Overview The role Willis Re is a technology led reinsurance broker built on a cloud native, modular and data driven platform. As the Technology Head of AI & Emerging Tech, you will own the overall technology strategy and roadmap for AI, automation and next generation capabilities. As a member of the technology leadership team, you will turn innovation into scaled capabilities across broking, placement, analytics, and client servicing-balancing speed with safety, and experimentation with operational excellence. You will partner closely with the Product Manager, Brokers and business leaders to design simple and scalable solutions and move them from pilot to production with clear accountability. Operating in a hybrid delivery model, you will set standards, govern risk and ensure alignment to global architectures and security requirements, while enabling regional flexibility where needed. Key Responsibilities Define and own the technology strategy for AI, aligned to business priorities; translate value propositions into a roadmap. Lead delivery of AI solutions across pricing support, submission triage, document and market data extraction, client insight, workflow automation and co pilot experiences for employees. Establish responsible AI governance and controls in partnership with Cyber, Data Protection and Legal, covering model risk, data privacy, transparency, human in the loop and auditing. Build the target operating model for AI engineering and MLOps, including model lifecycle management, monitoring, incident response, versioning and cost/performance optimisation. Set global standards for AI platforms, toolchains and integration patterns; ensure interoperability with enterprise data platforms and adherence to security and compliance requirements. Drive rapid experimentation with clear exit criteria; scale successful pilots into reliable, maintainable services using automated testing, observability and release practices. Develop and manage strategic vendor and partner relationships, balancing build vs. buy decisions and negotiating commercial and risk terms that protect value. Provide executive level communication and storytelling on technology strategy, risks and outcomes; partner effectively with Product Managers, Brokers and clients to shape solutions that fit market workflows. Assist Product Managers to ensure solutions land successfully with business teams. Maintain horizon scanning and technology assessment, identifying pragmatic opportunities to introduce new capabilities that enhance agility and global scalability. About you You are a business minded technology leader who turns AI and advanced technology into practical capabilities. You combine strategic clarity with hands on depth, moving comfortably from business conversation to solution design and delivery oversight, and you anchor decisions in risk and value. You thrive in a start up environment and are comfortable operating beyond your usual remit to get things done-partnering with business, engineers and regional leaders to unblock delivery and drive adoption. You communicate crisply with business leaders, make trade offs explicit and hold clear ownership for outcomes. Skills and experience Significant experience leading digital transformation, with proven delivery of AI, automation and emerging technology in complex, cloud first environments. Proven capability to architect end to end solutions as well as deliver them, from reference architectures and integration patterns through to production rollout and adoption. Proven delivery of AI/ML and GenAI solutions in production, including document intelligence, NLP, search/summary, recommendation, decision support and workflow automation. Strong grasp of responsible AI, security and compliance, including model risk management, privacy, data residency, human oversight and auditability. Hands on understanding of AI/MLOps practices and platforms, including model lifecycle, observability, cost control, CI/CD, feature stores and data integration. Experience defining and governing enterprise standards and architectures for AI platforms, APIs and integration, aligned to global patterns with regional flexibility. Demonstrated ability to partner with business leaders, translating business requirements into scalable solutions. Vendor and partner management expertise, including evaluation, contracting and ongoing performance management tied to value realisation. Excellent communication and stakeholder management skills, with credible engagement at all levels and across multi region teams. About Willis Re We combine specialist broking with analytics, modeling and research to help insurers optimise risk transfer, strengthen balance sheets and achieve sustainable growth. Our approach is relationship driven, transparent and outcome focused. At the heart of Willis Re is a focus on delivering the most cutting edge analytical solutions to enable more informed, better decision making for risk selection, portfolio optimisation, and capital management. The launch of Willis Re brings a strategic advantage of being unhindered by legacy, an ability to leverage data, statistical models and advanced technologies with the best knowledge and expertise to deliver more efficient and effective reinsurance outcomes. This places Willis Re in a unique position to build a truly analytically driven business, focused on creating solutions for the reinsurance industry that are future led and forward thinking. Willis Re will also leverage recognised technical expertise from WTW's Insurance Consulting & Technology business including their advanced modelling and analytical capabilities. Alongside this will be WTW's Research Network, an award winning business supporting and influencing science to improve the understanding and quantification of risk. Diversity & Inclusion We are committed to embracing a diverse, inclusive, and flexible work environment. We provide equal opportunity to all qualified individuals regardless of race, colour, religion, age, gender, gender expression, national origin, veteran status, disability, orientation, or any other legally protected categories. If you have a need that requires accommodation, please email us at .
27/07/2026
Full time
Overview The role Willis Re is a technology led reinsurance broker built on a cloud native, modular and data driven platform. As the Technology Head of AI & Emerging Tech, you will own the overall technology strategy and roadmap for AI, automation and next generation capabilities. As a member of the technology leadership team, you will turn innovation into scaled capabilities across broking, placement, analytics, and client servicing-balancing speed with safety, and experimentation with operational excellence. You will partner closely with the Product Manager, Brokers and business leaders to design simple and scalable solutions and move them from pilot to production with clear accountability. Operating in a hybrid delivery model, you will set standards, govern risk and ensure alignment to global architectures and security requirements, while enabling regional flexibility where needed. Key Responsibilities Define and own the technology strategy for AI, aligned to business priorities; translate value propositions into a roadmap. Lead delivery of AI solutions across pricing support, submission triage, document and market data extraction, client insight, workflow automation and co pilot experiences for employees. Establish responsible AI governance and controls in partnership with Cyber, Data Protection and Legal, covering model risk, data privacy, transparency, human in the loop and auditing. Build the target operating model for AI engineering and MLOps, including model lifecycle management, monitoring, incident response, versioning and cost/performance optimisation. Set global standards for AI platforms, toolchains and integration patterns; ensure interoperability with enterprise data platforms and adherence to security and compliance requirements. Drive rapid experimentation with clear exit criteria; scale successful pilots into reliable, maintainable services using automated testing, observability and release practices. Develop and manage strategic vendor and partner relationships, balancing build vs. buy decisions and negotiating commercial and risk terms that protect value. Provide executive level communication and storytelling on technology strategy, risks and outcomes; partner effectively with Product Managers, Brokers and clients to shape solutions that fit market workflows. Assist Product Managers to ensure solutions land successfully with business teams. Maintain horizon scanning and technology assessment, identifying pragmatic opportunities to introduce new capabilities that enhance agility and global scalability. About you You are a business minded technology leader who turns AI and advanced technology into practical capabilities. You combine strategic clarity with hands on depth, moving comfortably from business conversation to solution design and delivery oversight, and you anchor decisions in risk and value. You thrive in a start up environment and are comfortable operating beyond your usual remit to get things done-partnering with business, engineers and regional leaders to unblock delivery and drive adoption. You communicate crisply with business leaders, make trade offs explicit and hold clear ownership for outcomes. Skills and experience Significant experience leading digital transformation, with proven delivery of AI, automation and emerging technology in complex, cloud first environments. Proven capability to architect end to end solutions as well as deliver them, from reference architectures and integration patterns through to production rollout and adoption. Proven delivery of AI/ML and GenAI solutions in production, including document intelligence, NLP, search/summary, recommendation, decision support and workflow automation. Strong grasp of responsible AI, security and compliance, including model risk management, privacy, data residency, human oversight and auditability. Hands on understanding of AI/MLOps practices and platforms, including model lifecycle, observability, cost control, CI/CD, feature stores and data integration. Experience defining and governing enterprise standards and architectures for AI platforms, APIs and integration, aligned to global patterns with regional flexibility. Demonstrated ability to partner with business leaders, translating business requirements into scalable solutions. Vendor and partner management expertise, including evaluation, contracting and ongoing performance management tied to value realisation. Excellent communication and stakeholder management skills, with credible engagement at all levels and across multi region teams. About Willis Re We combine specialist broking with analytics, modeling and research to help insurers optimise risk transfer, strengthen balance sheets and achieve sustainable growth. Our approach is relationship driven, transparent and outcome focused. At the heart of Willis Re is a focus on delivering the most cutting edge analytical solutions to enable more informed, better decision making for risk selection, portfolio optimisation, and capital management. The launch of Willis Re brings a strategic advantage of being unhindered by legacy, an ability to leverage data, statistical models and advanced technologies with the best knowledge and expertise to deliver more efficient and effective reinsurance outcomes. This places Willis Re in a unique position to build a truly analytically driven business, focused on creating solutions for the reinsurance industry that are future led and forward thinking. Willis Re will also leverage recognised technical expertise from WTW's Insurance Consulting & Technology business including their advanced modelling and analytical capabilities. Alongside this will be WTW's Research Network, an award winning business supporting and influencing science to improve the understanding and quantification of risk. Diversity & Inclusion We are committed to embracing a diverse, inclusive, and flexible work environment. We provide equal opportunity to all qualified individuals regardless of race, colour, religion, age, gender, gender expression, national origin, veteran status, disability, orientation, or any other legally protected categories. If you have a need that requires accommodation, please email us at .
IT Operations Security Manager Reference: JUL Expiry date: 15:37, Wed, 5th Aug 2026 Location: Home-Based Benefits: Pension, Life Assurance and Retail & Company discounts We are looking for an experienced IT Operations Security Manager to oversee our Operations Security team, providing an exemplary service to our business. This is a fast-paced and diverse role where you'll lead a dynamic team of 4 to deliver an effective, proactive security function. You will be responsible for ensuring all day-to-day activities are carried out within a controlled and compliant framework. You will need to continually improve the security of the platforms, based on our ISMS model. Automation is also very important to us, and we need you to lead the automation agenda. In this rewarding role you'll show excellent interpersonal and conflict management skills, and must be able to ensure that our users receive professional and efficient technical support, in addition to managing ticket escalation. Responsibilities will include: Leading a skilled team of Operational Security Specialists Providing oversight and direction on security incident triage, mitigation and remediation Maintaining and improving security operational dashboards and processes including (but not limited to) security incidents, vulnerabilities, agent and asset health, Azure and M365 security posture Assessing and managing the updates to hardware, software, and services through our change process Analysing the threats and risks that face the organisation and developing solutions for them Assisting with audits, arranging penetration testing and responding to security assessments Acting as one of the focal points for any security breaches/investigations, recommending the best course of action in consultation with Head of Technology Participating in the incident management process, and undertaking the security role in the Major Incident Team Ensuring security enforcing controls are effective by working closely with the Group IT team Reporting on the effectiveness of security using security metrics Developing best practice processes in the team Input into the Security roadmap for with the Head of Technology to continue the evolution of the security services function and platforms, securing our business and client data Benefits Salary - Up to £70,000 per annum depending on experience. Annual Leave - Start with 24 days, increasing to 26 days with service, plus the flexibility to buy or sell up to 5 extra days each year. Of course, you'll have public holidays too and an extra day off to celebrate your birthday! Pension -Employer contributions of 5%. Financial Benefits - Enjoy the security of free life assurance, a save-as-you-earn scheme, a colleague referral scheme (earning £1,000 per referral), and our Benefits App with discounts and cashback at top retailers like Tesco, Asda, Currys, B&Q, and Wickes. Wellbeing & Lifestyle Services - Access our colleague assistance programme with 24/7 GP service, mental health support and physiotherapy plus cycle to work, eyecare vouchers, Health Cash Plan, Dental Plan and Travel Insurance. Professional Development - We've partnered with Pluralsight to provide you with cutting edge content created by industry experts. Gain Access to thousands of courses, skill tests, and learning paths to enhance your career. Motoring Benefits - Take advantage of exclusive Colleague vehicle leasing schemes, discounted repairs, and reduced rates on weekend car and van hires. Stream -A free financial wellbeing app that gives you more control over your pay, helps you save, provides financial advice and offers even more discounts on your shopping. About you You will have around 5 years of security experience, and experience in a similar role Sound working knowledge of security legislation such as GDPR, Data Protection Act, Computer Misuse Act and Fraud Act. In depth knowledge of security best practice Strong knowledge of infrastructure, networking cloud technology and security concepts. About Us ZIGUP is a leading integrated mobility solutions provider. We're trusted by many of the UKs leading insurance and leasing companies, fleet operators, OEMs and blue-chip corporates, delivering a wide array of solutions from vehicle rental and fleet management to accident management, vehicle repairs, service and maintenance. We are proud to have been awarded a King's Award for Enterprise in 2025, recognised for our commitment to promoting opportunity and supporting social mobility. We're committed to building a diverse, inclusive, and respectful workplace where everyone can thrive. We actively welcome applications from people of all backgrounds, experiences, identities, and abilities. If you need adjustments at any stage of the recruitment process, just let us know. We're here to support you. We are agile. We are experts. We are imaginative. We are reliable.
27/07/2026
Full time
IT Operations Security Manager Reference: JUL Expiry date: 15:37, Wed, 5th Aug 2026 Location: Home-Based Benefits: Pension, Life Assurance and Retail & Company discounts We are looking for an experienced IT Operations Security Manager to oversee our Operations Security team, providing an exemplary service to our business. This is a fast-paced and diverse role where you'll lead a dynamic team of 4 to deliver an effective, proactive security function. You will be responsible for ensuring all day-to-day activities are carried out within a controlled and compliant framework. You will need to continually improve the security of the platforms, based on our ISMS model. Automation is also very important to us, and we need you to lead the automation agenda. In this rewarding role you'll show excellent interpersonal and conflict management skills, and must be able to ensure that our users receive professional and efficient technical support, in addition to managing ticket escalation. Responsibilities will include: Leading a skilled team of Operational Security Specialists Providing oversight and direction on security incident triage, mitigation and remediation Maintaining and improving security operational dashboards and processes including (but not limited to) security incidents, vulnerabilities, agent and asset health, Azure and M365 security posture Assessing and managing the updates to hardware, software, and services through our change process Analysing the threats and risks that face the organisation and developing solutions for them Assisting with audits, arranging penetration testing and responding to security assessments Acting as one of the focal points for any security breaches/investigations, recommending the best course of action in consultation with Head of Technology Participating in the incident management process, and undertaking the security role in the Major Incident Team Ensuring security enforcing controls are effective by working closely with the Group IT team Reporting on the effectiveness of security using security metrics Developing best practice processes in the team Input into the Security roadmap for with the Head of Technology to continue the evolution of the security services function and platforms, securing our business and client data Benefits Salary - Up to £70,000 per annum depending on experience. Annual Leave - Start with 24 days, increasing to 26 days with service, plus the flexibility to buy or sell up to 5 extra days each year. Of course, you'll have public holidays too and an extra day off to celebrate your birthday! Pension -Employer contributions of 5%. Financial Benefits - Enjoy the security of free life assurance, a save-as-you-earn scheme, a colleague referral scheme (earning £1,000 per referral), and our Benefits App with discounts and cashback at top retailers like Tesco, Asda, Currys, B&Q, and Wickes. Wellbeing & Lifestyle Services - Access our colleague assistance programme with 24/7 GP service, mental health support and physiotherapy plus cycle to work, eyecare vouchers, Health Cash Plan, Dental Plan and Travel Insurance. Professional Development - We've partnered with Pluralsight to provide you with cutting edge content created by industry experts. Gain Access to thousands of courses, skill tests, and learning paths to enhance your career. Motoring Benefits - Take advantage of exclusive Colleague vehicle leasing schemes, discounted repairs, and reduced rates on weekend car and van hires. Stream -A free financial wellbeing app that gives you more control over your pay, helps you save, provides financial advice and offers even more discounts on your shopping. About you You will have around 5 years of security experience, and experience in a similar role Sound working knowledge of security legislation such as GDPR, Data Protection Act, Computer Misuse Act and Fraud Act. In depth knowledge of security best practice Strong knowledge of infrastructure, networking cloud technology and security concepts. About Us ZIGUP is a leading integrated mobility solutions provider. We're trusted by many of the UKs leading insurance and leasing companies, fleet operators, OEMs and blue-chip corporates, delivering a wide array of solutions from vehicle rental and fleet management to accident management, vehicle repairs, service and maintenance. We are proud to have been awarded a King's Award for Enterprise in 2025, recognised for our commitment to promoting opportunity and supporting social mobility. We're committed to building a diverse, inclusive, and respectful workplace where everyone can thrive. We actively welcome applications from people of all backgrounds, experiences, identities, and abilities. If you need adjustments at any stage of the recruitment process, just let us know. We're here to support you. We are agile. We are experts. We are imaginative. We are reliable.
We believe in the power of ingenuity to build a positive human future. As strategies, technologies, and innovation collide, we create opportunity from complexity. Our teams of interdisciplinary experts combine innovative thinking and breakthrough technologies to progress further, faster. Our clients adapt and transform, and together we achieve enduring results. We are over 4,000 strategists, innovators, designers, consultants, digital experts, scientists, engineers, and technologists. And we have deep expertise in consumer and manufacturing, defence and security, energy and utilities, financial services, government and public services, health and life sciences, and transport. Our teams operate globally from offices across the UK, Ireland, US, Nordics, and Netherlands. PA. Bringing Ingenuity to Life. We believe in the power of ingenuity to build a positive human future. We challenge where it matters and own the outcome. We combine strategic thinking, customer centric service design, and agile engineering practices to help organisations harness the potential of Artificial Intelligence safely, responsibly, and at scale. Join our Digital & Data team working alongside AI specialists, data scientists, engineers, cyber security experts, risk professionals, regulatory specialists, and cross disciplinary teams to help clients unlock value from AI while managing associated risks. Grow a flexible and unique career within a trust based, inclusive environment that values excellence, innovation, and curiosity. You have the option to progress with us on a technical career track. No need to go onto the Partner career track if this doesn't align with what you want to do. Hybrid working - our approach is to be in the office or on client site a minimum of 2 days per week. Hybrid working - our approach is to be in the office or on client site a minimum of 2 days per week. Work on a broad variety of projects and tech stacks for clients across seven sectors - no project is ever the same Join other experts within our supportive and collaborative tech community through knowledge sharing and peer level support, coaching and mentoring Deepen your expertise through our culture of learning and growth - you'll have budget to take courses (technical and non technical training), plus gain certifications What you can expect Work to agile best practices and cross functionally with multiple teams and stakeholders. You'll be helping clients design, implement and operationalise AI governance frameworks, as well as contributing to internal initiatives. Support clients in navigating emerging AI regulations, standards, and guidance while enabling innovation and business value. Facilitate workshops, governance forums, risk assessments, and operating model design activities with senior stakeholders. Live in person whiteboarding sessions to problem solve as a team, alongside asynchronous communication on Teams. Hybrid working with the team on client site or in our office a minimum of two days per week. However, the actual time you spend and where you spend it will vary by role or assignment, including up to 5 days per week on a client site. You must be an established consulting professional with experience delivering projects focused on AI governance, responsible AI, AI risk management, model governance, or emerging technology regulation within the private sector. Ideally, you should have experience consulting with Life Sciences, Government or Consumer & Manufacturing sector clients. Even if you don't meet every requirement below, feel free to still apply as we are often hiring for similar roles which your background might be better suited to. You thrive in problem solving and analytical thinking. You enjoy collaborating with multiple stakeholders in a fast paced environment. Proven experience with AI governance frameworks, policies, controls, and operating models. Experience interpreting and applying AI related regulations, standards, and guidance, such as the EU AI Act, NIST AI Risk Management Framework (AI RMF), ISO/IEC 42001, ISO/IEC 23894, OECD AI Principles, and emerging regulatory requirements. Experience conducting AI risk assessments, model governance reviews, algorithmic impact assessments, or responsible AI evaluations. Familiarity with AI lifecycle governance, including controls relating to model development, validation, deployment, monitoring, explainability, transparency, accountability, and human oversight. Experience working with Generative AI technologies and associated governance considerations, including data usage, intellectual property, security, privacy, bias, and model risk. The ability to efficiently understand client organisations and their business models and to tailor AI governance approaches to their strategic, operational, and regulatory requirements. The ability to communicate effectively with different stakeholders (e.g. business, legal, compliance, risk, IT, security, data science, and engineering teams) on AI governance and responsible AI matters. An analytical mindset, with a focus on producing quality work in a results oriented environment. Desirable qualifications and experience Experience implementing governance tooling, AI inventory solutions, model risk management platforms, or GRC technologies. Experience with data governance, privacy, cyber security, model risk management, or technology risk disciplines. Knowledge of machine learning and Generative AI technologies, including Large Language Models (LLMs). Possession of relevant certifications such as ISO 42001 Lead Implementer/Auditor, IAPP AIGP, CRISC, CISM, CISSP, AWS/Azure AI certifications, or equivalent. Where you do not have the qualifications, we will support you in achieving them. Experience defining AI governance processes, committees, policies, standards, controls, and reporting frameworks. Experience supporting AI governance programmes within highly regulated sectors is preferred. Please be aware that some of our UK roles at PA Consulting require a UK security clearance. All PA people are required to undergo background checks and to achieve the Baseline Personnel Security Standard; however, some UK roles also require higher levels of National Security Vetting, where applicants must have at least 5 years of continuous residency in the UK. We therefore ask that you only apply if you meet the residency requirements (i.e. you are a British citizen or have been resident in the UK for the past 5 years), as this is the prerequisite for a security clearance. If you're unsure about your eligibility, we encourage you to review the UK Government's guidance on security vetting before applying. Additional information Please note that the interview stages may be subject to change based on the specific requirements of the role. Quick call with one of our Tech Recruiters - to discuss your application, the role and PA. Round 1: Either a competency or technical interview (60 mins). Round 2: Either a competency or technical interview, whichever you didn't do at first round (60 mins). Final round: Meeting with a PA leader - a mini case study and discussion around your client centricity (60 mins). Life At PA encompasses our peoples' experience at PA. It's about how we enrich peoples' working lives by giving them access to unique people and growth opportunities and purpose led meaningful work. Our purpose guides how we work with our clients and our teams, and support our communities, to deliver insight and impact, solving the world's most complex challenges. We're focused on building a workplace that values human difference and diverse mindsets, and a culture of inclusion and equality that unlocks the potential in our people so everyone can be their best self. Find out more about Life at PA here. We are dedicated to supporting the physical, emotional, social and financial well being of our people. Check out some of our extensive benefits: Health and lifestyle perks accompanying private healthcare for you and your family. 25 days annual leave (plus a bonus half day on Christmas Eve) with the opportunity to buy 5 additional days. Generous company pension scheme. Opportunity to get involved with community and charity based initiatives. Annual performance based bonus. PA share ownership. Tax efficient benefits (cycle to work, give as you earn). We're committed to advancing equality. We recruit, retain, reward and develop our people based solely on their abilities and contributions and without reference to their age, background, disability, genetic information, parental or family status, religion or belief, race, ethnicity, nationality, sex, sexual orientation, gender identity (or expression), political belief, veteran status, or any other range of human difference brought about by identity and experience. We welcome applications from underrepresented groups. Adjustments or accommodations - Should you need any adjustments or accommodations to the recruitment process, at either application or interview, please contact us on .
