GRC Jobs in the UK excluding London

1 to 25 of 88 GRC Jobs in the UK excluding London

GRC Analyst

Milton Keynes, Buckinghamshire, England, United Kingdom
VIQU IT Recruitment
GRC Analyst – 6-month contract – London/Remote – Inside IR35 My Customer is looking for a GRC Analyst to join their Governance, Risk & Compliance (GRC) team. You will play a key role in strengthening their risk management processes, working primarily with Archer and other GRC tools to support risk assessment, compliance, and governance activities. In this role, you will be … responsible for identifying, assessing, and tracking security risks across assets, systems, and third parties, ensuring compliance with internal standards, policies, and regulatory frameworks. Key Skills from the GRC Analyst: Strong background in Security Risk and Governance with hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST …/ISMS Accredited qualifications would be beneficial Experience working in financial sector would be beneficial Experience in ensuring internal IT system compliance against agreed standards Key Responsibilities of the GRC Analyst: Maintain and improve the security risk assessment framework, procedures, and workflows. Manage and update security questionnaires to align with compliance requirements, industry standards, and regulations. Conduct asset-level and More ❯
Employment Type: Contractor
Rate: £450 - £550 per day
Posted:

Cyber Security GRC & Third Party Risk Lead

London, South East, England, United Kingdom
Oliver James
Oliver James is proud to be partnering with a globally renowned reinsurance company in their search for a Cyber Security Governance, Risk & Compliance (GRC) and Third-Party Risk Management (TPRM) Specialist. This role will play a crucial part in strengthening the organisation's security posture, focusing heavily on vendor risk, regulatory readiness, and cyber governance. Overview Oliver James is proud … to be partnering with a globally renowned reinsurance company in their search for a Cyber Security Governance, Risk & Compliance (GRC) and Third-Party Risk Management (TPRM) Specialist. This role will play a crucial part in strengthening the organisation's security posture, focusing heavily on vendor risk, regulatory readiness, and cyber governance. Based in the City of London with a flexible … and validate vendor security documentation (e.g., SOC 2, ISO 27001), evaluate control effectiveness, and coordinate remediation efforts for identified gaps. Ensure relevant business stakeholders are informed of potential risks. Governance, Risk & Compliance (GRC): Actively contribute to broader GRC initiatives, including: Managing GRC platforms and tools (e.g., control catalogues, issue tracking, policy management). Designing and deploying security awareness programs (e.g. More ❯
Employment Type: Full-Time
Salary: £110,000 - £120,000 per annum
Posted:

Senior Cyber Security & Risk Consultant

London, South East, England, United Kingdom
Oliver James
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports and More ❯
Employment Type: Full-Time
Salary: Salary negotiable
Posted:

IT Security Analyst

Gerrards Cross, Buckinghamshire, United Kingdom
Hybrid / WFH Options
83zero Ltd
times. Provide audit artefacts and support internal/external audits. Contribute to broader security initiatives and continuous improvement within the organisation. About You 3+ years' experience in Information Security, GRC, or Vendor Risk Management. Strong experience issuing or responding to security questionnaires. Knowledge of ISO 27001 Annex A, SOC 2, and GDPR/CCPA. Excellent communication skills, able to translate More ❯
Employment Type: Permanent
Salary: £50000 - £55000/annum
Posted:

IT Security Analyst

Thornaby, Yorkshire, United Kingdom
Hybrid / WFH Options
83zero Ltd
times. Provide audit artefacts and support internal/external audits. Contribute to broader security initiatives and continuous improvement within the organisation. About You 3+ years' experience in Information Security, GRC, or Vendor Risk Management. Strong experience issuing or responding to security questionnaires. Knowledge of ISO 27001 Annex A, SOC 2, and GDPR/CCPA. Excellent communication skills, able to translate More ❯
Employment Type: Permanent
Salary: GBP 50,000 - 60,000 Annual
Posted:

IT Security Analyst

Middlesbrough, North Yorkshire, United Kingdom
Hybrid / WFH Options
83zero Ltd
times. Provide audit artefacts and support internal/external audits. Contribute to broader security initiatives and continuous improvement within the organisation. About You 3+ years' experience in Information Security, GRC, or Vendor Risk Management. Strong experience issuing or responding to security questionnaires. Knowledge of ISO 27001 Annex A, SOC 2, and GDPR/CCPA. Excellent communication skills, able to translate More ❯
Employment Type: Permanent
Salary: £50000 - £60000/annum
Posted:

