The Fidelis Partnership
Senior IT Cyber Governance, Risk & Compliance Analyst

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Purpose of this role
The Senior IT Cyber Governance, Risk & Compliance Analyst will support the development, implementation and oversight of the organisation’s IT governance, cyber risk and compliance activities. This role involves supporting IT and cyber risk assessments, compliance with relevant regulatory and control frameworks, audit activity, and the identification and tracking of vulnerabilities, control gaps and remediation actions across IT systems and processes. The Senior IT Cyber Governance, Risk & Compliance Analyst will work closely with internal stakeholders to help ensure that IT and cyber activities are aligned with regulatory expectations, internal policies and good practice.
Key Responsibilities
Compliance and Risk Management
- Support compliance with applicable regulatory, IT, cyber and control frameworks, which may include DORA, ISO 27001, NIST CSF, SOX and Cyber Essentials.
- Support the evaluation and management of IT, cyber, compliance and security risks across systems, processes and operations.
- Monitor emerging technology, cyber and operational resilience risks to support proactive risk management and timely escalation.
- Assist in preparing for and supporting regulatory inspections and internal, external and third-party audits.
- Support the tracking of cyber risk remediation actions, including actions arising from risk assessments, assurance reviews, incidents, audits, control reviews and control improvement initiatives.
- Support the maintenance of the cyber risk register, including the capture of risks, issues and remediation actions, and the preparation of updates for governance forums.
- Support third-party and supplier security assurance activities, including security due diligence, assessment of supplier responses and tracking of supplier remediation actions.
- Coordinate and evidence user access reviews and privileged access reviews with system owners and the business, supporting the move to tool-based access certification.
- Perform first-line compliance monitoring and control checks against information security policies and standards, including the tracking of policy exceptions.
Policy & Procedure Development
- Support the development, implementation and updating of IT risk, cyber security and compliance policies, standards and procedures to ensure alignment with legal, regulatory, control and sound practice requirements.
- Maintain an up-to-date understanding of applicable regulatory requirements and help implement changes to comply with new or evolving regulations.
- Assist in developing and delivering internal training and awareness on IT governance, cyber risk and compliance topics.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Reporting & Communication
- Support the preparation of cyber risk, control and remediation reporting for management and governance forums.
- Support the development and tracking of key performance indicators (KPIs) related to IT risk and compliance.
- Support internal breach notification and escalation processes where required, in coordination with Legal, Data Protection and relevant stakeholders, including supporting regulatory reporting where appropriate.
Skills, Qualifications and Experience
- Bachelor’s degree in Cybersecurity, Information Technology, Risk Management, or a related field, or equivalent experience.
- Relevant certifications such as CRISC, CISA, CISM, ISO 27001 or CISSP, or a willingness to undertake similar, are desirable.
- Minimum of 5 years’ experience in IT governance, risk management, cyber or information security, or a related role, with a strong knowledge of related control and compliance requirements.
- Working knowledge of key technology areas, including infrastructure, applications, networking, cloud services, vulnerability management, incident management and access controls.
- Experience supporting audit, regulatory or compliance activities, including evidence coordination, issue tracking and remediation follow-up. Experience with SOX compliance and ITGCs is desirable.
- Experience in insurance or wider financial services, or another regulated environment, is desirable.
- Excellent communication skills, with the ability to convey technical information to non-technical stakeholders.
About The Fidelis Partnership
The Fidelis Partnership is a leader in the Specialty, Bespoke and Reinsurance business, operating globally. Our team brings together vast cumulative experience in broking, underwriting, corporate, actuarial and operational roles, all working towards a unified goal of innovative discipline underwriting and operational excellence.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
With offices in Bermuda, London, Dublin, Brussels and Abu Dhabi, our efficient organisational structure focuses on marketing leading service delivery and quality, as well as operational excellence across all our functions.
Fidelis Ethos
Our culture is defined by our ethos. It is the foundation of who we are and the core of everything we do.
- Results – We want to be the best at the things we care about, so we focus on profitability over volume, with responsive decision-making and clear prioritised accountability
- Innovate – We aspire to lead the market in providing the services and products our clients need, and to drive change in the broader impact our industry has on human rights, society, and environmental sustainability
- Include – We create an environment where employees can bring their whole self to work, with open communication where everyone, irrespective of gender, ethnicity, sexual orientation or background, feels able to contribute ideas and be recognised and rewarded for their contribution.
- Unite – We operate as team of individual talents that actively seeks to reflect the diversity of the societies in which we operate, giving our business the widest range of inputs and perspectives
- Respond – We work in a business exposed to sudden shocks and changes – elemental, political, economic and human – so we remain nimble and ready for change.
Diversity and Inclusion
Our vision is for a workplace culture where differences are valued and where diversity of background, experience and thought are welcomed. We believe that developing and maintaining a diverse and inclusive organisation is critical to our success. Our hiring, assessment and selection process must be fair, free from bias and one which ensures we select the right person for the job, based on merit.
We welcome applications from all qualified candidates. To ensure that all candidates have a fair opportunity to show their abilities during the recruitment process, adjustments may be required. If your physical or mental health or disability may necessitate an adjustment, please contact to discuss. All information relating to your health or disability will be treated in accordance with our data protection policy.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills