CrawlJobs Logo

Cyber Security & Risk Specialist

https://www.randstad.com Logo

Randstad

Location Icon

Location:
United Kingdom , Ipswich

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

500.00 - 525.00 GBP / Day

Job Description:

Compliance Specialist (Risk Management & Assurance). Are you a risk professional with a knack for bridging the gap between technical security and business compliance? We are looking for a Compliance Specialist to join our Risk, Legal, and Regulatory Affairs function. In this role, you will play a pivotal part in safeguarding the organization by identifying and managing a broad spectrum of risks, with a specific focus on leading our cyber security vulnerability management efforts.

Job Responsibility:

  • Identify, track, and prioritize risks in line with enterprise frameworks
  • Lead the identification and remediation of cyber security vulnerabilities within agreed timelines
  • Design and execute second-line monitoring to test control effectiveness and identify gaps
  • Drive the closure of control weaknesses and security gaps by ensuring clear ownership and accountability
  • Produce accurate reporting on risk exposure and remediation progress for senior stakeholders

Requirements:

  • A strong understanding of risk management and compliance frameworks
  • Proven experience in control assurance, monitoring, or audit support
  • Direct knowledge of cyber security risk and vulnerability management practices
  • The ability to prioritize risk within complex environments

Additional Information:

Job Posted:
May 18, 2026

Expiration:
June 09, 2026

Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Cyber Security & Risk Specialist

Cyber Security Specialist

Security is a strategic pillar for us. Our modern, distributed architecture dema...
Location
Location
Italy , Milan
Salary
Salary:
Not provided
livestory.nyc Logo
Live Story
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience in cloud security (AWS/Azure/GCP), IAM/SSO, SIEM, WAF, endpoint security
  • Strong understanding of threat modelling, vulnerabilities (e.g., OWASP Top 10), MITRE ATT&CK
  • Experience with compliance frameworks and certification processes
  • Hands‑on problem solver, able to translate technical issues into business risks and vice versa
  • Excellent communication skills and teamwork orientation
  • English fluency
  • Italian is a plus
Job Responsibility
Job Responsibility
  • Monitor and manage the attack surface: applications, infrastructure, APIs
  • Perform vulnerability assessments, penetration testing, risk analysis and remediation
  • Define, implement and maintain security policies, procedures and controls (e.g., ISO 27001, SOC2, GDPR)
  • Collaborate with engineering, product and legal teams to ensure compliance and risk mitigation
  • Manage incident response: alerting, logging, encryption, forensic analysis
  • Drive continuous improvement of our security posture and culture
  • Fulltime
Read More
Arrow Right

TPRM Specialist

A highly motivated and hands-on professional to join the Supply Chain Security (...
Location
Location
Netherlands , Amsterdam
Salary
Salary:
Not provided
levy-professionals.com Logo
Levy Professionals
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Knowledge and experience with setting up projects & deliverables within supply chain security / Third-Party Risk Management (TPRM)
  • Proven experience in executing information security risk assessments
  • Knowledgeable on one or more areas such as security processes, technology architectures, network security, application security, and vulnerability management
  • Experience with the ServiceNow TPRM module is a significant advantage
  • HBO or University degree
  • Excellent stakeholder management skills
  • A strong ability to translate technical risks into business risks and vice versa
  • Hands-on, self-organised, willing to finish and deliver (execution power)
  • Service-oriented professional who enjoys taking on an internal consultancy role
  • The working language within the team is English
Job Responsibility
Job Responsibility
  • Govern and manage IT vendor relationships concerning performance on the security aspects of underlying contractual obligations
  • Execute Vendor Security Risk Assessments and perform necessary follow-up actions, focusing on material risks
  • Ensure that information security risks are identified and managed effectively throughout all stages of the relationship with external vendors
  • Review the applicability and quality level of assurance reports issued by third parties
  • Manage the IT security-related part of vendor contracts, working closely with 2nd line functions such as legal, compliance, and procurement on contractual changes
  • Actively stay up-to-date with emerging cyber security trends, risk, and threat developments, and share this knowledge to help integrate them into the assessment program
  • Help solve security-related questions, take initiative, and escalate in time if needed
  • Signal improvements related to the way of working inside the team and contribute to improving the excellence of the service offering
  • Work according to the DevOps & Agile methodology, improving Supply Chain Security services based on user stories
  • Occasionally investigate and resolve incidents as they occur
Read More
Arrow Right