27/07/2026
Full time
We believe in the power of ingenuity to build a positive human future. As strategies, technologies, and innovation collide, we create opportunity from complexity. Our teams of interdisciplinary experts combine innovative thinking and breakthrough technologies to progress further, faster. Our clients adapt and transform, and together we achieve enduring results. We are over 4,000 strategists, innovators, designers, consultants, digital experts, scientists, engineers, and technologists. And we have deep expertise in consumer and manufacturing, defence and security, energy and utilities, financial services, government and public services, health and life sciences, and transport. Our teams operate globally from offices across the UK, Ireland, US, Nordics, and Netherlands. PA. Bringing Ingenuity to Life. We believe in the power of ingenuity to build a positive human future. We challenge where it matters and own the outcome. We combine strategic thinking, customer centric service design, and agile engineering practices to help organisations harness the potential of Artificial Intelligence safely, responsibly, and at scale. Join our Digital & Data team working alongside AI specialists, data scientists, engineers, cyber security experts, risk professionals, regulatory specialists, and cross disciplinary teams to help clients unlock value from AI while managing associated risks. Grow a flexible and unique career within a trust based, inclusive environment that values excellence, innovation, and curiosity. You have the option to progress with us on a technical career track. No need to go onto the Partner career track if this doesn't align with what you want to do. Hybrid working - our approach is to be in the office or on client site a minimum of 2 days per week. Hybrid working - our approach is to be in the office or on client site a minimum of 2 days per week. Work on a broad variety of projects and tech stacks for clients across seven sectors - no project is ever the same Join other experts within our supportive and collaborative tech community through knowledge sharing and peer level support, coaching and mentoring Deepen your expertise through our culture of learning and growth - you'll have budget to take courses (technical and non technical training), plus gain certifications What you can expect Work to agile best practices and cross functionally with multiple teams and stakeholders. You'll be helping clients design, implement and operationalise AI governance frameworks, as well as contributing to internal initiatives. Support clients in navigating emerging AI regulations, standards, and guidance while enabling innovation and business value. Facilitate workshops, governance forums, risk assessments, and operating model design activities with senior stakeholders. Live in person whiteboarding sessions to problem solve as a team, alongside asynchronous communication on Teams. Hybrid working with the team on client site or in our office a minimum of two days per week. However, the actual time you spend and where you spend it will vary by role or assignment, including up to 5 days per week on a client site. You must be an established consulting professional with experience delivering projects focused on AI governance, responsible AI, AI risk management, model governance, or emerging technology regulation within the private sector. Ideally, you should have experience consulting with Life Sciences, Government or Consumer & Manufacturing sector clients. Even if you don't meet every requirement below, feel free to still apply as we are often hiring for similar roles which your background might be better suited to. You thrive in problem solving and analytical thinking. You enjoy collaborating with multiple stakeholders in a fast paced environment. Proven experience with AI governance frameworks, policies, controls, and operating models. Experience interpreting and applying AI related regulations, standards, and guidance, such as the EU AI Act, NIST AI Risk Management Framework (AI RMF), ISO/IEC 42001, ISO/IEC 23894, OECD AI Principles, and emerging regulatory requirements. Experience conducting AI risk assessments, model governance reviews, algorithmic impact assessments, or responsible AI evaluations. Familiarity with AI lifecycle governance, including controls relating to model development, validation, deployment, monitoring, explainability, transparency, accountability, and human oversight. Experience working with Generative AI technologies and associated governance considerations, including data usage, intellectual property, security, privacy, bias, and model risk. The ability to efficiently understand client organisations and their business models and to tailor AI governance approaches to their strategic, operational, and regulatory requirements. The ability to communicate effectively with different stakeholders (e.g. business, legal, compliance, risk, IT, security, data science, and engineering teams) on AI governance and responsible AI matters. An analytical mindset, with a focus on producing quality work in a results oriented environment. Desirable qualifications and experience Experience implementing governance tooling, AI inventory solutions, model risk management platforms, or GRC technologies. Experience with data governance, privacy, cyber security, model risk management, or technology risk disciplines. Knowledge of machine learning and Generative AI technologies, including Large Language Models (LLMs). Possession of relevant certifications such as ISO 42001 Lead Implementer/Auditor, IAPP AIGP, CRISC, CISM, CISSP, AWS/Azure AI certifications, or equivalent. Where you do not have the qualifications, we will support you in achieving them. Experience defining AI governance processes, committees, policies, standards, controls, and reporting frameworks. Experience supporting AI governance programmes within highly regulated sectors is preferred. Please be aware that some of our UK roles at PA Consulting require a UK security clearance. All PA people are required to undergo background checks and to achieve the Baseline Personnel Security Standard; however, some UK roles also require higher levels of National Security Vetting, where applicants must have at least 5 years of continuous residency in the UK. We therefore ask that you only apply if you meet the residency requirements (i.e. you are a British citizen or have been resident in the UK for the past 5 years), as this is the prerequisite for a security clearance. If you're unsure about your eligibility, we encourage you to review the UK Government's guidance on security vetting before applying. Additional information Please note that the interview stages may be subject to change based on the specific requirements of the role. Quick call with one of our Tech Recruiters - to discuss your application, the role and PA. Round 1: Either a competency or technical interview (60 mins). Round 2: Either a competency or technical interview, whichever you didn't do at first round (60 mins). Final round: Meeting with a PA leader - a mini case study and discussion around your client centricity (60 mins). Life At PA encompasses our peoples' experience at PA. It's about how we enrich peoples' working lives by giving them access to unique people and growth opportunities and purpose led meaningful work. Our purpose guides how we work with our clients and our teams, and support our communities, to deliver insight and impact, solving the world's most complex challenges. We're focused on building a workplace that values human difference and diverse mindsets, and a culture of inclusion and equality that unlocks the potential in our people so everyone can be their best self. Find out more about Life at PA here. We are dedicated to supporting the physical, emotional, social and financial well being of our people. Check out some of our extensive benefits: Health and lifestyle perks accompanying private healthcare for you and your family. 25 days annual leave (plus a bonus half day on Christmas Eve) with the opportunity to buy 5 additional days. Generous company pension scheme. Opportunity to get involved with community and charity based initiatives. Annual performance based bonus. PA share ownership. Tax efficient benefits (cycle to work, give as you earn). We're committed to advancing equality. We recruit, retain, reward and develop our people based solely on their abilities and contributions and without reference to their age, background, disability, genetic information, parental or family status, religion or belief, race, ethnicity, nationality, sex, sexual orientation, gender identity (or expression), political belief, veteran status, or any other range of human difference brought about by identity and experience. We welcome applications from underrepresented groups. Adjustments or accommodations - Should you need any adjustments or accommodations to the recruitment process, at either application or interview, please contact us on .
SAP Security Control Specialist £46,400 - £60,000 plus great benefits (Work Level 5) Manchester city centre - in this role you'll work in a hybrid way splitting your time between home and the office two days per week (find out more about our hybrid working policy at ). We're open to applications from people who may require flexible working arrangements. There'll be an opportunity to discuss your flexible working requirements during the interview process, and at offer stage. We're reshaping our Digital, Technology and Data function for the future, creating new opportunities, strengthening our capability, and building clearer, more resilient ways of working so we can deliver even better services for our Co-op, our colleagues, members and customers. We're looking for a SAP Security Control Specialist to join our Enterprise Platforms team and help us keep our SAP landscape secure, compliant and resilient. In this role, you'll design, implement and continuously improve security controls across SAP platforms that support our Finance, Retail, Commercial and Supply Chain operations, helping to protect critical business systems while enabling colleagues to work effectively. Working closely with engineers, architects, product teams and security specialists, you'll ensure security is built into SAP solutions from the start, embedding security-by-design principles and keeping our controls aligned to Co-op's security standards and risk appetite. Why this role matters This is an exciting opportunity to influence security, governance and compliance across one of Co-op's most critical technology platforms. You'll help shape how security is embedded within SAP delivery, ensuring risks are managed effectively while enabling business change. It's a role where you'll combine technical expertise, problem solving and stakeholder collaboration to strengthen security controls, improve access governance and deliver meaningful improvements across a complex SAP environment. What you'll do Design, implement and maintain security controls across SAP platforms to support secure and compliant operations Manage and improve SAP roles, authorisations and role-based access controls, ensuring access follows least-privilege principles and aligns to business requirements Assess and monitor segregation of duties (SoD) risks, identifying and addressing potential control weaknesses Work with engineering, architecture, product and platform teams to embed security-by-design principles into system changes, configurations and delivery processes Support risk, audit and compliance activities by providing security expertise, evidencing control effectiveness and ensuring controls meet regulatory and internal requirements Investigate and resolve SAP security and access-related issues, minimising risk and operational impact Review the effectiveness of existing controls and drive continuous improvement initiatives across the SAP environment Act as a trusted advisor to stakeholders, providing guidance on SAP security risks, controls and best practices What you'll bring We're committed to making our roles as accessible as possible, so we only ask for the minimum criteria. To thrive here, you'll need to bring: Experience working with SAP security, including roles, authorisations, role-based access control (RBAC) models and access governance Good understanding of segregation of duties (SoD), access risk management and SAP security governance Experience working with SAP GRC, access governance solutions and related control frameworks Knowledge of identity and access management principles, including privileged access, user provisioning, role-based access control and least-privilege models Experience supporting security risk, audit and compliance activities within complex enterprise SAP environments Strong analytical and problem-solving skills, with the ability to assess risks and implement practical solutions Excellent communication skills, with the ability to explain technical security concepts in a clear and business-friendly way A proactive approach to continuous improvement and a commitment to keeping up to date with SAP security trends and best practice We know some people may hesitate to apply if they don't meet every requirement. At Co-op, we're committed to building diverse and inclusive teams, so if you're excited about this role but your experience doesn't align perfectly, we still encourage you to apply. Why Co-op? At Co-op, we're owned by our members. And because we're owned by you, we can do right by you. So when you join us, you're not just taking a job, you're joining a movement. We're an organisation that puts people and communities first, and we're powered by purpose. We want this to be a place where you can thrive, so you'll also receive: An annual bonus (based on personal and business performance) 28 days holiday (rising to 32 with service) plus bank holidays A pension with up to 10% employer contributions Private healthcare Access to a subsidised onsite gym (at our Manchester HQ) 30% discount on Co-op products and 10% off other brands Stream - early access to a percentage of your pay as you earn it Virtual healthcare including GP appointments, mental health support, nutrition and fitness advice 24/7 colleague support service Training and support for your development and career progression Cycle-to-work scheme A place you'll belong We're building diverse and inclusive teams that reflect the communities we serve. We welcome applications from everyone and are committed to creating a workplace where colleagues can feel like they belong, supported by our inclusive policies and the ways we work. We're proud to be part of the Disability Confident scheme and offer interviews to disabled candidates who meet the minimum criteria for a job. If you need any adjustments during the recruitment process, we'll support you. Learn more about our recruitment process at jobs.coop.co.uk/apply-process and our inclusion commitments at jobs.coop.co.uk/diversity-inclusion
26/07/2026
Full time
SAP Security Control Specialist £46,400 - £60,000 plus great benefits (Work Level 5) Manchester city centre - in this role you'll work in a hybrid way splitting your time between home and the office two days per week (find out more about our hybrid working policy at ). We're open to applications from people who may require flexible working arrangements. There'll be an opportunity to discuss your flexible working requirements during the interview process, and at offer stage. We're reshaping our Digital, Technology and Data function for the future, creating new opportunities, strengthening our capability, and building clearer, more resilient ways of working so we can deliver even better services for our Co-op, our colleagues, members and customers. We're looking for a SAP Security Control Specialist to join our Enterprise Platforms team and help us keep our SAP landscape secure, compliant and resilient. In this role, you'll design, implement and continuously improve security controls across SAP platforms that support our Finance, Retail, Commercial and Supply Chain operations, helping to protect critical business systems while enabling colleagues to work effectively. Working closely with engineers, architects, product teams and security specialists, you'll ensure security is built into SAP solutions from the start, embedding security-by-design principles and keeping our controls aligned to Co-op's security standards and risk appetite. Why this role matters This is an exciting opportunity to influence security, governance and compliance across one of Co-op's most critical technology platforms. You'll help shape how security is embedded within SAP delivery, ensuring risks are managed effectively while enabling business change. It's a role where you'll combine technical expertise, problem solving and stakeholder collaboration to strengthen security controls, improve access governance and deliver meaningful improvements across a complex SAP environment. What you'll do Design, implement and maintain security controls across SAP platforms to support secure and compliant operations Manage and improve SAP roles, authorisations and role-based access controls, ensuring access follows least-privilege principles and aligns to business requirements Assess and monitor segregation of duties (SoD) risks, identifying and addressing potential control weaknesses Work with engineering, architecture, product and platform teams to embed security-by-design principles into system changes, configurations and delivery processes Support risk, audit and compliance activities by providing security expertise, evidencing control effectiveness and ensuring controls meet regulatory and internal requirements Investigate and resolve SAP security and access-related issues, minimising risk and operational impact Review the effectiveness of existing controls and drive continuous improvement initiatives across the SAP environment Act as a trusted advisor to stakeholders, providing guidance on SAP security risks, controls and best practices What you'll bring We're committed to making our roles as accessible as possible, so we only ask for the minimum criteria. To thrive here, you'll need to bring: Experience working with SAP security, including roles, authorisations, role-based access control (RBAC) models and access governance Good understanding of segregation of duties (SoD), access risk management and SAP security governance Experience working with SAP GRC, access governance solutions and related control frameworks Knowledge of identity and access management principles, including privileged access, user provisioning, role-based access control and least-privilege models Experience supporting security risk, audit and compliance activities within complex enterprise SAP environments Strong analytical and problem-solving skills, with the ability to assess risks and implement practical solutions Excellent communication skills, with the ability to explain technical security concepts in a clear and business-friendly way A proactive approach to continuous improvement and a commitment to keeping up to date with SAP security trends and best practice We know some people may hesitate to apply if they don't meet every requirement. At Co-op, we're committed to building diverse and inclusive teams, so if you're excited about this role but your experience doesn't align perfectly, we still encourage you to apply. Why Co-op? At Co-op, we're owned by our members. And because we're owned by you, we can do right by you. So when you join us, you're not just taking a job, you're joining a movement. We're an organisation that puts people and communities first, and we're powered by purpose. We want this to be a place where you can thrive, so you'll also receive: An annual bonus (based on personal and business performance) 28 days holiday (rising to 32 with service) plus bank holidays A pension with up to 10% employer contributions Private healthcare Access to a subsidised onsite gym (at our Manchester HQ) 30% discount on Co-op products and 10% off other brands Stream - early access to a percentage of your pay as you earn it Virtual healthcare including GP appointments, mental health support, nutrition and fitness advice 24/7 colleague support service Training and support for your development and career progression Cycle-to-work scheme A place you'll belong We're building diverse and inclusive teams that reflect the communities we serve. We welcome applications from everyone and are committed to creating a workplace where colleagues can feel like they belong, supported by our inclusive policies and the ways we work. We're proud to be part of the Disability Confident scheme and offer interviews to disabled candidates who meet the minimum criteria for a job. If you need any adjustments during the recruitment process, we'll support you. Learn more about our recruitment process at jobs.coop.co.uk/apply-process and our inclusion commitments at jobs.coop.co.uk/diversity-inclusion
PMO - Exit Support Specialist Must have an Active DV Clearance You will work closely with Programme Managers, PMO teams, commercial teams, and operational stakeholders to deliver effective transition, knowledge transfer, and contract closure activities. The position is ideal for an experienced PMO professional with strong coordination, governance, and stakeholder management skills who thrives in fast-paced programme environments. PMO - Exit Support Specialist Responsibilities Support the planning, coordination, and delivery of programme and contract exit activities. Maintain and track exit plans, milestones, risks, issues, dependencies, actions, and decisions. Coordinate knowledge transfer, documentation handover, asset tracking, and service transition activities. Monitor progress against exit schedules and provide reporting to programme leadership. Support governance forums and ensure compliance with contractual and organisational requirements. Coordinate onboarding and offboarding activities associated with programme transition. Track financial, commercial, and contractual obligations throughout programme exit. Support audit, assurance, and evidence gathering activities. Contribute to continual improvement of PMO governance and transition processes. PMO - Exit Support Specialist Skills and Experience Proven experience within a PMO, Programme Support, or Project Coordination role. Strong planning, scheduling, and progress tracking capability. Experience with PMO governance, reporting, and programme controls. Strong RAID, dependency, and action management experience. Experience coordinating knowledge transfer and documentation activities. Excellent stakeholder engagement and communication skills. Strong analytical, organisational, and problem-solving abilities. Ability to manage multiple priorities within fast-paced delivery environments. Advanced Microsoft Excel, PowerPoint, SharePoint, and PMO toolset experience. Proactive, adaptable, resilient, and customer focused with excellent attention to detail. LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance. An award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over multiple years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience. Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
26/07/2026
Full time
PMO - Exit Support Specialist Must have an Active DV Clearance You will work closely with Programme Managers, PMO teams, commercial teams, and operational stakeholders to deliver effective transition, knowledge transfer, and contract closure activities. The position is ideal for an experienced PMO professional with strong coordination, governance, and stakeholder management skills who thrives in fast-paced programme environments. PMO - Exit Support Specialist Responsibilities Support the planning, coordination, and delivery of programme and contract exit activities. Maintain and track exit plans, milestones, risks, issues, dependencies, actions, and decisions. Coordinate knowledge transfer, documentation handover, asset tracking, and service transition activities. Monitor progress against exit schedules and provide reporting to programme leadership. Support governance forums and ensure compliance with contractual and organisational requirements. Coordinate onboarding and offboarding activities associated with programme transition. Track financial, commercial, and contractual obligations throughout programme exit. Support audit, assurance, and evidence gathering activities. Contribute to continual improvement of PMO governance and transition processes. PMO - Exit Support Specialist Skills and Experience Proven experience within a PMO, Programme Support, or Project Coordination role. Strong planning, scheduling, and progress tracking capability. Experience with PMO governance, reporting, and programme controls. Strong RAID, dependency, and action management experience. Experience coordinating knowledge transfer and documentation activities. Excellent stakeholder engagement and communication skills. Strong analytical, organisational, and problem-solving abilities. Ability to manage multiple priorities within fast-paced delivery environments. Advanced Microsoft Excel, PowerPoint, SharePoint, and PMO toolset experience. Proactive, adaptable, resilient, and customer focused with excellent attention to detail. LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance. An award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over multiple years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience. Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
Job Description We are seeking a Cyber Security Analyst - Cloud Security Specialist to help protect Heathrow's cloud infrastructure, applications, and services. They will work as part of the Cyber Security Solutions Team ensuring security is integrated into the design, deployment, and operations of cloud-based systems. This role will involve identifying and mitigating cloud-related security risks, ensuring compliance with industry standards, and driving continuous improvement in cloud security practices. They will help ensure that the organisation's cloud environments are designed, managed, and configured according to the highest Cyber Security principles and that Cloud environments are configured to comply with industry good practice, standards and regulatory requirements. The individual will work closely with cloud specialists across the organisation to provide technical expertise, validate cloud security configurations, and support the overall Cyber Security posture. Your role will involve Cloud Security Strategy and Design: Help develop and implement cloud security frameworks, ensuring that security best practices are integrated into all aspects of cloud infrastructure and services. Cloud Security Operations: Ensure appropriate monitoring, detection, and response to security threats and vulnerabilities within cloud environments is embedded from the outset. Conduct risk assessments and security audits to identify areas of improvement and ensure compliance with regulatory requirements. Incident Response & Forensics: Support incident response efforts in cloud environments, including identifying and investigating security incidents and breaches. Provide technical input and support to root cause analysis and recommend corrective actions. Automation & Optimisation: Automate security controls, monitoring, and response processes to improve operational efficiency and reduce risk in cloud environments. Collaboration & Communication: Work closely with development teams, DevOps, and other stakeholders to implement security controls in cloud infrastructure. Provide clear and concise communication to both technical and non-technical stakeholders regarding security risks, incidents, and resolutions. Compliance & Governance: Ensure adherence to regulatory requirements and industry standards within cloud environments. Assist with audits and ensure security governance is in place. Continuous Improvement: Stay up-to-date with emerging cloud security trends and vulnerabilities. Continuously evaluate and enhance security practices to keep up with evolving cloud technologies and threats. These skills are essential Strong experience of hands-on technical experience in Cloud security engineering, with a proven track record of securing cloud environments. Solid experience with cloud architecture, security protocols, and secure cloud configurations. Proven track record of providing Cyber Security guidance on cloud application design, implementation, and ongoing management. Experience in ensuring compliance with industry standards and regulations related to cloud security (e.g., NIST, ISO 27001, PCI-DSS, GDPR). Experience working with cross-functional teams and collaborating with development engineers, Cyber Security specialists, and other internal stakeholders to ensure cloud security. Deep knowledge of cloud platforms and services (Azure, Google Cloud). Experience of security Cloud platforms including Salesforce. Expertise in cloud security tools and technologies (e.g., Shield, Azure Security, SCCP, Wiz, Guard). Strong understanding of web application and cloud firewalls, encryption, identity and API security. Experience with automation tools (e.g., Terraform, Ansible, CloudFormation) for securing cloud infrastructure. Ideally, you'll have Experience with network security in cloud environments (e.g., AWS, Azure) and hybrid network configurations. Experience with DevSecOps practices, secure coding, and cloud-native application security. Familiarity with containerisation technologies (e.g., Docker, Kubernetes) and their security implications.
26/07/2026
Full time
Job Description We are seeking a Cyber Security Analyst - Cloud Security Specialist to help protect Heathrow's cloud infrastructure, applications, and services. They will work as part of the Cyber Security Solutions Team ensuring security is integrated into the design, deployment, and operations of cloud-based systems. This role will involve identifying and mitigating cloud-related security risks, ensuring compliance with industry standards, and driving continuous improvement in cloud security practices. They will help ensure that the organisation's cloud environments are designed, managed, and configured according to the highest Cyber Security principles and that Cloud environments are configured to comply with industry good practice, standards and regulatory requirements. The individual will work closely with cloud specialists across the organisation to provide technical expertise, validate cloud security configurations, and support the overall Cyber Security posture. Your role will involve Cloud Security Strategy and Design: Help develop and implement cloud security frameworks, ensuring that security best practices are integrated into all aspects of cloud infrastructure and services. Cloud Security Operations: Ensure appropriate monitoring, detection, and response to security threats and vulnerabilities within cloud environments is embedded from the outset. Conduct risk assessments and security audits to identify areas of improvement and ensure compliance with regulatory requirements. Incident Response & Forensics: Support incident response efforts in cloud environments, including identifying and investigating security incidents and breaches. Provide technical input and support to root cause analysis and recommend corrective actions. Automation & Optimisation: Automate security controls, monitoring, and response processes to improve operational efficiency and reduce risk in cloud environments. Collaboration & Communication: Work closely with development teams, DevOps, and other stakeholders to implement security controls in cloud infrastructure. Provide clear and concise communication to both technical and non-technical stakeholders regarding security risks, incidents, and resolutions. Compliance & Governance: Ensure adherence to regulatory requirements and industry standards within cloud environments. Assist with audits and ensure security governance is in place. Continuous Improvement: Stay up-to-date with emerging cloud security trends and vulnerabilities. Continuously evaluate and enhance security practices to keep up with evolving cloud technologies and threats. These skills are essential Strong experience of hands-on technical experience in Cloud security engineering, with a proven track record of securing cloud environments. Solid experience with cloud architecture, security protocols, and secure cloud configurations. Proven track record of providing Cyber Security guidance on cloud application design, implementation, and ongoing management. Experience in ensuring compliance with industry standards and regulations related to cloud security (e.g., NIST, ISO 27001, PCI-DSS, GDPR). Experience working with cross-functional teams and collaborating with development engineers, Cyber Security specialists, and other internal stakeholders to ensure cloud security. Deep knowledge of cloud platforms and services (Azure, Google Cloud). Experience of security Cloud platforms including Salesforce. Expertise in cloud security tools and technologies (e.g., Shield, Azure Security, SCCP, Wiz, Guard). Strong understanding of web application and cloud firewalls, encryption, identity and API security. Experience with automation tools (e.g., Terraform, Ansible, CloudFormation) for securing cloud infrastructure. Ideally, you'll have Experience with network security in cloud environments (e.g., AWS, Azure) and hybrid network configurations. Experience with DevSecOps practices, secure coding, and cloud-native application security. Familiarity with containerisation technologies (e.g., Docker, Kubernetes) and their security implications.
Job Description We are seeking a Cyber Security Analyst - Cloud Security Specialist to help protect Heathrow's cloud infrastructure, applications, and services. They will work as part of the Cyber Security Solutions Team ensuring security is integrated into the design, deployment, and operations of cloud-based systems. This role will involve identifying and mitigating cloud-related security risks, ensuring compliance with industry standards, and driving continuous improvement in cloud security practices. They will help ensure that the organisation's cloud environments are designed, managed, and configured according to the highest Cyber Security principles and that Cloud environments are configured to comply with industry good practice, standards and regulatory requirements. The individual will work closely with cloud specialists across the organisation to provide technical expertise, validate cloud security configurations, and support the overall Cyber Security posture. Your role will involve Cloud Security Strategy and Design: Help develop and implement cloud security frameworks, ensuring that security best practices are integrated into all aspects of cloud infrastructure and services. Cloud Security Operations: Ensure appropriate monitoring, detection, and response to security threats and vulnerabilities within cloud environments is embedded from the outset. Conduct risk assessments and security audits to identify areas of improvement and ensure compliance with regulatory requirements. Incident Response & Forensics: Support incident response efforts in cloud environments, including identifying and investigating security incidents and breaches. Provide technical input and support to root cause analysis and recommend corrective actions. Automation & Optimisation: Automate security controls, monitoring, and response processes to improve operational efficiency and reduce risk in cloud environments. Collaboration & Communication: Work closely with development teams, DevOps, and other stakeholders to implement security controls in cloud infrastructure. Provide clear and concise communication to both technical and non-technical stakeholders regarding security risks, incidents, and resolutions. Compliance & Governance: Ensure adherence to regulatory requirements and industry standards within cloud environments. Assist with audits and ensure security governance is in place. Continuous Improvement: Stay up-to-date with emerging cloud security trends and vulnerabilities. Continuously evaluate and enhance security practices to keep up with evolving cloud technologies and threats. These skills are essential Strong experience of hands-on technical experience in Cloud security engineering, with a proven track record of securing cloud environments. Solid experience with cloud architecture, security protocols, and secure cloud configurations. Proven track record of providing Cyber Security guidance on cloud application design, implementation, and ongoing management. Experience in ensuring compliance with industry standards and regulations related to cloud security (e.g., NIST, ISO 27001, PCI-DSS, GDPR). Experience working with cross-functional teams and collaborating with development engineers, Cyber Security specialists, and other internal stakeholders to ensure cloud security. Deep knowledge of cloud platforms and services (Azure, Google Cloud). Experience of security Cloud platforms including Salesforce. Expertise in cloud security tools and technologies (e.g., Shield, Azure Security, SCCP, Wiz, Guard). Strong understanding of web application and cloud firewalls, encryption, identity and API security. Experience with automation tools (e.g., Terraform, Ansible, CloudFormation) for securing cloud infrastructure. Ideally, you'll have Experience with network security in cloud environments (e.g., AWS, Azure) and hybrid network configurations. Experience with DevSecOps practices, secure coding, and cloud-native application security. Familiarity with containerisation technologies (e.g., Docker, Kubernetes) and their security implications.
26/07/2026
Full time
Job Description We are seeking a Cyber Security Analyst - Cloud Security Specialist to help protect Heathrow's cloud infrastructure, applications, and services. They will work as part of the Cyber Security Solutions Team ensuring security is integrated into the design, deployment, and operations of cloud-based systems. This role will involve identifying and mitigating cloud-related security risks, ensuring compliance with industry standards, and driving continuous improvement in cloud security practices. They will help ensure that the organisation's cloud environments are designed, managed, and configured according to the highest Cyber Security principles and that Cloud environments are configured to comply with industry good practice, standards and regulatory requirements. The individual will work closely with cloud specialists across the organisation to provide technical expertise, validate cloud security configurations, and support the overall Cyber Security posture. Your role will involve Cloud Security Strategy and Design: Help develop and implement cloud security frameworks, ensuring that security best practices are integrated into all aspects of cloud infrastructure and services. Cloud Security Operations: Ensure appropriate monitoring, detection, and response to security threats and vulnerabilities within cloud environments is embedded from the outset. Conduct risk assessments and security audits to identify areas of improvement and ensure compliance with regulatory requirements. Incident Response & Forensics: Support incident response efforts in cloud environments, including identifying and investigating security incidents and breaches. Provide technical input and support to root cause analysis and recommend corrective actions. Automation & Optimisation: Automate security controls, monitoring, and response processes to improve operational efficiency and reduce risk in cloud environments. Collaboration & Communication: Work closely with development teams, DevOps, and other stakeholders to implement security controls in cloud infrastructure. Provide clear and concise communication to both technical and non-technical stakeholders regarding security risks, incidents, and resolutions. Compliance & Governance: Ensure adherence to regulatory requirements and industry standards within cloud environments. Assist with audits and ensure security governance is in place. Continuous Improvement: Stay up-to-date with emerging cloud security trends and vulnerabilities. Continuously evaluate and enhance security practices to keep up with evolving cloud technologies and threats. These skills are essential Strong experience of hands-on technical experience in Cloud security engineering, with a proven track record of securing cloud environments. Solid experience with cloud architecture, security protocols, and secure cloud configurations. Proven track record of providing Cyber Security guidance on cloud application design, implementation, and ongoing management. Experience in ensuring compliance with industry standards and regulations related to cloud security (e.g., NIST, ISO 27001, PCI-DSS, GDPR). Experience working with cross-functional teams and collaborating with development engineers, Cyber Security specialists, and other internal stakeholders to ensure cloud security. Deep knowledge of cloud platforms and services (Azure, Google Cloud). Experience of security Cloud platforms including Salesforce. Expertise in cloud security tools and technologies (e.g., Shield, Azure Security, SCCP, Wiz, Guard). Strong understanding of web application and cloud firewalls, encryption, identity and API security. Experience with automation tools (e.g., Terraform, Ansible, CloudFormation) for securing cloud infrastructure. Ideally, you'll have Experience with network security in cloud environments (e.g., AWS, Azure) and hybrid network configurations. Experience with DevSecOps practices, secure coding, and cloud-native application security. Familiarity with containerisation technologies (e.g., Docker, Kubernetes) and their security implications.
Career Choices Dewis Gyrfa Ltd
Manchester, Lancashire
£85,000 to £95,000 per year, plus excellent benefits Contract Type: Permanent Hours: Full time Disability Confident: No Closing Date: 05/08/2026 About this job Principal SAP Security Specialist Circa £85,000 - £95,000 plus private healthcare, company car or £6,000 car allowance and more great benefits (Work Level 4) Manchester city centre in this role you'll work in a hybrid way splitting your time between home and the office two days per week (find out more about our hybrid working policy at ). We're open to applications from people who may require flexible working arrangements. There'll be an opportunity to discuss your flexible working requirements during the interview process, and at offer stage. We're reshaping our Digital, Technology and Data function for the future, creating new opportunities, strengthening our capability, and building clearer, more resilient ways of working so we can deliver even better services for our Co-op, our colleagues, members and customers. We're looking for a Principal SAP Security Specialist to join our Technology team and lead the strategy, governance and continuous improvement of SAP security, GRC and IT controls across Co-op. SAP is at the heart of many of our business-critical processes, and you'll be responsible for ensuring our controls, access and compliance framework remains secure, scalable and effective, while leading a team of specialists and influencing stakeholders across the organisation. Why this role matters As our SAP landscape continues to evolve, strong security, governance and controls have never been more important. This is an opportunity to shape the future of SAP security and GRC at enterprise scale, leading a specialist team while influencing how we manage risk, compliance and access across Co-op. You'll play a key role in enabling business change while maintaining a secure and well-governed SAP environment. What you'll do Define and lead the strategy and roadmap for SAP security, authorisations, controls and GRC across ECC and S/4HANA Lead, coach and develop a team of SAP security, GRC and controls specialists, setting direction and driving high performance Own the governance of SAP role design and access management, ensuring a scalable and compliant role-based access model Provide senior oversight of SAP GRC processes, including Access Risk Analysis (ARA), Access Request Management (ARM) and segregation of duties controls Lead the continuous improvement of SAP IT general controls and automated controls, ensuring they remain effective and aligned to business needs Act as the senior point of accountability for SAP security, controls and compliance across Technology, Finance, Risk and Audit Oversee the security and controls impact of SAP and wider business change initiatives, ensuring risks are appropriately assessed and managed Drive simplification, standardisation and automation across SAP security, governance and controls processes What you'll bring We're committed to making our roles as accessible as possible, so we only ask for the minimum criteria. To thrive here, you'll need to bring: Significant experience leading SAP security, GRC and controls functions within large, complex organisations Deep expertise in SAP authorisations, role design and role-based access control (RBAC) Strong knowledge of SAP GRC Access Control, including ARA, ARM and segregation of duties management Experience supporting and governing SAP ECC, S/4HANA and Fiori security environments A strong track record of defining and operating SAP controls, governance and compliance frameworks Experience managing SAP IT general controls and supporting internal and external audit activity Proven people leadership skills, with experience developing and leading specialist teams The ability to influence and build credibility with senior stakeholders, balancing business enablement with effective risk management We know some people may hesitate to apply if they don't meet every requirement. At Co-op, we're committed to building diverse and inclusive teams, so if you're excited about this role but your experience doesn't align perfectly, we still encourage you to apply. Why Co-op? At Co-op, we're owned by our members. And because we're owned by you, we can do right by you. So when you join us, you're not just taking a job, you're joining a movement. We're an organisation that puts people and communities first, and we're powered by purpose. We want this to be a place where you can thrive, so you'll also receive: An annual bonus (based on personal and business performance) - 28 days holiday (rising to 32 with service) plus bank holidays A pension with up to 10% employer contributions Access to a subsidised onsite gym (at our Manchester HQ) - 30% discount on Co-op products and 10% off other brands Stream early access to a percentage of your pay as you earn it Virtual healthcare including GP appointments, mental health support, nutrition and fitness advice - 24/7 colleague support service Training and support for your development and career progression Cycle-to-work scheme A place you'll belong We building diverse and inclusive teams that reflect the communities we serve. We welcome applications from everyone and are committed to creating a workplace where colleagues can feel like they belong, supported by our inclusive policies and the ways we work. We're proud to be part of the Disability Confident scheme and offer interviews to disabled candidates who meet the minimum criteria for a job. If you need any adjustments during the recruitment process, we'll support you. Learn more about our recruitment process at jobs.coop.co.uk/apply-process and our inclusion commitments at jobs.coop.co.uk/diversity-inclusion Jobs are provided by the Find a Job Service from the Department for Work and Pensions (DWP).
26/07/2026
Full time
£85,000 to £95,000 per year, plus excellent benefits Contract Type: Permanent Hours: Full time Disability Confident: No Closing Date: 05/08/2026 About this job Principal SAP Security Specialist Circa £85,000 - £95,000 plus private healthcare, company car or £6,000 car allowance and more great benefits (Work Level 4) Manchester city centre in this role you'll work in a hybrid way splitting your time between home and the office two days per week (find out more about our hybrid working policy at ). We're open to applications from people who may require flexible working arrangements. There'll be an opportunity to discuss your flexible working requirements during the interview process, and at offer stage. We're reshaping our Digital, Technology and Data function for the future, creating new opportunities, strengthening our capability, and building clearer, more resilient ways of working so we can deliver even better services for our Co-op, our colleagues, members and customers. We're looking for a Principal SAP Security Specialist to join our Technology team and lead the strategy, governance and continuous improvement of SAP security, GRC and IT controls across Co-op. SAP is at the heart of many of our business-critical processes, and you'll be responsible for ensuring our controls, access and compliance framework remains secure, scalable and effective, while leading a team of specialists and influencing stakeholders across the organisation. Why this role matters As our SAP landscape continues to evolve, strong security, governance and controls have never been more important. This is an opportunity to shape the future of SAP security and GRC at enterprise scale, leading a specialist team while influencing how we manage risk, compliance and access across Co-op. You'll play a key role in enabling business change while maintaining a secure and well-governed SAP environment. What you'll do Define and lead the strategy and roadmap for SAP security, authorisations, controls and GRC across ECC and S/4HANA Lead, coach and develop a team of SAP security, GRC and controls specialists, setting direction and driving high performance Own the governance of SAP role design and access management, ensuring a scalable and compliant role-based access model Provide senior oversight of SAP GRC processes, including Access Risk Analysis (ARA), Access Request Management (ARM) and segregation of duties controls Lead the continuous improvement of SAP IT general controls and automated controls, ensuring they remain effective and aligned to business needs Act as the senior point of accountability for SAP security, controls and compliance across Technology, Finance, Risk and Audit Oversee the security and controls impact of SAP and wider business change initiatives, ensuring risks are appropriately assessed and managed Drive simplification, standardisation and automation across SAP security, governance and controls processes What you'll bring We're committed to making our roles as accessible as possible, so we only ask for the minimum criteria. To thrive here, you'll need to bring: Significant experience leading SAP security, GRC and controls functions within large, complex organisations Deep expertise in SAP authorisations, role design and role-based access control (RBAC) Strong knowledge of SAP GRC Access Control, including ARA, ARM and segregation of duties management Experience supporting and governing SAP ECC, S/4HANA and Fiori security environments A strong track record of defining and operating SAP controls, governance and compliance frameworks Experience managing SAP IT general controls and supporting internal and external audit activity Proven people leadership skills, with experience developing and leading specialist teams The ability to influence and build credibility with senior stakeholders, balancing business enablement with effective risk management We know some people may hesitate to apply if they don't meet every requirement. At Co-op, we're committed to building diverse and inclusive teams, so if you're excited about this role but your experience doesn't align perfectly, we still encourage you to apply. Why Co-op? At Co-op, we're owned by our members. And because we're owned by you, we can do right by you. So when you join us, you're not just taking a job, you're joining a movement. We're an organisation that puts people and communities first, and we're powered by purpose. We want this to be a place where you can thrive, so you'll also receive: An annual bonus (based on personal and business performance) - 28 days holiday (rising to 32 with service) plus bank holidays A pension with up to 10% employer contributions Access to a subsidised onsite gym (at our Manchester HQ) - 30% discount on Co-op products and 10% off other brands Stream early access to a percentage of your pay as you earn it Virtual healthcare including GP appointments, mental health support, nutrition and fitness advice - 24/7 colleague support service Training and support for your development and career progression Cycle-to-work scheme A place you'll belong We building diverse and inclusive teams that reflect the communities we serve. We welcome applications from everyone and are committed to creating a workplace where colleagues can feel like they belong, supported by our inclusive policies and the ways we work. We're proud to be part of the Disability Confident scheme and offer interviews to disabled candidates who meet the minimum criteria for a job. If you need any adjustments during the recruitment process, we'll support you. Learn more about our recruitment process at jobs.coop.co.uk/apply-process and our inclusion commitments at jobs.coop.co.uk/diversity-inclusion Jobs are provided by the Find a Job Service from the Department for Work and Pensions (DWP).
Information Security Manager with Network Engineering Skills Our Client is bank based in Central London who are looking to recruit a seasoned professional with at least 7 to 10 years expertise levelInformation Security coupled with Hands-on Network Engineering. The role is mainly Information Security - Data Security and split circa 80% with 20% Network Engineering - so you do need to be hands-on technically. You will ideally have circa 5+ years of work experience with Network Engineering coupled with over 10 years experience with Cisco Systems Products Role Description The Information Security Manager with Network Engineering Skills is a full-time hybrid role based in London, with the flexibility to work from home part of the week. The role oversees the design, implementation, and continuous improvement of information security policies, procedures, and controls across networks and systems. Day-to-day responsibilities include managing the Information Security Management System (ISMS), monitoring cybersecurity and network security events, coordinating incident response, and ensuring compliance with relevant standards and regulations. The person in this role will collaborate with IT and business stakeholders to assess risks, implement technical and procedural safeguards, and support secure network architecture and configuration. Additional tasks include producing security documentation, leading security awareness initiatives, and providing guidance on secure network engineering practices. Qualifications Strong skills in Information Security Management and Information Security, with experience defining and enforcing security policies and governance. Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. Demonstrated network engineering experience (e.g., routing, switching, firewalls, VPNs, secure network design). Relevant certifications such as CISSP, CISM, CISA, CompTIA Security+, or similar are beneficial. Experience with regulatory and compliance frameworks (e.g., ISO 27001, GDPR, NIST) and security best practices. Ability to analyze complex technical environments, communicate clearly with both technical and non-technical stakeholders, and document security requirements and processes. Bachelor's degree in computer science, information security, engineering, or a related field, or equivalent professional experience. Key Networking Skills Required Cisco Network Switches Layer 2 and 3 (Catalyst 9K) - CCNP Level, Expert Level Preferred Routing protocol - OSPF (Catalyst 9K) - CCNP Level, Expert Level Preferred Cisco Switch Stacking (Cat 9K Switches 9600, 9300. 9200) Virtual Routing and Forwarding - (Catalyst 9600) Internetworking Troubleshooting - CCNP Level, Expert Level Preferred High Availability and Disaster Recovery - CCNP Level, Expert Level Preferred Security/Cyber Security Skills Required Cisco Firepower Firewalls (ASA, FTD) - CCNP Level, Expert Level Preferred Palo Alto Firewalls - Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc Network Detection and Response Network Encryption (Site to Site VPN's) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host Zero Day (Trellix HX or similar) Cyber Security Network Control Incident Investigation with the assistance of group cyber security experts - Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonus Host End Point Protection (Symantec) Host IPS Preferred Skills and Knowledge Vulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) - Using Rapid7 a bonus Knowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantages Security Zone Design and considerations Network and Security Architecture Design and Considerations Understanding of Information Security (Confidentiality, Integrity, Availability), MITRE ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etc Risk Management in Cyber Security, SSL Blind spots, what causes them and how to mitigate Malware/Ransomware and how to mitigate along with Penetration testing concepts Understanding of White/Black/Grey Box penetration testing. Developing Security policies and procedures and conducting audits/risk assessments Handling crisis situations during security incidents The role is hybrid 3 days in the office in Central London. The salary for this role will be in the range £85K - £100K + Benefits.
26/07/2026
Full time
Information Security Manager with Network Engineering Skills Our Client is bank based in Central London who are looking to recruit a seasoned professional with at least 7 to 10 years expertise levelInformation Security coupled with Hands-on Network Engineering. The role is mainly Information Security - Data Security and split circa 80% with 20% Network Engineering - so you do need to be hands-on technically. You will ideally have circa 5+ years of work experience with Network Engineering coupled with over 10 years experience with Cisco Systems Products Role Description The Information Security Manager with Network Engineering Skills is a full-time hybrid role based in London, with the flexibility to work from home part of the week. The role oversees the design, implementation, and continuous improvement of information security policies, procedures, and controls across networks and systems. Day-to-day responsibilities include managing the Information Security Management System (ISMS), monitoring cybersecurity and network security events, coordinating incident response, and ensuring compliance with relevant standards and regulations. The person in this role will collaborate with IT and business stakeholders to assess risks, implement technical and procedural safeguards, and support secure network architecture and configuration. Additional tasks include producing security documentation, leading security awareness initiatives, and providing guidance on secure network engineering practices. Qualifications Strong skills in Information Security Management and Information Security, with experience defining and enforcing security policies and governance. Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. Demonstrated network engineering experience (e.g., routing, switching, firewalls, VPNs, secure network design). Relevant certifications such as CISSP, CISM, CISA, CompTIA Security+, or similar are beneficial. Experience with regulatory and compliance frameworks (e.g., ISO 27001, GDPR, NIST) and security best practices. Ability to analyze complex technical environments, communicate clearly with both technical and non-technical stakeholders, and document security requirements and processes. Bachelor's degree in computer science, information security, engineering, or a related field, or equivalent professional experience. Key Networking Skills Required Cisco Network Switches Layer 2 and 3 (Catalyst 9K) - CCNP Level, Expert Level Preferred Routing protocol - OSPF (Catalyst 9K) - CCNP Level, Expert Level Preferred Cisco Switch Stacking (Cat 9K Switches 9600, 9300. 9200) Virtual Routing and Forwarding - (Catalyst 9600) Internetworking Troubleshooting - CCNP Level, Expert Level Preferred High Availability and Disaster Recovery - CCNP Level, Expert Level Preferred Security/Cyber Security Skills Required Cisco Firepower Firewalls (ASA, FTD) - CCNP Level, Expert Level Preferred Palo Alto Firewalls - Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc Network Detection and Response Network Encryption (Site to Site VPN's) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host Zero Day (Trellix HX or similar) Cyber Security Network Control Incident Investigation with the assistance of group cyber security experts - Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonus Host End Point Protection (Symantec) Host IPS Preferred Skills and Knowledge Vulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) - Using Rapid7 a bonus Knowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantages Security Zone Design and considerations Network and Security Architecture Design and Considerations Understanding of Information Security (Confidentiality, Integrity, Availability), MITRE ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etc Risk Management in Cyber Security, SSL Blind spots, what causes them and how to mitigate Malware/Ransomware and how to mitigate along with Penetration testing concepts Understanding of White/Black/Grey Box penetration testing. Developing Security policies and procedures and conducting audits/risk assessments Handling crisis situations during security incidents The role is hybrid 3 days in the office in Central London. The salary for this role will be in the range £85K - £100K + Benefits.
About SumUp We believe in the everyday hero. Those who have the courage to follow their passion and who have the strength and determination to realise their dreams. Small business owners are at the heart of all we do, so we're creating powerful, easy-to-use financial solutions to help them run their businesses. With a founder's mentality and a team-first attitude, our diverse teams across Europe, South America and the United States work together to ensure that small business owners can be successful doing what they love. Your Team You'll join SumUp's Global Internal Audit team, part of our wider G&A / GRC function, reporting directly to the Global Head of Internal Audit. This team plays a critical role in protecting SumUp's integrity, supporting regulatory compliance, and strengthening trust with our Board, Audit Committee, and regulators. As our Internal Auditor - IT security specialist, you'll bring essential technology and data analytics expertise into a team that partners closely with senior leaders across the business. You'll be the go to expert for technology focused audits, helping shape how we assess IT risks, controls, and governance across a fast scaling global fintech. What You'll Do As an IT Internal Auditor, you'll support the delivery of SumUp's approved Internal Audit Plan, with a strong focus on technology, data, and systems risk. In this role, you will: Plan and execute IT internal audits in line with the annual audit plan Assess IT general controls, security, governance, and risk management frameworks Prepare clear, insightful audit reports, presenting findings and recommendations to senior stakeholders Use data analytics to improve audit efficiency, sample testing, and risk identification Support ad hoc audit projects and regulatory related reviews Contribute to the continuous improvement of internal audit methodologies, frameworks, and templates Stay up to date with technology standards, regulatory developments, and industry best practices Build strong relationships across the business and promote a proactive internal controls culture Conduct targeted audits of AWS security standards and access controls across our cloud environment, ensuring credit card data stored in cloud services is adequately protected; Perform risk based reviews of payment products and ensure security requirements are consistently embedded throughout the development lifecycle. Identifying anomalies or excessive privileges across different systems and payment platforms. You'll Be Great for This Role If You're a hands on IT auditor who enjoys combining technical depth with clear communication and stakeholder collaboration. Must have experience: Minimum 4 years' experience in IT / Internal Audit within a regulated financial services environment Strong knowledge of audit standards, risk management, and internal controls Experience auditing IT controls and frameworks such as COBIT, ISO 27001, PCI DSS, ITIL, NIST, GDPR Practical exposure to areas like data security, cloud architecture, disaster recovery, security operations, or network infrastructure Advanced data analytics skills Professional level English (written and spoken) Nice to have: Professional certifications such as CIA, CISA, CPA Additional IT/security certifications (CISSP, CISM, CRISC, ISO 22301, or similar) Experience with audit related data analytics tools What sets you apart: High ethical standards and integrity Strong analytical and problem solving mindset Confidence influencing change and challenging the status quo constructively Ability to work independently in a multinational environment Why You Should Join SumUp London, United Kingdom Opportunity to work with a truly global, multicultural team from our central Covent Garden location, wrapped in historic charm and modern flair. This involves an office first setup Commitment to Diversity and Inclusion: be part of a workplace that values and promotes diversity, fostering an inclusive environment where everyone's perspectives are respected and embraced Enrolment onto our VSOP program: you will own a stake in SumUp's future success Generous time off: enjoy 28 days of paid leave, plus bank holidays and special leaves Health matters: Vitality health cover, including optical and dental Life made easier: salary sacrifice commuter benefits via Gogeta Financial security: retirement scheme (SumUp matches 7% when you contribute 5%) Peace of mind: life insurance from MetLife for 2 your salary Break4me: 1 month sabbatical after 3 years of service Referral Bonus: earn additional rewards by referring talented individuals to join the SumUp team Job Application Tip We recognise that candidates feel they need to meet 100% of the job criteria in order to apply for a job. Please note that this is only a guide. If you don't tick every box, it's ok too because it means you have room to learn and develop your career at SumUp.
26/07/2026
Full time
About SumUp We believe in the everyday hero. Those who have the courage to follow their passion and who have the strength and determination to realise their dreams. Small business owners are at the heart of all we do, so we're creating powerful, easy-to-use financial solutions to help them run their businesses. With a founder's mentality and a team-first attitude, our diverse teams across Europe, South America and the United States work together to ensure that small business owners can be successful doing what they love. Your Team You'll join SumUp's Global Internal Audit team, part of our wider G&A / GRC function, reporting directly to the Global Head of Internal Audit. This team plays a critical role in protecting SumUp's integrity, supporting regulatory compliance, and strengthening trust with our Board, Audit Committee, and regulators. As our Internal Auditor - IT security specialist, you'll bring essential technology and data analytics expertise into a team that partners closely with senior leaders across the business. You'll be the go to expert for technology focused audits, helping shape how we assess IT risks, controls, and governance across a fast scaling global fintech. What You'll Do As an IT Internal Auditor, you'll support the delivery of SumUp's approved Internal Audit Plan, with a strong focus on technology, data, and systems risk. In this role, you will: Plan and execute IT internal audits in line with the annual audit plan Assess IT general controls, security, governance, and risk management frameworks Prepare clear, insightful audit reports, presenting findings and recommendations to senior stakeholders Use data analytics to improve audit efficiency, sample testing, and risk identification Support ad hoc audit projects and regulatory related reviews Contribute to the continuous improvement of internal audit methodologies, frameworks, and templates Stay up to date with technology standards, regulatory developments, and industry best practices Build strong relationships across the business and promote a proactive internal controls culture Conduct targeted audits of AWS security standards and access controls across our cloud environment, ensuring credit card data stored in cloud services is adequately protected; Perform risk based reviews of payment products and ensure security requirements are consistently embedded throughout the development lifecycle. Identifying anomalies or excessive privileges across different systems and payment platforms. You'll Be Great for This Role If You're a hands on IT auditor who enjoys combining technical depth with clear communication and stakeholder collaboration. Must have experience: Minimum 4 years' experience in IT / Internal Audit within a regulated financial services environment Strong knowledge of audit standards, risk management, and internal controls Experience auditing IT controls and frameworks such as COBIT, ISO 27001, PCI DSS, ITIL, NIST, GDPR Practical exposure to areas like data security, cloud architecture, disaster recovery, security operations, or network infrastructure Advanced data analytics skills Professional level English (written and spoken) Nice to have: Professional certifications such as CIA, CISA, CPA Additional IT/security certifications (CISSP, CISM, CRISC, ISO 22301, or similar) Experience with audit related data analytics tools What sets you apart: High ethical standards and integrity Strong analytical and problem solving mindset Confidence influencing change and challenging the status quo constructively Ability to work independently in a multinational environment Why You Should Join SumUp London, United Kingdom Opportunity to work with a truly global, multicultural team from our central Covent Garden location, wrapped in historic charm and modern flair. This involves an office first setup Commitment to Diversity and Inclusion: be part of a workplace that values and promotes diversity, fostering an inclusive environment where everyone's perspectives are respected and embraced Enrolment onto our VSOP program: you will own a stake in SumUp's future success Generous time off: enjoy 28 days of paid leave, plus bank holidays and special leaves Health matters: Vitality health cover, including optical and dental Life made easier: salary sacrifice commuter benefits via Gogeta Financial security: retirement scheme (SumUp matches 7% when you contribute 5%) Peace of mind: life insurance from MetLife for 2 your salary Break4me: 1 month sabbatical after 3 years of service Referral Bonus: earn additional rewards by referring talented individuals to join the SumUp team Job Application Tip We recognise that candidates feel they need to meet 100% of the job criteria in order to apply for a job. Please note that this is only a guide. If you don't tick every box, it's ok too because it means you have room to learn and develop your career at SumUp.
GRC Modernization Specialist, Malvern, PA, US GRC Modernization Specialist Responsibilities Role Overview As part of Client's GRC Modernization Program, we are seeking experienced Control Design & Modernization Specialists to help transform and standardize the control environment across Enterprise Security & Fraud (ES&F). This role is focused on designing the future-state control framework. Successful candidates will review existing policies, standards, risk assessments, audit observations, regulatory requirements, and current controls to identify opportunities for simplification, standardization, automation, and Continuous Controls Monitoring (CCM). Working closely with control owners, risk partners, and subject matter experts, you will design actionable, measurable, and scalable controls that support Client's evolving risk, regulatory, and business needs. Key Responsibilities Control Assessment & Discovery Review policies, standards, procedures, risk assessments, audit findings, regulatory requirements, and existing control inventories. Assess current-state controls to identify gaps, overlaps, redundancies, and opportunities for improvement. Evaluate existing control frameworks against industry best practices and regulatory expectations. Future-State Control Design Design and document future-state controls that are risk-based, measurable, testable, and scalable. Develop clear control objectives, control activities, ownership models, evidence requirements, and implementation guidance. Rationalize and standardize controls across multiple ES&F functions to improve consistency and effectiveness. Design controls with automation and Continuous Controls Monitoring (CCM) capabilities in mind. Stakeholder Engagement Facilitate workshops and working sessions with security, technology, risk, compliance, audit, and business stakeholders. Challenge legacy approaches and drive alignment on future-state control designs. Build consensus across diverse stakeholder groups and ensure control designs meet business and regulatory expectations. GRC Modernization Support Contribute to the development of enterprise control libraries, control standards, taxonomies, and framework mappings. Support broader GRC modernization initiatives focused on improving control effectiveness, reducing complexity, and enabling scalable assurance. Identify opportunities to leverage automation, analytics, AI, and modern GRC practices to enhance control maturity. Qualifications Required Qualifications 8+ years of experience in cybersecurity, risk management, governance, compliance, controls design, internal audit, or related disciplines. Proven experience designing, enhancing, or transforming controls within financial services or other highly regulated industries. Robust experience translating policies, standards, risks, audit findings, and regulatory requirements into effective control designs. Deep understanding of control lifecycle management, including control design, implementation, testing, monitoring, remediation, and continuous improvement. Demonstrated ability to lead workshops and influence senior stakeholders. Robust analytical, documentation, and problem-solving skills. Excellent written and verbal communication skills. Preferred Qualifications Experience supporting large-scale GRC modernization, control transformation, or cybersecurity governance initiatives. Experience designing controls for Continuous Controls Monitoring (CCM) and automated assurance capabilities. Knowledge of AI Governance, AI Risk Management, and emerging AI-related regulatory requirements. Experience developing control libraries, taxonomies, framework mappings, and enterprise control standards. Robust knowledge of: NIST Cybersecurity Framework (CSF) NIST 800-53 ISO 27002 CIS Controls COBIT Consulting, risk advisory, internal audit, or Big Four experience robustly preferred. Professional certifications such as CISSP, CISM, CISA, CRISC, CIA, or CPA preferred. Benefits at IntelliBee Long-Term Stability: Join us on a multi-year opportunities with room to grow. Comprehensive Health Coverage: Access quality healthcare benefits to keep you and your family well. Future Planning: Enroll in our 401(k) program and invest in your financial security. GC Assistance: We support immediate Green Card processing, if required.
26/07/2026
Full time
GRC Modernization Specialist, Malvern, PA, US GRC Modernization Specialist Responsibilities Role Overview As part of Client's GRC Modernization Program, we are seeking experienced Control Design & Modernization Specialists to help transform and standardize the control environment across Enterprise Security & Fraud (ES&F). This role is focused on designing the future-state control framework. Successful candidates will review existing policies, standards, risk assessments, audit observations, regulatory requirements, and current controls to identify opportunities for simplification, standardization, automation, and Continuous Controls Monitoring (CCM). Working closely with control owners, risk partners, and subject matter experts, you will design actionable, measurable, and scalable controls that support Client's evolving risk, regulatory, and business needs. Key Responsibilities Control Assessment & Discovery Review policies, standards, procedures, risk assessments, audit findings, regulatory requirements, and existing control inventories. Assess current-state controls to identify gaps, overlaps, redundancies, and opportunities for improvement. Evaluate existing control frameworks against industry best practices and regulatory expectations. Future-State Control Design Design and document future-state controls that are risk-based, measurable, testable, and scalable. Develop clear control objectives, control activities, ownership models, evidence requirements, and implementation guidance. Rationalize and standardize controls across multiple ES&F functions to improve consistency and effectiveness. Design controls with automation and Continuous Controls Monitoring (CCM) capabilities in mind. Stakeholder Engagement Facilitate workshops and working sessions with security, technology, risk, compliance, audit, and business stakeholders. Challenge legacy approaches and drive alignment on future-state control designs. Build consensus across diverse stakeholder groups and ensure control designs meet business and regulatory expectations. GRC Modernization Support Contribute to the development of enterprise control libraries, control standards, taxonomies, and framework mappings. Support broader GRC modernization initiatives focused on improving control effectiveness, reducing complexity, and enabling scalable assurance. Identify opportunities to leverage automation, analytics, AI, and modern GRC practices to enhance control maturity. Qualifications Required Qualifications 8+ years of experience in cybersecurity, risk management, governance, compliance, controls design, internal audit, or related disciplines. Proven experience designing, enhancing, or transforming controls within financial services or other highly regulated industries. Robust experience translating policies, standards, risks, audit findings, and regulatory requirements into effective control designs. Deep understanding of control lifecycle management, including control design, implementation, testing, monitoring, remediation, and continuous improvement. Demonstrated ability to lead workshops and influence senior stakeholders. Robust analytical, documentation, and problem-solving skills. Excellent written and verbal communication skills. Preferred Qualifications Experience supporting large-scale GRC modernization, control transformation, or cybersecurity governance initiatives. Experience designing controls for Continuous Controls Monitoring (CCM) and automated assurance capabilities. Knowledge of AI Governance, AI Risk Management, and emerging AI-related regulatory requirements. Experience developing control libraries, taxonomies, framework mappings, and enterprise control standards. Robust knowledge of: NIST Cybersecurity Framework (CSF) NIST 800-53 ISO 27002 CIS Controls COBIT Consulting, risk advisory, internal audit, or Big Four experience robustly preferred. Professional certifications such as CISSP, CISM, CISA, CRISC, CIA, or CPA preferred. Benefits at IntelliBee Long-Term Stability: Join us on a multi-year opportunities with room to grow. Comprehensive Health Coverage: Access quality healthcare benefits to keep you and your family well. Future Planning: Enroll in our 401(k) program and invest in your financial security. GC Assistance: We support immediate Green Card processing, if required.
