Head of Risk and Control

5 months ago


London, United Kingdom HM Revenue and Customs Full time

**Details**:
**Reference number**:

- 297731**Salary**:

- £64,693 - £80,384- London salary: £71,310 - £80,384. National salary £64693 - £72924- A Civil Service Pension with an average employer contribution of 27%**Job grade**:

- Grade 6**Contract type**:

- Permanent**Business area**:

- HMRC - CDIO - Security**Type of role**:

- Security**Working pattern**:

- Flexible working, Full-time, Job share, Part-time**Number of jobs available**:

- 1Contents

Location

About the job

**Benefits**:
Things you need to know

Location
- Telford, Salford, Newcastle, Edinburgh, Bristol, London.About the job

**Job summary**:
Enterprise security risk management (ESRM) is key to enabling HMRC to deliver secure operations, with lines of business owning and actively managing security risk.

Your team are an integral part of ESRM, setting the security controls, including security policies, that HMRC should adopt, assessing what this means for security risk across the enterprise and ensuring we scan future developments and threats to adapt and leverage our security controls.

This role will have a pivotal part to play in developing and embedding security risk management in the business, as well as

Assessing the aggregation of risk across the whole organisation through the tier 2 and tier 1 security risk domains. You will own ESRM messaging, working across the organisation to improve the security risk management culture within HMRC.

ESRM is part of the work of The Security Operating Model (SOM) which is changing how security is delivered. The risk and controls team is a cornerstone in HMRC Security. Your support of the SOM will present opportunities for efficiencies and scalability, as well as seeking to improve and mature the operation of ESRM.

At HMRC we are committed to creating a great place to work for all our colleagues; an inclusive and respectful environment that reflects the diversity of the society we serve.

We want to maximise the potential of everyone who chooses to work for us and we offer a range of flexible working patterns and support to make a fulfilling career at HMRC accessible to you.

**Job description**:
The enterprise security risk and controls teams sit within the Governance, Risk and Compliance team in HMRC Security.

The team is responsible for owning and managing the enterprise level security risks at tier 1 and tier 2, setting and assessing the departmental security risk appetite and tolerance and defining the associated security controls, including the security policies and standards.

You will manage and support the security policy team and use insights from the risk team and data to assess the performance of HMRC security policies. You and your team shall identify areas for compliance activity and policy review where deficiencies or a changing landscape means these are no longer fit for purpose. Through your leadership, the team will support the adoption of and compliance with HMRC security policy through a range of avenues including the commissioning of education and awareness, reporting and governance channels.

You will own the development and adoption of a clear methodology to measure and report HMRC performance against enterprise security controls and risk. You will call out to the HMRC senior leadership team areas of deficiency and practices that impact the improvement of the HMRC security risk posture. You will take action proportionately, having the ability to balance business need with operating in a secure enough environment.

You will line manage the team directly involved in this work and take responsibility for several key reporting actions in the strategic risk process, this includes input to senior briefing including Audit and Risk Committee and Excom as well as ensuing policy reviews are scheduled and completed timeously.

You and your team focus on priority risk and controls. Your skill in adeptly assessing priorities enables you to often make difficult decisions on where to focus your resource. You’ll be responsible for the reporting and assessment of the HMRC security position, which includes measuring risk appetite and tolerance levels.

You always direct your teams to provide timeous reporting and flag risks before they become issues. You provide support to your team to work holistically, providing a global picture of security risk for HMRC.

You clearly give direction to the enterprise security risk and controls team, ensuring that they are not only focused on current risk exposure, but horizon scanning and managing new environmental, technological and security threat data to support HMRC to manage and be prepared for any changes in the security landscape.

This role is pivotal in ensuring that security controls are measured, proportionate and effective. This must be aligned to the central HMRC risk and controls frameworks, directed centrally. You and your team develop and maintain good working relationships with a wide variety of teams across the organisation.



  • London, Greater London, United Kingdom M&G Full time

    Job Title: Head Business Risk PartnerWe are seeking a highly skilled and experienced Head Business Risk Partner to join our team at M&G plc. As a key member of our Chief Controls Office, you will play a critical role in enhancing our risk and controls agenda across Asset Management.Key Responsibilities:Lead on enhancing the risk and controls agenda across...


  • London, Greater London, United Kingdom M&G Full time

    Job Title: Head Business Risk PartnerWe are seeking a highly skilled and experienced Head Business Risk Partner to join our team at M&G plc. As a key member of our Chief Controls Office, you will play a critical role in enhancing our risk and controls agenda across Asset Management.Key Responsibilities:Lead on enhancing the risk and controls agenda across...

  • Risk Control Analyst

    3 weeks ago


    London, United Kingdom Validus Risk Management Full time

    We are looking for a full-time Risk Control Analyst with experience in the financial services industry to help build and support the Risk Control function at Validus. Risk Control’s overarching objective is to ensure that an effective and efficient framework of controls is in place to mitigate risk across the firm’s trading activities. This position is a...


  • London, Greater London, United Kingdom Validus Risk Management Full time

    We are seeking a highly skilled Risk Control Analyst to join our team at Validus Risk Management. As a Risk Control Analyst, you will play a pivotal role in driving an ethos of risk management discipline across the organisation and in providing leadership and direction within the Risk Control team.Key Responsibilities:Assist with the verification of trades...


  • London, Greater London, United Kingdom ENGINEERINGUK Full time

    Job Title: Head Business Risk PartnerWe are seeking a highly skilled and experienced Head Business Risk Partner to join our team at ENGINEERINGUK. As a key member of our Chief Controls Office, you will play a critical role in enhancing our risk and controls agenda across Asset Management.Key Responsibilities:Lead on enhancing the risk and controls agenda...


