Make yourself visible and let companies apply to you.
Roles
Risk & Compliance Jobs
Overview
Looking for top Risk & Compliance jobs? Discover the latest opportunities in risk management, regulatory compliance, and corporate governance on Haystack. Whether you're an experienced compliance officer or just starting your career, our curated listings connect you with leading employers seeking skilled professionals to navigate today’s complex regulatory landscape. Start your search now and find your ideal Risk & Compliance role!
Senior Tax Manager
BDO UK
Multiple locations
Hybrid
Senior
Private salary
RECENTLY POSTED
TECH-AGNOSTIC ROLE

Ideas | People | Trust

We’re BDO. An accountancy and business advisory firm, providing the advice and solutions businesses need to navigate today’s changing world.

Our clients are Britain’s economic engine – ambitious, entrepreneurially-spirited and high‑growth businesses that fuel the economy - and the owners and management teams that lead them.

We’ll broaden your horizons

BDO’s Business Tax practice sits at the heart of our Tax function and plays an important role in the wider business.  Our team works collaboratively with others across BDO, offering clients in the UK and overseas expert advice and solutions that help them overcome their challenges.  If you’re looking for exposure and the chance to make an impact, you’re looking in the right place.

Tax is a dynamic, ever-changing industry.  As our clients’ needs and the regulatory environment evolve, you’ll encounter new problems to solve and new opportunities for growth. You’ll be advising clients on their high-profile M&A activity, ensuring your clients’ tax compliance affairs are in order and enjoying variety as well as stretch in your role.

BDO supports all kinds of different businesses in different sectors across the UK and around the world.  You’ll be providing Tax Compliance & Advisory services to scale-ups, to private businesses and to PE-backed groups.  Each of our clients has different needs and in applying your expertise in different contexts, you’ll develop your skills and gain valuable experience that will serve you throughout your career.

We’ll help you succeed

Our clients trust us because of the quality of our advice.  That quality grows from a thorough understanding of their business, and that understanding comes from working closely with clients and building long-lasting relationships.

You’ll be someone who can work pro-actively, managing your own tasks, but you’ll also be confident collaborating with others, communicating regularly with peers, Directors, and BDO’s Partners to enable us to serve our clients effectively.  You’ll be encouraged and supported to identify and develop new business opportunities, both with existing clients and prospects, contributing to the growth of the team and enhancing delivery to our clients . We are looking for someone with;

  • An in depth, up to date knowledge of taxation with experience of advising entrepreneurs, owner-managed businesses & PE-backed groups.
  • Experience of advising on M&A transactions (e.g. tax structuring and/or due diligence, buy and sell-side).
  • Experience of managing a portfolio of clients including control of client take on and engagement, billings, and identification of opportunities to improve recoveries, together with cash collection.
  • Ability to provide Corporation Tax Compliance and Advisory services to a wide range of clients using resource from a shared service team or via technology tools.
  • An active interest in developing the team, both technically and commercially, through effective delegation and acting as a role model.
  • An understanding of potential risks to the Firm in relation to the Firm’s quality control procedures.
  • Experience of leading complex projects and dealing with complex tax issues.
  • Educated to degree level and/or CTA and/or ACA qualified or equivalent.

You’ll also be able to be yourself; we’ll recognise and value you for who you are and celebrate and reward your contributions to the business.  We’re committed to agile working, and we offer everyone the opportunity to work in ways that suit them, their teams, and the task in hand.

At BDO, we’ll help you achieve your personal goals and career ambitions, and we have programmes, resources, and frameworks that provide clarity and structure around career development.

We’re in it together

Mutual support and respect is one of BDO’s core values and we’re proud of our distinctive, people-centred culture.  From informal success conversations to formal mentoring and coaching, we’ll support you at every stage in your career, whatever your personal and professional needs.

We can provide the best support for our clients and people when we’re working side by side.  Our agile working framework helps us stay connected, bringing teams together where and when it counts so they can share ideas and help one another.  At BDO, you’ll always have access to the people and resources you need to do your best work.

We know that collaboration is the key to creating value for our clients and satisfying experiences at work, so we’ve invested in state-of-the-art collaboration spaces in our offices.  BDO’s people represent a wealth of knowledge and expertise, and we’ll encourage you to build your network, work alongside others, and share your skills and experiences.  With a range of multidisciplinary events and dedicated resources, you’ll never stop learning at BDO.

We’re looking forward to the future

At BDO, we help entrepreneurial businesses to succeed, fuelling the UK economy. Our success is powered by our people, which is why we’re always finding new ways to invest in them. Across 17 UK locations, we are 6,500 unique minds coming together to help our clients reach their ambitions.

We’ve got a clear purpose, and we’re confident in our future, because we’re adapting and evolving to build on our strengths, ensuring we continue to find the right combination of global reach, integrity and expertise. We shape the future together with openness and clarity, because we believe in empowering people to think creatively about how we can do things better.

Share Plans & Incentives Tax Manager
BDO UK
Multiple locations
Remote or hybrid
Mid - Senior
Private salary
RECENTLY POSTED
TECH-AGNOSTIC ROLE

Ideas | People | Trust

We’re BDO. An accountancy and business advisory firm, providing the advice and solutions entrepreneurial organisations need to navigate today’s changing world.

We work with the companies that are Britain’s economic engine – ambitious, entrepreneurially-spirited and high‑growth businesses that fuel the economy - and directly advise the owners and management teams that lead them.

We’ll broaden your horizons

Working, achieving, and thriving together, our Tax team move with every challenge. Friendly, driven and diverse, they service our clients across the country and around the world. By providing expertise in many different specialist areas of tax, they collaborate across BDO to deliver wider business solutions. From meeting clients’ evolving business needs to managing changes to legislation, there are always fresh challenges to face in the Tax team. If you’re after a career that will keep you on your toes, we’ll give you the autonomy to drive your career forward.

Global Employer Services help companies and individuals moving countries and assist with any tax implications that occur in the move. Working with a broad client base, from start-ups to multinationals who are often moving abroad for the first time, the team work with companies as a whole and with individual employees to help them with some of the biggest decisions of their lives.

That means you’ll need strong people skills so you can build relationships defined by trust. You’ll be part of growing tight-knit team with an emphasis on assigning work that broadens your capabilities. Combined with the direct access you’ll have to partners on a day-to-day basis, this is your chance to become an expert and build a career based on what you’re good at and what you find interesting.

We’ll help you succeed

Leading organisations trust us because of the quality of our advice.  That quality grows from a thorough understanding of their business, and that understanding comes from working closely with them and building long-lasting relationships.

You’ll be someone who is both comfortable working pro-actively and managing your own tasks, as well as confident collaborating with others and communicating regularly with senior managers, directors, and BDO’s partners to help businesses effectively. You’ll be encouraged to identify and draw attention to opportunities for enhancing our delivery and providing additional services to organisations we work with.

You will be a key member of the Global Employer Services group, this role will provide reward and share schemes services for a wide range of clients. You will be responsible for assisting Directors & Partners in providing Tax compliance and advisory services to a wide range of clients.

