen organisational resilience, information assurance and security oversight. This role will provide strategic direction across information security governance, risk management, compliance and policy, ensuring that appropriate controls are embedded across business operations and technology environments. You will work closely with senior stakeholders, technology teams, risk specialists and operational leaders to promote a strong, practical and risk-aware security culture.
Key responsibilities will include developing, maintaining and continuously improving information security policies, standards, frameworks and governance processes. You will lead the identification, assessment and treatment of information and cyber security risks, oversee security assurance activities, and monitor the effectiveness of controls through reporting, metrics and review programmes. The role will also coordinate responses to audits, regulatory requirements, customer assurance requests and other compliance obligations. You will support the management of security incidents, risks and exceptions, ensuring that actions are appropriately documented, prioritised and followed through to completion. In addition, you will contribute to business continuity, data protection, supplier assurance and security-by-design initiatives.
The successful candidate will have substantial experience in information security governance, risk, compliance or assurance, with a strong understanding of recognised security frameworks and relevant regulatory expectations. Professional qualifications in information security, risk management, audit or a related discipline are desirable. You should be confident communicating complex security matters to both technical and non-technical audiences, influencing stakeholders at all levels and producing clear, concise reports for governance forums and senior decision-makers. Strong analytical, organisational and relationship-building skills are essential, along with the ability to manage competing priorities and deliver sustainable improvements in a changing environment. Experience leading governance programmes, managing third-party risk and embedding security controls across large or complex environments would be advantageous.
Read lessDunstable, England, United KingdomPermanent
We are seeking a Digital, Cyber Governance Assistant Manager to support the development, implementation and continuous improvement of... Read more
We are seeking a Digital, Cyber Governance Assistant Manager to support the development, implementation and continuous improvement of governance frameworks across digital services, information security and cyber risk. Working with stakeholders across technology, risk, compliance and business operations, you will help ensure that digital and cyber activities are managed consistently, transparently and in line with relevant policies, regulatory expectations and industry standards.
Your responsibilities will include maintaining governance policies, standards, procedures and control documentation; coordinating governance forums, agendas, minutes and action tracking; and preparing clear reports, dashboards and management information on cyber risk, compliance, incidents, controls and remediation progress. You will support risk and control assessments, audit and regulatory reviews, third-party assurance activities, policy exceptions and the monitoring of agreed actions. The role will also involve reviewing new and changing digital initiatives, helping to identify governance requirements early, and providing constructive guidance to project and service teams.
The successful candidate will have experience in digital governance, cyber security, technology risk, information security, compliance or a related discipline, together with a sound understanding of governance principles, risk management and control frameworks. Familiarity with standards such as ISO 27001, NIST, COBIT or equivalent frameworks would be advantageous. You will be highly organised, analytical and confident working with stakeholders at different levels. Strong written and verbal communication skills are essential, as is the ability to translate technical or regulatory information into clear, practical recommendations. Experience managing multiple priorities, challenging constructively and working collaboratively in a changing environment will enable you to succeed in this role.
Read lessBirmingham, England, United KingdomPermanent
We are seeking an experienced Head of Security Policy to lead the development, implementation and continuous improvement of... Read more
We are seeking an experienced Head of Security Policy to lead the development, implementation and continuous improvement of a comprehensive security policy framework. This role will provide strategic direction across information security, cyber risk, physical security and resilience, ensuring that policies support business objectives while meeting relevant legal, regulatory and industry requirements. You will act as a trusted adviser to senior leaders, translating complex security risks into clear, practical and proportionate guidance.
Your responsibilities will include owning the security policy lifecycle, from research and drafting through consultation, approval, communication and periodic review. You will establish policy standards, procedures and control requirements, monitor adoption, and identify opportunities to strengthen governance. Working closely with technology, risk, legal, compliance, audit, human resources and operational teams, you will ensure that security expectations are understood and embedded across the organisation. You will also oversee policy exceptions, risk acceptance processes and assurance reporting, providing clear updates to leadership committees and other stakeholders. The role may include supporting incident reviews, regulatory engagements, audits and business continuity exercises where policy expertise is required.
You will bring substantial experience in security governance, policy development, risk management or a related discipline, ideally within a complex or highly regulated environment. A strong understanding of recognised security frameworks and data protection principles is essential, along with the ability to interpret changing legislation, emerging threats and industry practice. You should be an excellent communicator and influencer, capable of engaging confidently with both technical specialists and senior decision-makers. Strong analytical, writing and organisational skills are required, as is a pragmatic approach to balancing security, usability and commercial priorities. Relevant professional qualifications in information security, risk, audit or governance are desirable. This is an opportunity to shape security culture and policy at a strategic level while enabling effective, resilient and well-governed operations.
