Rodeo
Get started

Ricoh Europe

IT Security Governance, Risk & Controls Analyst

London
Posted about 21 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

About Ricoh

A global leader in digital services, recognised for innovation, sustainability and a people-first culture. We feature in the Gartner Magic Quadrant, are listed in the Global 100 Most Sustainable Companies, and have been named one of Forbes’ World’s Best Employers 2025.

At Ricoh, we believe people do their best work when they feel valued and supported. We create inclusive workplaces where you can grow, contribute, and make a positive impact while helping to build a more sustainable future.

Find your place. Transform your future

Our purpose is centred on understanding and improving how people work. By focusing on real working experiences, we support individuals to develop their skills, realise their potential and do work that feels meaningful.

People Transform When They Love What They Do

This belief sits at the heart of The Ricoh Promise. It guides how we recruit, how we support our people, and how we work together every day, creating an environment where you can grow, feel valued and make a difference.

When you join us, you are encouraged to share your ideas, challenge the way things are done, and work with others to build something better. If you are looking for a place where your voice is heard, your development is supported, and your work feels meaningful, you will feel at home at Ricoh.

What you will be doing

We’re looking for an IT Security Governance, Risk & Controls Analyst to help strengthen the security, governance and resilience of our European IT environment.

This is an exciting opportunity for someone who enjoys working across security governance, technology risk and controls, helping organisations understand their security posture and make informed decisions about risk.

Working closely with infrastructure, cloud, identity and operational IT teams, you’ll help develop and embed security policies, standards and controls, manage technology risks and support assurance activities across the European IT landscape.

You’ll be someone who can take security frameworks and requirements and turn them into practical, effective controls — while building strong relationships with technical teams and senior stakeholders along the way.

If you enjoy improving security maturity, challenging the status quo and helping teams manage risk in a practical way, we’d love to hear from you.

Key Responsibilities Include:

  • Develop, maintain and embed IT security policies, standards, procedures and control requirements.
  • Support the development and continuous improvement of the IT security governance and control framework.
  • Own and maintain the IT Security Risk Register, ensuring risks are appropriately assessed, documented, monitored and managed.
  • Facilitate technology and security risk assessments, working with technical teams to identify risks and agree appropriate mitigation plans.
  • Assess the effectiveness of security controls and identify control gaps, weaknesses and opportunities for improvement.
  • Translate security frameworks and requirements, including ISO 27001 and NIST CSF, into practical operational controls.
  • Support audit, assurance and compliance activities, including ISO 27001, Cyber Essentials and internal control programmes.
  • Work with technology teams to ensure security controls are understood, implemented and operating effectively.
  • Provide clear reporting and insight on security risks, control effectiveness, compliance and remediation activity.
  • Track remediation actions and work with stakeholders to ensure identified risks and control gaps are addressed.
  • Support the continuous improvement of security governance, risk and control processes across the European IT function.
  • Build strong relationships with technical and business stakeholders, acting as a trusted partner on security risk and governance matters.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

You will ideally have

You’ll have experience working in IT Security, Information Security Governance, IT Risk, Security Controls, GRC or a similar environment, with a strong understanding of how security governance operates within a complex organisation.

Ideally, you’ll bring:

  • Experience in IT Security, Security Governance, IT Risk, GRC or Security Controls.
  • Experience developing and maintaining security policies, standards, procedures and control frameworks.
  • Strong understanding of security governance and risk management principles.
  • Experience conducting or supporting technology/security risk assessments and maintaining risk registers.
  • Good knowledge of security control frameworks such as ISO 27001 and NIST CSF.
  • Experience assessing control design and effectiveness, identifying gaps and supporting remediation.
  • Understanding of key IT security disciplines including vulnerability management, patching, identity and access management, privileged access management and backup governance.
  • Experience supporting internal or external audits, assurance reviews and compliance programmes.
  • Strong analytical and problem-solving skills, with the ability to understand complex risks and translate them into practical actions.
  • Excellent communication and stakeholder management skills, with confidence engaging with both technical teams and senior leadership.
  • A proactive approach to improving security maturity, governance and control effectiveness.
  • Relevant certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Auditor/Implementer or similar would be advantageous.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

In return for your commitment, you can expect

At Ricoh, work should feel meaningful, supportive and fulfilling. The Ricoh Promise shapes your experience through four pillars that bring our culture to life.

Love to Connect

You become part of a global community built on openness, inclusion and genuine collaboration.

Across teams, countries and roles, you'll find people who listen, involve and encourage you - helping you feel valued and able to be yourself every day.

Love to Grow

Your development truly matters to us. With access to learning pathways, mentoring and career opportunities across functions and countries, you'll be supported to stretch your skills, explore new directions and stay future-ready in a changing world.

Love to Give Back

Purpose is part of how we work. You'll have opportunities to make a difference through volunteering, sustainability initiatives and community programmes that reflect our shared values and commitment to positive impact.

Love to Succeed

Success at Ricoh is something we pursue together. You'll benefit from fair rewards, flexible working, wellbeing resources and real recognition - including programmes such as the Imagine. Change. Awards, where colleagues celebrate each other's achievements.

We are an equal opportunities employer

We believe that diverse perspectives make us stronger, and we welcome applications from people of all backgrounds, identities, and experiences. Our hiring decisions are based on skills, experience and potential, and we are committed to creating a fair and inclusive recruitment process. If you require any reasonable adjustments at any stage of the recruitment journey, please let us know and we will support you to bring your best self forward.

Ready to love what you do? Apply now and help us shape what comes next.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

London, England, United Kingdom

Sign up to applySee more jobs like this