Shape the Future of AIJoin one of the UK's fastest-growing companies and become a Professional Development Expert in Artificial Intelligence.

View Roles

Contract Risk Analyst (ERM & Assurance NON IT)

City of London
2 weeks ago
Create job alert

Contract Risk Analyst (ERM & Assurance NON IT).

Are you an experienced Risk Analyst with recent experience in risk and assurance-not IT-who can quickly embed into a dynamic team and drive forward best practice in Enterprise Risk Management (ERM)? We're looking for someone with a strong focus on business process risk and assurance, ideally with experience in social housing or regulated environments such as finance or local government.

Please note: This role is not suitable for candidates from an IT, cyber, or technical risk background.

Title: Contract Risk Analyst.
Hybrid: 3 days in Central London, 2 days remote.
Contract: 3 months initially.
Start ASAP.
Rate: £31 per hour (Inside IR35).

The Opportunity You'll be part of the Enterprise Risk Management team, reporting into the Head of Risk and Assurance. This role is about more than ticking boxes-it's about embedding effective, organisation-wide risk practices that support operational resilience and informed decision-making. You'll work across multiple business areas, ensuring strategic, operational and financial risks are identified, assessed, and effectively mitigated. No IT or cyber risk background is needed-we're looking for business-centric risk professionals who understand assurance, compliance, and frameworks like ISO 31000 and ERM inside out.

What You'll Be Doing

Lead and deliver enterprise-wide risk assessments focused on strategic, operational, and financial risks.
Apply the ERM framework to embed consistent, organisation-wide risk standards.
Ensure alignment with ISO 31000 and best practice risk governance.
Develop and implement assurance plans and mitigation strategies.
Support risk owners in managing and updating risk registers.
Collaborate with business leads to enhance risk culture and understanding.
Produce insightful, data-led risk reports and dashboards for senior leadership.
Monitor key risk indicators (KRIs) and regulatory compliance.
Contribute to internal audit coordination and follow-up where needed.
What We're Looking For
Essential:

Recent experience in risk and assurance roles (preferably within social housing, financial services, local government or similar regulated settings).
Solid understanding of business risk management and assurance frameworks.
Experience applying ERM principles in a practical business context.
Confident communicator, experienced at engaging with senior stakeholders.
Strong analytical and reporting skills using Excel and PowerPoint.
Desirable:

Knowledge of ISO 31000 standards.
Professional qualifications such as:
Institute of Risk Management (IRM).
CIMA (with Risk Management specialism).
Exposure to risk assurance in finance functions is beneficial.
Join a team where your insight will directly strengthen risk culture and assurance across the business. Send your CV to

Services advertised are those of an Employment Business

Related Jobs

View all jobs

SharePoint Operations Support Analyst

Security Analyst (SC Cleared)

Security Analyst

Security Analyst

Senior Lead, Cybersecurity Supply Chain Risk

Governance & Risk Information Security Analyst

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Automate Your Cyber Security Jobs Search: Using ChatGPT, RSS & Alerts to Save Hours Each Week

Cyber roles drop across consultancies, MSSPs, hyperscalers, banks, gov & start-ups every day—often buried in ATS portals or duplicated across boards. The fix is simple: put discovery on autopilot with keyword-rich alerts, RSS feeds & a reusable ChatGPT workflow that triages listings, ranks fit, & tailors your CV in minutes. This copy-paste playbook is built for www.cybersecurityjobs.tech readers. It’s UK-centric, practical, & designed to save you hours each week. What You’ll Have Working In 30 Minutes A role & keyword map spanning SecOps/Detection, DFIR, AppSec, Cloud Security, GRC, Red Team, Threat Intel, IAM/PAM, OT/ICS & Vulnerability Management. Shareable Boolean search strings for Google & job boards to cut noise fast. Always-on alerts & RSS feeds delivering fresh roles to your inbox/reader. A ChatGPT “Cyber Job Scout” prompt that deduplicates, scores fit & outputs tailored actions. A simple pipeline tracker so deadlines & follow-ups never slip.

10 Cyber Security Recruitment Agencies in the UK You Should Know (2025 Job‑Seeker Guide)

UK cyber security hiring remains resilient in 2025, driven by nation-state threats, cloud security investments, and NCSC regulatory pressures. Lightcast reports +42 % YoY growth in UK roles mentioning “SOC”, “cyber risk”, “offensive security” or “GRC”. Yet despite 30,000 active cyber professionals, monthly live vacancies remain in the 2,500–2,900 range. The result: strong demand across public and private sector. We reviewed 50 + consultancies and included only those that: Are registered in the UK (Companies House) Operate a dedicated Cyber Security / InfoSec / Risk & Compliance desk Posted at least 5 UK cyber security roles between March and June 2025 This guide includes 2025 salary ranges, key skills, interview prep tips, and a verified recruiter directory.

Cyber Security Jobs Skills Radar 2026: Emerging Frameworks, Tools & Certifications to Learn Now

Cyber threats are evolving—and so must the people defending against them. As ransomware, AI-enhanced phishing, and supply chain attacks grow more advanced, UK employers are urgently hiring cyber security professionals with the right mix of strategic and hands-on skills. Welcome to the Cyber Security Jobs Skills Radar 2026, your go-to guide for the most in-demand tools, frameworks, certifications, and technologies shaping the UK's cyber workforce. Whether you're a SOC analyst, penetration tester, or cloud security architect, this annual radar is designed to help you stay ahead of the market.