Enable job alerts via email!

Risk Consultant in The City

Energy Jobline AZ

Dundee

Hybrid

GBP 80,000 - 100,000

Part time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading energy services firm is seeking a GRC & Cyber Risk Manager for a 6-month contract with a daily rate of £700. Responsibilities include leading the Information Security Risk Management Framework and conducting third-party risk assessments. Ideal candidates will have hands-on experience with ServiceNow IRM and knowledge of ISO 27001 and NIST guidelines. This role is hybrid, requiring twice weekly on-site presence in Cambridge.

Qualifications

  • Proven hands-on experience with ServiceNow IRM and risk quantification methodologies.
  • Strong knowledge of ISO 27001, NIST CSF, and NIST SP800-53.
  • Certifications such as CRISC, CISM, CISSP, or FAIR are desirable.
  • Excellent stakeholder management and communication skills.
  • Experience in third-party cyber risk management and post-incident analysis.
  • Background in large-scale technical environments.

Responsibilities

  • Lead and enhance the Information Security Risk Management Framework.
  • Act as technical SME for ServiceNow IRM.
  • Oversee third-party cyber risk assessments.
  • Conduct post-incident reviews and integrate lessons learned.
  • Develop Key Risk and Control Indicators.
  • Collaborate across IT and Engineering to manage service security risks.
  • Support AI and automation initiatives.

Skills

Experience with ServiceNow IRM
Knowledge of ISO 27001
Knowledge of NIST CSF
Knowledge of NIST SP800-53
Stakeholder management
Communication skills
Third-party cyber risk management
Post-incident analysis
Job description
GRC & Cyber Risk Manager (Contract)

Contract Details: Contract Length: 6 months (potential extension) Daily Rate: £700 per day (inside IR35) Location: Cambridge (hybrid – twice per week on-site)

Key Responsibilities
  • Lead and enhance Arm’s Information Security Risk Management Framework within ServiceNow IRM.
  • Act as technical SME for ServiceNow IRM, embedding frameworks and best practices.
  • Oversee third‑party cyber risk assessments, contract reviews, and supplier monitoring.
  • Conduct post‑incident reviews and integrate lessons learned into the control environment.
  • Develop and monitor Key Risk and Control Indicators to inform decision‑making.
  • Collaborate across Enterprise IT and Engineering to identify and manage service security risks.
  • Support AI and automation initiatives to streamline GRC processes.
Key Requirements
  • Proven hands‑on experience with ServiceNow IRM and risk quantification methodologies.
  • Strong knowledge of ISO 27001, NIST CSF, and NIST SP800‑53.
  • Certifications such as CRISC, CISM, CISSP, or FAIR are desirable.
  • Excellent stakeholder management and communication skills.
  • Experience in third‑party cyber risk management and post‑incident analysis.
  • Background in large‑scale technical environments (e.g., semiconductors). Consulting or financial sector backgrounds not required.

Start Date: ASAP. If you are interested in applying for this job, please press the Apply Button and follow the application process.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.