Application Support ManagerApplylocations: Londontime type: Full timeposted on: Posted 2 Days Agojob requisition id: JR215Willis Re is expanding it's Global business in 2026 and developing its own applications whilst leveraging industry leading business applications to support business operation and growth.The Application Support Manager is a key role and is accountable for the operational support, stability, performance, availability and continual improvement of the organisation's Front Office applications.The role is responsible for the full application delivery lifecycle is managed effectively and in accordance with agreed service levels and business expectations. The role acts as the primary interface between the business, technology teams and third-party suppliers to ensure the Front Office application services remain secure, compliant and aligned to business objectives. Key Responsibilities Provide key stakeholder ownership for Front Office Application Support and liaise with the Support function to manage the application through the full lifecycle whilst ensuring all issues are addressed in a timely manner. Own the operational support and service performance of the Front Office business-critical applications. Ensure applications are stable, available, secure, performant, and fit for business use. Maintain clear ownership of application support processes, escalation paths, service documentation, and operational procedures. Ensure application services are delivered in line with agreed SLAs, OLAs, KPIs, and business expectations. Work with business stakeholders to understand application usage, business criticality, and operational risk. Maintain visibility of application dependencies, including infrastructure, databases, integrations, APIs, third-party services, and downstream systems. 2. Incident and Major Incident Management Lead resolution of application incidents, acting as the senior escalation point and coordinating teams, vendors, service desk, and business users to minimise disruption. Ensure incidents are logged, prioritised, resolved, and communicated effectively, with timely business updates during service disruption. Support major incident processes, including impact assessment, stakeholder updates, post-incident reviews, and service improvement actions. 3. Defect/ Problem Management Lead the analysis and remediation of recurring or high-impact issues, ensuring root cause analysis and corrective actions are completed. Track known errors, workarounds, remediation plans, and incident trends to reduce repeat failures and service risk. Work with technical teams and vendors to deliver long-term fixes and maintain records through governance forums. 4. Change, Release, and Deployment Support Ensure application changes are assessed, tested, approved, and implemented through agreed change processes. Assess operational readiness for releases, upgrades, patches, and deployments, including documentation and rollback planning. Represent support in change forums, coordinate release communications, and support post-implementation reviews. 5. Application Monitoring and Service Performance Provide oversight of application monitoring for availability, performance, capacity, alerts, and transaction health. Use dashboards, service reports, and operational metrics to identify risks, degradation, and improvement opportunities. Work with technical teams to resolve performance bottlenecks and improve monitoring, logging, observability, and reporting. 6. Leadership and Management Contribute to the development of the Application Support team, contributing to setting standards, processes and performance expectations. Manage escalations, and matrix orientated team capability through reviews, coaching, and training plans where applicable in close collaboration with mangers and the leadership team. Build a customer-focused, accountable support culture and promote collaboration across technology and business teams. 7. Stakeholder and Business Relationship Management Act as the primary operational contact for business stakeholders, application owners, and senior management. Translate technical issues into clear business impact, providing regular updates on performance, risks, incidents, and changes. Facilitate service reviews, manage expectations during disruption, and use feedback to improve support services. 8. Supplier and Vendor Management Assist with managing vendors and support providers to ensure contractual service obligations, SLAs, and KPIs are met. Provide insight in supplier reviews, escalations, and performance improvement discussions, challenging poor performance where required. Support renewals, license reviews, commercial evaluations, and ensure vendor dependencies and escalation paths are documented. 9. Governance, Risk, and Compliance Ensure application support complies with IT policies, security standards, audit requirements, and regulatory obligations. Maintain operational controls for access, change, incidents, releases, service continuity, and compliance reporting. Manage risks, audit evidence, remediation actions, access reviews, vulnerabilities, and governance escalations. 10. Application Lifecycle and Documentation Oversee the development and maintenance of accurate runbooks, knowledge articles, support models, dependency maps, and escalation procedures. Support lifecycle planning for features, upgrades, patching, rationalisation, migration, retirement, and end-of-support risks. Ensure new and changed applications are supportable, documented, monitored, and operationally ready for live service. 11. Service Reporting and Operational Governance Produce service reports covering incidents, SLA performance, availability, changes, problems, risks, and improvements. Provide clear insight, dashboards, and management information to support service decisions and prioritisation. Support service reviews, governance forums, and action tracking through to completion. 12. Continuous Improvement and Automation Identify opportunities to improve service quality, efficiency, stability, automation, and user experience. Reduce avoidable incidents through proactive maintenance, knowledge management, tooling, training, and problem resolution. Promote continual improvement, operational maturity, application modernisation, and industry best practice. 13. Business Continuity and Disaster Recovery Ensure supported applications have appropriate continuity, recovery, and operational resilience arrangements. Maintain recovery objectives, recovery procedures, business impact requirements, and tested support readiness. Support disaster recovery testing, continuity planning, resilience exercises, and post-change plan reviews. About You Core Skills & Experience Essential : Degree in IT, Computer Science or equivalent experience; ITIL Foundation Certification, Desirable : ITIL Managing Professional, Microsoft Azure, AWS, Agile or Scrum certifications. Experience Proven experience in Application Development, Application Support, or IT Operations role Experience leading technical support teams. Experience supporting business-critical enterprise applications. Proven supplier and stakeholder management skills Experience of supporting trading applications/ high value applications About Willis Re We combine specialist broking with analytics, modeling and research to help insurers optimize risk transfer, strengthen balance sheets and achieve sustainable growth. Our approach is relationship-driven, transparent and outcome-focused. At the heart of Willis Re is a focus on delivering the most cutting-edge analytical solutions to enable more informed, better decision-making for risk selection, portfolio optimization, and capital management. The launch of Willis Re brings a strategic advantage of being unhindered by legacy, an ability to leverage data, statistical models and advanced technologies with the best knowledge and expertise to deliver more efficient and effective reinsurance outcomes. This places Willis Re in a unique position to build a truly analytically driven business, focused on creating solutions for the reinsurance industry that are future led and forward thinking. Willis Re will also leverage recognized technical expertise from WTW's Insurance Consulting & Technology business including their advanced modeling and analytical capabilities. Alongside this will be WTW's Research Network, an award-winning business supporting and influencing science to improve the understanding and quantification of risk.Willis Re is committed to embracing a diverse, inclusive, and flexible work environment. We provide equal opportunity to all qualified individuals regardless of race, colour, religion, age, gender, gender expression, national origin, veteran status, disability, orientation, or any other legally protected categories. If you have a need that requires accommodation, please email us at
26/07/2026
Full time
Application Support ManagerApplylocations: Londontime type: Full timeposted on: Posted 2 Days Agojob requisition id: JR215Willis Re is expanding it's Global business in 2026 and developing its own applications whilst leveraging industry leading business applications to support business operation and growth.The Application Support Manager is a key role and is accountable for the operational support, stability, performance, availability and continual improvement of the organisation's Front Office applications.The role is responsible for the full application delivery lifecycle is managed effectively and in accordance with agreed service levels and business expectations. The role acts as the primary interface between the business, technology teams and third-party suppliers to ensure the Front Office application services remain secure, compliant and aligned to business objectives. Key Responsibilities Provide key stakeholder ownership for Front Office Application Support and liaise with the Support function to manage the application through the full lifecycle whilst ensuring all issues are addressed in a timely manner. Own the operational support and service performance of the Front Office business-critical applications. Ensure applications are stable, available, secure, performant, and fit for business use. Maintain clear ownership of application support processes, escalation paths, service documentation, and operational procedures. Ensure application services are delivered in line with agreed SLAs, OLAs, KPIs, and business expectations. Work with business stakeholders to understand application usage, business criticality, and operational risk. Maintain visibility of application dependencies, including infrastructure, databases, integrations, APIs, third-party services, and downstream systems. 2. Incident and Major Incident Management Lead resolution of application incidents, acting as the senior escalation point and coordinating teams, vendors, service desk, and business users to minimise disruption. Ensure incidents are logged, prioritised, resolved, and communicated effectively, with timely business updates during service disruption. Support major incident processes, including impact assessment, stakeholder updates, post-incident reviews, and service improvement actions. 3. Defect/ Problem Management Lead the analysis and remediation of recurring or high-impact issues, ensuring root cause analysis and corrective actions are completed. Track known errors, workarounds, remediation plans, and incident trends to reduce repeat failures and service risk. Work with technical teams and vendors to deliver long-term fixes and maintain records through governance forums. 4. Change, Release, and Deployment Support Ensure application changes are assessed, tested, approved, and implemented through agreed change processes. Assess operational readiness for releases, upgrades, patches, and deployments, including documentation and rollback planning. Represent support in change forums, coordinate release communications, and support post-implementation reviews. 5. Application Monitoring and Service Performance Provide oversight of application monitoring for availability, performance, capacity, alerts, and transaction health. Use dashboards, service reports, and operational metrics to identify risks, degradation, and improvement opportunities. Work with technical teams to resolve performance bottlenecks and improve monitoring, logging, observability, and reporting. 6. Leadership and Management Contribute to the development of the Application Support team, contributing to setting standards, processes and performance expectations. Manage escalations, and matrix orientated team capability through reviews, coaching, and training plans where applicable in close collaboration with mangers and the leadership team. Build a customer-focused, accountable support culture and promote collaboration across technology and business teams. 7. Stakeholder and Business Relationship Management Act as the primary operational contact for business stakeholders, application owners, and senior management. Translate technical issues into clear business impact, providing regular updates on performance, risks, incidents, and changes. Facilitate service reviews, manage expectations during disruption, and use feedback to improve support services. 8. Supplier and Vendor Management Assist with managing vendors and support providers to ensure contractual service obligations, SLAs, and KPIs are met. Provide insight in supplier reviews, escalations, and performance improvement discussions, challenging poor performance where required. Support renewals, license reviews, commercial evaluations, and ensure vendor dependencies and escalation paths are documented. 9. Governance, Risk, and Compliance Ensure application support complies with IT policies, security standards, audit requirements, and regulatory obligations. Maintain operational controls for access, change, incidents, releases, service continuity, and compliance reporting. Manage risks, audit evidence, remediation actions, access reviews, vulnerabilities, and governance escalations. 10. Application Lifecycle and Documentation Oversee the development and maintenance of accurate runbooks, knowledge articles, support models, dependency maps, and escalation procedures. Support lifecycle planning for features, upgrades, patching, rationalisation, migration, retirement, and end-of-support risks. Ensure new and changed applications are supportable, documented, monitored, and operationally ready for live service. 11. Service Reporting and Operational Governance Produce service reports covering incidents, SLA performance, availability, changes, problems, risks, and improvements. Provide clear insight, dashboards, and management information to support service decisions and prioritisation. Support service reviews, governance forums, and action tracking through to completion. 12. Continuous Improvement and Automation Identify opportunities to improve service quality, efficiency, stability, automation, and user experience. Reduce avoidable incidents through proactive maintenance, knowledge management, tooling, training, and problem resolution. Promote continual improvement, operational maturity, application modernisation, and industry best practice. 13. Business Continuity and Disaster Recovery Ensure supported applications have appropriate continuity, recovery, and operational resilience arrangements. Maintain recovery objectives, recovery procedures, business impact requirements, and tested support readiness. Support disaster recovery testing, continuity planning, resilience exercises, and post-change plan reviews. About You Core Skills & Experience Essential : Degree in IT, Computer Science or equivalent experience; ITIL Foundation Certification, Desirable : ITIL Managing Professional, Microsoft Azure, AWS, Agile or Scrum certifications. Experience Proven experience in Application Development, Application Support, or IT Operations role Experience leading technical support teams. Experience supporting business-critical enterprise applications. Proven supplier and stakeholder management skills Experience of supporting trading applications/ high value applications About Willis Re We combine specialist broking with analytics, modeling and research to help insurers optimize risk transfer, strengthen balance sheets and achieve sustainable growth. Our approach is relationship-driven, transparent and outcome-focused. At the heart of Willis Re is a focus on delivering the most cutting-edge analytical solutions to enable more informed, better decision-making for risk selection, portfolio optimization, and capital management. The launch of Willis Re brings a strategic advantage of being unhindered by legacy, an ability to leverage data, statistical models and advanced technologies with the best knowledge and expertise to deliver more efficient and effective reinsurance outcomes. This places Willis Re in a unique position to build a truly analytically driven business, focused on creating solutions for the reinsurance industry that are future led and forward thinking. Willis Re will also leverage recognized technical expertise from WTW's Insurance Consulting & Technology business including their advanced modeling and analytical capabilities. Alongside this will be WTW's Research Network, an award-winning business supporting and influencing science to improve the understanding and quantification of risk.Willis Re is committed to embracing a diverse, inclusive, and flexible work environment. We provide equal opportunity to all qualified individuals regardless of race, colour, religion, age, gender, gender expression, national origin, veteran status, disability, orientation, or any other legally protected categories. If you have a need that requires accommodation, please email us at
Join us at Barclays as a Data Modelling Vice President (VP). We're looking for a senior Data Modeller to define, lead, and evolve the conceptual, logical, and physical data architectures that power our strategic data products across BUK. In this role, you'll set the modelling direction for multiple domains, ensure semantic and regulatory alignment, and translate complex business and regulatory needs into high quality, scalable data models. You'll work closely with Product, Engineering, Architecture, and Controls teams to build models that are robust, reusable, and ready for enterprise scale implementation. To be successful as a Data Modelling VP, you should have experience with: Leading the design and governance of enterprise grade conceptual, logical, and physical data models across large financial domains. Defining modelling standards, metadata structures, lineage requirements, and CDE frameworks that meet audit and regulatory expectations. Driving modelling quality, versioning, semantic clarity, and cross domain consistency at scale. Partnering with engineering teams to shape physical schemas, optimise performance, and guide workload placement across cloud platforms (AWS, Snowflake, Databricks). Influencing senior stakeholders across Product, Controls, Architecture, and Engineering to align on business rules, semantic definitions, and strategic priorities. Some other highly valued skills may include: Expertise in SQL, complex schema design, and performance optimisation in cloud environments. Strong understanding of data governance, control frameworks, lineage, cataloguing, and regulatory traceability. Experience shaping canonical models, data dictionaries, and enterprise wide semantic standards. Exceptional communication and storytelling skills to translate complex models into clear narratives for senior technical and non technical stakeholders. You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job specific technical skills. This role has the option to work from the following locations: Northampton, Knutsford or Glasgow. Purpose of the role To design, develop, implement, and maintain various statistical, mathematical and machine learning models to support decision making by analysis and solving complex problems. Accountabilities Acquisition and collection of data from various sources, including internal databases, external datasets, and real time feeds. Performing data cleaning and pre processing tasks to ensure data quality and suitability for model development. Design and implementation of data management strategies for model maintenance and future development. Designing, development, and implementation of statistical and machine learning models for various applications, including credit risk assessment, fraud detection, customer segmentation, and marketing optimisation. Monitoring model performance in real time and identify any potential issues or biases. Vice President Expectations To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and elevate breaches of policies/procedures. If managing a team, they define jobs and responsibilities, planning for the department's future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions. Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
26/07/2026
Full time
Join us at Barclays as a Data Modelling Vice President (VP). We're looking for a senior Data Modeller to define, lead, and evolve the conceptual, logical, and physical data architectures that power our strategic data products across BUK. In this role, you'll set the modelling direction for multiple domains, ensure semantic and regulatory alignment, and translate complex business and regulatory needs into high quality, scalable data models. You'll work closely with Product, Engineering, Architecture, and Controls teams to build models that are robust, reusable, and ready for enterprise scale implementation. To be successful as a Data Modelling VP, you should have experience with: Leading the design and governance of enterprise grade conceptual, logical, and physical data models across large financial domains. Defining modelling standards, metadata structures, lineage requirements, and CDE frameworks that meet audit and regulatory expectations. Driving modelling quality, versioning, semantic clarity, and cross domain consistency at scale. Partnering with engineering teams to shape physical schemas, optimise performance, and guide workload placement across cloud platforms (AWS, Snowflake, Databricks). Influencing senior stakeholders across Product, Controls, Architecture, and Engineering to align on business rules, semantic definitions, and strategic priorities. Some other highly valued skills may include: Expertise in SQL, complex schema design, and performance optimisation in cloud environments. Strong understanding of data governance, control frameworks, lineage, cataloguing, and regulatory traceability. Experience shaping canonical models, data dictionaries, and enterprise wide semantic standards. Exceptional communication and storytelling skills to translate complex models into clear narratives for senior technical and non technical stakeholders. You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job specific technical skills. This role has the option to work from the following locations: Northampton, Knutsford or Glasgow. Purpose of the role To design, develop, implement, and maintain various statistical, mathematical and machine learning models to support decision making by analysis and solving complex problems. Accountabilities Acquisition and collection of data from various sources, including internal databases, external datasets, and real time feeds. Performing data cleaning and pre processing tasks to ensure data quality and suitability for model development. Design and implementation of data management strategies for model maintenance and future development. Designing, development, and implementation of statistical and machine learning models for various applications, including credit risk assessment, fraud detection, customer segmentation, and marketing optimisation. Monitoring model performance in real time and identify any potential issues or biases. Vice President Expectations To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and elevate breaches of policies/procedures. If managing a team, they define jobs and responsibilities, planning for the department's future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions. Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
3761 Barclays - BX - UK
Northampton, Northamptonshire
Job Description Purpose of the role To design, develop, implement, and maintain various statistical, mathematical and machine learning models to support decision making by analysis and solving complex problems. Accountabilities Acquisition and collection of data from various sources, including internal databases, external datasets, and real time feeds. Performing data cleaning and pre processing tasks to ensure data quality and suitability for model development. Design and implementation of data management strategies for model maintenance and future development. Designing, development, and implementation of statistical and machine learning models for various applications, including credit risk assessment, fraud detection, customer segmentation, and marketing optimisation. Monitoring model performance in real time and identify any potential issues or biases. Vice President Expectations To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and elevate breaches of policies/procedures. If managing a team, they define jobs and responsibilities, planning for the department's future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave. Join us at Barclays as a Data Modelling Vice President (VP) We're looking for a senior Data Modeller to define, lead, and evolve the conceptual, logical, and physical data architectures that power our strategic data products across BUK. In this role, you'll set the modelling direction for multiple domains, ensure semantic and regulatory alignment, and translate complex business and regulatory needs into high quality, scalable data models. You'll work closely with Product, Engineering, Architecture, and Controls teams to build models that are robust, reusable, and ready for enterprise scale implementation. To be successful as a Data Modelling VP, you should have experience with: Leading the design and governance of enterprise grade conceptual, logical, and physical data models across large financial domains. Defining modelling standards, metadata structures, lineage requirements, and CDE frameworks that meet audit and regulatory expectations. Driving modelling quality, versioning, semantic clarity, and cross domain consistency at scale. Partnering with engineering teams to shape physical schemas, optimise performance, and guide workload placement across cloud platforms (AWS, Snowflake, Databricks). Influencing senior stakeholders across Product, Controls, Architecture, and Engineering to align on business rules, semantic definitions, and strategic priorities. Some other highly valued skills may include: Expertise in SQL, complex schema design, and performance optimisation in cloud environments. Strong understanding of data governance, control frameworks, lineage, cataloguing, and regulatory traceability. Experience shaping canonical models, data dictionaries, and enterprise wide semantic standards. Exceptional communication and storytelling skills to translate complex models into clear narratives for senior technical and non technical stakeholders. You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job specific technical skills. This role has the option to work from the following locations: Northampton, Knutsford or Glasgow. Our Work Experience is the combination of everything that's unique about us: our culture, our core values, our company meetings, our commitment to sustainability, our recognition programs, but most importantly, it's our people. Our employees are self disciplined, hard working, curious, trustworthy, humble, and truthful. They make choices according to what is best for the team, they live for opportunities to collaborate and make a difference, and they make us the Top Workplace in the area.
26/07/2026
Full time
Job Description Purpose of the role To design, develop, implement, and maintain various statistical, mathematical and machine learning models to support decision making by analysis and solving complex problems. Accountabilities Acquisition and collection of data from various sources, including internal databases, external datasets, and real time feeds. Performing data cleaning and pre processing tasks to ensure data quality and suitability for model development. Design and implementation of data management strategies for model maintenance and future development. Designing, development, and implementation of statistical and machine learning models for various applications, including credit risk assessment, fraud detection, customer segmentation, and marketing optimisation. Monitoring model performance in real time and identify any potential issues or biases. Vice President Expectations To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and elevate breaches of policies/procedures. If managing a team, they define jobs and responsibilities, planning for the department's future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave. Join us at Barclays as a Data Modelling Vice President (VP) We're looking for a senior Data Modeller to define, lead, and evolve the conceptual, logical, and physical data architectures that power our strategic data products across BUK. In this role, you'll set the modelling direction for multiple domains, ensure semantic and regulatory alignment, and translate complex business and regulatory needs into high quality, scalable data models. You'll work closely with Product, Engineering, Architecture, and Controls teams to build models that are robust, reusable, and ready for enterprise scale implementation. To be successful as a Data Modelling VP, you should have experience with: Leading the design and governance of enterprise grade conceptual, logical, and physical data models across large financial domains. Defining modelling standards, metadata structures, lineage requirements, and CDE frameworks that meet audit and regulatory expectations. Driving modelling quality, versioning, semantic clarity, and cross domain consistency at scale. Partnering with engineering teams to shape physical schemas, optimise performance, and guide workload placement across cloud platforms (AWS, Snowflake, Databricks). Influencing senior stakeholders across Product, Controls, Architecture, and Engineering to align on business rules, semantic definitions, and strategic priorities. Some other highly valued skills may include: Expertise in SQL, complex schema design, and performance optimisation in cloud environments. Strong understanding of data governance, control frameworks, lineage, cataloguing, and regulatory traceability. Experience shaping canonical models, data dictionaries, and enterprise wide semantic standards. Exceptional communication and storytelling skills to translate complex models into clear narratives for senior technical and non technical stakeholders. You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job specific technical skills. This role has the option to work from the following locations: Northampton, Knutsford or Glasgow. Our Work Experience is the combination of everything that's unique about us: our culture, our core values, our company meetings, our commitment to sustainability, our recognition programs, but most importantly, it's our people. Our employees are self disciplined, hard working, curious, trustworthy, humble, and truthful. They make choices according to what is best for the team, they live for opportunities to collaborate and make a difference, and they make us the Top Workplace in the area.
