Business Resilience Risk Analyst Contract: Inside IR35 Location: Sheffield - 3 days per week We're looking for a Business Resilience Risk Analyst to join a first-line-of-defence team, focusing on Business Resilience Risk and Business Recovery technologies. The role will involve reviewing and assessing controls, ensuring they meet required standards and metrics, and working with stakeholders to identify and address resilience risks across critical technology and recovery services. Key Responsibilities Review and assess Business Resilience and Business Recovery controls against required standards and metrics. Support the assessment of technology resilience and recovery capabilities across critical services. Identify control gaps and risks that could impact business recovery and continuity. Work with technology and business stakeholders to understand recovery arrangements, dependencies and resilience requirements. Coordinate multiple teams to ensure actions, risks and controls are effectively managed. Develop into a subject matter expert across Business Resilience Risk and Business Recovery technologies. Essential Experience 3-5 years' experience within Risk & Controls, Business Resilience, Operational Resilience or Technology Risk. Good understanding of business continuity, resilience and technology recovery controls. Experience assessing controls, identifying risks and managing remediation activity. Strong stakeholder management and coordination skills, with the ability to work across multiple teams. Good understanding of technology concepts and how they support business recovery and resilience. Strong communication and organisational skills. Desirable Experience with Business Recovery technologies, disaster recovery or technology resilience. Knowledge of recovery strategies, backup, replication, failover and recovery testing. Experience within a financial services environment. Background in technology controls, IAM/IDAM, SDLC or infrastructure risk. Understanding of how emerging technologies, including AI, may impact business resilience and recovery. This is an opportunity for someone with a strong Risk & Controls or Business Resilience foundation to develop deeper expertise in Business Resilience Risk and become an SME in Business Recovery technologies and controls.
Aug 14, 2026
Contractor
Business Resilience Risk Analyst Contract: Inside IR35 Location: Sheffield - 3 days per week We're looking for a Business Resilience Risk Analyst to join a first-line-of-defence team, focusing on Business Resilience Risk and Business Recovery technologies. The role will involve reviewing and assessing controls, ensuring they meet required standards and metrics, and working with stakeholders to identify and address resilience risks across critical technology and recovery services. Key Responsibilities Review and assess Business Resilience and Business Recovery controls against required standards and metrics. Support the assessment of technology resilience and recovery capabilities across critical services. Identify control gaps and risks that could impact business recovery and continuity. Work with technology and business stakeholders to understand recovery arrangements, dependencies and resilience requirements. Coordinate multiple teams to ensure actions, risks and controls are effectively managed. Develop into a subject matter expert across Business Resilience Risk and Business Recovery technologies. Essential Experience 3-5 years' experience within Risk & Controls, Business Resilience, Operational Resilience or Technology Risk. Good understanding of business continuity, resilience and technology recovery controls. Experience assessing controls, identifying risks and managing remediation activity. Strong stakeholder management and coordination skills, with the ability to work across multiple teams. Good understanding of technology concepts and how they support business recovery and resilience. Strong communication and organisational skills. Desirable Experience with Business Recovery technologies, disaster recovery or technology resilience. Knowledge of recovery strategies, backup, replication, failover and recovery testing. Experience within a financial services environment. Background in technology controls, IAM/IDAM, SDLC or infrastructure risk. Understanding of how emerging technologies, including AI, may impact business resilience and recovery. This is an opportunity for someone with a strong Risk & Controls or Business Resilience foundation to develop deeper expertise in Business Resilience Risk and become an SME in Business Recovery technologies and controls.
