CrawlJobs Logo

Information Risk Assurer

datacareers.co.uk Logo

DataCareers

Location Icon

Location:
United Kingdom , Kidlington

Category Icon
Category:

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

We are supporting a public sector organisation in Oxfordshire to appoint an experienced Information Risk Assurer to strengthen information assurance, accreditation and secure-by-design practices across ICT services. This is a delivery-focused role, working closely with architects, project teams and suppliers to ensure systems, services and data meet national, legal and local security requirements.

Job Responsibility:

  • Develop and update Information Assurance processes, policies and local standards
  • Review system and solution designs to ensure secure-by-design principles are applied
  • Identify information security risks and provide proportionate mitigation recommendations
  • Produce clear security guidance for users and delivery teams
  • Advise on security requirements for new and existing IT systems, including cloud services
  • Review third-party security questionnaires and assess supplier suitability during onboarding
  • Support accreditation activity through security documentation, risk assessments and assurance artefacts

Requirements:

  • Proven experience in Information Assurance or Information Security within a complex environment
  • Strong understanding of information risk management and secure system design
  • Experience assessing technical designs and third-party security controls
  • Knowledge of relevant government or policing security standards and frameworks
  • Ability to communicate security requirements to technical and non-technical stakeholders
  • Must hold or be eligible for NPPV3 and SC clearance

Nice to have:

Public sector or policing experience is highly desirable

Additional Information:

Job Posted:
February 13, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Information Risk Assurer

Senior Information Assurance Specialist

We’re looking for a highly skilled Senior Information Assurance Specialist to he...
Location
Location
United Kingdom , Oxford or Hampshire
Salary
Salary:
Not provided
datacareers.co.uk Logo
DataCareers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong technical security background (cloud, MS stack, architecture, modern tech risks)
  • Applied IA experience: NIST, security controls, risk assessment
  • Ability to coach others and communicate clearly with non-technical stakeholders
  • Experience in a regulated environment (policing, HMG, MoD or similar)
  • Collaborative, proactive approach with high integrity
  • Act as a visible advocate for high standards of information assurance
  • Relevant professional qualifications (e.g. CISSP, CISMP, Information Security certifications) are also preferred
  • A full UK driving licence is essential due to travel and operational flexibility requirements
  • Five years of continuous UK residency to enable the necessary background checks to be completed
Job Responsibility
Job Responsibility
  • Lead SyAP assessments
  • Produce high-quality assurance evidence
  • Help align policies and standards with national expectations
  • Uplift colleagues through mentoring, translating complex concepts into plain language and supporting a maturing IA function
  • Assess security controls, guide secure-by-design decisions and support the organisation in managing risk across both established and emerging technologies
  • Bring clarity, rigour and practical insight to ensure decisions are safe, proportionate and evidence-based
What we offer
What we offer
  • 30 days annual leave plus bank holidays
  • Hybrid and flexible working arrangements
  • Career development pathways and continuous professional learning
  • A wide range of wellbeing support services and staff networks
  • Lifestyle and discount schemes
  • Local Government Pension Scheme
Read More
Arrow Right

Operational Risk Management - Quality Assurance Lead - SVP

Operational Risk Assurance teams support the Global Operational Risk function by...
Location
Location
United Kingdom , Belfast
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Substantial years of experience in Internal Audit, Operational Risk Assurance or Compliance Assurance with strong knowledge of 2nd line Testing & Monitoring routines
  • Outstanding communication and influencing skills through all levels of the organization and with external partners and vendors
  • Exceptional relationship management skills
  • In depth knowledge of Assurance Methodologies, technology platforms supporting 2nd line Risk Management
  • Ability to effectively communicate complex topics to a broad audience
  • Detailed oriented with analytical skills
  • Expert in Microsoft Office Tools
  • Bachelor’s/University degree, Master’s degree preferred
Job Responsibility
Job Responsibility
  • Responsible for maintaining and evolving the ORM Quality Assurance Methodology and desktop procedures
  • Establishes and oversees the execution of ORM Quality Assurance for the whole of Global ORM teams
  • Lead and manage a team of Quality Assurance testing team and be responsible for coaching and development of the team
  • Responsible for undertaking or contributing to certain governance processes such as annual planning, change management of annual plans
  • Responsible for providing challenge to the ORM coverage and Risk SME teams for Independent Challenge activities including and undertaking quality assurance activities for areas as advised by the Head Operational Risk Assurance from time to time
  • Co-ordinating and managing stakeholder engagements within wider Risk organization
  • Responsible for providing management information
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behaviour, conduct and business practices, and escalating, managing and reporting control issues with transparency
What we offer
What we offer
  • Generous holiday allowance starting at 27 days plus bank holidays
  • increasing with tenure
  • A discretional annual performance related bonus
  • Private medical insurance packages to suit your personal circumstances
  • Employee Assistance Program
  • Pension Plan
  • Paid Parental Leave
  • Special discounts for employees, family, and friends
  • Access to an array of learning and development resources
  • Fulltime
Read More
Arrow Right