TGR Haas F1 Team has been a stalwart of the FIA Formula 1 World Championship over the past decade. With more than 200 grand prix starts to our name, we pride ourselves on being an ambitious challenger within Formula 1 - and we want you to be part of that journey. The first American Formula 1 team to compete in the sport since 1986, TGR Haas F1 Team made an immediate impression with a memorable points-scoring debut at the 2016 Australian Grand Prix. Ten years later, the team is still building momentum, guided by clear objectives and technical partnerships, and fresh from securing its second biggest points haul in a Formula 1 season. We're a racing team - not a corporate machine. We have three HQs - Kannapolis in the US, Banbury in the UK and Maranello in Italy - each powered by passionate, loyal and hardworking team ambassadors. At TGR Haas F1 Team, you'll gain exposure to many areas of the business, enjoy wider visibility, and clearly see your contributions. Yes, you'll learn from us, but we expect to learn from you too! General Summary This role reports to the IT Infrastructure Operations Manager or their designee and is based in Banbury, UK. This position is the technical owner of Haas F1 Team's global networking estate, accountable for its availability, performance, security and continuous improvement. Acting as the design authority and senior escalation point for networking, the role ensures the network reliably underpins critical race operations and business systems, while driving its modernisation towards software-defined and automated networking. While the primary focus is networking, the role also requires flexibility and broader technical knowledge to support wider infrastructure and platforms as required. Role Principles Act with integrity, always upholding the highest professional and ethical standards. Drive innovation and change to continuously improve ways of working and outcomes. Pursue operational excellence, ensuring efficiency, quality, and continuous improvement. Collaborate inclusively, building strong partnerships to achieve shared goals. Maintain a customer focused approach, prioritising the needs of internal and external stakeholders. Champion sustainability by embedding responsible and environmentally conscious practices into everyday work. Key Responsibilities Lead the design, delivery, security and continuous improvement of Haas F1 Team's multicontinental networking estate, ensuring secure, scalable, resilient, high performing and highly available network services that underpin critical race operations and business systems, while driving modernisation towards software defined and automated networking. Own the design, implementation and lifecycle management of enterprise networking across on premises, cloud and trackside environments, including LAN, WAN, SD WAN, wireless and secure remote connectivity. Maintain, optimise and secure network and security infrastructure, including routing, switching, firewalls, VPN, load balancing and network access control, ensuring performance, capacity, patching, resilience, backup and tested disaster recovery. Embed secure by design principles and security controls into all network architecture and changes as standard, working closely with the Security function. Deliver network projects and improvements through to completion, managing scope, timelines, risks and dependencies in line with change control and information security policies. Provide 3rd line technical support and escalation for network incidents, ensuring adherence to SLAs, and act as technical lead for root cause analysis and continuous improvement following incidents or service issues. Define and maintain network engineering standards, deployment patterns, operational procedures and technical documentation, and establish monitoring and alerting that proactively identifies and resolves performance, capacity and reliability issues. Drive modern engineering practices across the network estate, including automation, infrastructure as code and standardised delivery, improving reliability, consistency and scalability. Operate, support and help deliver wider infrastructure and platform services as required, applying technical knowledge beyond networking to maintain resilient, integrated solutions across the estate. Work flexibly across the Infrastructure, Cloud and Apps team and wider IT functions, providing cover and helping translate business requirements into practical technical solutions. Liaise with technology vendors and service providers for support, maintenance, procurement and performance oversight. Mentor and guide junior engineers and support colleagues, sharing knowledge to raise the team's overall network and infrastructure capability. May be required to support major incidents and time critical issues outside normal working hours on a reasonable, business needs basis, leading response and recovery and participating in on call or escalation arrangements where applicable. Technical Leadership & Expertise Act as a recognised subject matter expert in area of specialism. Provide technical guidance and informal coaching to peers and project teams (without direct line management responsibility). Influence technical direction, standards, and decision making across the function. Contribute to the development and continuous improvement of systems, tools, and processes. Lead or contribute to complex technical projects and initiatives. Operational Delivery Promote a culture of accountability, collaboration, and service excellence within the team. Own and deliver complex or high impact technical workstreams. Ensure deliverables meet quality, performance, and regulatory standards. Proactively identify opportunities for efficiency, automation, and innovation. Support continuous improvement initiatives across the function. Ensure team compliance with relevant legislation, policies, and procedures. Stakeholder Collaboration Build effective working relationships with internal colleagues, external partners, and service users. Act as a key technical point of contact for specialist queries and escalations. Contribute technical expertise in meetings, working groups, and cross functional initiatives. Governance & Risk Ensure compliance with relevant policies, standards, and regulatory requirements. Identify technical and operational risks and contribute to mitigation strategies. Support audit, compliance, and governance activities as required. Person Specification Essential Qualifications & Experience BSc, MIS or other IT related qualification, or equivalent practical experience. Over 7 years of progressive IT experience, including at least 3 years in a networking role. Relevant IT, networking and cyber/information security certifications are advantageous. Exposure to international, high performance or mission critical environments is advantageous. Experience delivering complex work independently in high performance environments. Resilience & Composure Maintains calm and focus in high pressure, fast paced environments. Able to handle setbacks and adapt quickly to changing circumstances. Integrity & Discretion Trusted to manage confidential information and sensitive team matters. Upholds the highest standards of professionalism and ethical conduct. Maintains focus and effectiveness in high pressure, fast paced environments. Adapt quickly to changing priorities and technical challenges. Team Oriented Collaborative mindset with a commitment to team cohesion and shared success. Willingness to mentor and develop talent within the organisation. Adaptability & Flexibility Comfortable with flexible working hours, including weekends, and occasional travel as required. Open to innovation and continuous improvement in processes and culture. Equipment and Applications Essential Proven hands on experience designing, implementing and operating enterprise networks, including routing, switching, wireless and network segmentation across complex environments. Strong knowledge of enterprise firewalls, SD WAN and modern secure access architectures (for example ZTNA, SASE, Cisco or equivalent), including a shift away from traditional perimeter based VPN models. Solid understanding of network security principles, including zero trust concepts, network access control, micro segmentation and secure by design practices. Strong knowledge of core network services and protocols (for example DNS, DHCP, BGP, OSPF, VLANs, QoS, Multicast and 802.1X). Solid network monitoring and fault diagnosis capability, with sound performance tuning and proactive optimisation skills. Desirable Working knowledge of cloud and cloud native networking (for example Microsoft Azure, multi cloud and container/Kubernetes networking), including virtual networks, connectivity, gateways and hybrid integration. Familiarity with observability and telemetry driven analytics to support deeper performance insight at scale. Exposure to or a keen interest in network automation and infrastructure as code (for example Ansible, Terraform or Python) to manage configuration, deployment, testing and validation at scale. Broad infrastructure and platform knowledge, including virtualisation . click apply for full job details
26/07/2026
Full time
TGR Haas F1 Team has been a stalwart of the FIA Formula 1 World Championship over the past decade. With more than 200 grand prix starts to our name, we pride ourselves on being an ambitious challenger within Formula 1 - and we want you to be part of that journey. The first American Formula 1 team to compete in the sport since 1986, TGR Haas F1 Team made an immediate impression with a memorable points-scoring debut at the 2016 Australian Grand Prix. Ten years later, the team is still building momentum, guided by clear objectives and technical partnerships, and fresh from securing its second biggest points haul in a Formula 1 season. We're a racing team - not a corporate machine. We have three HQs - Kannapolis in the US, Banbury in the UK and Maranello in Italy - each powered by passionate, loyal and hardworking team ambassadors. At TGR Haas F1 Team, you'll gain exposure to many areas of the business, enjoy wider visibility, and clearly see your contributions. Yes, you'll learn from us, but we expect to learn from you too! General Summary This role reports to the IT Infrastructure Operations Manager or their designee and is based in Banbury, UK. This position is the technical owner of Haas F1 Team's global networking estate, accountable for its availability, performance, security and continuous improvement. Acting as the design authority and senior escalation point for networking, the role ensures the network reliably underpins critical race operations and business systems, while driving its modernisation towards software-defined and automated networking. While the primary focus is networking, the role also requires flexibility and broader technical knowledge to support wider infrastructure and platforms as required. Role Principles Act with integrity, always upholding the highest professional and ethical standards. Drive innovation and change to continuously improve ways of working and outcomes. Pursue operational excellence, ensuring efficiency, quality, and continuous improvement. Collaborate inclusively, building strong partnerships to achieve shared goals. Maintain a customer focused approach, prioritising the needs of internal and external stakeholders. Champion sustainability by embedding responsible and environmentally conscious practices into everyday work. Key Responsibilities Lead the design, delivery, security and continuous improvement of Haas F1 Team's multicontinental networking estate, ensuring secure, scalable, resilient, high performing and highly available network services that underpin critical race operations and business systems, while driving modernisation towards software defined and automated networking. Own the design, implementation and lifecycle management of enterprise networking across on premises, cloud and trackside environments, including LAN, WAN, SD WAN, wireless and secure remote connectivity. Maintain, optimise and secure network and security infrastructure, including routing, switching, firewalls, VPN, load balancing and network access control, ensuring performance, capacity, patching, resilience, backup and tested disaster recovery. Embed secure by design principles and security controls into all network architecture and changes as standard, working closely with the Security function. Deliver network projects and improvements through to completion, managing scope, timelines, risks and dependencies in line with change control and information security policies. Provide 3rd line technical support and escalation for network incidents, ensuring adherence to SLAs, and act as technical lead for root cause analysis and continuous improvement following incidents or service issues. Define and maintain network engineering standards, deployment patterns, operational procedures and technical documentation, and establish monitoring and alerting that proactively identifies and resolves performance, capacity and reliability issues. Drive modern engineering practices across the network estate, including automation, infrastructure as code and standardised delivery, improving reliability, consistency and scalability. Operate, support and help deliver wider infrastructure and platform services as required, applying technical knowledge beyond networking to maintain resilient, integrated solutions across the estate. Work flexibly across the Infrastructure, Cloud and Apps team and wider IT functions, providing cover and helping translate business requirements into practical technical solutions. Liaise with technology vendors and service providers for support, maintenance, procurement and performance oversight. Mentor and guide junior engineers and support colleagues, sharing knowledge to raise the team's overall network and infrastructure capability. May be required to support major incidents and time critical issues outside normal working hours on a reasonable, business needs basis, leading response and recovery and participating in on call or escalation arrangements where applicable. Technical Leadership & Expertise Act as a recognised subject matter expert in area of specialism. Provide technical guidance and informal coaching to peers and project teams (without direct line management responsibility). Influence technical direction, standards, and decision making across the function. Contribute to the development and continuous improvement of systems, tools, and processes. Lead or contribute to complex technical projects and initiatives. Operational Delivery Promote a culture of accountability, collaboration, and service excellence within the team. Own and deliver complex or high impact technical workstreams. Ensure deliverables meet quality, performance, and regulatory standards. Proactively identify opportunities for efficiency, automation, and innovation. Support continuous improvement initiatives across the function. Ensure team compliance with relevant legislation, policies, and procedures. Stakeholder Collaboration Build effective working relationships with internal colleagues, external partners, and service users. Act as a key technical point of contact for specialist queries and escalations. Contribute technical expertise in meetings, working groups, and cross functional initiatives. Governance & Risk Ensure compliance with relevant policies, standards, and regulatory requirements. Identify technical and operational risks and contribute to mitigation strategies. Support audit, compliance, and governance activities as required. Person Specification Essential Qualifications & Experience BSc, MIS or other IT related qualification, or equivalent practical experience. Over 7 years of progressive IT experience, including at least 3 years in a networking role. Relevant IT, networking and cyber/information security certifications are advantageous. Exposure to international, high performance or mission critical environments is advantageous. Experience delivering complex work independently in high performance environments. Resilience & Composure Maintains calm and focus in high pressure, fast paced environments. Able to handle setbacks and adapt quickly to changing circumstances. Integrity & Discretion Trusted to manage confidential information and sensitive team matters. Upholds the highest standards of professionalism and ethical conduct. Maintains focus and effectiveness in high pressure, fast paced environments. Adapt quickly to changing priorities and technical challenges. Team Oriented Collaborative mindset with a commitment to team cohesion and shared success. Willingness to mentor and develop talent within the organisation. Adaptability & Flexibility Comfortable with flexible working hours, including weekends, and occasional travel as required. Open to innovation and continuous improvement in processes and culture. Equipment and Applications Essential Proven hands on experience designing, implementing and operating enterprise networks, including routing, switching, wireless and network segmentation across complex environments. Strong knowledge of enterprise firewalls, SD WAN and modern secure access architectures (for example ZTNA, SASE, Cisco or equivalent), including a shift away from traditional perimeter based VPN models. Solid understanding of network security principles, including zero trust concepts, network access control, micro segmentation and secure by design practices. Strong knowledge of core network services and protocols (for example DNS, DHCP, BGP, OSPF, VLANs, QoS, Multicast and 802.1X). Solid network monitoring and fault diagnosis capability, with sound performance tuning and proactive optimisation skills. Desirable Working knowledge of cloud and cloud native networking (for example Microsoft Azure, multi cloud and container/Kubernetes networking), including virtual networks, connectivity, gateways and hybrid integration. Familiarity with observability and telemetry driven analytics to support deeper performance insight at scale. Exposure to or a keen interest in network automation and infrastructure as code (for example Ansible, Terraform or Python) to manage configuration, deployment, testing and validation at scale. Broad infrastructure and platform knowledge, including virtualisation . click apply for full job details
Position Overview Protect identities at global scale. We're hiring a hands on Senior Identity Protection Engineer/Specialist to lead detection, investigation, and response for identity based threats across Microsoft Entra ID/Azure AD, on prem Active Directory, and connected SaaS/IaaS. You'll serve as the enterprise SME/administrator for CrowdStrike Identity Protection, tune high fidelity detections, integrate dark web intelligence, and orchestrate automation that measurably reduces MTTD/MTTR and risk. What you'll do Lead identity threat monitoring and triage Operate and tune CrowdStrike Identity Protection; monitor SIEM/UEBA and identity telemetry for risks like impossible travel, atypical sign ins, MFA fatigue, and session hijacking Validate true/false positives, prioritize by business impact, and escalate per playbooks/SLAs Drive rapid containment and remediation Execute containment actions (disable accounts, revoke sessions/tokens, isolate hosts) Coordinate remediation with IAM/Endpoint/Infrastructure; verify risk reduction to closure Own identity focused incident response Lead IR for credential compromise, privilege escalation, directory persistence, and lateral movement Ensure evidence handling, root cause analysis, post incident reviews, and lessons learned Engineer detections and hunt for threats Build and refine detections and hunts across SIEM/EDR/identity platforms using KQL/SQL/regex/Sigma aligned to MITRE ATT&CK Close visibility gaps, reduce false positives, and expand privileged activity monitoring Strengthen privileged access controls Detect anomalous privileged behavior via SIEM/UEBA and Netskope telemetry Recommend/enforce JIT, break glass patterns, and mover/leaver privilege hygiene with IAM Respond to dark web/credential exposure Integrate sources like CyberInt; assess exposure and targeted campaigns Orchestrate takedowns, forced resets, token revocation, and Conditional Access updates Administer platforms and sustain hygiene Maintain coverage/health for identity monitoring; manage upgrades and changes via CAB Keep operational runbooks, SOPs, and playbooks current Automate and orchestrate at scale Use PowerShell/Python and REST/Graph/CrowdStrike APIs (and SOAR where applicable) to automate enrichment and response, standardize workflows, and improve signal fidelity Shape identity policy and controls Advise on Conditional Access, MFA exceptions, SSO/SCIM patterns, and session controls under the shared responsibility model with IAM Report outcomes and support audits Produce executive ready dashboards and KPIs (identity incident volume, MTTD/MTTR, CA/MFA efficacy, exposure/takedown cycle time) Maintain audit ready evidence and support internal/external audits What you'll bring Bachelor's degree in Cybersecurity, Computer Science, IT, or related field; or equivalent practical experience 8+ years in IT/cybersecurity, including 3-5+ years focused on identity security/operations (Entra ID/Azure AD, on prem AD, MFA, Conditional Access, SSO/SCIM) Hands on enterprise experience administering/operating CrowdStrike Identity Protection Proficiency with SIEM/UEBA (Splunk preferred) and cloud security platforms (e.g., Netskope) for identity telemetry, detection, and investigations Demonstrated experience in identity centric IR, threat hunting, and detection engineering (KQL/SQL/regex/Sigma) Scripting/automation with PowerShell and Python; experience with REST/Graph/CrowdStrike APIs and SOAR Clear communication and documentation skills; comfortable producing executive ready reports and audit evidence Operates effectively within change control/CAB and under pressure during high severity incidents Bonus points Certifications: Microsoft SC 200/SC 300; Okta Certified Administrator/Professional; CISSP, SSCP, Security+; GIAC (GMON, GCIH, GCDA) or equivalent Deep knowledge of identity attack paths and protocols (Kerberos/NTLM), token/session abuse, and persistence techniques (e.g., Golden/Silver Ticket, DCShadow) Experience with JIT/JEA, PAM concepts, and global on call rotations Location, work style, and travel Opportunities in the United States, United Kingdom, and Denmark Onsite or hybrid depending on location and business needs Occasional on call coverage may be required Why you'll love it here Own a mission critical identity defense stack and make measurable impact on MTTD/MTTR and privilege hygiene Solve complex problems from dark web exposure to directory persistence and lateral movement Collaborate with experienced global teams and leading vendors to continuously raise the bar Grow your career in a modern, data driven security operations environment Our programs are designed to focus on maintaining and enhancing all pillars of health with a robust benefitspackage including medical, dental, vision and prescription drug coverage with the option of a Health Savings Account with company contributions. In addition, we offer an industry leading 401(k) savings plan, insurance coverage, employee assistance programs and various wellness incentives. We support life work balance with paid vacation time, sick time, and company holidays. Explore a supportive environment that enriches both your personal and professional growth! EEO Information Fujifilm is committed to providing equal opportunities in hiring, promotion and advancement, compensation, benefits, and training regardless of nationality, age, gender, sexual orientation or gender identity, race, ethnicity, religion, political creed, ideology, national, or social origin, disability, veteran status, etc. ADA Information If you require reasonable accommodation in completing this application, interviewing, completing any pre employment testing, or otherwise participating in the employee selection process, please direct your inquiries to our HR Department ().
26/07/2026
Full time
Position Overview Protect identities at global scale. We're hiring a hands on Senior Identity Protection Engineer/Specialist to lead detection, investigation, and response for identity based threats across Microsoft Entra ID/Azure AD, on prem Active Directory, and connected SaaS/IaaS. You'll serve as the enterprise SME/administrator for CrowdStrike Identity Protection, tune high fidelity detections, integrate dark web intelligence, and orchestrate automation that measurably reduces MTTD/MTTR and risk. What you'll do Lead identity threat monitoring and triage Operate and tune CrowdStrike Identity Protection; monitor SIEM/UEBA and identity telemetry for risks like impossible travel, atypical sign ins, MFA fatigue, and session hijacking Validate true/false positives, prioritize by business impact, and escalate per playbooks/SLAs Drive rapid containment and remediation Execute containment actions (disable accounts, revoke sessions/tokens, isolate hosts) Coordinate remediation with IAM/Endpoint/Infrastructure; verify risk reduction to closure Own identity focused incident response Lead IR for credential compromise, privilege escalation, directory persistence, and lateral movement Ensure evidence handling, root cause analysis, post incident reviews, and lessons learned Engineer detections and hunt for threats Build and refine detections and hunts across SIEM/EDR/identity platforms using KQL/SQL/regex/Sigma aligned to MITRE ATT&CK Close visibility gaps, reduce false positives, and expand privileged activity monitoring Strengthen privileged access controls Detect anomalous privileged behavior via SIEM/UEBA and Netskope telemetry Recommend/enforce JIT, break glass patterns, and mover/leaver privilege hygiene with IAM Respond to dark web/credential exposure Integrate sources like CyberInt; assess exposure and targeted campaigns Orchestrate takedowns, forced resets, token revocation, and Conditional Access updates Administer platforms and sustain hygiene Maintain coverage/health for identity monitoring; manage upgrades and changes via CAB Keep operational runbooks, SOPs, and playbooks current Automate and orchestrate at scale Use PowerShell/Python and REST/Graph/CrowdStrike APIs (and SOAR where applicable) to automate enrichment and response, standardize workflows, and improve signal fidelity Shape identity policy and controls Advise on Conditional Access, MFA exceptions, SSO/SCIM patterns, and session controls under the shared responsibility model with IAM Report outcomes and support audits Produce executive ready dashboards and KPIs (identity incident volume, MTTD/MTTR, CA/MFA efficacy, exposure/takedown cycle time) Maintain audit ready evidence and support internal/external audits What you'll bring Bachelor's degree in Cybersecurity, Computer Science, IT, or related field; or equivalent practical experience 8+ years in IT/cybersecurity, including 3-5+ years focused on identity security/operations (Entra ID/Azure AD, on prem AD, MFA, Conditional Access, SSO/SCIM) Hands on enterprise experience administering/operating CrowdStrike Identity Protection Proficiency with SIEM/UEBA (Splunk preferred) and cloud security platforms (e.g., Netskope) for identity telemetry, detection, and investigations Demonstrated experience in identity centric IR, threat hunting, and detection engineering (KQL/SQL/regex/Sigma) Scripting/automation with PowerShell and Python; experience with REST/Graph/CrowdStrike APIs and SOAR Clear communication and documentation skills; comfortable producing executive ready reports and audit evidence Operates effectively within change control/CAB and under pressure during high severity incidents Bonus points Certifications: Microsoft SC 200/SC 300; Okta Certified Administrator/Professional; CISSP, SSCP, Security+; GIAC (GMON, GCIH, GCDA) or equivalent Deep knowledge of identity attack paths and protocols (Kerberos/NTLM), token/session abuse, and persistence techniques (e.g., Golden/Silver Ticket, DCShadow) Experience with JIT/JEA, PAM concepts, and global on call rotations Location, work style, and travel Opportunities in the United States, United Kingdom, and Denmark Onsite or hybrid depending on location and business needs Occasional on call coverage may be required Why you'll love it here Own a mission critical identity defense stack and make measurable impact on MTTD/MTTR and privilege hygiene Solve complex problems from dark web exposure to directory persistence and lateral movement Collaborate with experienced global teams and leading vendors to continuously raise the bar Grow your career in a modern, data driven security operations environment Our programs are designed to focus on maintaining and enhancing all pillars of health with a robust benefitspackage including medical, dental, vision and prescription drug coverage with the option of a Health Savings Account with company contributions. In addition, we offer an industry leading 401(k) savings plan, insurance coverage, employee assistance programs and various wellness incentives. We support life work balance with paid vacation time, sick time, and company holidays. Explore a supportive environment that enriches both your personal and professional growth! EEO Information Fujifilm is committed to providing equal opportunities in hiring, promotion and advancement, compensation, benefits, and training regardless of nationality, age, gender, sexual orientation or gender identity, race, ethnicity, religion, political creed, ideology, national, or social origin, disability, veteran status, etc. ADA Information If you require reasonable accommodation in completing this application, interviewing, completing any pre employment testing, or otherwise participating in the employee selection process, please direct your inquiries to our HR Department ().
FUJIFILM Holdings America Corporation
Billingham, Yorkshire
Position Overview Protect identities at global scale. We're hiring a hands on Senior Identity Protection Engineer/Specialist to lead detection, investigation, and response for identity based threats across Microsoft Entra ID/Azure AD, on prem Active Directory, and connected SaaS/IaaS. You'll serve as the enterprise SME/administrator for CrowdStrike Identity Protection, tune high fidelity detections, integrate dark web intelligence, and orchestrate automation that measurably reduces MTTD/MTTR and risk. What you'll do Lead identity threat monitoring and triage Operate and tune CrowdStrike Identity Protection; monitor SIEM/UEBA and identity telemetry for risks like impossible travel, atypical sign ins, MFA fatigue, and session hijacking Validate true/false positives, prioritize by business impact, and escalate per playbooks/SLAs Drive rapid containment and remediation Execute containment actions (disable accounts, revoke sessions/tokens, isolate hosts) Coordinate remediation with IAM/Endpoint/Infrastructure; verify risk reduction to closure Own identity focused incident response Lead IR for credential compromise, privilege escalation, directory persistence, and lateral movement Ensure evidence handling, root cause analysis, post incident reviews, and lessons learned Engineer detections and hunt for threats Build and refine detections and hunts across SIEM/EDR/identity platforms using KQL/SQL/regex/Sigma aligned to MITRE ATT&CK Close visibility gaps, reduce false positives, and expand privileged activity monitoring Strengthen privileged access controls Detect anomalous privileged behavior via SIEM/UEBA and Netskope telemetry Recommend/enforce JIT, break glass patterns, and mover/leaver privilege hygiene with IAM Respond to dark web/credential exposure Integrate sources like CyberInt; assess exposure and targeted campaigns Orchestrate takedowns, forced resets, token revocation, and Conditional Access updates Administer platforms and sustain hygiene Maintain coverage/health for identity monitoring; manage upgrades and changes via CAB Keep operational runbooks, SOPs, and playbooks current Automate and orchestrate at scale Use PowerShell/Python and REST/Graph/CrowdStrike APIs (and SOAR where applicable) to automate enrichment and response, standardize workflows, and improve signal fidelity Shape identity policy and controls Advise on Conditional Access, MFA exceptions, SSO/SCIM patterns, and session controls under the shared responsibility model with IAM Report outcomes and support audits Produce executive ready dashboards and KPIs (identity incident volume, MTTD/MTTR, CA/MFA efficacy, exposure/takedown cycle time) Maintain audit ready evidence and support internal/external audits What you'll bring Bachelor's degree in Cybersecurity, Computer Science, IT, or related field; or equivalent practical experience 8+ years in IT/cybersecurity, including 3-5+ years focused on identity security/operations (Entra ID/Azure AD, on prem AD, MFA, Conditional Access, SSO/SCIM) Hands on enterprise experience administering/operating CrowdStrike Identity Protection Proficiency with SIEM/UEBA (Splunk preferred) and cloud security platforms (e.g., Netskope) for identity telemetry, detection, and investigations Demonstrated experience in identity centric IR, threat hunting, and detection engineering (KQL/SQL/regex/Sigma) Scripting/automation with PowerShell and Python; experience with REST/Graph/CrowdStrike APIs and SOAR Clear communication and documentation skills; comfortable producing executive ready reports and audit evidence Operates effectively within change control/CAB and under pressure during high severity incidents Bonus points Certifications: Microsoft SC 200/SC 300; Okta Certified Administrator/Professional; CISSP, SSCP, Security+; GIAC (GMON, GCIH, GCDA) or equivalent Deep knowledge of identity attack paths and protocols (Kerberos/NTLM), token/session abuse, and persistence techniques (e.g., Golden/Silver Ticket, DCShadow) Experience with JIT/JEA, PAM concepts, and global on call rotations Location, work style, and travel Opportunities in the United States, United Kingdom, and Denmark Onsite or hybrid depending on location and business needs Occasional on call coverage may be required Why you'll love it here Own a mission critical identity defense stack and make measurable impact on MTTD/MTTR and privilege hygiene Solve complex problems from dark web exposure to directory persistence and lateral movement Collaborate with experienced global teams and leading vendors to continuously raise the bar Grow your career in a modern, data driven security operations environment Our programs are designed to focus on maintaining and enhancing all pillars of health with a robust benefitspackage including medical, dental, vision and prescription drug coverage with the option of a Health Savings Account with company contributions. In addition, we offer an industry leading 401(k) savings plan, insurance coverage, employee assistance programs and various wellness incentives. We support life work balance with paid vacation time, sick time, and company holidays. Explore a supportive environment that enriches both your personal and professional growth! EEO Information Fujifilm is committed to providing equal opportunities in hiring, promotion and advancement, compensation, benefits, and training regardless of nationality, age, gender, sexual orientation or gender identity, race, ethnicity, religion, political creed, ideology, national, or social origin, disability, veteran status, etc. ADA Information If you require reasonable accommodation in completing this application, interviewing, completing any pre employment testing, or otherwise participating in the employee selection process, please direct your inquiries to our HR Department ().
