a solid technical understanding are essential. Responsibilities: Regulatory Compliance & Framework Development: Support the implementation of a comprehensive business resilience framework aligned with DORA and other regulatory requirements (e.g., NIST, ISO22301, ISO 27001). Develop training materials, policies, controls, and risk assessment methodologies to ensure adherence to regulatory standards. Support key pillars of the DORA program, including … cybersecurity, operational resilience, systems architecture, or related fields, with extensive exposure to Operational Resilience, particularly DORA . Strong understanding of UK regulatory requirements and frameworks such as DORA, NIST, ISO22301, and ISO 27001. Proven experience conducting risk assessments, regulatory compliance reviews, and resilience testing . Ability to translate regulatory requirements into actionable plans and track them More ❯
maintenance and enhancement of the buildings, including efficiency, quality and fabric across the site, ensuring that all buildings are maintained in compliance with industry best practice, legislation and relevant ISO standards, that they are energy efficient and serve our teams and customers perfectly. The role takes ownership of delivering building management projects aiming at continuous improvement of service quality … and generator power, etc. • Ensure Business Continuity and disaster recovery plans are documented, tested, implemented and maintained with the DC Buildings Manager. Previous experience of working to and within ISO regulated processes and procedures like • ISO 9001, ISO 27001, ISO22301, BS OHSAS 18001 H&S, ISO 50001, ISO 14001, ISO 45001. More ❯
Role As the GRC Analyst, you’ll work closely with process owners, auditors, and stakeholders to monitor and address risk and compliance issues. You’ll be responsible for administering ISO 27001, ISO22301, and PCI compliance programs, managing audits, and overseeing our GRC tooling to ensure it’s configured and maintained to the highest standards. Key Responsibilities … Own and manage the GRC tool and vendor relationship Lead risk assessments, compliance reviews, and validation testing Support and manage ISO 27001, 22301, and other audits Maintain a central repository for audit evidence Develop and enhance the GRC framework in line with best practices Collaborate across teams to identify and mitigate IT and business risks Maintain the IT … and Head of Audit What We’re Looking For Strong computer literacy and adaptability to niche IT systems (essential) Proficiency in Microsoft Teams, PowerPoint, Word, etc. (essential) Experience with ISO 27001 and 22301 Familiarity with GRC tooling and supply chain management (preferred) Excellent organisational, communication, and interpersonal skills Ability to influence at all levels and communicate with regulators More ❯
Role As the GRC Analyst, you’ll work closely with process owners, auditors, and stakeholders to monitor and address risk and compliance issues. You’ll be responsible for administering ISO 27001, ISO22301, and PCI compliance programs, managing audits, and overseeing our GRC tooling to ensure it’s configured and maintained to the highest standards. Key Responsibilities … Own and manage the GRC tool and vendor relationship Lead risk assessments, compliance reviews, and validation testing Support and manage ISO 27001, 22301, and other audits Maintain a central repository for audit evidence Develop and enhance the GRC framework in line with best practices Collaborate across teams to identify and mitigate IT and business risks Maintain the IT … and Head of Audit What We’re Looking For Strong computer literacy and adaptability to niche IT systems (essential) Proficiency in Microsoft Teams, PowerPoint, Word, etc. (essential) Experience with ISO 27001 and 22301 Familiarity with GRC tooling and supply chain management (preferred) Excellent organisational, communication, and interpersonal skills Ability to influence at all levels and communicate with regulators More ❯
Role As the GRC Analyst, you’ll work closely with process owners, auditors, and stakeholders to monitor and address risk and compliance issues. You’ll be responsible for administering ISO 27001, ISO22301, and PCI compliance programs, managing audits, and overseeing our GRC tooling to ensure it’s configured and maintained to the highest standards. Key Responsibilities … Own and manage the GRC tool and vendor relationship Lead risk assessments, compliance reviews, and validation testing Support and manage ISO 27001, 22301, and other audits Maintain a central repository for audit evidence Develop and enhance the GRC framework in line with best practices Collaborate across teams to identify and mitigate IT and business risks Maintain the IT … and Head of Audit What We’re Looking For Strong computer literacy and adaptability to niche IT systems (essential) Proficiency in Microsoft Teams, PowerPoint, Word, etc. (essential) Experience with ISO 27001 and 22301 Familiarity with GRC tooling and supply chain management (preferred) Excellent organisational, communication, and interpersonal skills Ability to influence at all levels and communicate with regulators More ❯
london (city of london), south east england, united kingdom