Technology Resilience / Disaster Recovery Analyst 6-Month Contract Inside IR35 London Hybrid (2 Days Onsite) Our client, a leading global financial services organisation is looking for a Technology Resilience Analyst / DR Analyst to support recovery testing, resilience activities, and operational continuity across a large enterprise technology estate. This is a fantastic opportunity to join a supportive team and play a key role in helping ensure critical systems and services can recover effectively during disruption scenarios. Key Responsibilities Coordinate disaster recovery and failover testing activities. Support resilience and recovery exercises across technology teams. Maintain and improve recovery documentation, procedures, and runbooks. Track testing outcomes, risks, issues, and remediation actions. Produce reporting and support governance and audit activities. Work closely with infrastructure, application, cyber security, and business stakeholders. Experience Required Experience in Disaster Recovery, Technology Resilience, Business Continuity, Service Continuity, or IT Operations. Good understanding of IT infrastructure concepts, including servers, networking, databases, and enterprise systems. Strong stakeholder management and coordination skills. Experience working with documentation, recovery plans, or operational procedures. Excellent organisational skills and attention to detail. Desirable Recovery testing or failover experience. Fusion Risk Management, ServiceNow, or Cutover exposure. Financial services or other regulated industry experience. If the role aligns with your experience please apply with your updated CV
Aug 12, 2026
Contractor
Technology Resilience / Disaster Recovery Analyst 6-Month Contract Inside IR35 London Hybrid (2 Days Onsite) Our client, a leading global financial services organisation is looking for a Technology Resilience Analyst / DR Analyst to support recovery testing, resilience activities, and operational continuity across a large enterprise technology estate. This is a fantastic opportunity to join a supportive team and play a key role in helping ensure critical systems and services can recover effectively during disruption scenarios. Key Responsibilities Coordinate disaster recovery and failover testing activities. Support resilience and recovery exercises across technology teams. Maintain and improve recovery documentation, procedures, and runbooks. Track testing outcomes, risks, issues, and remediation actions. Produce reporting and support governance and audit activities. Work closely with infrastructure, application, cyber security, and business stakeholders. Experience Required Experience in Disaster Recovery, Technology Resilience, Business Continuity, Service Continuity, or IT Operations. Good understanding of IT infrastructure concepts, including servers, networking, databases, and enterprise systems. Strong stakeholder management and coordination skills. Experience working with documentation, recovery plans, or operational procedures. Excellent organisational skills and attention to detail. Desirable Recovery testing or failover experience. Fusion Risk Management, ServiceNow, or Cutover exposure. Financial services or other regulated industry experience. If the role aligns with your experience please apply with your updated CV
IT Security Analyst - 40,000/ 45,000 per annum - Brandesburton (Hybrid) Principal IT are proud to be supporting a leading provider of modular buildings for various sectors, such as education, healthcare, defence, and justice. This is an excellent opportunity for someone with a passion for cybersecurity who is looking to play a key role in strengthening and developing an organisation's overall security posture and cyber resilience strategy. Working closely with the Infrastructure & Security Manager, you will be responsible for monitoring, detecting, investigating, and responding to security threats across the organisation's infrastructure and systems. You will also support vulnerability management, compliance initiatives, and wider security improvement projects across the business. This role would suit someone with 2-4 years' experience in a cybersecurity, SOC, or infrastructure security-focused position who enjoys working across a broad technology estate and keeping up to date with emerging threats and security technologies. Key Responsibilities: Monitor and develop SIEM and threat detection platforms Investigate and respond to security incidents and alerts Support vulnerability scanning, remediation, and reporting activities Assist with development of security policies, procedures, and controls Work alongside Infrastructure and Technical Services teams to improve security across the estate Support compliance activities aligned to ISO27001, GDPR, and NIST frameworks Conduct security awareness initiatives including phishing simulations and end-user training Maintain and improve endpoint protection, IDS/IPS, EDR, XDR, and MDR solutions Assist with backup, disaster recovery, and digital asset protection strategies Stay up to date with emerging cyber threats and recommend improvements where appropriate Key Skills & Experience: 2-4 years' experience within a cybersecurity or infrastructure security role Experience working with SIEM tools and vulnerability management platforms Strong understanding of EDR, XDR, MDR, IDS/IPS technologies Good knowledge of Microsoft security technologies and infrastructure environments Understanding of ISO27001, NIST, GDPR, and security best practices Experience investigating security incidents and producing clear documentation Full UK driving licence Desirable: CompTIA Security+ CISSP Associate Microsoft certifications Experience with Azure environments Scripting or automation knowledge Experience working with ERP systems This is a fantastic opportunity to join a business investing heavily in cybersecurity, where you will have the chance to influence security best practices, work with modern technologies, and continue developing your technical skillset within a collaborative environment. The Package: If successful our client is offering a salary of between 40,000/ 45,000 per annum, favorable holiday allowance, company contributed pension scheme and opportunities for professional development including training and advancement. This a hybrid working role 3 days on site and 2 days working from home. How to Apply: If you are interested in hearing more about this IT security analyst vacancy or interested in applying for the role please email me at or contact Principal IT Directly on LinkedIn. INDGH
Aug 11, 2026
Full time
IT Security Analyst - 40,000/ 45,000 per annum - Brandesburton (Hybrid) Principal IT are proud to be supporting a leading provider of modular buildings for various sectors, such as education, healthcare, defence, and justice. This is an excellent opportunity for someone with a passion for cybersecurity who is looking to play a key role in strengthening and developing an organisation's overall security posture and cyber resilience strategy. Working closely with the Infrastructure & Security Manager, you will be responsible for monitoring, detecting, investigating, and responding to security threats across the organisation's infrastructure and systems. You will also support vulnerability management, compliance initiatives, and wider security improvement projects across the business. This role would suit someone with 2-4 years' experience in a cybersecurity, SOC, or infrastructure security-focused position who enjoys working across a broad technology estate and keeping up to date with emerging threats and security technologies. Key Responsibilities: Monitor and develop SIEM and threat detection platforms Investigate and respond to security incidents and alerts Support vulnerability scanning, remediation, and reporting activities Assist with development of security policies, procedures, and controls Work alongside Infrastructure and Technical Services teams to improve security across the estate Support compliance activities aligned to ISO27001, GDPR, and NIST frameworks Conduct security awareness initiatives including phishing simulations and end-user training Maintain and improve endpoint protection, IDS/IPS, EDR, XDR, and MDR solutions Assist with backup, disaster recovery, and digital asset protection strategies Stay up to date with emerging cyber threats and recommend improvements where appropriate Key Skills & Experience: 2-4 years' experience within a cybersecurity or infrastructure security role Experience working with SIEM tools and vulnerability management platforms Strong understanding of EDR, XDR, MDR, IDS/IPS technologies Good knowledge of Microsoft security technologies and infrastructure environments Understanding of ISO27001, NIST, GDPR, and security best practices Experience investigating security incidents and producing clear documentation Full UK driving licence Desirable: CompTIA Security+ CISSP Associate Microsoft certifications Experience with Azure environments Scripting or automation knowledge Experience working with ERP systems This is a fantastic opportunity to join a business investing heavily in cybersecurity, where you will have the chance to influence security best practices, work with modern technologies, and continue developing your technical skillset within a collaborative environment. The Package: If successful our client is offering a salary of between 40,000/ 45,000 per annum, favorable holiday allowance, company contributed pension scheme and opportunities for professional development including training and advancement. This a hybrid working role 3 days on site and 2 days working from home. How to Apply: If you are interested in hearing more about this IT security analyst vacancy or interested in applying for the role please email me at or contact Principal IT Directly on LinkedIn. INDGH
I'm supporting a client of mine in their search for a Non-Functional Testing Specialist to help define, shape, and manage their Non-Functional test requirements. Please note that although Performance Testing is part of the role, this is a full-fledged Non-Functional Test Engineer role, covering Performance, Disaster Recovery, Microservices, Resilience, Alerting, Security & Monitoring. As a specialist in non-functional testing, you will play a key role in supporting Product Owners by helping to define, refine, and manage non-functional test requirements. Collaborating closely with technical experts and analysts, you will convert these requirements into a comprehensive test strategy. You will also be responsible for ensuring that planning, preparation, and execution of the tests are carried out effectively and on schedule, in close coordination with the Infrastructure and Security teams. Day-to-Day Responsibilities: Develop and communicate a clear and robust Non-Functional Test Strategy aligned with architectural and business objectives. Plan, manage, and execute non-functional test cycles-including performance, scalability, reliability, and resilience testing-while coordinating with external teams to investigate and resolve bottlenecks through detailed root cause analysis. Capture and document test outcomes, producing clear, high-level consolidated reports for key stakeholders. Lead the identification, definition, and validation of non-functional requirements (NFRs) within the scope of a broader technology transformation involving Java, Kafka, Linux, Cloud platforms, and APIs. Collaborate closely with both technical and business stakeholders to ensure NFRs are well-defined, measurable, and testable from the outset. Requirements/Experience: Demonstrated hands-on expertise in planning and executing Non-Functional Testing (NFT) within complex environments, with a solid understanding of key NFT domains such as performance, scalability, reliability, failover/disaster recovery, and accessibility, preferably within Financial Services. Comfortable working within large-scale, complex technology transformations and change initiatives. Proficient in the use of testing tools such as Performance Center/LoadRunner, ADS, Selenium, Xray, and Splunk. Able to interpret and communicate test outcomes in a clear, accessible manner for non-technical stakeholders, and provide actionable recommendations to business, design, infrastructure, and development teams. Hands-on experience with Agile development methodologies, DevOps practices, CI/CD pipelines, and automated testing frameworks. If interested, please apply for the role or feel free to recommend any strong NFT Specialists. McGregor Boyall is an equal opportunity employer and do not discriminate on any grounds.