Cyber Security Specialist (GRC)

As a Cyber Security Specialist, you will be integrated into the Portugal Cyber S...
Location
Location
Portugal , Lisboa
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree, professional qualification or relevant experience in Technology Security
  • Experience in cyber security risk management, governance and control frameworks
  • Experience supporting risk registers, control assessments, audits or assurance activities
  • Knowledge of information security and risk management standards (ex: ISO/IEC 27001, NIST, COBIT)
  • Strong understanding of cyber security threats and ability to assess business and operational impact
  • Experience working with policies, standards, controls and compliance requirements
  • Strong communication skills, with the ability to explain cyber risks and control gaps in clear business language
  • Ability to work effectively across technical and non‑technical stakeholders, balancing security, risk and business needs
  • Fluency in the English language
Job Responsibility
Job Responsibility
  • Integrated into the Portugal Cyber Security Governance, Risk & Control function, with responsibility for ensuring that cyber security risks are identified, assessed, governed and managed within Vodafone’s risk tolerance
  • Contributing to the three main areas: Cyber Risk Management, Security Governance and Control Assurance
  • Act as a Cyber GRC Subject Matter Expert to enable technical and business teams to operate Vodafone products and services in a secure and compliant manner, with strong focus on cyber risk, policy adherence and control effectiveness
  • Ensuring that cyber security risks are properly identified, assessed, governed and managed, that security controls are effectively implemented and evidenced, and that all governance processes supporting those controls are in place, in line with Vodafone Group cyber security strategy and local market technology and business priorities
  • Follow up on risks, controls and remediation actions throughout their lifecycle, ensuring proper understanding of cyber security requirements, analysing, classifying and prioritising cyber risks according to business context, and supporting informed risk decisions
  • Report to the Cyber Security GRC Team Lead in Portugal and be an active part of the local market Cyber Security team, supporting effective collaboration with local structures such as Network, Digital & IT, Secure by Design, Cyber Defence, Corporate Security, Privacy, Legal, Risk and Compliance, among others
What we offer
What we offer
  • Hybrid Work Model - Flexible hybrid work model with 8-10 in-office days per month, managed by team leaders
  • Vodafone Products and Services - Employees get a mobile phone, free communication plan, data card, and various discounts on services and products
  • Recognition - Recognition programs for innovative, creative, high-potential employees and exemplary behaviors
  • Health and Well-being - Well-being Program offers nutrition and psychological consultations, webinars, workshops, and discounts on various services and products
  • Learning - Access to Communities of Practice and a customizable digital training platform with high-quality content (namely Harvard Business Publishing and Skillsoft)
  • Local and International Mobility - Internal recruitment with local and international rotation opportunities across departments and roles
Read More
Arrow Right

Information Assurance Specialist

The Information Assurance/Security Engineer will provide security engineering an...
Location
Location
United States , Bethesda
Salary
Salary:
Not provided
anavationllc.com Logo
AnaVation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active TS/SCI Clearance with CI Polygraph
  • Bachelor’s degree in Network Engineering, Computer Science or related technical field plus 5-7 years of Cyber Security/Operations support
  • DoD 8140 IAT Level II Certification (CCNA-Security, CySA+, CND, Security+)
  • Documenting network schemas and cyber operation tool solutions
  • Knowledgeable regarding compliance with: ICD 503, FISMA, OMB, NIST, and DoD (8150.01 March 12, 2014) [Risk Management Framework and Cyber Network Defense…], and other mandated security regulations and standards
  • Knowledge and experience with managing and monitoring compliance with Privileged User Access (PUA), Data Transfer Access (DTA), and Removable Media Custodian (RMC) privileges, forms, and signatures
  • Support to vulnerability management, patching, information assurance and/or ATO process for Classified DoD or IC environments
  • Demonstrated documentation writing for security plans, tests, and reports
  • Must demonstrate strong teamwork, communication (both verbal and written), and presentation skills
  • Must demonstrate strong initiative to accept new technical challenges in complex security engineering assignments
Job Responsibility
Job Responsibility
  • Provide security engineering and information assurance support to the Government’s Assessment and Authorization (A&A) process to maintain Authority to Operate (ATO) and Authority to Connect (ATC) for mission applications and services
  • Designs, develops, monitors and documents security controls, security testing, security reporting, and plan of actions and milestones (POA&Ms) throughout systems and application lifecycles in support of mission systems
  • Provides security engineering design inputs, security design reviews, and security best practices as part of technical and change requests
  • Configures and validates secure systems, physical controls, and tests security products and systems to detect security weaknesses
  • Maintains XACTA security records for supported systems
What we offer
What we offer
  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance
  • Fulltime
Read More
Arrow Right