Information Assurance Specialist

The Information Assurance/Security Engineer will provide security engineering an...
Location
Location
United States , Bethesda
Salary
Salary:
Not provided
anavationllc.com Logo
AnaVation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active TS/SCI Clearance with CI Polygraph
  • Bachelor’s degree in Network Engineering, Computer Science or related technical field plus 5-7 years of Cyber Security/Operations support
  • DoD 8140 IAT Level II Certification (CCNA-Security, CySA+, CND, Security+)
  • Documenting network schemas and cyber operation tool solutions
  • Knowledgeable regarding compliance with: ICD 503, FISMA, OMB, NIST, and DoD (8150.01 March 12, 2014) [Risk Management Framework and Cyber Network Defense…], and other mandated security regulations and standards
  • Knowledge and experience with managing and monitoring compliance with Privileged User Access (PUA), Data Transfer Access (DTA), and Removable Media Custodian (RMC) privileges, forms, and signatures
  • Support to vulnerability management, patching, information assurance and/or ATO process for Classified DoD or IC environments
  • Demonstrated documentation writing for security plans, tests, and reports
  • Must demonstrate strong teamwork, communication (both verbal and written), and presentation skills
  • Must demonstrate strong initiative to accept new technical challenges in complex security engineering assignments
Job Responsibility
Job Responsibility
  • Provide security engineering and information assurance support to the Government’s Assessment and Authorization (A&A) process to maintain Authority to Operate (ATO) and Authority to Connect (ATC) for mission applications and services
  • Designs, develops, monitors and documents security controls, security testing, security reporting, and plan of actions and milestones (POA&Ms) throughout systems and application lifecycles in support of mission systems
  • Provides security engineering design inputs, security design reviews, and security best practices as part of technical and change requests
  • Configures and validates secure systems, physical controls, and tests security products and systems to detect security weaknesses
  • Maintains XACTA security records for supported systems
What we offer
What we offer
  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance
  • Fulltime
Read More
Arrow Right

Senior Information Assurance Specialist

Barbaricum is seeking a Senior Information Assurance Specialist to lead cybersec...
Location
Location
United States , Fort Eustis, Virginia; Fort Leavenworth, Kansas
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD Top Secret/SCI clearance required
  • Bachelor’s degree in cybersecurity, IT, or related field preferred
  • 8-13 years’ experience
  • CISSP, CISM, or equivalent certification required
  • Extensive experience with DoD cybersecurity frameworks and RMF
Job Responsibility
Job Responsibility
  • Develop and enforce information assurance policies and procedures
  • Perform risk assessments and vulnerability analyses for IT systems
  • Manage system accreditation processes, including RMF compliance
  • Oversee security audits and incident response activities
  • Provide guidance and mentorship to junior information assurance personnel
Read More
Arrow Right

Risk & Assurance Manager - IT & Infosec

This role focuses on managing and enhancing the IT and Information Security risk...
Location
Location
United Kingdom , Manchester; Marlow
Salary
Salary:
Not provided
softcat.com Logo
Softcat
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 5 years of experience in second-line risk management or internal audit, with a strong focus on IT or Information Security
  • Experience in consultancy or professional services, with a proven ability to support complex transformation or change programmes is preferred
  • Demonstrated leadership in delivering IT risk or audit initiatives, including managing projects, mentoring team members, and driving outcomes
  • Strong knowledge of industry frameworks and standards, such as ISO 27001, NIST, CIS Controls, and regulatory requirements like GDPR
  • Proven ability to engage and influence stakeholders across IT, Information Security, and business functions, building trusted relationships at all levels
Job Responsibility
Job Responsibility
  • Partnering with senior IT, Security, and business leaders to embed risk management practices into operational processes and strategic initiatives
  • Owning and maintaining IT Risk and Control Matrices (RCMs), ensuring they remain current, comprehensive, and aligned with industry standards and audit expectations
  • Reviewing effectiveness of first line functions in testing and validation of key IT controls (e.g., access management, change control, incident response, vulnerability management), ensuring effectiveness and consistency
  • Leading in the review and enhancement of IT and infosec risk and control frameworks (e.g., ISO 27001, ITIL, ISO22301, NIST), ensuring alignment with business objectives and regulatory requirements
  • Coordinating and representing IT risk in internal, external audits and certification processes (e.g., ISO 27001, Cyber Essentials, ISO22301, etc.), acting as the primary point of contact
What we offer
What we offer
  • Pension
  • Share incentive plan
  • Life Assurance
  • Healthcare
  • Holiday
  • Trips
  • Vouchers
  • Partner/family Benefits
  • Perklife
  • Maternity, Paternity and Adoption support
  • Fulltime
Read More
Arrow Right

Cyber Information Assurance Analyst SME

The Cyber Information Assurance Analyst SME supports the customer by performing ...
Location
Location
United States , Ft. Meade
Salary
Salary:
131000.00 - 155000.00 USD / Year
chickasaw.com Logo
Chickasaw Nation Industries, Inc (CNI)
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Must possess appropriate level of certifications for this position as required by the contract
  • Required DOD Top Secret Clearance with SCI eligibility
  • Bachelor's Degree and a minimum of ten plus (10+) years of experience in systems security, or equivalent combination of education/experience
Job Responsibility
Job Responsibility
  • Performs extensive assessments of systems and networks within the networking environment or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy
  • Establishes strict program control processes to ensure mitigation of risks and supports obtaining certification and accreditation of systems
  • Assists in the implementation of the required government policy and makes recommendations on process tailoring
  • Supports the formal Security Test and Evaluation required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports
  • Periodically conducts of a review of each system's audits and monitors corrective actions until all actions are closed
What we offer
What we offer
  • Medical
  • Dental
  • Vision
  • Company Life Insurance
  • Short-Term and Long-Term Disability Insurance
  • 401(K) Immediate Vesting
  • Professional Development Assistance
  • Legal Aid Assistance Program
  • Family Planning / Fertility Assistance
  • Personal Time Off
  • Fulltime
Read More
Arrow Right

Cyber Information Assurance Analyst - Junior Assessor

The Cyber Information Assurance Analyst supports the customer by performing anal...
Location
Location
United States , Ft. Meade, MD
Salary
Salary:
65000.00 - 70000.00 USD / Year
chickasaw.com Logo
Chickasaw Nation Industries, Inc (CNI)
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • The ability to obtain, maintain and access classified information at the TS/SCI level
  • DoD 8570 IAM/IA Technical (IAT) Level II certification
  • Familiarity with STIGs (Security Technical Implementation Guides), Security Requirement Guides (SRGs), Plan of Action and Milestones (POA&Ms) and cybersecurity best practices
  • Understanding of the RMF process, NIST SP 800- 37, NIST SP 800-53, CNSSI 1253
  • Familiarity with relevant tools such as eMASS, STIG Viewer, Nessus, ACAS, SCAP, or HBSS
  • Strong written and verbal communication skills for reporting assessment findings
  • This position requires travel ~85% CONUS & OCONUS
  • Bachelor's Degree and a minimum of one to two (1-2) years of experience in systems security, or equivalent combination of education/experience
Job Responsibility
Job Responsibility
  • Conducts cybersecurity assessments, audits, and inspections for DoD organizations and partners handling DoD information or connecting to the DoDIN
  • Evaluates systems and Defensive Cyberspace Operations using cyber threat emulation and performance-based testing
  • Adheres to policies and processes for each assessment type
  • Supports assessment development and execution to ensure security expertise is properly applied
  • Coordinates logistics, test plans, and scope with the SCA Team Lead
  • Performs vulnerability assessments, capture results using STIG Viewer or designated tools, and document findings in eMASS
  • Analyzes security gaps and provide mitigation recommendations
  • Validates cybersecurity controls, TTPs, STIGs, RMF controls, and compliance with DoD policies and guidelines
  • Provides risk analysis and assessment results for authorization recommendations
  • Participates in daily assessment reviews, in-briefs, and out-briefs, sharing findings with the SCA-R
What we offer
What we offer
  • Medical
  • Dental
  • Vision
  • 401(k)
  • Family Planning/Fertility Assistance
  • STD/LTD/Basic Life/AD&D
  • Legal-Aid Program
  • Employee Assistance Program (EAP)
  • Paid Time Off (PTO) – (11) Federal Holidays
  • Training and Development Opportunities
  • Fulltime
Read More
Arrow Right

EERS Quality Assurance Manager

The EERS Quality Assurance Manager provides leadership and direction to the team...
Location
Location
Hungary , Budapest
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8 - 10 years of relevant experience
  • Information Security
  • Risk Management
  • Time management to meet deadlines and communicate status with management
  • Take direction and produce results in a timely manner with minimum oversight
  • Succeed in a fast-paced environment
  • Willing to work occasional off hours to cover meetings in other parts of the world
  • General computer knowledge
  • MS Excel advanced functions / power user
  • Basic MS Access
Job Responsibility
Job Responsibility
  • Initial assessment, triage, research, and remediation of any issues found in the Enterprise Entitlement Review System (EERS) feed
  • Partner with IAM EERS Governance on IS governance programs and coordinating within the team to implement policy/process changes
  • Understand risk and control levels for multi-functional areas for IAM supported systems/applications/tools and propose revisions where necessary
  • Readily adopt automation strategies/process enhancements wherever practical and cost efficient
  • Partner with peers within other Global Process Owner (GPO) teams and across Identity & Access Management to maximize operational efficiencies and effectiveness
  • Maintain a professional relationship with our business partners, colleagues and external customers through effective communications and diplomacy to guide and influence IS practices
  • Proactively engage in any new system development or major enhancements that affect EERS Integration team's services for the team to provide appropriate support and advisory
  • Provide updates to IAM leadership and our business partners through multiple channels including verbal and written media
  • Proactively review EERS integration team's processes to address business impacts based on metrics review, business and IAM partner feedback or other sources to identify root causes and possible process improvements
  • Ensure strong process level governance, including monitoring and control efforts for the support provided by EERS Integrations team, in compliance with IAM Standards
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right