Oct 01, 2025
Full time
I'm supporting a client of mine in their search for a Non-Functional Testing Specialist to help define, shape, and manage their Non-Functional test requirements. Please note that although Performance Testing is part of the role, this is a full-fledged Non-Functional Test Engineer role, covering Performance, Disaster Recovery, Microservices, Resilience, Alerting, Security & Monitoring. As a specialist in non-functional testing, you will play a key role in supporting Product Owners by helping to define, refine, and manage non-functional test requirements. Collaborating closely with technical experts and analysts, you will convert these requirements into a comprehensive test strategy. You will also be responsible for ensuring that planning, preparation, and execution of the tests are carried out effectively and on schedule, in close coordination with the Infrastructure and Security teams. Day-to-Day Responsibilities: Develop and communicate a clear and robust Non-Functional Test Strategy aligned with architectural and business objectives. Plan, manage, and execute non-functional test cycles-including performance, scalability, reliability, and resilience testing-while coordinating with external teams to investigate and resolve bottlenecks through detailed root cause analysis. Capture and document test outcomes, producing clear, high-level consolidated reports for key stakeholders. Lead the identification, definition, and validation of non-functional requirements (NFRs) within the scope of a broader technology transformation involving Java, Kafka, Linux, Cloud platforms, and APIs. Collaborate closely with both technical and business stakeholders to ensure NFRs are well-defined, measurable, and testable from the outset. Requirements/Experience: Demonstrated hands-on expertise in planning and executing Non-Functional Testing (NFT) within complex environments, with a solid understanding of key NFT domains such as performance, scalability, reliability, failover/disaster recovery, and accessibility, preferably within Financial Services. Comfortable working within large-scale, complex technology transformations and change initiatives. Proficient in the use of testing tools such as Performance Center/LoadRunner, ADS, Selenium, Xray, and Splunk. Able to interpret and communicate test outcomes in a clear, accessible manner for non-technical stakeholders, and provide actionable recommendations to business, design, infrastructure, and development teams. Hands-on experience with Agile development methodologies, DevOps practices, CI/CD pipelines, and automated testing frameworks. If interested, please apply for the role or feel free to recommend any strong NFT Specialists. McGregor Boyall is an equal opportunity employer and do not discriminate on any grounds.
Are you ready to make a meaningful impact in the world of cyber security? At UK Power Networks, we're seeking a dedicated Senior Cyber Security Risk Specialist to join our Information Systems directorate in either our London or Crawley office. With a competitive salary of up to 75,000.00 plus a 7.5% bonus. Step into a pivotal role where your skills and insights will help shape the security posture of a leading energy distribution company. You'll report directly to the Cyber Security Governance, Risk & Compliance Manager and play a vital part in safeguarding essential business operations from evolving cyber threats. The role is dynamic and collaborative, involving close teamwork with a group of 8-10 GRC professionals and expert partners. You'll mentor less experienced analysts, offer guidance and training, and occasionally deputise for the GRC Manager, representing UK Power Networks at industry forums and regulatory working groups. Communication is at the heart of this position; you'll interact regularly with senior management across IT, IS, and the broader business, as well as with auditors and third-party partners, translating technical risks into actionable recommendations. Your main accountabilities will revolve around conducting cyber security risk assessments using the UK Power Networks framework, identifying, tracking, and remediating control environment risks, and ensuring third-party risks are also addressed. You'll produce management information and regulatory submissions, maintain compliance with major standards like ISO 27001/27002, and provide assurance for policy compliance. Establishing robust GRC policies and procedures, developing the IT controls framework, and supporting business continuity and disaster recovery planning will all fall under your remit. You'll operate and improve our information security management system, ensure ongoing compliance with legal and regulatory requirements such as Cyber Essentials, NIS Regulations, and the Smart Energy Code, and support technical implementation of GRC tools. Imagine being part of a team that is integral to delivering seamless technology solutions and continuous improvement throughout the organisation. The Information Systems Department underpins our commitment to operational excellence, customer service, and cyber resilience. In this role, you'll assess IT and cyber risks, drive improvements in our cyber maturity, collaborate with a variety of internal and external partners, and enable UK Power Networks to maintain its license to operate by demonstrating a strong and sustainable security posture. We're looking for someone with practical experience in GRC, audit, or cyber security, and with relevant training in cyber risk assessment. You should have a deep knowledge of at least three specialist areas such as industry standards, operational controls, risk management, business continuity, or supply chain security. Professional certifications like CISSP, CompTIA, CISA, CISM, CRISC, or an academic background in information security will be highly valued, along with hands-on experience in compliance frameworks, IT/OT risk assessments, and audit engagements. Familiarity with regulated environments, especially within the energy sector, will be advantageous. Beyond a competitive salary and bonus, we offer 25 days of annual leave plus bank holidays, reservist leave, a generous pension plan, tenancy loan deposit and season ticket schemes, tax-efficient benefits, health support, retail discounts, and an employee assistance programme. We are committed to supporting your health, safety, and wellbeing, and are proud to be an equal opportunity employer who values diversity and inclusion at every level. If you are motivated to support a critical infrastructure business, thrive in a collaborative environment, and are passionate about advancing cyber security, we invite you to apply and become a key player in the future of UK Power Networks. Take the next step towards an exciting and rewarding career-your expertise could make all the difference. Click apply to view the full job description on our careers page with a closing date of 28/09/2025
Sep 23, 2025
Full time
Are you ready to make a meaningful impact in the world of cyber security? At UK Power Networks, we're seeking a dedicated Senior Cyber Security Risk Specialist to join our Information Systems directorate in either our London or Crawley office. With a competitive salary of up to 75,000.00 plus a 7.5% bonus. Step into a pivotal role where your skills and insights will help shape the security posture of a leading energy distribution company. You'll report directly to the Cyber Security Governance, Risk & Compliance Manager and play a vital part in safeguarding essential business operations from evolving cyber threats. The role is dynamic and collaborative, involving close teamwork with a group of 8-10 GRC professionals and expert partners. You'll mentor less experienced analysts, offer guidance and training, and occasionally deputise for the GRC Manager, representing UK Power Networks at industry forums and regulatory working groups. Communication is at the heart of this position; you'll interact regularly with senior management across IT, IS, and the broader business, as well as with auditors and third-party partners, translating technical risks into actionable recommendations. Your main accountabilities will revolve around conducting cyber security risk assessments using the UK Power Networks framework, identifying, tracking, and remediating control environment risks, and ensuring third-party risks are also addressed. You'll produce management information and regulatory submissions, maintain compliance with major standards like ISO 27001/27002, and provide assurance for policy compliance. Establishing robust GRC policies and procedures, developing the IT controls framework, and supporting business continuity and disaster recovery planning will all fall under your remit. You'll operate and improve our information security management system, ensure ongoing compliance with legal and regulatory requirements such as Cyber Essentials, NIS Regulations, and the Smart Energy Code, and support technical implementation of GRC tools. Imagine being part of a team that is integral to delivering seamless technology solutions and continuous improvement throughout the organisation. The Information Systems Department underpins our commitment to operational excellence, customer service, and cyber resilience. In this role, you'll assess IT and cyber risks, drive improvements in our cyber maturity, collaborate with a variety of internal and external partners, and enable UK Power Networks to maintain its license to operate by demonstrating a strong and sustainable security posture. We're looking for someone with practical experience in GRC, audit, or cyber security, and with relevant training in cyber risk assessment. You should have a deep knowledge of at least three specialist areas such as industry standards, operational controls, risk management, business continuity, or supply chain security. Professional certifications like CISSP, CompTIA, CISA, CISM, CRISC, or an academic background in information security will be highly valued, along with hands-on experience in compliance frameworks, IT/OT risk assessments, and audit engagements. Familiarity with regulated environments, especially within the energy sector, will be advantageous. Beyond a competitive salary and bonus, we offer 25 days of annual leave plus bank holidays, reservist leave, a generous pension plan, tenancy loan deposit and season ticket schemes, tax-efficient benefits, health support, retail discounts, and an employee assistance programme. We are committed to supporting your health, safety, and wellbeing, and are proud to be an equal opportunity employer who values diversity and inclusion at every level. If you are motivated to support a critical infrastructure business, thrive in a collaborative environment, and are passionate about advancing cyber security, we invite you to apply and become a key player in the future of UK Power Networks. Take the next step towards an exciting and rewarding career-your expertise could make all the difference. Click apply to view the full job description on our careers page with a closing date of 28/09/2025