Risk & Assurance Manager - IT & Cyber

Audit & Risk Recruitment

Manchester

Hybrid

GBP 50,000 - 70,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading recruitment agency is looking for a mid-senior level professional for a Technology Risk and Assurance role in Manchester. You will partner with IT and Security leaders and manage the IT risk landscape. The position offers a hybrid working model, allowing flexibility around office days and working hours. Strong knowledge of risk frameworks like ISO 27001 is essential.

Qualifications

  • Minimum 5 years of experience in second-line risk management or internal audit, with a focus on IT or Information Security.
  • Experience in consultancy or professional services supporting complex transformation programmes.
  • Strong knowledge of frameworks like ISO 27001, NIST, and GDPR.

Responsibilities

  • Partner with senior IT and Security leaders to embed risk management practices.
  • Maintain IT Risk and Control Matrices ensuring alignment with standards.
  • Lead enhancements of IT and infosec risk frameworks.

Skills

Risk management practices
IT Risk and Control Matrices (RCMs)
Leadership
Stakeholder engagement

Job description

Audit & Risk Recruitment provided pay range

This range is provided by Audit & Risk Recruitment. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

Direct message the job poster from Audit & Risk Recruitment.

Audit & Risk Recruitment are working on a fantastic Technology Risk and Assurance opportunity for a large Technology business.

This role focuses on managing and enhancing the IT and Information Security risk landscape. Reporting directly to the Head of Risk and Assurance, you will play a key role in embedding effective risk management practices across the company's technology and cybersecurity domains.

Responsibilities
  • Partnering with senior IT, Security, and business leaders to embed risk management practices into operational processes and strategic initiatives.
  • Owning and maintaining IT Risk and Control Matrices (RCMs), ensuring they remain current, comprehensive, and aligned with industry standards and audit expectations.
  • Reviewing effectiveness of first line functions in testing and validation of key IT controls (e.g., access management, change control, incident response, vulnerability management), ensuring effectiveness and consistency.
  • Leading in the review and enhancement of IT and infosec risk and control frameworks (e.g., ISO 27001, ITIL, ISO22301, NIST), ensuring alignment with business objectives and regulatory requirements.
  • Coordinating and representing IT risk in internal, external audits and certification processes (e.g., ISO 27001, Cyber Essentials, ISO22301, etc.), acting as the primary point of contact.
Qualifications
  • Minimum 5 years of experience in second-line risk management or internal audit, with a strong focus on IT or Information Security.
  • Experience in consultancy or professional services, with a proven ability to support complex transformation or change programmes is preferred.
  • Demonstrated leadership in delivering IT risk or audit initiatives, including managing projects, mentoring team members, and driving outcomes.
  • Strong knowledge of industry frameworks and standards, such as ISO 27001, NIST, CIS Controls, and regulatory requirements like GDPR.
  • Proven ability to engage and influence stakeholders across IT, Information Security, and business functions, building trusted relationships at all levels.
Flexibility
  • Hybrid working – 3 days in the office and 2 days working from home
  • Working flexible hours - flexing the times you start and finish during the day
  • Flexibility around school pick up and drop offs
Seniority level

Mid-Senior level

Employment type

Full-time

Job function

Information Technology

Industries

Technology, Information and Media

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technology Risk Manager
Technology Risk Manager

JSS Search • Manchester

Hybrid
GBP 75,000 - 80,000
Technology Audit Senior Manger
Technology Audit Senior Manger

Audit & Risk Recruitment • Greater London

On-site
GBP 80,000 - 98,000
Bonus scheme
Benefits package
Technology Risk and Controls manager (12 month FTC)
Technology Risk and Controls manager (12 month FTC)

Audit & Risk Recruitment • Greater London, Manchester

Hybrid
GBP 70,000 - 90,000
Tech Assurance Assistant Manager / Manager
Tech Assurance Assistant Manager / Manager

Adaptive Group • United Kingdom

Hybrid
GBP 50,000 - 70,000
Cyber Security Risk Consultant
Cyber Security Risk Consultant

Cyber Guarded Ltd • Belfast

Hybrid
GBP 50,000 - 70,000
Hybrid & flexible working
33 days leave (23 annual + 10 public)
Monthly team lunches & quarterly team days out
Technology Risk and Resilience Manager
Technology Risk and Resilience Manager

Allscreens Nationwide Ltd • Greater London

Hybrid
GBP 74,000 - 92,000
8% benefits allowance
Performance-related bonus
Non-contributory pension
+5
Technology Internal Audit Manager
Technology Internal Audit Manager

Audit & Risk Recruitment • Greater London, Birmingham, Manchester

Hybrid
GBP 55,000 - 75,000
Risk & Assurance Manager
Risk & Assurance Manager

CLARC Recruitment • England

On-site
GBP 50,000 - 70,000
IT Risk & Control Manager
IT Risk & Control Manager

Audit & Risk Recruitment • Bolton

On-site
GBP 60,000 - 90,000
Risk Assurance Manager
Risk Assurance Manager

Arthur Recruitment • England

Hybrid
GBP 60,000 - 80,000