Security Risk Management Lead
5 days ago
Security Risk Management Lead Location: Hybrid London or Newcastle, UK DXC’s Insurance Software and BPS business provides a range of software and services to the global insurance market including life, wealth, health, commercial and speciality, property and casualty, and reinsurance. DXC is also a key partner of the London Market, providing digital transformation and outsourcing services. DXC’s insurance business has 13,000 domain experts serving 2,000 insurance customers operating in over 100 countries worldwide. Role Overview The Security Risk Management Lead will be responsible for refreshing and managing the security risk program across both heritage and digital IT estates in the London Markets account. This role will assess the current risk posture, ensure risk coverage, and produce actionable risk reports. The successful candidate will work closely with the Vulnerability and Remediation Managers to align risk findings with remediation plans and drive continual improvement. Key Responsibilities Strategic Risk Management Redesign and implement a comprehensive security risk management framework. Establish KPIs and success criteria for risk posture and mitigation effectiveness. Lead the continual improvement program for risk management. Risk Assessment and Reporting Assess current risk coverage across the estate. Maintain and publish regular reports on risk status, trends, and aged risks. Link vulnerability findings and remediation actions to risk items. Stakeholder Engagement Collaborate with vulnerability and remediation managers to align risk and remediation priorities. Work with technical teams to support risk mitigation planning. Provide executive-level summaries and technical reports to leadership. Governance and Compliance Align with central corporate policies and maintain risk management standards, and procedures. Ensure alignment with regulatory requirements and industry best practices. Support internal and external audits with documentation and evidence. Tool and Process Oversight Ensure risk management tools are properly configured and integrated. Maintain a risk matrix that maps risks to configuration items, owners, and remediation schedules. Key Challenges Evaluate the existing baseline for risk posture across diverse systems. Integrating risk data with vulnerability and remediation tracking. Addressing aged risks and converting accepted risks into actionable items. Producing clear, publishable reports for all levels of the organisation. Educational & Professional Requirements Bachelor’s degree in Cybersecurity, Information Technology, Risk Management, or a related field. Preferred: Certifications such as CRISC, CISSP, CISM, or ISO 27005. Experience in security risk management or related domains. Proven experience managing teams and driving security improvement programs. What we can offer you: Competitive Compensation & Pension Scheme – Rewarding your expertise while securing your future. Comprehensive Benefits Package – Including DXC Select, Perks at Work, and incentive programs for exclusive savings and rewards. Continuous Learning & Development – Access to upskilling opportunities, career growth resources, and industry-leading training. Lifestyle Perks – Enjoy options like the Salary Sacrifice Car Scheme and more. At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive. Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here. #J-18808-Ljbffr
-
Security Risk Lead: Frameworks, Reporting
6 days ago
Cowbridge, United Kingdom DXC Technology Full timeA leading technology firm is looking for a Security Risk Management Lead to oversee security risk programs within hybrid configurations. This role involves assessing risk postures, creating action plans, and collaborating with stakeholders to enhance security measures. Candidates should have a Bachelor’s degree in a relevant field and preferable...
-
Lead Third-Party Cyber Risk Manager
1 week ago
Cowbridge, United Kingdom DXC Technology Full timeA leading technology firm in the UK seeks a Cyber Security Third Party Risk Manager to manage vendor cyber risk assessments and collaborate across teams. Candidates should have extensive experience in cybersecurity management, strong communication skills, and an understanding of risk frameworks like ISO and NIST. This position emphasizes a delivery-focused...
-
Cyber Security Third Party Risk Manager
2 weeks ago
Cowbridge, United Kingdom DXC Technology Full timeJob Description: DXC cultivatesa work environment that attracts and retains some of the most skilled talent in today’s workplace. With a strategic focus on our people and our customers, we are committed to doing what’s best for both. That’s why we’re creating a workplace where employees seize change as an opportunity to accelerate their careers and...
-
Security Vulnerability Lead
5 days ago
Cowbridge, United Kingdom DXC Technology Full timeJob Description: Job Title: Security Vulnerability Lead Location: Hybrid London or Newcastle, UK DXC’s Insurance Software and BPS business provides a range of software and services to the global insurance market including life, wealth, health, commercial and speciality, property and casualty, and reinsurance. DXC is also a key partner of the London Market,...
-
Senior Enterprise Risk Manager
3 days ago
Cowbridge, United Kingdom Paddle Full timeWhat do we do? Paddle offers SaaS companies a completely different approach to their payments infrastructure. Instead of assembling and maintaining a complex stack of payments-related apps and services, we're a Merchant of Record for our customers. That means we take away 100% of the pain of payments fragmentation. It's faster, safer, cheaper, and, above...
-
Remote Information Security Officer
2 weeks ago
Cowbridge, United Kingdom DXC Technology Full timeA leading technology services provider is seeking an Information Security Officer to be the key contact for IT operations. This role includes managing security strategy, conducting risk assessments, and ensuring compliance with regulations such as GDPR. Candidates should have a relevant degree and experience in security management, particularly in an...
-
Senior Security Solutions Architect
7 days ago
Cowbridge, United Kingdom DXC Technology Full timeJob Description At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive....
-
Senior Enterprise Risk Manager
4 days ago
Cowbridge, United Kingdom Paddle Full timeA leading SaaS company in Cowbridge is seeking a Senior Enterprise Risk Manager to shape and embed their Enterprise Risk Management framework. This hands-on role requires 7-10 years of risk management experience, focusing on creating risk policies that support business scaling. You'll work across teams to enhance risk management practices and ensure...
-
Cowbridge, United Kingdom DXC Technology Full timeA multinational IT service provider is seeking a skilled IT Security professional with 5-10 years of experience. This role involves providing tailored security solutions, working with clients, and ensuring compliance with security standards. Candidates should possess strong presentation and proposal writing skills and familiarity with security frameworks....
-
Cloud Security Consultant
1 week ago
Cowbridge, United Kingdom DXC Technology Full timeJob Description DXC cultivates a work environment that attracts and retains some of the most skilled talent in today’s workplace. With a strategic focus on our people and our customers, we are committed to doing what’s best for both. That’s why we’re creating a workplace where employees seize change as an opportunity to accelerate their careers and...