  • London, Greater London, United Kingdom ENGINEERINGUK Full time

    Job Title: Head Business Risk PartnerWe are seeking a highly skilled and experienced Head Business Risk Partner to join our team at ENGINEERINGUK. As a key member of our Chief Controls Office, you will play a critical role in enhancing our risk and controls agenda across Asset Management.Key Responsibilities:Lead on enhancing the risk and controls agenda...


  • London, Greater London, United Kingdom M&G Full time

    Job Title: Head Business Risk PartnerWe are seeking a highly skilled and experienced Head Business Risk Partner to join our team at M&G plc. As a key member of our Chief Controls Office, you will play a critical role in enhancing our risk and controls agenda across Asset Management.Key Responsibilities:Lead on enhancing the risk and controls agenda across...


  • London, Greater London, United Kingdom M&G Full time

    Job Title: Head Business Risk PartnerWe are seeking a highly skilled and experienced Head Business Risk Partner to join our team at M&G plc. As a key member of our Chief Controls Office, you will play a critical role in enhancing our risk and controls agenda across Asset Management.Key Responsibilities:Lead on enhancing the risk and controls agenda across...


  • London, Greater London, United Kingdom ENGINEERINGUK Full time

    Job Title: Head Business Risk PartnerWe are seeking a highly skilled and experienced Head Business Risk Partner to join our team at ENGINEERINGUK. As a key member of our Chief Controls Office, you will play a critical role in enhancing our risk and controls agenda across Asset Management.Key Responsibilities:Lead on enhancing the risk and controls agenda...


  • London, Greater London, United Kingdom ENGINEERINGUK Full time

    Job Title: Head Business Risk PartnerWe are seeking a highly skilled and experienced Head Business Risk Partner to join our team at ENGINEERINGUK. As a key member of our Chief Controls Office, you will play a critical role in enhancing our risk and controls agenda across Asset Management.Key Responsibilities:Lead on enhancing the risk and controls agenda...

  • Risk & Control Officer

    4 months ago


    London, United Kingdom Paritas Recruitment - Risk Full time

    K- Posted by - Keith Jones- Manager - Risk Management & Quantitative Analytics Operational Risk and Control professional who has strong corporate / commercial banking experience is sought by a leading bank based in the City. Risk & Control Officer A European Bank in the City is seeking a Risk and Control Officer to join their expanding risk management...


  • London, United Kingdom Control Risks Full time

    Control Risks is a specialist risk consultancy that helps to create secure, compliant and resilient organizations in an age of ever-changing risk. Working across disciplines, technologies and geographies, everything we do is based on our belief that taking risks is essential to our clients’ success. We provide our clients with the insight to focus...


  • London, United Kingdom Post Office Ltd Full time

    **Summary**: **Salary**: Competitive salary and package Grade: 4 Reporting Line: Interim CISO Contract Type: Permanent Location: Hybrid **What to Expect**: Here at the Post Office, we’re steeped in tradition, but we’re going places. As Head of IT Risk and Controls. This role will support the CISO to provide an effective second line of defence and...


  • London, Greater London, United Kingdom Paritas Recruitment - Risk Full time

    Operational Risk Associate Role at Paritas Recruitment - RiskWe are seeking an experienced Operational Risk professional to support the Head of Operational Risk with the Risk Control Self-Assessment (RCSA) reassessment process.Key responsibilities include driving continuous improvement for designated areas, supporting and completing data analytics across...


  • London, United Kingdom Portfolio Credit Control Full time

    Portfolio Credit Control are currently partnered with a well-established, growing professional services business who are heavily investing into the Credit Function. We are currently recruiting for a track proven Head of Credit Control who has consistently delivered in a fast paced, high-volume, hands-on environment.Key Responsibilities:Transformation: Review...


  • London, Greater London, United Kingdom State Street Full time

    State Street is seeking a Head of First Line Technology Risk Management and Control to lead the technology first line risk and controls function. This role will enable the controls assurance to continuously improve technology risk management processes, rationalize and simplify controls, drive control quality and sustain effectiveness.The ideal candidate will...


  • London, Greater London, United Kingdom Paritas Recruitment - Risk Full time

    Operational Risk Associate - CommoditiesWe are seeking an experienced Operational Risk professional to join our team at Paritas Recruitment - Risk. The ideal candidate will have recent RCSA experience in a fast-paced financial services environment and a keen interest in working in a dynamic and progressive environment.Key Responsibilities:Support the Head of...


  • London, Greater London, United Kingdom Paritas Recruitment - Risk Full time

    Operational Risk Associate - CommoditiesWe are seeking an experienced Operational Risk professional to join our team at Paritas Recruitment - Risk. The ideal candidate will have recent RCSA experience in a fast-paced financial services environment and a keen interest in working in a dynamic and progressive environment.Key Responsibilities:Support the Head of...

  • Head of Risk

    2 months ago


    London, United Kingdom Vallum Associates Full time

    Role: Head of RiskLocation: LondonClient: Trading HouseSalary: £150k/yrRoleI am excited to be advertising a Head of Risk position, within a global Trading House based in London.ResponsibilitiesAs the Head of Risk for all Trading activities within the business, some of your responsibilities will include:Overseeing, controlling and reporting risk within the...


  • London, United Kingdom Paritas Recruitment - Risk Full time

    Operational Risk Associate - Commodities    Are you an Operational Risk professional who has recent RCSA experience gained in a fast-paced financial services?  Are you seeking a fresh challenge and keen to worked in a dynamic and progressive environment?  If you answered yes to both of the above, please read on.    Based in the heart of the City, you...