26/07/2026
Full time
Position Overview Protect identities at global scale. We're hiring a hands on Senior Identity Protection Engineer/Specialist to lead detection, investigation, and response for identity based threats across Microsoft Entra ID/Azure AD, on prem Active Directory, and connected SaaS/IaaS. You'll serve as the enterprise SME/administrator for CrowdStrike Identity Protection, tune high fidelity detections, integrate dark web intelligence, and orchestrate automation that measurably reduces MTTD/MTTR and risk. What you'll do Lead identity threat monitoring and triage Operate and tune CrowdStrike Identity Protection; monitor SIEM/UEBA and identity telemetry for risks like impossible travel, atypical sign ins, MFA fatigue, and session hijacking Validate true/false positives, prioritize by business impact, and escalate per playbooks/SLAs Drive rapid containment and remediation Execute containment actions (disable accounts, revoke sessions/tokens, isolate hosts) Coordinate remediation with IAM/Endpoint/Infrastructure; verify risk reduction to closure Own identity focused incident response Lead IR for credential compromise, privilege escalation, directory persistence, and lateral movement Ensure evidence handling, root cause analysis, post incident reviews, and lessons learned Engineer detections and hunt for threats Build and refine detections and hunts across SIEM/EDR/identity platforms using KQL/SQL/regex/Sigma aligned to MITRE ATT&CK Close visibility gaps, reduce false positives, and expand privileged activity monitoring Strengthen privileged access controls Detect anomalous privileged behavior via SIEM/UEBA and Netskope telemetry Recommend/enforce JIT, break glass patterns, and mover/leaver privilege hygiene with IAM Respond to dark web/credential exposure Integrate sources like CyberInt; assess exposure and targeted campaigns Orchestrate takedowns, forced resets, token revocation, and Conditional Access updates Administer platforms and sustain hygiene Maintain coverage/health for identity monitoring; manage upgrades and changes via CAB Keep operational runbooks, SOPs, and playbooks current Automate and orchestrate at scale Use PowerShell/Python and REST/Graph/CrowdStrike APIs (and SOAR where applicable) to automate enrichment and response, standardize workflows, and improve signal fidelity Shape identity policy and controls Advise on Conditional Access, MFA exceptions, SSO/SCIM patterns, and session controls under the shared responsibility model with IAM Report outcomes and support audits Produce executive ready dashboards and KPIs (identity incident volume, MTTD/MTTR, CA/MFA efficacy, exposure/takedown cycle time) Maintain audit ready evidence and support internal/external audits What you'll bring Bachelor's degree in Cybersecurity, Computer Science, IT, or related field; or equivalent practical experience 8+ years in IT/cybersecurity, including 3-5+ years focused on identity security/operations (Entra ID/Azure AD, on prem AD, MFA, Conditional Access, SSO/SCIM) Hands on enterprise experience administering/operating CrowdStrike Identity Protection Proficiency with SIEM/UEBA (Splunk preferred) and cloud security platforms (e.g., Netskope) for identity telemetry, detection, and investigations Demonstrated experience in identity centric IR, threat hunting, and detection engineering (KQL/SQL/regex/Sigma) Scripting/automation with PowerShell and Python; experience with REST/Graph/CrowdStrike APIs and SOAR Clear communication and documentation skills; comfortable producing executive ready reports and audit evidence Operates effectively within change control/CAB and under pressure during high severity incidents Bonus points Certifications: Microsoft SC 200/SC 300; Okta Certified Administrator/Professional; CISSP, SSCP, Security+; GIAC (GMON, GCIH, GCDA) or equivalent Deep knowledge of identity attack paths and protocols (Kerberos/NTLM), token/session abuse, and persistence techniques (e.g., Golden/Silver Ticket, DCShadow) Experience with JIT/JEA, PAM concepts, and global on call rotations Location, work style, and travel Opportunities in the United States, United Kingdom, and Denmark Onsite or hybrid depending on location and business needs Occasional on call coverage may be required Why you'll love it here Own a mission critical identity defense stack and make measurable impact on MTTD/MTTR and privilege hygiene Solve complex problems from dark web exposure to directory persistence and lateral movement Collaborate with experienced global teams and leading vendors to continuously raise the bar Grow your career in a modern, data driven security operations environment Our programs are designed to focus on maintaining and enhancing all pillars of health with a robust benefitspackage including medical, dental, vision and prescription drug coverage with the option of a Health Savings Account with company contributions. In addition, we offer an industry leading 401(k) savings plan, insurance coverage, employee assistance programs and various wellness incentives. We support life work balance with paid vacation time, sick time, and company holidays. Explore a supportive environment that enriches both your personal and professional growth! EEO Information Fujifilm is committed to providing equal opportunities in hiring, promotion and advancement, compensation, benefits, and training regardless of nationality, age, gender, sexual orientation or gender identity, race, ethnicity, religion, political creed, ideology, national, or social origin, disability, veteran status, etc. ADA Information If you require reasonable accommodation in completing this application, interviewing, completing any pre employment testing, or otherwise participating in the employee selection process, please direct your inquiries to our HR Department ().
About the role You will report directly to the Head of Information Security and work alongside a Senior Technical Support Engineer to form the senior core of the IT Delivery and Security Services team. You will own a broad portfolio of security responsibilities, from application security and secure SDLC enablement to AI governance and security programmes, with significant autonomy to shape how that work gets done. The role is hybrid within the UK, with occasional travel to our London office for collaboration and workshops. What you will be doing Application Security and Secure SDLC Embed security into Agile development by partnering with engineering squads during planning, refinement, and delivery, and be the security voice in the room. Define, roll out, and continuously improve secure coding standards, secure design patterns, and developer-friendly guidance that scales across the engineering team. Run threat modelling for new features and major architectural changes, capturing abuse cases and security requirements early, and apply emerging frameworks to model and mitigate new threat surfaces, especially for AI-powered features. Own SAST, SCA, DAST, container, and IaC scanning pipelines, using Snyk as the primary platform. Integrate with CI/CD, manage policies, and focus on developer experience and false-positive reduction. Triage and manage vulnerabilities end-to-end: classification, SLAs, fix validation, and reporting. Build frictionless guardrails such as pre-commit hooks, secure templates, reference code, and paved paths that make doing the right thing easy. Deliver targeted training and just-in-time enablement based on findings and stack specifics. Security Architecture and Design Advise on architecture choices for key product feature developments, including authorisation, secrets and key management, data protection, and zero-trust-aligned designs. Guide secure API and microservice patterns, including input validation, rate limiting, secure session handling, and token-based security (OAuth 2.0/OIDC). Review designs for cloud-native services and edge components, ensuring sensible security trade-offs aligned to product goals. Advise on the security architecture of agent orchestration, tool integrations, memory handling, and MCP server deployments as agentic AI capabilities expand. AI Security and Governance Apply and evolve Semble's approach to AI specific threats: prompt injection, excessive agent autonomy, tool and plugin abuse, AI supply chain risks, and context manipulation, using OWASP LLM Top 10 and OWASP Top 10 for Agentic Applications. Work with the Head of Information Security to develop and maintain AI governance posture, aligned with ISO 42001 and evolving AI regulatory landscape in healthcare. Assess risks from third party AI integrations, AI assisted development tooling, and agentic workflows, and implement appropriate mitigations. Security Operations and Threat Management Monitor, investigate, and respond to security alerts, incidents, and anomalous behaviour across Semble's environment. Develop and mature threat intelligence capabilities, including vulnerability management, penetration testing coordination, and incident response processes. Maintain and improve security tooling, logging, and detection capabilities with an automation first mindset. Contribute to incident response runbooks for application layer and AI related incidents, and support blameless post incident reviews to embed learning back into the SDLC. Identify and address security gaps proactively, improving the overall security posture. Compliance, Certification and Audit Readiness Own or co own delivery of compliance programmes, including ISO 27001, Cyber Essentials+, NHS DSPT, and the journey toward SOC 2 readiness. Support and contribute to ISO 42001 implementation as AI governance matures. Define and track pragmatic security KPIs such as time to remediate, coverage, critical resolutions within SLA, threat model coverage, and audit readiness indicators. Maintain audit quality documentation, evidence, and records at all times. Customer and Stakeholder Engagement Support the sales process by responding to customer security questionnaires and due diligence requests with accuracy and confidence. Occasionally engage directly with customers on security topics, acting as a credible representative of Semble's security function. Work with internal stakeholders to ensure security requirements are understood and embedded across the business. What we are looking for Required Minimum of 5 years' experience in application security, product security, or a combination of software engineering and security with strong AppSec ownership. Hands on experience with Snyk across SCA, SAST, Container, and IaC, including CI/CD integration and policy management. Strong grounding in modern web and application security: OWASP Top 10, API Security Top 10, and emerging understanding of the OWASP Top 10 for Agentic Applications. Practical experience embedding security into Agile workflows and DevSecOps tooling. Solid understanding of authn/authz patterns, secrets management, encryption, and cloud native security controls. Experience with compliance frameworks, particularly ISO 27001; familiarity with Cyber Essentials+, NHS DSPT, or SOC 2 is a strong advantage. Practical understanding of AI security risks, including prompt injection, LLM vulnerabilities, and agentic system threats, and how to address them in a product context. Experience working in a SaaS environment or similarly regulated industry, appreciating the product, engineering, and commercial context that security decisions sit within. Ability to communicate clearly with engineers, leadership, and occasionally customers, translating complex security risk into clear, actionable language. Genuine, hands on AI experience: you must be able to discuss specific ways you are already using AI to improve security operations, detection, or engineering workflows. A track record of maintaining security programmes to a continuously high standard, with audit readiness as a default rather than a periodic event. A proactive, ownership mindset: you identify gaps, propose solutions, and deliver them without waiting to be told. Desirable CISSP certification (strongly preferred). Experience with threat modelling methodologies such as STRIDE or attack trees, and running effective threat model sessions with engineering teams. Familiarity with API gateways, container orchestration, and software supply chain security. Experience securing AI enabled features, ML pipelines, agentic workflows, or MCP based integrations. Experience building or maturing a security function within a scaling organisation. Exposure to healthcare data regulations and NHS security requirements. Proficiency in the French language (nice to have, not mandatory). Benefits £80-90k salary package, reflecting the specialist and technical nature of this role. Autonomy and ownership - you set the vision and run with it. 36 days off: 25 holidays + bank holidays + 3 extra days (birthday and feel good days). Private health insurance covering physical and mental health, as well as dental and optical. Hybrid & flexible work environment - work from anywhere in the UK, with some flexibility to work across Europe. Latest MacBook (or Windows) and equipment to set up a home office ergonomically. Equal Opportunity We welcome applications from people of all backgrounds and walks of life, including those from groups typically underrepresented in the technology industry. We also encourage applications from disabled and neurodiverse candidates. If there are adjustments we can make to support you throughout the recruitment process, please let us know.
25/07/2026
Full time
About the role You will report directly to the Head of Information Security and work alongside a Senior Technical Support Engineer to form the senior core of the IT Delivery and Security Services team. You will own a broad portfolio of security responsibilities, from application security and secure SDLC enablement to AI governance and security programmes, with significant autonomy to shape how that work gets done. The role is hybrid within the UK, with occasional travel to our London office for collaboration and workshops. What you will be doing Application Security and Secure SDLC Embed security into Agile development by partnering with engineering squads during planning, refinement, and delivery, and be the security voice in the room. Define, roll out, and continuously improve secure coding standards, secure design patterns, and developer-friendly guidance that scales across the engineering team. Run threat modelling for new features and major architectural changes, capturing abuse cases and security requirements early, and apply emerging frameworks to model and mitigate new threat surfaces, especially for AI-powered features. Own SAST, SCA, DAST, container, and IaC scanning pipelines, using Snyk as the primary platform. Integrate with CI/CD, manage policies, and focus on developer experience and false-positive reduction. Triage and manage vulnerabilities end-to-end: classification, SLAs, fix validation, and reporting. Build frictionless guardrails such as pre-commit hooks, secure templates, reference code, and paved paths that make doing the right thing easy. Deliver targeted training and just-in-time enablement based on findings and stack specifics. Security Architecture and Design Advise on architecture choices for key product feature developments, including authorisation, secrets and key management, data protection, and zero-trust-aligned designs. Guide secure API and microservice patterns, including input validation, rate limiting, secure session handling, and token-based security (OAuth 2.0/OIDC). Review designs for cloud-native services and edge components, ensuring sensible security trade-offs aligned to product goals. Advise on the security architecture of agent orchestration, tool integrations, memory handling, and MCP server deployments as agentic AI capabilities expand. AI Security and Governance Apply and evolve Semble's approach to AI specific threats: prompt injection, excessive agent autonomy, tool and plugin abuse, AI supply chain risks, and context manipulation, using OWASP LLM Top 10 and OWASP Top 10 for Agentic Applications. Work with the Head of Information Security to develop and maintain AI governance posture, aligned with ISO 42001 and evolving AI regulatory landscape in healthcare. Assess risks from third party AI integrations, AI assisted development tooling, and agentic workflows, and implement appropriate mitigations. Security Operations and Threat Management Monitor, investigate, and respond to security alerts, incidents, and anomalous behaviour across Semble's environment. Develop and mature threat intelligence capabilities, including vulnerability management, penetration testing coordination, and incident response processes. Maintain and improve security tooling, logging, and detection capabilities with an automation first mindset. Contribute to incident response runbooks for application layer and AI related incidents, and support blameless post incident reviews to embed learning back into the SDLC. Identify and address security gaps proactively, improving the overall security posture. Compliance, Certification and Audit Readiness Own or co own delivery of compliance programmes, including ISO 27001, Cyber Essentials+, NHS DSPT, and the journey toward SOC 2 readiness. Support and contribute to ISO 42001 implementation as AI governance matures. Define and track pragmatic security KPIs such as time to remediate, coverage, critical resolutions within SLA, threat model coverage, and audit readiness indicators. Maintain audit quality documentation, evidence, and records at all times. Customer and Stakeholder Engagement Support the sales process by responding to customer security questionnaires and due diligence requests with accuracy and confidence. Occasionally engage directly with customers on security topics, acting as a credible representative of Semble's security function. Work with internal stakeholders to ensure security requirements are understood and embedded across the business. What we are looking for Required Minimum of 5 years' experience in application security, product security, or a combination of software engineering and security with strong AppSec ownership. Hands on experience with Snyk across SCA, SAST, Container, and IaC, including CI/CD integration and policy management. Strong grounding in modern web and application security: OWASP Top 10, API Security Top 10, and emerging understanding of the OWASP Top 10 for Agentic Applications. Practical experience embedding security into Agile workflows and DevSecOps tooling. Solid understanding of authn/authz patterns, secrets management, encryption, and cloud native security controls. Experience with compliance frameworks, particularly ISO 27001; familiarity with Cyber Essentials+, NHS DSPT, or SOC 2 is a strong advantage. Practical understanding of AI security risks, including prompt injection, LLM vulnerabilities, and agentic system threats, and how to address them in a product context. Experience working in a SaaS environment or similarly regulated industry, appreciating the product, engineering, and commercial context that security decisions sit within. Ability to communicate clearly with engineers, leadership, and occasionally customers, translating complex security risk into clear, actionable language. Genuine, hands on AI experience: you must be able to discuss specific ways you are already using AI to improve security operations, detection, or engineering workflows. A track record of maintaining security programmes to a continuously high standard, with audit readiness as a default rather than a periodic event. A proactive, ownership mindset: you identify gaps, propose solutions, and deliver them without waiting to be told. Desirable CISSP certification (strongly preferred). Experience with threat modelling methodologies such as STRIDE or attack trees, and running effective threat model sessions with engineering teams. Familiarity with API gateways, container orchestration, and software supply chain security. Experience securing AI enabled features, ML pipelines, agentic workflows, or MCP based integrations. Experience building or maturing a security function within a scaling organisation. Exposure to healthcare data regulations and NHS security requirements. Proficiency in the French language (nice to have, not mandatory). Benefits £80-90k salary package, reflecting the specialist and technical nature of this role. Autonomy and ownership - you set the vision and run with it. 36 days off: 25 holidays + bank holidays + 3 extra days (birthday and feel good days). Private health insurance covering physical and mental health, as well as dental and optical. Hybrid & flexible work environment - work from anywhere in the UK, with some flexibility to work across Europe. Latest MacBook (or Windows) and equipment to set up a home office ergonomically. Equal Opportunity We welcome applications from people of all backgrounds and walks of life, including those from groups typically underrepresented in the technology industry. We also encourage applications from disabled and neurodiverse candidates. If there are adjustments we can make to support you throughout the recruitment process, please let us know.
AI Business AnalystApplylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: JR530The Value of Active Minds About Jupiter Jupiter is one of the UK's leading investment management companies with just under 500 employees and £54 billion worth of assets under management (as at 31st December 2025). Jupiter provides investment services to individual and institutional investors through mutual funds (UK unit trusts, Luxembourg SICAVs and Dublin OEICs), separately managed accounts and sub-advised funds. Jupiter has experienced a period of international growth with offices open in EMEA and APAC.The majority of our employees are based in our London office located just minutes from Victoria station which provides stair-free access from both the Underground's Victoria line and National Rail platforms, as well as limited road crossings to the Jupiter office. Our London office was designed to encourage employees to live active, healthy lives with floor-to-ceiling windows that allow for greater natural light and the benefit of a private balcony, table tennis room, cycle storage and on-site shower and locker facilities. The short distance to Green Park and St James' Park also provides employees with a natural space to relax during their lunch break and a healthy alternative to office-based meetings.We offer our UK employees a 3:2 hybrid working arrangement where Tuesdays, Thursdays and a third day of your choice are worked from the office. The other two days may be worked from home. This facilitates collaboration and allows employees to maximise productivity whilst maintaining a healthy work/life balance. Background The AI & Automation team at Jupiter plays a pivotal role in transforming business processes across the organisation to make them more efficient, auditable, and scalable. The team, comprising developers, analysts, and automation specialists, supports projects from initial discovery through to delivery and maintenance, leveraging technologies and workflow platforms to drive digital transformation. We are looking for a Business Analyst with expertise in asset management to drive AI initiatives. The role will involve supporting the development of bespoke AI solutions, assessing and onboarding AI service providers, and contributing to the enhancement and implementation of Jupiter's AI governance framework.This is an exciting opportunity to contribute to organisational change with frontier technologies. Successful candidates will be given the freedom to experiment with AI tooling to creatively solve automation problems and design new workflows with AI at their core. Key Responsibilities AI Review & Discovery Conduct structured AI temperature checks across all business functions: assessing current AI usage, tool fit, and adoption readiness Work with teams across the organisation to capture requirements, validate use cases and assess feasibility, risks and value Identify whether teams are using the right tooling (i.e. Claude, ChatGPT, AI built-in to software products, or other) and flag gaps, risks or opportunities Build and maintain a clear view of AI activity across the firm, feeding structured insight into the AI roadmap Workflow Analysis & Use Case Development Map and analyse current and target processes to identify where AI can enhance insight, efficiency or decision support while maintaining required human oversight Prioritise use cases that deliver meaningful time savings, quality improvements or cognitive load reduction for high-value roles Assist in the design, testing and evaluation of AI tools, including prompt design, data inputs, controls, transparency requirements and oversight checkpoints Identify and document case studies where AI has delivered measurable value, contributing to the business case for continued investment Rollout & Adoption Provide hands-on embedding support, sitting with teams across the business to implement AI tools in their day-to-day workflows Deliver training sessions and produce accessible, practical materials for non-technical users across all functions Build reusable assets including prompt libraries, skills, quick reference guides and resources for the AI programme hub Support users in understanding AI capabilities, limitations, oversight obligations and safe use practices Governance & Compliance Support the implementation and adoption of AI solutions ensuring alignment with Jupiter's AI Framework and regulatory expectations Produce clear documentation including requirements, process maps, risk considerations, user guides and governance artefacts Collaborate with developers, IT, compliance and risk to ensure AI solutions meet business needs, integrate effectively with existing platforms and follow data governance standards Where required, lead RFPs and assist Procurement, Legal and Risk by gathering supplier information and supporting due diligence Help define KRIs, dashboards and MI that track AI risks, incidents, supplier status, usage and training coverage Stakeholder Engagement & Communication Communicate progress, risks and insights clearly to stakeholders at all levels, advocating for responsible and value-driven AI adoption across the organisation Facilitate workshops and present findings and recommendations to groups across the business Collaborate with the AI Transformation Lead to prepare updates for senior stakeholders. Actively keep pace with developments in AI: staying informed on model capabilities, emerging tools, regulatory changes and industry trends, and able to translate these into meaningful opportunities or risks for the business Desired Skills / Experience Essential 3+ years of experience as a Business Analyst, Process Analyst or transformation consultant, with exposure to a range of business functions or equivalent demonstrated depth in AI tooling and adoption Practical, working knowledge of AI productivity tools such as Claude or ChatGPT, with an understanding of their strengths, limitations and the techniques required to overcome challenges such as hallucinations, prompt sensitivity and data handling constraints A natural AI advocate: confident promoting responsible adoption, educating stakeholders and helping build a culture that understands both the opportunities and the obligations of AI Strong stakeholder engagement and communication skills, with the ability to translate technical concepts into clear business value for non-technical audiences Experience facilitating workshops and presenting to groups across different seniority levels Hands-on experience supporting technology or data-driven transformation projects, preferably involving AI, analytics or digital tooling Strong understanding of business process design, mapping and re-engineering, ideally with BPMN 2.0 exposure Experience with process and solution design tools such as IBM Blueworks, Lucidchart or Visio Demonstrated ability to support delivery from requirements through testing and adoption, ensuring solutions are well governed and business ready Proactive interest in the evolving regulatory landscape for AI, including data protection, conduct considerations and emerging AI-specific requirements such as the EU AI Act and FCA expectations Genuine interest in AI governance and control design. Able to translate regulatory and internal policy expectations into practical controls, design choices and documentation. Organised, analytical and proactive, with strong problem-solving and prioritisation skills Desirable Experience working across a broad range of business functions in an asset management or investment management firm, rather than a single team or desk Familiarity with asset management platforms such as Aladdin, or data platforms such as Snowflake Experience delivering training or change management programmes for non-technical users in a regulated environment Previous experience where a clean, structured handover to a permanent team was a core deliverable Familiarity with system design and integration concepts such as APIs, webhooks and MCP servers, with sufficient technical fluency to reason about how AI tools connect to existing systems and where the integration boundaries sit Track record of building reusable assets such as prompt libraries, playbooks or governance documentation as part of an AI or technology programme Genuine enthusiasm for AI and emerging technology. Actively experiments with new tools, follows developments in the space, and translates that curiosity into practical ideas for the business Additional Role Details This role is subject to the Conduct Rules set by the FCA. Don't meet every requirement? At Jupiter we are dedicated to building a diverse and inclusive workplace, so if you are interested in this role, but don't think your experience aligns perfectly with every listed requirement in the job description, we would encourage you to apply. You may be the right person for this role.