Mentmore
Role As the GRC Analyst, you’ll work closely with process owners, auditors, and stakeholders to monitor and address risk and compliance issues. You’ll be responsible for administering ISO 27001, ISO22301, and PCI compliance programs, managing audits, and overseeing our GRC tooling to ensure it’s configured and maintained to the highest standards. Key Responsibilities … Own and manage the GRC tool and vendor relationship Lead risk assessments, compliance reviews, and validation testing Support and manage ISO 27001, 22301, and other audits Maintain a central repository for audit evidence Develop and enhance the GRC framework in line with best practices Collaborate across teams to identify and mitigate IT and business risks Maintain the IT … and Head of Audit What We’re Looking For Strong computer literacy and adaptability to niche IT systems (essential) Proficiency in Microsoft Teams, PowerPoint, Word, etc. (essential) Experience with ISO 27001 and 22301 Familiarity with GRC tooling and supply chain management (preferred) Excellent organisational, communication, and interpersonal skills Ability to influence at all levels and communicate with regulators More ❯
in a client-facing advisory or consulting capacity. Proven experience delivering crisis tabletop exercises and facilitating executive-level crisis discussions. Strong understanding of cyber incident response frameworks (e.g., NIST, ISO22301, ISO 27035) and business continuity principles. Excellent communication and presentation skills with experience speaking at conferences or industry events. Familiarity with cyber crisis management technologies and More ❯
with internal stakeholders, clients, and external auditors Prepare for audits, including gathering pre-audit information and supporting documentation Run operational audit programmes covering Security (e.g., PCI-DSS, ISAE 3402, ISO/IEC 27001, ENS), Business Continuity (e.g., ISO22301, KRITIS), and ESG/Sustainability (e.g., ISO 14001, EcoVadis) Evaluate internal compliance and implement risk management strategies … Audit, or a related discipline Ideally professionally qualified in Audit or GRC (e.g., CRISC, Lead Auditor Certificate) Experienced in audit, compliance, or risk management (minimum 1 year) Knowledgeable about ISO standards and audit techniques, with experience in Security, Business Continuity, and Sustainability programmes Strong analytical skills, including data analysis and reporting Confident in managing stakeholders and reporting findings to More ❯
with internal stakeholders, clients, and external auditors Prepare for audits, including gathering pre-audit information and supporting documentation Run operational audit programmes covering Security (e.g., PCI-DSS, ISAE 3402, ISO/IEC 27001, ENS), Business Continuity (e.g., ISO22301, KRITIS), and ESG/Sustainability (e.g., ISO 14001, EcoVadis) Evaluate internal compliance and implement risk management strategies … Audit, or a related discipline Ideally professionally qualified in Audit or GRC (e.g., CRISC, Lead Auditor Certificate) Experienced in audit, compliance, or risk management (minimum 1 year) Knowledgeable about ISO standards and audit techniques, with experience in Security, Business Continuity, and Sustainability programmes Strong analytical skills, including data analysis and reporting Confident in managing stakeholders and reporting findings to More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
as required Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role As a Senior ISO27001 Consultant, you will lead client engagements to design, implement, and maintain ISO frameworks, supporting clients through gap analysis, remediation, certification readiness, and continual improvement. You'll collaborate with senior stakeholders across industries to deliver strategic advisory and hands-on implementation of … information security governance, risk management, and compliance Key Responsibilities Lead ISO 27001 implementation projects from initial assessment through to certification Conduct gap analysis tailored to private sector risk profiles and commercial priorities Facilitate risk assessments in accordance with ISO 27005 or recognised equivalents Draft, review, and update ISMS documentation including policies and procedures Advise on and oversee technical … administrative, and physical control implementation per ISO 27001 Annex A Deliver internal audits and lead clients through Stage 1 and Stage 2 certification audits Establish ISMS performance monitoring and reporting mechanisms Provide targeted training to embed a security-first culture Experience Required Proven experience in ISO27001 implementation and auditing Strong understanding of ISMS frameworks and private sector regulatory requirements More ❯
continuity planning and management of disaster situations within insurance and/or financial services, working regularly with senior executives across the globe. Knowledge of BCI Good Practice Guidelines/ISO22301 best practice. CBCI accreditation or working towards completion. Strong communication, presentation, and negotiation skills. Adaptable and able to respond effectively to a changing commercial environment. What do we offer in More ❯