The primary responsibility will be to deal with all matters relating to the management of a portfolio of existing clients and assist with the development of targets in order to ensure the continued growth of the business. You will also provide assistance to senior members of staff in both client work and in the management of the group, as appropriate.

We’re looking for someone with:

  • Ability to advise on the tax treatment of share options and other forms of employee share ownership
  • An in depth knowledge of EMI, ESS and knowledge of reward tax and related areas such as employment, NIC and capital gains tax etc
  • Expertise on split interest, freezer and nil paid arrangements
  • Experience in the preparation of share valuations and liaison with HMRC
  • Staff management and mentoring experience
  • Awareness of accounting, employment law and company law implications of share incentives
  • Experience of dealing direct with clients including agreement of fees
  • Educated to degree level (LLB preferred), and/or CTA and/or ATT/ACA qualified or equivalent

You’ll be able to be yourself; we’ll recognise and value you for who you are and celebrate and reward your contributions to the business.  We’re committed to agile working, and we offer every colleague the opportunity to work in ways that suit you, your teams, and the task at hand.

At BDO, we’ll help you achieve your personal goals and career ambitions, and we have programmes, resources, and frameworks that provide clarity and structure around career development.

We’re in it together

Mutual support and respect is one of BDO’s core values and we’re proud of our distinctive, people-centred culture.  From informal success conversations to formal mentoring and coaching, we’ll support you at every stage in your career, whatever your personal and professional needs.

Our agile working framework helps us stay connected, bringing teams together where and when it counts so they can share ideas and help one another.  At BDO, you’ll always have access to the people and resources you need to do your best work.

We know that collaboration is the key to creating value for the companies we work with and satisfying experiences for our colleagues, so we’ve invested in state-of-the-art collaboration spaces in our offices.  BDO’s people represent a wealth of knowledge and expertise, and we’ll encourage you to build your network, work alongside others, and share your skills and experiences.  With a range of multidisciplinary events and dedicated resources, you’ll never stop learning at BDO.

We’re looking forward to the future

At BDO, we help entrepreneurial businesses to succeed, fuelling the UK economy.

Our success is powered by our people, which is why we’re always finding new ways to invest in you. Across the UK thousands of unique minds continue to come together to help companies we work with to achieve their ambitions

We’ve got a clear purpose, and we’re confident in our future, because we’re adapting and evolving to build on our strengths, ensuring we continue to find the right combination of global reach, integrity and expertise. We shape the future together with openness and clarity, because we believe in empowering people to think creatively about how we can do things better.

Risk Manager - Nuclear
Frontier Resourcing Ltd
Manchester
Hybrid
Mid - Senior
Private salary
RECENTLY POSTED
TECH-AGNOSTIC ROLE

Our client is seeking a Project Risk Manager to join their expanding Controls & Performance team. The business has seen rapid growth and is delivering a range of major energy transition and natural resource projects across the UK.

You’ll work closely with project delivery teams, helping to identify, assess, and manage risk across high-profile programmes. This is an excellent opportunity to join a forward-thinking team, collaborate with industry experts, and play a key role in delivering successful project outcomes.?

Hybrid working arrangements (3 days a week client site).

Key Responsibilities

  • Develop and implement risk management frameworks tailored to client needs.
  • Facilitate risk workshops with project and technical stakeholders.
  • Maintain risk registers and ensure data quality and consistency.
  • Support development and implementation of mitigation strategies.
  • Conduct Quantitative Risk Assessments (QRA) for cost and schedule.
  • Produce clear risk reports and dashboards using Excel, PowerPoint, and Power BI.
  • Collaborate with project controls teams to align risk, schedule, and cost information.
  • Engage with supply chain partners to assess third-party risks.

Skills & Experience

  • Proven experience managing project risk within major programmes.
  • Knowledge of risk standards (ISO31000, APM, Orange Book, IPA).
  • Experience using risk management tools and QRA techniques (Monte Carlo).
  • Understanding of project controls functions and their integration with risk.
  • Strong communication, analytical, and stakeholder management skills.
  • Relevant professional qualification (e.g. APM Risk Level 2 or MoR) desirable.
  • Familiarity with NEC contracts beneficial.

Why Apply

  • Join a rapidly growing company delivering complex energy and infrastructure projects.
  • Be part of a collaborative and high-performing Controls & Performance team.
  • Excellent opportunities for professional development and career progression.
  • Supportive, inclusive culture with flexible working options.
GRC Analyst
South West Water
Exeter
In office
Junior - Mid
£35,000
RECENTLY POSTED
TECH-AGNOSTIC ROLE

Powered by Water, Driven by Purpose

South West Water keeps the South West flowing with safe, reliable drinking water and wastewater services across some of the UKs most stunning landscapes.

Were proud to be part of Pennon Group, a leader in the UK water sector, working towards a greener future. Our goals? As well as lowering our carbon footprint, were working with partners to plant 300,000 trees, restore peatlands and supporting farmers and landowners to improve water quality and wildlife.

Whether youre starting out or seeking a new challenge, our scale and ambition create opportunities for you to shape your own career.

Ready to make a splash?Join our team today.

Are you passionate about Cyber Security Governance, Risk Management and Compliance? We are seeking a proactive and knowledgeableCyber Security GRC Analyst (up to £36,000 doe)to support and strengthen our organisations security posture. In this role, you will help ensure ongoing compliance with key security standards, manage governance frameworks, and contribute to the resilience of our cyber environment.

About the Role

As a Cyber Security GRC Analyst, you will play a central role in driving our governance, risk, and compliance activities. Reporting to the Cyber Security Compliance Manager, you will support internal reviews, risk assessments, policy development, and ongoing compliance with frameworks such asISO 27001 and NIS Regulations. Youll collaborate across the business to ensure risks are effectively managed, controls are embedded, and our security standards remain robust and continually improved.

Key Responsibilities:

  • Plan, conduct, and document internal ISO 27001 audits across all areas of the Information Security Management System (ISMS), ensuring all controls and processes are regularly reviewed for effectiveness and compliance
  • Evaluate the effectiveness of information security policies, procedures, and controls, and identify areas for improvement or non-compliance.
  • Develop and maintain an annual audit schedule to ensure comprehensive coverage of ISO 27001 requirements and continual improvement of the ISMS.
  • Conduct and document internal audits and assessments aligned to ISO 27001 and NIS Regulations
  • Contribute to the development and maintenance of cyber security policies, standards, and procedures
  • Assist in maintaining the IT Security risk register, including identifying, assessing, and monitoring Work closely with business stakeholders to gather evidence, close audit findings, and track corrective actions
  • Support security assurance activities, including penetration tests, vulnerability scans, and third party reviews
  • Promote strong cyber security awareness and contribute to a positive security culture
  • Ensure third party suppliers meet contractual and regulatory security requirements
  • Maintain compliance with relevant legislation and industry standards
  • Monitor adherence and enforce policies to safeguard organisational data.
  • Ensures that data protection practices meet legal, regulatory, and standards requirements.