IT Security Analyst

Chalfont St. Peter, Buckinghamshire, United Kingdom
Hybrid / WFH Options
83zero Ltd
times. Provide audit artefacts and support internal/external audits. Contribute to broader security initiatives and continuous improvement within the organisation. About You 3+ years' experience in Information Security, GRC, or Vendor Risk Management. Strong experience issuing or responding to security questionnaires. Knowledge of ISO 27001 Annex A, SOC 2, and GDPR/CCPA. Excellent communication skills, able to translate More ❯
Employment Type: Permanent
Salary: GBP 50,000 - 55,000 Annual
Posted:

Cyber Risk Manager

Scotland, United Kingdom
Hybrid / WFH Options
Deloitte LLP
possess the following? Relevant experience in cybersecurity risk management or equivalent in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32. Strong knowledge of More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Risk Manager

Bristol, Gloucestershire, United Kingdom
Hybrid / WFH Options
Deloitte LLP
possess the following? Relevant experience in cybersecurity risk management or equivalent in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32. Strong knowledge of More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Risk Manager

Manchester, Lancashire, United Kingdom
Hybrid / WFH Options
Deloitte LLP
possess the following? Relevant experience in cybersecurity risk management or equivalent in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32. Strong knowledge of More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Risk Manager

Cambridge, Cambridgeshire, United Kingdom
Hybrid / WFH Options
Deloitte LLP
possess the following? Relevant experience in cybersecurity risk management or equivalent in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32. Strong knowledge of More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Risk Manager

Milton Keynes, Buckinghamshire, United Kingdom
Hybrid / WFH Options
Deloitte LLP
possess the following? Relevant experience in cybersecurity risk management or equivalent in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32. Strong knowledge of More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Cyber Security & Strategy Manager - Consulting

London, South East, England, United Kingdom
Oliver James
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports and More ❯
Employment Type: Full-Time
Salary: £105,000 - £120,000 per annum
Posted:

Senior Information Security Officer

Warwickshire, United Kingdom
Hybrid / WFH Options
Telent Technology Services Limited
the tender process. This is a hybrid working role, with a requirement to be in our Warwick a few times per month. What you'll do: Assist on all Governance, Risk and Compliance activities across Network Services Business Unit. Provide specialist security expertise for multiple internal projects across the Network Services business area. Provide guidance in secure software development throughout More ❯
Employment Type: Permanent
Posted:

Senior Information Security Officer

Warwickshire, West Midlands, United Kingdom
Hybrid / WFH Options
Telent Technology Services Ltd
the tender process. This is a hybrid working role, with a requirement to be in our Warwick a few times per month. What you'll do: Assist on all Governance, Risk and Compliance activities across Network Services Business Unit. Provide specialist security expertise for multiple internal projects across the Network Services business area. Provide guidance in secure software development throughout More ❯
Employment Type: Permanent, Work From Home
Posted:

Senior Information Security Officer

Co. West Midlands, UK
Hybrid / WFH Options
Telent Technology Services Ltd
the tender process. This is a hybrid working role, with a requirement to be in our Warwick a few times per month. What you'll do: Assist on all Governance, Risk and Compliance activities across Network Services Business Unit. Provide specialist security expertise for multiple internal projects across the Network Services business area. Provide guidance in secure software development throughout More ❯
Employment Type: Full-time
Posted:

Cyber Security Strategy Manager - Consulting

London, South East, England, United Kingdom
Oliver James
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports and More ❯
Employment Type: Full-Time
Salary: £80,000 - £90,000 per annum
Posted:

Head of Cyber Governance, Risk and Compliance

London, South East, England, United Kingdom
SGN
Head of Cyber Governance, Risk and Compliance London | Hybrid | Full-time | Personal Contract Competitive pension scheme – Enhanced maternity/paternity pay – Life assurance – HolidayPlus – Cycle2work Scheme & more REQ5121 As a strategic leader in Governance, Risk and Compliance, you will guide SGN’s cyber security and regulatory approach, ensuring our operations remain secure, resilient and fully compliant. We deliver safety, warmth … comfort to homes and businesses. Every role, whether in the office or on the front line, plays a key part in this mission. Here’s how you will contribute... Governance, Risk & Compliance (GRC) Leadership Lead and manage the GRC team, aligning cyber and business goals while ensuring compliance with NIS-R, ISO27001/2, and NIST-2. Oversee delivery plans … resource allocation, and stakeholder engagement for GRC initiatives. Training & Awareness Develop and maintain SGN’s Information Security training and awareness materials. Integrate lessons learned from incidents and address feedback from training delivery. Information Security Policy & ISMS Maintain a robust portfolio of security policies, standards, and procedures to support ISO27001, NIST, and NIS eCAF compliance. Ensure policies are current, reviewed regularly More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Network, Infrastructure, Security Consultant