25/07/2026
Full time
AI Business AnalystApplylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: JR530The Value of Active Minds About Jupiter Jupiter is one of the UK's leading investment management companies with just under 500 employees and £54 billion worth of assets under management (as at 31st December 2025). Jupiter provides investment services to individual and institutional investors through mutual funds (UK unit trusts, Luxembourg SICAVs and Dublin OEICs), separately managed accounts and sub-advised funds. Jupiter has experienced a period of international growth with offices open in EMEA and APAC.The majority of our employees are based in our London office located just minutes from Victoria station which provides stair-free access from both the Underground's Victoria line and National Rail platforms, as well as limited road crossings to the Jupiter office. Our London office was designed to encourage employees to live active, healthy lives with floor-to-ceiling windows that allow for greater natural light and the benefit of a private balcony, table tennis room, cycle storage and on-site shower and locker facilities. The short distance to Green Park and St James' Park also provides employees with a natural space to relax during their lunch break and a healthy alternative to office-based meetings.We offer our UK employees a 3:2 hybrid working arrangement where Tuesdays, Thursdays and a third day of your choice are worked from the office. The other two days may be worked from home. This facilitates collaboration and allows employees to maximise productivity whilst maintaining a healthy work/life balance. Background The AI & Automation team at Jupiter plays a pivotal role in transforming business processes across the organisation to make them more efficient, auditable, and scalable. The team, comprising developers, analysts, and automation specialists, supports projects from initial discovery through to delivery and maintenance, leveraging technologies and workflow platforms to drive digital transformation. We are looking for a Business Analyst with expertise in asset management to drive AI initiatives. The role will involve supporting the development of bespoke AI solutions, assessing and onboarding AI service providers, and contributing to the enhancement and implementation of Jupiter's AI governance framework.This is an exciting opportunity to contribute to organisational change with frontier technologies. Successful candidates will be given the freedom to experiment with AI tooling to creatively solve automation problems and design new workflows with AI at their core. Key Responsibilities AI Review & Discovery Conduct structured AI temperature checks across all business functions: assessing current AI usage, tool fit, and adoption readiness Work with teams across the organisation to capture requirements, validate use cases and assess feasibility, risks and value Identify whether teams are using the right tooling (i.e. Claude, ChatGPT, AI built-in to software products, or other) and flag gaps, risks or opportunities Build and maintain a clear view of AI activity across the firm, feeding structured insight into the AI roadmap Workflow Analysis & Use Case Development Map and analyse current and target processes to identify where AI can enhance insight, efficiency or decision support while maintaining required human oversight Prioritise use cases that deliver meaningful time savings, quality improvements or cognitive load reduction for high-value roles Assist in the design, testing and evaluation of AI tools, including prompt design, data inputs, controls, transparency requirements and oversight checkpoints Identify and document case studies where AI has delivered measurable value, contributing to the business case for continued investment Rollout & Adoption Provide hands-on embedding support, sitting with teams across the business to implement AI tools in their day-to-day workflows Deliver training sessions and produce accessible, practical materials for non-technical users across all functions Build reusable assets including prompt libraries, skills, quick reference guides and resources for the AI programme hub Support users in understanding AI capabilities, limitations, oversight obligations and safe use practices Governance & Compliance Support the implementation and adoption of AI solutions ensuring alignment with Jupiter's AI Framework and regulatory expectations Produce clear documentation including requirements, process maps, risk considerations, user guides and governance artefacts Collaborate with developers, IT, compliance and risk to ensure AI solutions meet business needs, integrate effectively with existing platforms and follow data governance standards Where required, lead RFPs and assist Procurement, Legal and Risk by gathering supplier information and supporting due diligence Help define KRIs, dashboards and MI that track AI risks, incidents, supplier status, usage and training coverage Stakeholder Engagement & Communication Communicate progress, risks and insights clearly to stakeholders at all levels, advocating for responsible and value-driven AI adoption across the organisation Facilitate workshops and present findings and recommendations to groups across the business Collaborate with the AI Transformation Lead to prepare updates for senior stakeholders. Actively keep pace with developments in AI: staying informed on model capabilities, emerging tools, regulatory changes and industry trends, and able to translate these into meaningful opportunities or risks for the business Desired Skills / Experience Essential 3+ years of experience as a Business Analyst, Process Analyst or transformation consultant, with exposure to a range of business functions or equivalent demonstrated depth in AI tooling and adoption Practical, working knowledge of AI productivity tools such as Claude or ChatGPT, with an understanding of their strengths, limitations and the techniques required to overcome challenges such as hallucinations, prompt sensitivity and data handling constraints A natural AI advocate: confident promoting responsible adoption, educating stakeholders and helping build a culture that understands both the opportunities and the obligations of AI Strong stakeholder engagement and communication skills, with the ability to translate technical concepts into clear business value for non-technical audiences Experience facilitating workshops and presenting to groups across different seniority levels Hands-on experience supporting technology or data-driven transformation projects, preferably involving AI, analytics or digital tooling Strong understanding of business process design, mapping and re-engineering, ideally with BPMN 2.0 exposure Experience with process and solution design tools such as IBM Blueworks, Lucidchart or Visio Demonstrated ability to support delivery from requirements through testing and adoption, ensuring solutions are well governed and business ready Proactive interest in the evolving regulatory landscape for AI, including data protection, conduct considerations and emerging AI-specific requirements such as the EU AI Act and FCA expectations Genuine interest in AI governance and control design. Able to translate regulatory and internal policy expectations into practical controls, design choices and documentation. Organised, analytical and proactive, with strong problem-solving and prioritisation skills Desirable Experience working across a broad range of business functions in an asset management or investment management firm, rather than a single team or desk Familiarity with asset management platforms such as Aladdin, or data platforms such as Snowflake Experience delivering training or change management programmes for non-technical users in a regulated environment Previous experience where a clean, structured handover to a permanent team was a core deliverable Familiarity with system design and integration concepts such as APIs, webhooks and MCP servers, with sufficient technical fluency to reason about how AI tools connect to existing systems and where the integration boundaries sit Track record of building reusable assets such as prompt libraries, playbooks or governance documentation as part of an AI or technology programme Genuine enthusiasm for AI and emerging technology. Actively experiments with new tools, follows developments in the space, and translates that curiosity into practical ideas for the business Additional Role Details This role is subject to the Conduct Rules set by the FCA. Don't meet every requirement? At Jupiter we are dedicated to building a diverse and inclusive workplace, so if you are interested in this role, but don't think your experience aligns perfectly with every listed requirement in the job description, we would encourage you to apply. You may be the right person for this role.
AI Business Analyst (12 month FTC)Applylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: JR531The Value of Active Minds About Jupiter Jupiter is one of the UK's leading investment management companies with just under 500 employees and £54 billion worth of assets under management (as at 31st December 2025). Jupiter provides investment services to individual and institutional investors through mutual funds (UK unit trusts, Luxembourg SICAVs and Dublin OEICs), separately managed accounts and sub-advised funds. Jupiter has experienced a period of international growth with offices open in EMEA and APAC.The majority of our employees are based in our London office located just minutes from Victoria station which provides stair-free access from both the Underground's Victoria line and National Rail platforms, as well as limited road crossings to the Jupiter office. Our London office was designed to encourage employees to live active, healthy lives with floor-to-ceiling windows that allow for greater natural light and the benefit of a private balcony, table tennis room, cycle storage and on-site shower and locker facilities. The short distance to Green Park and St James' Park also provides employees with a natural space to relax during their lunch break and a healthy alternative to office-based meetings.We offer our UK employees a 3:2 hybrid working arrangement where Tuesdays, Thursdays and a third day of your choice are worked from the office. The other two days may be worked from home. This facilitates collaboration and allows employees to maximise productivity whilst maintaining a healthy work/life balance. Background The AI & Automation team at Jupiter plays a pivotal role in transforming business processes across the organisation to make them more efficient, auditable, and scalable. The team, comprising developers, analysts, and automation specialists, supports projects from initial discovery through to delivery and maintenance, leveraging technologies and workflow platforms to drive digital transformation. We are looking for a Business Analyst with deep expertise in asset management to drive AI initiatives. The role will involve supporting the development of bespoke AI solutions, assessing and onboarding AI service providers, and contributing to the enhancement and implementation of Jupiter's AI governance framework.This is an exciting opportunity to contribute to organisational change with frontier technologies. Successful candidates will be given the freedom to experiment with AI tooling to creatively solve automation problems and design new workflows with AI at their core.This role is a 12 month fixed term contract. Key Responsibilities AI Review & Discovery Conduct structured AI temperature checks across all business functions: assessing current AI usage, tool fit, and adoption readiness Work with teams across the organisation to capture requirements, validate use cases and assess feasibility, risks and value Identify whether teams are using the right tooling (i.e. Claude, ChatGPT, AI built-in to software products, or other) and flag gaps, risks or opportunities Build and maintain a clear view of AI activity across the firm, feeding structured insight into the AI roadmap Workflow Analysis & Use Case Development Map and analyse current and target processes to identify where AI can enhance insight, efficiency or decision support while maintaining required human oversight Prioritise use cases that deliver meaningful time savings, quality improvements or cognitive load reduction for high-value roles Assist in the design, testing and evaluation of AI tools, including prompt design, data inputs, controls, transparency requirements and oversight checkpoints Identify and document case studies where AI has delivered measurable value, contributing to the business case for continued investment Rollout & Adoption Provide hands-on embedding support, sitting with teams across the business to implement AI tools in their day-to-day workflows Deliver training sessions and produce accessible, practical materials for non-technical users across all functions Build reusable assets including prompt libraries, skills, quick reference guides and resources for the AI programme hub Support users in understanding AI capabilities, limitations, oversight obligations and safe use practices Governance & Compliance Support the implementation and adoption of AI solutions ensuring alignment with Jupiter's AI Framework and regulatory expectations Produce clear documentation including requirements, process maps, risk considerations, user guides and governance artefacts Collaborate with developers, IT, compliance and risk to ensure AI solutions meet business needs, integrate effectively with existing platforms and follow data governance standards Where required, lead RFPs and assist Procurement, Legal and Risk by gathering supplier information and supporting due diligence Help define KRIs, dashboards and MI that track AI risks, incidents, supplier status, usage and training coverage Stakeholder Engagement & Communication Communicate progress, risks and insights clearly to stakeholders at all levels, advocating for responsible and value-driven AI adoption across the organisation Facilitate workshops and present findings and recommendations to groups across the business Collaborate with the AI Transformation Lead to prepare updates for senior stakeholders. Actively keep pace with developments in AI: staying informed on model capabilities, emerging tools, regulatory changes and industry trends, and able to translate these into meaningful opportunities or risks for the business Desired Skills / Experience Essential 3+ years of experience as a Business Analyst, Process Analyst or transformation consultant, with exposure to a range of business functions or equivalent demonstrated depth in AI tooling and adoption Practical, working knowledge of AI productivity tools such as Claude or ChatGPT, with an understanding of their strengths, limitations and the techniques required to overcome challenges such as hallucinations, prompt sensitivity and data handling constraints A natural AI advocate: confident promoting responsible adoption, educating stakeholders and helping build a culture that understands both the opportunities and the obligations of AI Strong stakeholder engagement and communication skills, with the ability to translate technical concepts into clear business value for non-technical audiences Experience facilitating workshops and presenting to groups across different seniority levels Hands-on experience supporting technology or data-driven transformation projects, preferably involving AI, analytics or digital tooling Strong understanding of business process design, mapping and re-engineering, ideally with BPMN 2.0 exposure Experience with process and solution design tools such as IBM Blueworks, Lucidchart or Visio Demonstrated ability to support delivery from requirements through testing and adoption, ensuring solutions are well governed and business ready Proactive interest in the evolving regulatory landscape for AI, including data protection, conduct considerations and emerging AI-specific requirements such as the EU AI Act and FCA expectations Genuine interest in AI governance and control design. Able to translate regulatory and internal policy expectations into practical controls, design choices and documentation. Organised, analytical and proactive, with strong problem-solving and prioritisation skills Desirable Experience working across a broad range of business functions in an asset management or investment management firm, rather than a single team or desk Familiarity with asset management platforms such as Aladdin, or data platforms such as Snowflake Experience delivering training or change management programmes for non-technical users in a regulated environment Previous experience where a clean, structured handover to a permanent team was a core deliverable Familiarity with system design and integration concepts such as APIs, webhooks and MCP servers, with sufficient technical fluency to reason about how AI tools connect to existing systems and where the integration boundaries sit Track record of building reusable assets such as prompt libraries, playbooks or governance documentation as part of an AI or technology programme Genuine enthusiasm for AI and emerging technology. Actively experiments with new tools, follows developments in the space, and translates that curiosity into practical ideas for the business Additional Role Details This role is subject to the Conduct Rules set by the FCA. Don't meet every requirement? At Jupiter we are dedicated to building a diverse and inclusive workplace, so if you are interested in this role, but don't think your experience aligns perfectly with every listed requirement in the job description, we would encourage you to apply. You may be the right person for this role.
25/07/2026
Full time
AI Business Analyst (12 month FTC)Applylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: JR531The Value of Active Minds About Jupiter Jupiter is one of the UK's leading investment management companies with just under 500 employees and £54 billion worth of assets under management (as at 31st December 2025). Jupiter provides investment services to individual and institutional investors through mutual funds (UK unit trusts, Luxembourg SICAVs and Dublin OEICs), separately managed accounts and sub-advised funds. Jupiter has experienced a period of international growth with offices open in EMEA and APAC.The majority of our employees are based in our London office located just minutes from Victoria station which provides stair-free access from both the Underground's Victoria line and National Rail platforms, as well as limited road crossings to the Jupiter office. Our London office was designed to encourage employees to live active, healthy lives with floor-to-ceiling windows that allow for greater natural light and the benefit of a private balcony, table tennis room, cycle storage and on-site shower and locker facilities. The short distance to Green Park and St James' Park also provides employees with a natural space to relax during their lunch break and a healthy alternative to office-based meetings.We offer our UK employees a 3:2 hybrid working arrangement where Tuesdays, Thursdays and a third day of your choice are worked from the office. The other two days may be worked from home. This facilitates collaboration and allows employees to maximise productivity whilst maintaining a healthy work/life balance. Background The AI & Automation team at Jupiter plays a pivotal role in transforming business processes across the organisation to make them more efficient, auditable, and scalable. The team, comprising developers, analysts, and automation specialists, supports projects from initial discovery through to delivery and maintenance, leveraging technologies and workflow platforms to drive digital transformation. We are looking for a Business Analyst with deep expertise in asset management to drive AI initiatives. The role will involve supporting the development of bespoke AI solutions, assessing and onboarding AI service providers, and contributing to the enhancement and implementation of Jupiter's AI governance framework.This is an exciting opportunity to contribute to organisational change with frontier technologies. Successful candidates will be given the freedom to experiment with AI tooling to creatively solve automation problems and design new workflows with AI at their core.This role is a 12 month fixed term contract. Key Responsibilities AI Review & Discovery Conduct structured AI temperature checks across all business functions: assessing current AI usage, tool fit, and adoption readiness Work with teams across the organisation to capture requirements, validate use cases and assess feasibility, risks and value Identify whether teams are using the right tooling (i.e. Claude, ChatGPT, AI built-in to software products, or other) and flag gaps, risks or opportunities Build and maintain a clear view of AI activity across the firm, feeding structured insight into the AI roadmap Workflow Analysis & Use Case Development Map and analyse current and target processes to identify where AI can enhance insight, efficiency or decision support while maintaining required human oversight Prioritise use cases that deliver meaningful time savings, quality improvements or cognitive load reduction for high-value roles Assist in the design, testing and evaluation of AI tools, including prompt design, data inputs, controls, transparency requirements and oversight checkpoints Identify and document case studies where AI has delivered measurable value, contributing to the business case for continued investment Rollout & Adoption Provide hands-on embedding support, sitting with teams across the business to implement AI tools in their day-to-day workflows Deliver training sessions and produce accessible, practical materials for non-technical users across all functions Build reusable assets including prompt libraries, skills, quick reference guides and resources for the AI programme hub Support users in understanding AI capabilities, limitations, oversight obligations and safe use practices Governance & Compliance Support the implementation and adoption of AI solutions ensuring alignment with Jupiter's AI Framework and regulatory expectations Produce clear documentation including requirements, process maps, risk considerations, user guides and governance artefacts Collaborate with developers, IT, compliance and risk to ensure AI solutions meet business needs, integrate effectively with existing platforms and follow data governance standards Where required, lead RFPs and assist Procurement, Legal and Risk by gathering supplier information and supporting due diligence Help define KRIs, dashboards and MI that track AI risks, incidents, supplier status, usage and training coverage Stakeholder Engagement & Communication Communicate progress, risks and insights clearly to stakeholders at all levels, advocating for responsible and value-driven AI adoption across the organisation Facilitate workshops and present findings and recommendations to groups across the business Collaborate with the AI Transformation Lead to prepare updates for senior stakeholders. Actively keep pace with developments in AI: staying informed on model capabilities, emerging tools, regulatory changes and industry trends, and able to translate these into meaningful opportunities or risks for the business Desired Skills / Experience Essential 3+ years of experience as a Business Analyst, Process Analyst or transformation consultant, with exposure to a range of business functions or equivalent demonstrated depth in AI tooling and adoption Practical, working knowledge of AI productivity tools such as Claude or ChatGPT, with an understanding of their strengths, limitations and the techniques required to overcome challenges such as hallucinations, prompt sensitivity and data handling constraints A natural AI advocate: confident promoting responsible adoption, educating stakeholders and helping build a culture that understands both the opportunities and the obligations of AI Strong stakeholder engagement and communication skills, with the ability to translate technical concepts into clear business value for non-technical audiences Experience facilitating workshops and presenting to groups across different seniority levels Hands-on experience supporting technology or data-driven transformation projects, preferably involving AI, analytics or digital tooling Strong understanding of business process design, mapping and re-engineering, ideally with BPMN 2.0 exposure Experience with process and solution design tools such as IBM Blueworks, Lucidchart or Visio Demonstrated ability to support delivery from requirements through testing and adoption, ensuring solutions are well governed and business ready Proactive interest in the evolving regulatory landscape for AI, including data protection, conduct considerations and emerging AI-specific requirements such as the EU AI Act and FCA expectations Genuine interest in AI governance and control design. Able to translate regulatory and internal policy expectations into practical controls, design choices and documentation. Organised, analytical and proactive, with strong problem-solving and prioritisation skills Desirable Experience working across a broad range of business functions in an asset management or investment management firm, rather than a single team or desk Familiarity with asset management platforms such as Aladdin, or data platforms such as Snowflake Experience delivering training or change management programmes for non-technical users in a regulated environment Previous experience where a clean, structured handover to a permanent team was a core deliverable Familiarity with system design and integration concepts such as APIs, webhooks and MCP servers, with sufficient technical fluency to reason about how AI tools connect to existing systems and where the integration boundaries sit Track record of building reusable assets such as prompt libraries, playbooks or governance documentation as part of an AI or technology programme Genuine enthusiasm for AI and emerging technology. Actively experiments with new tools, follows developments in the space, and translates that curiosity into practical ideas for the business Additional Role Details This role is subject to the Conduct Rules set by the FCA. Don't meet every requirement? At Jupiter we are dedicated to building a diverse and inclusive workplace, so if you are interested in this role, but don't think your experience aligns perfectly with every listed requirement in the job description, we would encourage you to apply. You may be the right person for this role.