Why Governance, Risk & Compliance Matters

Effective GRC practices are essential for safeguarding sensitive information, maintaining customer trust, and protecting the organisation from regulatory, operational, and reputational risks. Regular internal ISO 27001 audits not only ensure ongoing certification but also drive continual improvement and resilience in our information security practices.

What Were Looking For

  • Full UK driving licence
  • Strong understanding of cyber security principles, risks, and regulatory requirements
  • Familiarity with ISO 27001 or NIS or other cyber security standards and frameworks
  • Experience in conducting audits or assessments
  • Thrives in environments where clear governance, process adherence, and continual improvement are valued.
  • Values the opportunity to help teams prepare for external audits or certifications
  • Excellent communication and relationship building skills
  • Excellent attention to detail
  • A collaborative, self-motivated approach with strong organisational abilities
  • Eligible for UK Government Security Clearance (SC)

Why You’ll Love Working With Us:

  • We know that the support and commitment of our staff is key to our success so you will receive the opportunity for ongoing development and training for a long-term career with us. In return, we offer an excellent range of benefits including:
  • Annual salary of up to £36,000 depending upon experience
  • Generous holiday allowance plus bank holidays
  • A discretionary Bonus
  • Competitive Contributory Pension
  • Share-save Scheme
  • Various health benefits
  • Wellbeing support programmes
  • A range of Group Discounts
  • Cycle to Work Scheme
  • Financial support services
  • And plenty more!
Commercial Insurance Legal Director
G2 Legal Limited
Manchester
Hybrid
Leader
Private salary
RECENTLY POSTED
TECH-AGNOSTIC ROLE

Title: Property Damage Legal Director

Location: Manchester City Centre (Hybrid – 4 days working from home)

We are working with a top-tier international firm with a large property damage practice who is looking to add an experienced Solicitor to join as a Legal Director in its Manchester team. This is a standout opportunity to join a large and growing team at an exciting point of growth.

This is a brilliant opportunity to realise your potential in a growing and successful commercial insurance practice that can provide further avenues for career development within a Legal 500 firm.

Role Overview:

You will be a senior figure in the commercial insurance team working with a prestigious client base. You will handle a diverse, complex caseload of property related disputes including, first party and third party property damage claims, product liability, subrogated recoveries and policy coverage.

Alongside your caseload, you will:

  • Be a technical lead for junior members of the team
  • Play a key role in business development, strengthening relationships with existing clients and developing new ones to help grow the team
  • Help shape the department ensuring efficiency and continued development

What You Will Need:

You will be a Qualified Solicitor (or equivalent) with an extensive background in property damage work with a demonstrable ability to handle high-value and highly complex insurance property-related disputes.

Benefits:

  • Flexible hybrid working (1 day a week in-office attendance required)
  • Comprehensive benefits package
  • Lucrative bonus scheme

If you would like to hear more about this opportunity, please contact George Prescott at G2 Legal Recruitment or apply online for a confidential discussion.

#INDCATN

QDC - Qualifying Defence Contract SME - SC Cleared - Hybrid
Experis
Basingstoke
Hybrid
Mid - Senior
£600/day
RECENTLY POSTED
TECH-AGNOSTIC ROLE

QDC Subject Matter Expert - Hybrid

Must have an Active SC Clearance

An opportunity has arisen for a QDC Subject Matter Expert to support Defence and National Security programmes focused on Qualifying Defence Contracts and Single Source Contract Regulations. This role suits a specialist with strong post award contract management experience who understands the regulatory, commercial, and governance requirements of QDC and QSC delivery. The position offers hybrid working, with travel to Basingstoke and Bracknell as required.

About the Role - QDC Subject Matter Expert

  • As a QDC Subject Matter Expert, you will provide specialist support across post award contract management, compliance, and risk management for QDC and QSC engagements.
  • You will support contract administration, stakeholder engagement, and dispute resolution in line with SSRO regulations.
  • The role involves working closely with commercial and delivery teams to ensure correct application of pricing, allowable costs, and statutory reporting.
  • You will liaise with MOD commercial teams and the SSRO to ensure regulatory guidance is applied accurately and consistently.

What We’re Looking For - QDC Subject Matter Expert

  • Strong knowledge of the Defence Reform Act 2014 and Single Source Contract Regulations 2014.
  • Experience with contract pricing methods, allowable cost assessments, and risk and incentive mechanisms.
  • Proven ability to manage statutory reporting and regulatory compliance for QDC and QSC contracts.
  • Excellent communication and stakeholder management skills.
  • Experience in contract negotiation and business risk management.
  • Single UK national with active SC clearance and willingness to progress to higher clearance if required.

Support secure Defence delivery and provide trusted commercial expertise as a QDC Subject Matter Expert.

To apply, please send your CV by pressing the apply button.

Senior Legal Counsel
Sellick Partnership Limited - Public Sector
London
Hybrid
Senior
£72,000 - £77,000

Charity - London
Permanent, full-time hours
Hybrid working arrangement
£72,000 - £77,000 (+benefits)

Sellick Partnership is delighted to be supporting an excellent Charity Organisation with the recruitment of a Senior Legal Counsel.

Our client is looking for a qualified Senior Legal Counsel who has extensive experience dealing with technology law and expertise in cybersecurity, AI/GenAI regulation, data protection, and digital contracting. This opportunity is on a hybrid working basis, with 2 days office presence required per week, encouraging employees to maintain a healthy work-life balance. This role is a fantastic opportunity for an experienced and ambitious Senior Legal Counsel, to join a reputable Charity Organisation and lead on an interesting and rewarding caseload.

Key responsibilities of the Senior Legal Counsel

  • Leading on legal matters relating to cybersecurity, artificial intelligence (AI), generative AI (GenAI), and day-to-day technology delivery
  • Leading and negotiating a range of technology contracts (e. SaaS, cloud services, software licensing, data sharing, etc.) to support Technology operations and strategic initiatives
  • Providing both strategic and operational legal support and expert advice to the Charity’s Technology team, enabling the successful delivery of the organisation’s digital transformation, innovation, and regulatory compliance
  • Leading on legal risk assessments for new technology initiatives, ensuring alignment with legislation, ethical standards, and the Charity’s values
  • Mentoring and fostering a culture of continuous learning and innovation
  • Contributing to the development of internal legal capabilities and external legal partnerships
  • Represent the Charity’s Legal team in cross-functional working groups focused on digital transformation, responsible technology, and innovation governance
  • Monitoring and interpreting legal developments in emerging technologies, contributing to the Charity’s stance on the responsible use of AI and digital ethics
  • Acting as a member of the Legal Senior Leadership Team (SLT), supporting the wider team by modelling leadership behaviours, championing the Charity’s values, and driving strategic change within the team

Experience/qualifications required for the Senior Legal Counsel

  • UK Qualified lawyer with post-qualification experience in technology law and expertise in cybersecurity, AI/GenAI regulation, data protection, and digital contracting
  • Strong interpersonal, communication, influencing, and negotiating skills
  • Strong prioritisation and organisation skills with the ability to work independently, manage multiple priorities, manage clients’ expectations, and meet deadlines while maintaining strong attention to detail and accuracy
  • A proactive problem-solver with a continuous improvement mindset, capable of identifying and solving complex problems, championing innovation and promoting best practice

What’s in it for the successful Senior Legal Counsel?

Exposure to an interesting and fulfilling caseload and a range of benefits including:

  • Generous holiday allowance
  • Flexible working pattern
  • Mental health support
  • A range of staff discounts including local subsidised gym memberships
  • Supportive staff networks
  • Learning and Development

How to apply for the Senior Legal Counsel position

This is a great opportunity for an experienced Senior Legal Counsel to progress in their career in a supportive team with some interesting work. If you believe that you have the required experience and qualifications to be considered for the Senior Legal Counsel position, please apply as soon as possible to be considered for this position. Alternatively, you can contact Maxine Beitler in our Manchester office for an informal discussion about the role or for more detail on working at this organisation.

Sellick Partnership is proud to be an inclusive and accessible recruitment business and we support applications from candidates of all backgrounds and circumstances. Please note, our advertisements use years’ experience, hourly rates, and salary levels purely as a guide and we assess applications based on the experience and skills evidenced on the CV. For information on how your personal details may be used by Sellick Partnership, please review our data processing notice on our website.

HSE Engineer
MTrec Recruitment
UK
In office
Graduate - Junior
£45,000
TECH-AGNOSTIC ROLE

Rewards and Benefits on Offer;

  • Competitive salary
  • Long term career progression opportunities
  • Opportunity to be part of a modern, rapidly growing organisation.
  • Permanent from day one
  • Immediate start available
  • Overtime available
  • Dayshift
  • Early Friday finish

MTrecs New Opportunity;

MTrec Technical are proudly representing our prestigious manufacturing client, based near Washington with their plans for growth and expansion, by recruiting a HSE Engineer to join their team. You will be joining a well renowned, forward-thinking company, with an excellent team-based culture and huge opportunities to progress your career. You will be joining a very secure business, where you will enjoy a varied working environment, a great team culture and a fantastic new career move.

If you have experience in a HSE related role within engineering/manufacturing, or even a recent Graduate, please apply now for an immediate response.

The Job Youll Do;

  • Responsible for supporting all HSE matters by reviewing, evaluating, and analysing work environments and by designing programs and procedures to control, eliminate, and prevent accidents or injury
  • Promote a strong safety culture across all levels of the organization
  • Prepare HSE reports, and documentation
  • Track and monitor KPI’s to identify and drive improvements
  • Implement and monitor HSE policies, procedures, and programs
  • Conduct risk assessments, site inspections, and safety audits
  • Investigate incidents, near misses, and non-conformities, and drive corrective actions
  • Deliver HSE inductions, toolbox talks, and safety training
  • Ensure compliance with regulatory and client HSE requirements
  • Promote a strong safety culture across all levels of the organization
  • Prepare HSE reports, and documentation
  • Track and monitor KPI’s to identify and drive improvements

About You;

  • Qualified to NEBOSH (General Cert) or above
  • Understanding of ISO management systems is desirable (9001, 45001, 14001)
  • Ideally 1-2 years + of experience in a relevant role
  • Comfortable working in a fast-paced, high volume manufacturing environment
  • Well organised, with a high level of attention to detail
  • Someone looking to secure a long-term career, not a short-term move
  • Excellent communication skills at all levels
Integrated Management System (IMS) Auditor
Manpower
Bridgwater
Hybrid
Mid - Senior
£240/day

Auditor Integrated Management System

Shift Times: Monday - Friday 37 Hours (Hybrid working available)

Pay Rate: £240 per day Location: Bridgwater TA6 4FJ

Job Overview

The Integrated Management System (IMS) Auditor supports the IMS & Audit Manager in maintaining the Hinkley Point C (HPC) integrated management system (IMS) requirements and arrangements, ensures that IMS complies with Regulations, International Standards and internal policies in the areas of Nuclear Safety, Quality, Environment, Health and Safety and Security.

What You’ll Be Doing

  • Develop and execute a risk-based internal audit programme, covering IMS requirements and standards
  • Define audit scope, criteria, and objectives, plan and lead both scheduled and ad-hoc audits, liaising with Environment & H&S teams
  • Accurately categorise findings (Non-Conformances, Observations, etc.), produce timely audit reports, and ensure corrective actions are closed and effective
  • Monitor audit results to drive continuous improvement across the IMS
  • Work collaboratively with IMS Officers and Certification Body assessors during audits
  • Support knowledge sharing and auditor development across the audit team.

Qualifications & Experience

  • Essential: IRCA Lead Auditor qualification (ISO 9001:2015, ISO 14001:2015, ISO 45001:2018) and experience applying these standards in a multidisciplinary or large-scale project environment
  • Desirable: Exposure to regulated or nuclear settings, UK nuclear licence conditions, CQI/IRCA membership, integrated management system or independent audit experience, large infrastructure projects

Skills & Behaviours

  • Highly organised, self-managing, with strong analytical and reporting capabilities
  • Excellent influencing and communication skills-able to engage stakeholders and challenge constructively
  • Positive collaborator, advocate for best practices, and a driver of continuous improvement across IMS processes.
Resilience Vulnerability Management Lead
VANLOQ LIMITED
Sheffield
Hybrid
Senior
Private salary
TECH-AGNOSTIC ROLE

Job Title: Resilience Vulnerability Management Lead
Contract Length: 10 months (initial)
Location: Sheffield Hybrid
Sector: Financial Services
IR35 Status: Inside IR35

Overview

We are working with a leading financial services organisation to recruit an experienced Resilience Vulnerability Management Lead for an initial 10-month contract. This role is critical to supporting the organisations Operational Resilience and Vulnerability Management objectives, ensuring Important Business Services (IBS) are resilient, well-governed, and compliant with internal standards and regulatory expectations.

You will work in a hybrid model from Sheffield, collaborating closely with IT Service Owners, Service Sustainability Leads, and senior stakeholders across technology and the business.