Christchurch, Dorset, United Kingdom
CyberCX NZ Ltd
Through our end-to-end range of cyber and cloud capabilities, CyberCX empowers our customers to securely accelerate opportunities in the digital economy. Our services include: consulting and advisory, governance, risk and compliance, incident response, penetration testing and assurance, network and infrastructure solutions, cloud security and solutions, identity and access management, managed security services and cyber security training. More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Director Digital

Birmingham, West Midlands, United Kingdom
The Schools of King Edward VI in Birmingham
cost effective and innovative shared solutions. Leads the development of strategic and collaborative technology partnerships where these provide value for money, reduce risk and enhance service quality. Key Deliverable: Governance, Risk and Compliance Ensures that technology and systems are fit for purpose and robust enough to head-off existing and emerging digital risks, working with schools to control access, install More ❯
Employment Type: Permanent
Posted:

Senior GRC Analyst

Salford, Lancashire, England, United Kingdom
Vermelo RPO
Senior GRC Analyst This is a hybrid role and can be based from either our Peterborough, Manchester, Stoke, Tunbridge Wells or Chesterfield office. Role Purpose: Reporting to the Head of Information Security to provide BAU operational technical security support. The Senior GRC Analyst will be responsible for compliance governance to security standards, delivering required GRC processes and analysis day to … also help provide ongoing assurance that digital systems and data are safe and secure. Key Accountabilities & Responsibilities: Be an SME for PCI DSS and contribute to and ensure compliance governance to security standards. Contribute to business and technology audits. Engagement with 3rd party partners as a SME and to ensure due diligence process adherence. Management IT Security GRC activities and … end-to-end delivery of information security practices and processes. SME, advice, oversight and governance of security policies, processes, procedures and standards. Contribute to the delivery of the security roadmap and a continuous improvement model for security. Ensure Information Security controls are operating effectively. Ensure where gaps are identified that these have remediation plans agreed and delivered. Ensure annual Security More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Senior Information Security Analyst

Maidstone, Kent, England, United Kingdom
Pearson Whiffin Recruitment Ltd
Senior Information Security Analyst We are looking for a Senior Information Security Analyst with a strong operational background with a focus on Cyber Security and a working knowledge of GRC to be part of a central team supporting a mixture of security operations ensuring compliance with business needs. This will focus around vulnerability and threat management, making sure security controls More ❯
Employment Type: Full-Time
Salary: £60,000 - £65,000 per annum
Posted:

Senior Information Security Analyst

West Malling, Kent, South East, United Kingdom
Pearson Whiffin IT & Digital
Senior Information Security Analyst We are looking for a Senior Information Security Analyst with a strong operational background with a focus on Cyber Security and a working knowledge of GRC to be part of a central team supporting a mixture of security operations ensuring compliance with business needs. This will focus around vulnerability and threat management, making sure security controls More ❯
Employment Type: Permanent
Salary: £65,000
Posted:

Security Architect

Newport, Gwent, United Kingdom
Tria
and the ability to translate complex security concepts for both technical and non-technical audiences. Essential skills and experience: Strong knowledge of cloud and hybrid technologies. Solid understanding of Governance, Risk and Compliance frameworks, and core security principles (CIA triad). Expertise in areas such as networking, identity management, authentication, authorisation, and cryptography. Excellent communication and influencing skills, with the More ❯
Employment Type: Permanent
Salary: £50000 - £55000/annum 29% Pension + excellent holidays
Posted:

Security Architect

Rogerstone, Gwent, United Kingdom
Tria
and the ability to translate complex security concepts for both technical and non-technical audiences. Essential skills and experience: Strong knowledge of cloud and hybrid technologies. Solid understanding of Governance, Risk and Compliance frameworks, and core security principles (CIA triad). Expertise in areas such as networking, identity management, authentication, authorisation, and cryptography. Excellent communication and influencing skills, with the More ❯
Employment Type: Permanent
Salary: GBP 50,000 - 55,000 Annual
Posted:
GRC
the UK excluding London
10th Percentile
£48,750
25th Percentile
£51,250
Median
£65,000
75th Percentile
£83,750
90th Percentile
£85,000