Managing Consultant - Digital Trust and Cyber Security

We are seeking a highly accomplished Managing Consultant to join our Digital Tru...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
paconsulting.com Logo
PA Consulting
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Extensive experience in cyber security, some of which in a leadership role, ideally gained within a consulting organisation or a consulting style role
  • Proven track record of leading large-scale cyber security projects and engagements
  • Deep understanding of cyber security principles, technologies, and best practices
  • Strong business acumen with the ability to align cyber security strategies with organizational goals
  • Excellent client management skills, with a demonstrated ability to build and maintain executive-level relationships
  • Exceptional communication and presentation skills, with the ability to articulate complex technical concepts to non-technical stakeholders
  • Proven leadership and team management skills, with a commitment to fostering a positive and inclusive work environment
Job Responsibility
Job Responsibility
  • Shape and lead the firm’s Digital Trust & Cyber Security strategy, ensuring alignment with financial services sector needs
  • Provide expert guidance on specialist areas such as identity & access management (IAM), zero-trust architectures, cloud security, and data privacy frameworks, payment systems, fraud detection, digital banking security, and third-party/vendor risk management
  • Advise financial institutions on regulatory compliance (e.g., FCA/PRA, relevant regulations, ISO 27001, NIST, CSF, Data Privacy regulation)
  • Act as a thought leader, contributing to industry forums, white papers, and public discussions on digital security, cyber risks, and operational resilience
  • Leverage an extensive C-suite network to drive business development and build long-term client relationships
  • Identify and secure new business opportunities, positioning the firm as a trusted advisor in digital trust, cyber security, and resilience consulting
  • Develop and execute go-to-market strategies, ensuring revenue growth and client retention in the financial sector
  • Lead high-profile client engagements, from origination to execution, ensuring measurable impact and business outcomes
  • Advise clients in areas such as identity & access management (IAM), zero-trust architectures, cloud security, data privacy frameworks, fraud detection, digital banking security, and third-party/vendor risk management
  • Support financial institutions in achieving compliance with evolving regulations, enhancing operational resilience and cyber incident response capabilities
What we offer
What we offer
  • Health and lifestyle perks accompanying private healthcare for you and your family
  • 25 days annual leave (plus a bonus half day on Christmas Eve) with the opportunity to buy 5 additional days
  • Generous company pension scheme
  • Opportunity to get involved with community and charity-based initiatives
  • Annual performance-based bonus
  • PA share ownership
  • Tax efficient benefits (cycle to work, give as you earn)
  • Fulltime
Read More
Arrow Right

Asia Supplier Information & Cyber Security Manager

Do you like Information and Cyber Security Controls, auditing and contract negot...
Location
Location
Taiwan , Linkou
Salary
Salary:
Not provided
asml.com Logo
ASML
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Overall 10-15 years working experiences
  • 8+ of relevant experience in Information Cyber Security and contracting strategy and/or execution, preferably in a corporate, technology-related environment
  • Master/Bachelor degree in an IT technical field or equivalent professional experience
  • IT auditor or equivalent certification (par example CISA)
  • Valid industry security related certifications such as the Certified Information Systems Security Professional (CISSP)
  • Overseeing the whole ISO27001 version 2021 with in-depth knowledge of each aspect is preferred
  • Having Information and Cyber Security knowledge on a management level and being able to be a counterpart for Subject Matter Experts
  • Having a pragmatic approach and can act differently depending on the specific situation
  • Knowledge and experience with security audit frameworks and standards
  • Analytical, precise, tenacious, autonomous
Job Responsibility
Job Responsibility
  • Update the supplier security policy and supplier security standard based on experience, relevant trends from outside and law/regulations
  • Continues improvement of process, people and technology
  • Dashboarding/reporting (update your part of the dashboards)
  • Reporting on progress by maintaining your part of the central overview on progress of the negotiations for security controls
  • Assessing IT Security Controls of suppliers as received in written form (self-assessment and onsite assessments)
  • Assessing risks related to IT Security Controls
  • Giving a final advice for the risks by writing an advice (residual risk)
  • Drive improvement of suppliers
  • Assessing and improving Cyber Security risks at suppliers identified by our Cyber Security Tool
  • Be the initial interface with the supplier and the Cyber Security Specialist in case of a security incident at suppliers
  • Fulltime
Read More
Arrow Right

Secure by Design Expert

We are seeking a Secure by Design Expert to join our Global Cyber Security UK te...
Location
Location
Romania , Iasi
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree in telecommunications, computer science, or equivalent
  • Strong understanding of security architecture, risk management principles, and data privacy legislation
  • Hands-on experience with IT & Digital technologies including application security, mobile apps, cloud infrastructure, and network security
  • Ability to scope penetration tests and guide remediation of vulnerabilities
  • Excellent communication skills to explain complex security requirements in simple terms
  • Knowledge of security standards such as ISO27001, TSR, and PCI-DSS is desirable
  • Technical certifications (e.g., CISSP, SCCP) are an advantage
Job Responsibility
Job Responsibility
  • Perform Secure by Design assessments and provide consultancy to projects and business areas
  • Embed effective security practices into IT & Digital processes
  • Deliver cyber security guidance, design input, and review/approval of connectivity across Vodafone networks
  • Specify and oversee security testing, ensuring vulnerabilities are remediated
  • Identify and manage cyber security risks, ensuring compliance with Vodafone policies and UK Telecommunications Security Act
  • Influence stakeholders and maintain strong relationships across business functions
  • Provide technical leadership and task direction to Secure by Design Specialists and Cyber Security Champions
What we offer
What we offer
  • Hybrid way of working: 2 days per week/ 8 per month
  • Medical and dental services
  • Life and hospitalization insurance
  • Dedicated employee phone subscription
  • Take control of your benefits and choose any of the below options: MEAL TICKETS/ PRIVATE PENSION/VACATION VOUCHERS/ CULTURAL VOUCHERS within the budget
  • Special discounts for gyms and retailers
  • Annual Company Bonus
  • Ongoing Education – we continuously invest in you to ensure you have everything needed to excel on the job and enhance your skills
  • You get to work with tried and trusted web-technology
  • We let you write your own story by planning vacations: go for a trip, experience new things, have fun and enjoy your 23 days off
  • Fulltime
Read More
Arrow Right

Supplier Governance Manager

The role reports into the Senior Manager of Governance and Reporting in our Pers...
Location
Location
Australia , Sydney
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Demonstrated experience in supplier / vendor management, procurement, or contract administration
  • Strong understanding of governance, risk, and compliance ideally within the financial services industry
  • Excellent verbal and written communication skills
  • Demonstrated understanding of cyber security standards, IT systems, and risk management practices
  • Experience working across Enterprise Risk, Operational Risk, Governance, Legal, Compliance, or Regulatory Assurance
  • High attention to detail with focus on compliance and regulatory requirements
  • Strong analytical and problem-solving skills
  • Experience in managing and fostering strong relationships with internal teams and supplier partners
  • Ability to plan and prioritise effectively, organise tasks and manage competing resources and demands
  • Tertiary qualifications in a relevant discipline
Job Responsibility
Job Responsibility
  • Oversee the onboarding, renewal, and governance of supplier contracts
  • Ensure compliance with procurement, cyber security, IT, as well as risk and regulatory standards
  • Work closely with internal teams to manage supplier supervision and monitoring programs
  • Assess suppliers required to be onboarded
  • Provide oversight over end-to-end supplier onboarding, contract renewals and variations, document execution, supplier governance, and offboarding
  • Oversee negotiations with suppliers
  • Work closely with the Cyber Governance team
  • Maintain accurate records of supplier agreements, risk assessments, compliance documentation, and supervision and monitoring routines
  • Facilitate supervision and monitoring routines
  • Assist with analysing the effectiveness of supplier partnerships
What we offer
What we offer
  • Inclusive Culture
  • Flexible Work-Life Balance
  • Career Development
  • Financial and Well-being Perks
  • Fulltime
Read More
Arrow Right