Key ResponsibilitiesResilience Assessment (TRVA)

  • Lead resilience assessments (TRVA) for multiple IBS applications across front-office and back-office environments
  • Ensure alignment with internal operational resilience standards
  • Review architecture documents and application artefacts, leveraging data from enterprise platforms
  • Pre-fill vulnerability questionnaires, identify gaps or issues, and facilitate workshops with IT Service Owners to resolve findings
  • Analyse metrics and operational data (e.g. incident logs) to identify resilience weaknesses and improvement opportunities
  • Drive timely sign-off of assessments by all required stakeholders
  • Consolidate findings into clear, comprehensive reports with actionable remediation recommendations
  • Raise identified vulnerabilities in line with governance requirements
  • Contribute to executive-level summaries and participate in stakeholder presentations

Vulnerability Management

  • Manage the end-to-end vulnerability lifecycle, including:

    • Creation and approval
    • Tolerance assessments
    • Progress tracking and reporting
    • Remediation and closure governance
    • Closure pack preparation, QA, approval, and final closure
  • Conduct control reviews outside standard assessments and raise vulnerabilities where required

  • Work closely with IT Service Owners to capture risk, impact, severity, mitigation, and remediation plans

  • Partner with Service Sustainability Leads and IT Service Owners to collect Evergreening details

  • Ensure Impact Assessments are completed for all vulnerabilities and severity records are kept up to date

  • Support other Lines of Business with tolerance assessments for MSS-owned applications

  • Analyse weekly vulnerability reports to identify new risks impacting Important Business Services and drive them through assessment processes

  • Ensure remediation actions are accurately reflected in golden source systems

  • Prepare high-quality closure packs with supporting evidence

  • Produce Risk & Control Management Meeting packs and stakeholder reports

  • Represent the team in governance forums when required

  • Contribute inputs to consolidated CIB-level reporting

  • Participate in vulnerability portal feature testing, providing feedback and backlog requirements

  • Actively contribute to daily and weekly Operational Resilience and Vulnerability Management forums

Qualifications & Experience

  • Bachelors degree in IT, Computer Science, or a related discipline (or equivalent professional experience)

  • Proven experience in operational resilience, risk management, or vulnerability management within a large financial institution

  • Strong understanding of:

    • Operational resilience frameworks
    • Vulnerability lifecycle management
    • Regulatory and governance requirements
  • Demonstrated ability to manage complex assessments across multiple applications and stakeholders

Key Capabilities

  • Strong analytical and problem-solving skills
  • Excellent communication skills, with the ability to present complex findings to both technical and non-technical audiences
  • High attention to detail and strong commitment to quality
  • Proactive, self-motivated, and able to manage multiple priorities in a fast-paced, regulated environment
  • Confident stakeholder manager with experience driving cross-functional outcomes

Whats on Offer

  • Competitive inside IR35 day rate
  • Long initial contract (10 months) with potential extension
  • Hybrid working model in Sheffield
  • Opportunity to play a key role in strengthening operational resilience within a major financial services organisation

If you are an experienced Resilience or Vulnerability Management Lead looking for your next contract role, wed be keen to hear from you.

Regulatory Compliance Engineer
Morson Edge
Yeovil
In office
Mid - Senior
Private salary
TECH-AGNOSTIC ROLE

Job Description and Key Responsibilities

Scope

  • Provide evidence-based assurance that our procedures are compliant, effective, and aligned with industry best practise.
  • Lead improvement activities where procedures fall short, prioritising actions based on perceived risk.
  • Engage collaboratively with customers, CAMO, technical, production, and maintenance teams to ensure compliance and continuous improvement.

Role and Responsibilities

  • Act as a focal point for clarifying all procedural / regulatory issues
  • Provide advice and guidance on applying the Operating System (OS) and resolving conflicting requirements within the OS
  • Perform impact analysis of change to business procedures and regulatory requirements
  • Determine best practice based on other industries and the aerospace sector
  • Lead the generation / publication of new procedures and improvements to existing procedures (Core Instructions and Departmental Instructions) using structured techniques to satisfy the business and regulatory requirements, engaging with subject matter experts / users
  • Generate and deliver communication briefs to improve understanding of the intent to improve compliance to process
  • Perform the role of audit guide for internal / external audits
  • Perform departmental procedure review audits (First Line of Defence)
  • Determine the root cause and drive the implementation of robust containment and corrective plan of any findings
  • Produce measures of our compliance and track the status of agreed actions

Training and Education

  • Educated to HNC level and/or possess experience in relevant discipline
  • Comprehensive understanding of the regulatory requirements, their intent and how they are applied in an aviation environment
  • Able to write clear and concise procures
  • Experience of performing and managing audits
  • Excellent team working skills and the ability to facilitate cross functional teams
  • Good business awareness and product knowledge
  • Effective problem solving skills
  • Good knowledge of the CIETP and Microsoft applications
  • Able to navigate the Operating System (OS)

Please apply or get in contact at / 01935403203

Japanese Speaking General Counsel (AI, Digital Technology)
People First
Oxford
Hybrid
Senior - Leader
£150,000
TECH-AGNOSTIC ROLE

The Skills You'll Need: *Corporate Law, Technology Law, Japanese, qualified lawyer* Your New Salary: Up to £150,000 Office based OR Hybrid: Hybrid, Oxford Perm OR Temp: Permanent Start: ASAP Working hours: Full-time Japanese Speaking General Counsel (AI, Digital Technology) - What You'll be Doing: • Qualified lawyer in UK, Japan, or EU law • Post-qualification experience in corporate, regulatory, or technology law • Knowledge of corporate governance, data privacy regulations, and AI/digital compliance • Experience managing cross-border legal matters • Provide legal guidance to senior management on business operations • Ensure company practices comply with relevant laws across multiple regions • Review, draft, and negotiate contracts and partnership agreements • Oversee risk management related to AI, data use, and digital technology • Establish and maintain internal compliance and governance policies • Coordinate with external legal advisors and global legal teams Japanese Speaking General Counsel (AI, Digital Technology) - The Skills You'll Need to Succeed: • Strong strategic thinking and problem-solving abilities • Excellent communication skills in English and/or Japanese • Experience working in international or technology-focused organizations • Ability to work effectively with regulators, partners, and internal teams • Background in AI and digital technology-related legal matters preferred • UK work visa sponsorship available for the right candidate Please follow us on Linkedin: people-first-team-japan We would be grateful if you could send your CV as a Word document. If your application is successful, you will be contacted within 7 days. We regret that due to the high volume of applications we receive we cannot provide feedback on individual CVs. Please note that we can only consider candidates who are eligible to work in the UK and are able to provide relevant supporting documentation. People First is committed to increasing diversity, and maintaining an inclusive workplace culture. We welcome applications from all qualified candidates regardless of their ethnicity, race, gender, religious beliefs, sexual orientation, year of birth, relationship status or whether or not they have a disability. People First (Recruitment) Limited acts as an employment agency for permanent and fixed term contract recruitment and as an employment business for the supply of temporary workers. Please note that by applying for this job you accept our Terms of Use and Privacy Policy which can be found on our website.

GRC Analyst
VIQU IT
London
Fully remote
Mid - Senior
£500/day - £550/day
TECH-AGNOSTIC ROLE

GRC Analyst 3-month contract Fully Remote

My Customer is looking for an experienced GRC Analyst to join the organisation to strengthen governance, risk, and compliance practices and will lead the delivery of ISO 27001 certification within the next 12 months.

The GRC Analyst will focus on maintaining current ISO and SOC 2 standards within the business. Technical understanding would be beneficial but not essential. Knowledge of the requirements of the above standards in relation to contracts and vendor relationships is essential.

Key Skills & Experience from the GRC Analyst:

  • Proven experience in a GRC, security risk, or compliance role
  • Certifications for ISO 27001 (Lead Implementer/Auditor), would be required
  • Strong knowledge of frameworks such as ISO 27001, NIST, SOC 2, CIS, and data protection standards
  • Onboarding/vendor risk management experience
  • Hands-on experience supporting or leading ISO 27001 certification activities
  • Solid understanding of risk assessment, control design, and audit processes
  • Experience working with GRC tooling, evidence management, and reporting
  • Experience/Knowledge around high volume data process would be beneficial
  • Strong documentation, communication, and organisational skills
  • Experience operating in regulated or security-conscious environments
  • Experience in the Finance Sector would be beneficial

Key Responsibilities of the GRC Analyst:

  • Develop and maintain security policies, standards, and procedures aligned to recognised frameworks
  • Lead ISO 27001 readiness and certification activities, including ISMS support and audit coordination
  • Conduct risk assessments across systems, processes, and third parties, tracking remediation actions
  • PoC for legal department - onboarding/vendor/contract risk management
  • Act as the primary liaison for internal stakeholders and external auditors
  • Design, test, and monitor security and compliance controls, ensuring evidence is audit-ready
  • Manage GRC tools and reporting to provide clear insight into risk and compliance posture
  • Embed security and risk considerations into projects, suppliers, and business initiatives
  • Monitor regulatory and standards changes and advise on required organisational updates

The GRC Analyst can work fully remote for the duration of the contract.

Apply now to speak with VIQU IT in confidence. Or reach out to Connor Smal via the VIQU IT website.

Do you know someone great? We ll thank you with up to £1,000 if your referral is successful (terms apply).

For more exciting roles and opportunities like this, please follow us on IT Recruitment.

Senior Risk Manager - Digital, Technology & Transformation
MERJE Ltd
Yorkshire
Hybrid
Senior
£87,000
TECH-AGNOSTIC ROLE

Salary: c.£85,000 + Benefits

Hybrid - Remote with 1-2 on-site visits per month

We are partnering with a leading UK general insurer undergoing significant digital and technology transformation.

This is a senior, high-impact second line role operating directly alongside Technology leadership. You will provide robust oversight and credible challenge across digitisation, infrastructure evolution, cloud migration, legacy modernisation and operational resilience.

This is not a passive role. It requires commercial judgement, technical credibility and the confidence to engage with the IT Director and peer group to challenge constructively while enabling progress.

The organisation is investing heavily in digitisation and modernisation. As Senior Risk Manager, you will ensure that:

  • Digital transformation is delivered within risk appetite
  • Infrastructure and cloud strategies are controlled and resilient
  • Legacy risks are clearly understood and actively managed
  • Technology change is governed, visible and commercially aligned

A key focus will be improving visibility and transparency of technology risk - ensuring leadership has clear, decision-ready insight into exposures, control effectiveness and residual risk.

Key Responsibilities

Technology Risk Oversight & Challenge

  • Provide strong, independent second line challenge to Technology and Digital leadership
  • Oversee major digitisation and transformation programmes
  • Conduct deep dives into infrastructure, cloud and legacy risks
  • Assess design and operating effectiveness of key technology controls
  • Ensure incident and problem management themes are understood and addressed at root cause

Digitisation & Infrastructure Visibility

  • Drive improved visualisation and reporting of technology risk across the estate
  • Ensure clear articulation of risk exposure across infrastructure, cloud and critical systems
  • Support structured approaches to legacy de-risking and modernisation
  • Enhance transparency of control ownership and accountability

Governance & Risk Framework

  • Embed a pragmatic, commercially aligned risk framework across Technology
  • Lead RCSAs, thematic reviews and control testing across digital and infrastructure domains
  • Define clear risk appetite metrics and KRIs for technology and operational resilience
  • Ensure alignment with PRA/FCA expectations and relevant ISO/NIST standards

Operational Resilience & Change Risk

  • Oversee resilience across critical services and digital platforms
  • Provide oversight of change governance in fast-moving technology programmes
  • Ensure risk considerations are embedded early in design and delivery

Executive & Board Engagement

  • Translate complex technical exposures into clear commercial insight
  • Deliver concise, decision-focused reporting to senior leadership and Board
  • Act as a trusted but challenging advisor to IT and Digital Directors
  • Balance enablement of innovation with disciplined governance

Experience & Profile

We are seeking a technically credible risk leader who can operate confidently with senior Technology stakeholders.

You will bring:

  • Strong second line experience within UK general insurance or a regulated environment
  • Deep understanding of enterprise risk tools (RCSAs, KRIs, control frameworks)
  • Experience overseeing infrastructure, cloud, digitisation and legacy transformation risk
  • Knowledge of PRA/FCA regulatory expectations and operational resilience requirements
  • Familiarity with ISO 27001, NIST and related control frameworks
  • Ability to challenge
Risk & Control Solutions Analyst
Experis
Sheffield
Hybrid
Junior - Mid
£280/day - £349/day
TECH-AGNOSTIC ROLE

Location: Hybrid 60% office-40% Remote - Sheffield
Duration: 27/11/2026
Rate 349
MUST BE PAYE THROUGH UMBRELLA

Role Description:
Why join us? (Overview of Dept./Function) This role sits within a large financial services technology environment and will work closely with technology control owners, platforms, data and engineering teams to help design, build, and transform the Controls environment.
The Opportunity: (Brief Overview of the Role)
The role holder will be a vital link between control operators/teams (who will be driving new requirements), application engineering teams and, where required, appropriate clients architects.
We are looking for a highly effective delivery-focused contractor who can work autonomously, communicate effectively across teams, and operate comfortably within complex, regulated enterprise environments. Experience in delivering data focused and technical solutions would be highly beneficial.

Key Responsibilities

  • Work with Control Owners and Control Operators to gather, review and optimize business requirements.
  • Support the production of detailed specifications to allow business requirements to be understood and delivered by the engineering team.
  • Bridge and minimize the gap between non-technical teams, engineering and a variety of end users for the whole project life cycle, to ensure technical compatibility and user satisfaction.
  • Ensure compliance with all relevant internal control standards and external regulatory requirements.
  • Acquire & maintain knowledge in various areas of Technology Controls and actively participate in knowledge sharing.
  • Support delivery through the entire life cycle of the project.

What you will need to succeed in the role: (Minimum Qualification and Skills Required)

  • Strong problem-solving and data analytical skills.
  • Ability to understand complex data, relationships, and process logic
  • Understanding of commonly used technologies (including databases, server infrastructure, user interface technologies and design)
  • Initiative and proactiveness, particularly in problem-solving
  • Excellent communication skills, including the ability to communicate complex information clearly
  • Courage and ability to challenge the status-quo.
  • Strong time management skills and the ability to work under pressure.
  • Quick learning, team player and strong interpersonal/social skills to build and maintain cordial

What additional skills will be good to have? (List out good to have skills and certifications)

  • Any experience with the following will be beneficial but is not critical:
  • Previous exposure to technology risk and controls data, tools, or processes
  • Basic knowledge on AGILE and Dev-Ops methodology.
Security Analyst
Zachary Daniels Recruitment
Merseyside
In office
Junior - Mid
£40,000 - £50,000
TECH-AGNOSTIC ROLE

Security Analyst Compliance & Technical Security Liverpool 40k- 50k + Benefits/Progression

Zachary Daniels are delighted to be working with a well-established UK business during an exciting period of growth, to recruit a Security Analyst. This is a company investing heavily in technology, compliance, and security.

In this role, you’ll be part of a collaborative team, working across compliance, risk, and technical security to protect the business, strengthen frameworks, and support transformation projects. It’s a varied position offering real scope to grow both your governance and technical skills.

Benefits You’ll Enjoy:

  • Competitive salary up to (DOE)
  • Generous annual leave entitlement, rising with service
  • Enhanced maternity, paternity, and parental leave
  • Life assurance
  • Regular social events

Role Responsibilities:

  • Identify and assess security risks, ensuring mitigation plans are in place.
  • Support the development and maintenance of security policies and standards.
  • Assist with third-party security reviews and supplier risk management.
  • Provide oversight of vulnerability assessments.
  • Conduct architecture reviews for new systems and services.
  • Evaluate technical controls and recommend improvements.
  • Support the rollout of new security tools and technologies.
  • Provide input into incident management and security metrics reporting.

About You:

  • 2+ years’ experience in an security role.
  • Strong understanding of risk assessment methodologies.
  • Knowledge of frameworks such as ISO 27001.
  • Experience with vulnerability management and technical controls.
  • Excellent problem-solving skills with strong attention to detail.
  • Confident communicator with the ability to explain security concepts to non-technical stakeholders.

This is more than just a security role, it’s a chance to join a forward-thinking business, develop your expertise across both compliance and technical domains, and make a real impact in protecting and enabling the organisation.

Apply today with your most up-to-date CV!

BH35482

Auditor - Cyber Security £520/d London Hybrid 4 Month Contract
Adecco
London
Hybrid
Mid - Senior
£520/day

Cyber Security Auditor Financial Services Hybrid - 2 days per week in the office - 3 days working from home 4 Months Contract 520/day Inside IR35 Security Testing CISSP NIST MITRE ISO27001 LONDON

Our Financial Services client is seeking an Auditor with experience and strong technical knowledge of Information and Cyber Security best practices.

In your role you will be confident in your ability to identify control gaps and clearly articulate these to senior stakeholders.

Previous experience working within Financial Services / Banking is advantageous though varied backgrounds are welcome.

Your Essential Skills and Experience:

  • Minimum of 5 years previous relevant auditing experience in Cyber Security
  • Proven practical experience of assessing cyber and technology risks and key controls in various cyber-related areas
  • Solid understanding of technology infrastructure, networks, cloud technologies and related architecture and security frameworks.
  • Technically proficient, with hands-on technology experience (e.g. security testing, ethical hacking).
  • Strong technical knowledge and experience of Information and Cyber Security best practices, threats, risks, frameworks and standards (NIST, MITRE, ISO27001)
  • SOC background / Network / Encryption experience is beneficial
  • Communication skills
  • Data Analytics; Python, Power BI

Qualifications:

  • Certified Information Systems Security Professional (CISSP)
  • Certified Ethical Hacker (CEH).

Location: London / Edinburgh

Hybrid: 2 days in the office / 3 days working from home

Pay Rate: 520/day Inside IR35 (You will work via an Umbrella company)

Contract: Until the end of June 2026

Is this you? We’d love to hear from you!

Adecco acts as an employment agency for permanent recruitment and an employment business for the supply of temporary workers. The Adecco Group UK & Ireland is an Equal Opportunities Employer.

By applying for this role your details will be submitted to Adecco. Our Candidate Privacy Information Statement explains how we will use your information - please copy and paste the following link in to your browser (url removed)

Auditor - Cyber Security £520/d Edinburgh Hybrid
Adecco
Edinburgh
Hybrid
Mid - Senior
£520/day

Cyber Security Auditor Financial Services Hybrid - 2 days per week in the office - 3 days working from home 4 Months Contract 520/day Inside IR35 Security Testing CISSP NIST MITRE ISO27001

Our Financial Services client is seeking an Auditor with experience and strong technical knowledge of Information and Cyber Security best practices.

In your role you will be confident in your ability to identify control gaps and clearly articulate these to senior stakeholders.

Previous experience working within Financial Services / Banking is advantageous though varied backgrounds are welcome.

Your Essential Skills and Experience:

  • Minimum of 5 years previous relevant auditing experience in Cyber Security
  • Proven practical experience of assessing cyber and technology risks and key controls in various cyber-related areas
  • Solid understanding of technology infrastructure, networks, cloud technologies and related architecture and security frameworks.
  • Technically proficient, with hands-on technology experience (e.g. security testing, ethical hacking).
  • Strong technical knowledge and experience of Information and Cyber Security best practices, threats, risks, frameworks and standards (NIST, MITRE, ISO27001)
  • SOC background / Network / Encryption experience is beneficial
  • Communication skills
  • Data Analytics; Python, Power BI

Qualifications:

  • Certified Information Systems Security Professional (CISSP)
  • Certified Ethical Hacker (CEH).

Location: Edinburgh / London

Hybrid: 2 days in the office / 3 days working from home

Pay Rate: 520/day Inside IR35 (You will work via an Umbrella company)

Contract: Until the end of June 2026

Is this you? We’d love to hear from you!

Adecco acts as an employment agency for permanent recruitment and an employment business for the supply of temporary workers. The Adecco Group UK & Ireland is an Equal Opportunities Employer.

By applying for this role your details will be submitted to Adecco. Our Candidate Privacy Information Statement explains how we will use your information - please copy and paste the following link in to your browser (url removed)

Information Security & Risk Specialist
CPS Group (UK) Limited
London
Hybrid
Mid - Senior
£400/day - £495/day
TECH-AGNOSTIC ROLE

Role: Information Security & Risk Specialist
Specialism(s): Global Information Security, Risk Analysis, Cyber Security, Information Security, International Cyber Security, 3rd Party Security Compliance, Risk Management, Risk Reporting, Audit & Compliance, Cloud Infrastructure, ISO2700x, NIST, SOC2, PCI, GDPR, Risk Assessments
Type: Contract, Inside IR35
Duration: 12 Months
Location: London, On-Site Working (1 day remote per week)
Start: ASAP/Urgent

Information Security & Risk Specialist

CPS Group UK are delighted to be working with a leading, global Entertainment brand to appoint an Information Security & Risk Specialist to join their Global Information Security team for an initial 12-month contract.

The Information Security & Risk Specialist will partner with technology teams and business units to analyse and mitigate risk in their environments, whilst also providing Information/Cyber Security advise and support for international projects to ensure alignment with global Information Security policies and standards.

The role will also support the onboarding and monitoring of international technical infrastructure to ensure visibility and asset protection. The Information Security & Risk Specialist will also review and manage remediation of existing and new security findings and vulnerabilities.

Role Requirements

Mange the information security and risk aspects of international technology projects for various business units
Document environment risk and provide regular risk reporting on projects and initiatives
Build a strong understanding of the international ecosystem and support varying information security and risk initiatives
Prioritise high risk queries and tasks ensuring they go through a robust risk assessment
Perform security reviews when required for high-risk impact systems
Onboarding and monitoring of international infrastructure
Review, communicate and manage remediation of security findings and vulnerabilities
Embed a risk-based approach to IT Security across the business
Assist with coordination and reporting of security incidents
Support and manage 3rd party security compliance processes and assessments
Support risk assessments and define security mitigating controls
Contribute to the development of a culture of security awareness and best practice
Ensure business and technology alignment with privacy requirements (e.g. GDPR)

Required Skills & Experience

3+ years’ experience in Information or Cyber Security specific roles (ideally focusing on Risk, Audit & Compliance)
2+ years’ commercial experience in IT Security Risk Management, Security Audit & Compliance (ideally EMEA or Global remit)
Demonstrable experience of interpreting and assessing risk in large organisations
Solid understanding of technology concepts, particularly cloud infrastructure engineering and architecture
Understanding of and hands-on experience with vulnerability detection tools (e.g. Qualys, CrowdStrike, Tenable, Prisma)
Strong knowledge of IS compliance frameworks and standards (ISO2700x, NIST, GDPR, SOC2, PCI)
Practical understanding of cyber security technology best practice
Experience supporting EMEA or Global technology projects from an InfoSec risk perspective
Blue-chip/Big4/Large organisation experience

For more information or immediate consideration for this opportunity, please contact Charlie Grant at CPS Group UK on (phone number removed) or email (url removed)

By applying to this advert you are giving CPS Group (UK) Ltd authority to hold and process your data for this specific role and any other roles we may deem suitable to you over time. We will not pass your data to any third party without your verbal or written permission to do so. All incoming and outgoing calls are recorded for training and compliance purposes. CPS Group (UK) Ltd is acting as an Employment Agency in relation to this vacancy. Our new privacy policy can be found here (url removed)

Head of Financial Crime
Adria Solutions Ltd
Manchester
Hybrid
Leader
£100,000 - £130,000
TECH-AGNOSTIC ROLE

A growing, forward-thinking bank based in Manchester is seeking an experienced and commercially astute Head of Financial Crime to lead and evolve its Financial Crime function.

This is a senior leadership opportunity to oversee a well-established team of 30 professionals, with 4 5 direct reports, in a business that is committed to strengthening controls, embracing automation, and leveraging technology to enhance financial crime prevention.

The Role

As Head of Financial Crime, you will take full ownership of the end-to-end Financial Crime framework, ensuring robust governance, regulatory compliance, and operational excellence across the full suite of financial crime disciplines.

You will play a key role in modernising and optimising the function - driving automation initiatives, enhancing transaction monitoring capabilities, and exploring AI-driven solutions to improve efficiency, insight and risk mitigation.

This is a highly visible leadership role requiring strong regulatory knowledge, stakeholder engagement skills, and the ability to lead and inspire large operational teams.

Key Responsibilities Leadership & Oversight

  • Lead, develop and mentor a Financial Crime team of 30, with 4 5 direct reports.
  • Drive performance, accountability and continuous improvement across the function.
  • Build strong succession planning and leadership capability within the team.

Financial Crime Framework

  • Oversee the full financial crime suite including:

    • KYC & Customer Due Diligence
    • AML
    • Transaction Monitoring
    • Financial Crime Analytics & Reporting
  • Ensure policies, procedures and controls remain robust, proportionate and aligned to regulatory expectations.

Automation & Innovation

  • Drive automation initiatives across financial crime processes to improve efficiency and reduce manual intervention.
  • Champion the use of analytics and technology to enhance detection and reporting capabilities.
  • Explore and implement AI-led solutions where appropriate (experience in this area highly desirable).

Regulatory & Governance

  • Act as a senior point of contact for regulators and internal audit.
  • Ensure compliance with UK regulatory requirements and evolving financial crime standards.
  • MLRO experience or prior SMF responsibility would be advantageous.

Stakeholder Management

  • Work closely with Risk, Compliance, Operations and Executive leadership.
  • Provide clear MI and reporting to senior stakeholders and board-level committees.

What We re Looking For

  • Significant experience leading Financial Crime functions within a banking environment.
  • Deep expertise across KYC, AML, Transaction Monitoring and Financial Crime Analytics.
  • Proven experience driving automation within financial crime operations.
  • Exposure to AI-enabled financial crime solutions (highly desirable).
  • Strong understanding of UK regulatory expectations.
  • Prior MLRO experience or readiness to step into that responsibility (advantageous).
  • A hands-on, engaging leader with the ability to manage and motivate a sizeable team.

Why Join?

  • Opportunity to shape and modernise a key control function.
  • Lead a sizeable, established team with strong executive visibility.
  • Hybrid working
  • Play a strategic role within a growing and ambitious bank.

If you are a driven Financial Crime leader ready to make a tangible impact within a progressive banking environment, we d love to hear from you.

Head of Financial Crime - Manchester

Information Security Manager
Project People
Reading
Hybrid
Senior - Leader
Private salary
TECH-AGNOSTIC ROLE

We’re seeking an experienced Information Security Manager to lead, develop, and continuously improve our Information Security Management System (ISMS), ensuring compliance with ISO 27001:2022 and protecting the digital infrastructure.

In this strategic yet hands-on role, you’ll manage cyber risk, drive security governance, and embed a security-first culture across the organisation. You’ll also act as the key contact for information assurance, incident response, supplier security, and regulatory compliance.

What you’ll do:

  • Own and maintain the ISMS in line with ISO 27001 standards.
  • Lead audits, risk assessments, and incident response.
  • Oversee supplier assurance and security governance.
  • Promote cyber awareness and staff training.
  • Support ongoing compliance with GDPR and regulatory frameworks.

What we’re looking for:

  • Proven experience managing an enterprise ISMS and ISO 27001 audits.
  • Strong knowledge of cyber threats, cloud security (Azure, M365), and GDPR.
  • Hands-on experience in vulnerability management, supplier assurance, and incident response.
  • Excellent communication and stakeholder management skills.

Benefits:

  • Competitive salary with bonus scheme
  • Very generous holiday allowance
  • Hybrid working - 3 days per week in Reading
  • Plus a great range of additional employee benefits

Project People is acting as an Employment Agency in relation to this vacancy.

Frequently asked questions
Haystack features a wide range of Risk & Compliance roles including Risk Analyst, Compliance Officer, IT Security Auditor, Regulatory Compliance Manager, and Cybersecurity Risk Consultant.
While requirements vary by role, certifications such as Certified Information Systems Auditor (CISA), Certified Risk and Compliance Management Professional (CRCMP), and Certified Information Security Manager (CISM) are highly valued and often preferred by employers.
Yes, Haystack allows you to filter job listings by location, including remote and hybrid roles, so you can find Risk & Compliance positions that best suit your preferences.
To increase your chances, tailor your resume to highlight relevant experience, obtain industry-recognized certifications, stay updated on regulatory changes, and use Haystack's job alerts to apply promptly to new listings.
Yes, Haystack lists entry-level and junior Risk & Compliance positions suitable for candidates new to the field or transitioning from related IT roles.