Read lessNewcastle upon Tyne, England, United KingdomPermanent
We are seeking a Data Privacy & AI Governance Senior Analyst to support the development, implementation and continuous... Read more
We are seeking a Data Privacy & AI Governance Senior Analyst to support the development, implementation and continuous improvement of privacy and responsible artificial intelligence governance frameworks. This role will help ensure that data use and AI-enabled activities are managed lawfully, ethically, transparently and in line with applicable regulatory requirements. You will work closely with legal, risk, information security, technology, procurement and business teams to provide practical guidance across the organisation.
Key responsibilities will include maintaining privacy and AI governance policies, standards, procedures and supporting documentation; conducting or coordinating data protection impact assessments, AI impact assessments and privacy reviews; advising on data collection, retention, sharing, international transfers and the use of automated decision-making; and supporting the assessment and monitoring of third-party suppliers. You will help maintain inventories and registers, including records of processing activities, AI use cases, data assets, risks and remediation actions. The role will also contribute to incident response, regulatory enquiries, audit activity, control testing and the delivery of privacy and responsible AI training and awareness programmes.
The successful candidate will have experience in data privacy, information governance, technology risk, AI governance or a related discipline, with a strong understanding of relevant privacy legislation and emerging AI regulation. Experience translating legal or regulatory requirements into operational controls, conducting risk assessments and working with cross-functional stakeholders is essential. Familiarity with frameworks such as GDPR, ISO 27001, NIST AI Risk Management Framework or equivalent standards would be advantageous. Strong analytical, organisational and communication skills are required, together with the ability to manage competing priorities, explain complex issues clearly and influence stakeholders at different levels. A relevant professional qualification or certification in privacy, risk, compliance, data protection or AI governance would be beneficial.
Read lessLondon, England, United KingdomPermanent
We are seeking an experienced Data Privacy Manager to lead and strengthen privacy governance across a complex, data-driven... Read more
We are seeking an experienced Data Privacy Manager to lead and strengthen privacy governance across a complex, data-driven environment. This role will provide expert guidance on data protection requirements, support responsible use of personal information, and help embed privacy by design across products, services, systems, and business processes. You will work closely with legal, information security, technology, risk, compliance, and operational teams to ensure privacy obligations are understood and consistently applied.
Key responsibilities will include maintaining and improving the privacy management framework; advising on data protection impact assessments, records of processing activities, data sharing arrangements, retention schedules, and international data transfers; and reviewing new initiatives, contracts, technologies, and third-party relationships from a privacy perspective. You will monitor regulatory developments, assess their implications, and translate requirements into practical policies, procedures, controls, and training. The role will also oversee responses to data subject rights requests, support the investigation and management of personal data incidents, maintain appropriate documentation, and prepare clear reports for senior stakeholders and governance forums.
To succeed, you will have substantial experience in data privacy, data protection, information governance, or a closely related field, with a strong understanding of applicable privacy laws and regulatory expectations. Relevant professional qualifications or certifications are desirable. You will be confident interpreting complex requirements, managing competing priorities, and influencing stakeholders at all levels without relying solely on formal authority. Strong written and verbal communication, sound judgement, attention to detail, and a pragmatic, solutions-focused approach are essential. Experience working with privacy technology, risk management frameworks, audits, third-party assurance, or international operations would be advantageous. This is an opportunity to make a meaningful contribution to ethical data use while helping an organisation maintain trust, transparency, and regulatory compliance.
Read lessLondon, England, United KingdomPermanent
We are seeking a dedicated Cyber Governance Specialist to enhance our cybersecurity posture by ensuring compliance with policies,... Read more
We are seeking a dedicated Cyber Governance Specialist to enhance our cybersecurity posture by ensuring compliance with policies, regulations, and industry standards. In this role, you will be responsible for developing, implementing, and maintaining cybersecurity governance frameworks that align with organizational objectives. You will conduct regular audits and risk assessments to identify vulnerabilities and recommend appropriate mitigation strategies. Collaborating with cross-functional teams, you will ensure that cybersecurity policies are effectively communicated and enforced throughout the organization.
The ideal candidate will possess a strong understanding of cybersecurity principles, regulatory requirements, and risk management practices. You will be tasked with monitoring compliance with data protection laws and industry standards, preparing reports for senior management, and providing guidance on best practices in cybersecurity governance. Additionally, you will lead training sessions to enhance awareness of cybersecurity policies among employees, fostering a culture of security within the organization.
To be successful in this role, you should have a bachelor's degree in Cybersecurity, Information Technology, or a related field, along with relevant certifications such as CISSP, CISM, or ISO 27001. Strong analytical and problem-solving skills, combined with excellent communication abilities, are essential. A proactive approach to identifying potential cybersecurity risks and the ability to work independently and as part of a team will be key to your success. Join us in making a significant impact on our cybersecurity governance initiatives!
Read lessAberdeen, Scotland, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria