in the process. We want you to find your spark. Because that’s what drives you to be better, be more and ultimately, be more fulfilled. Role- Regional Lead – Governance, RiskandCompliance & Business Resiliency Location- UK, London Job Type- Full Onsite (5 days a week) Full time Employment - Permanent KEY RESPONSIBILITIES & JOB DESCRIPTION: • Responsible for Business development of HCL … Governance, RiskandCompliance services and Business Resiliency services in UK & Europe region. This job carries the booking targets and revenues to be achieved. • Responsible for P&L and Client relationship management • GRC opportunity farming in existing client accounts as well as working with regional sales for developing new accounts. • Managing sales, pre-sales and delivery team of consultants for … advisory & consulting engagements around regulatory risk & compliances such as DORA, NIS2, GDPR, SOX ITGC, PCI-DSS, HIPAA, Data Privacy, NHS, FFIEC etc. • Develop knowledge base, re-usable components for GRC advisory services. • Responsible for development and enhancements of GRC services, team and delivery capabilities. • Manage local partners and develop partner sales channel Skills: • Expertise in creation of solutions for riskMore ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Proactive Appointments
Working Our client are seeking an experienced Information Security Analyst to provide immediate support to the Information Security team. This role is a hybrid of technical security analysis andgovernance, risk, andcompliance (GRC)activities. The successful candidate will play a key role in assessing risks, reviewing supplier and project security documentation, responding to security questionnaires and tenders, supporting incident … This is a hands-on delivery role for someone who can work independently, make sound judgements, and communicate clearly with both technical and non-technical stakeholders. Key Responsibilities Security Governance & Risk Technical Security Oversight Supplier and Third-Party Security Assurance Advisory and Awareness Desirable Relevant certifications such as CISSP, CISM, CRISC, CEH, CompTIA Security+, or equivalent experience. Experience working in More ❯
Bristol, Avon, England, United Kingdom Hybrid/Remote Options
Reed
critical infrastructure . Strong understanding of cyber-physical systems , OT environments , and connected infrastructure . Experience applying assurance frameworks and technical standards (e.g. NIST, ISO27001, CAF). Background in governance, risk, andcompliance (GRC) functions. Excellent communication and stakeholder engagement skills. Agile, analytical, and solutions-focused mindset. Experience in sectors such as energy/utilities, transport, or smart cities is More ❯
West Yorkshire, England, United Kingdom Hybrid/Remote Options
Harvey Nash
Key Responsibilities: · Develop and execute programme strategies to meet organisational goals, on time and within budget · Lead stakeholder engagement and change initiatives to support technology adoption · Oversee governance, riskmanagement, andcompliance with data protection, cyber security, and procurement regulations · Manage resource planning, budgets, and business cases · Provide leadership and development for programme teams, fostering collaboration and innovation · Drive innovation More ❯
Cyber Governance, Risk & Compliance Reporting Specialist - Power BI Birmingham (3 days on-site) £500-£550 per day (Inside IR35) Contract until May 2026 Immediate start preferred We're working with a large public sector organisation looking for an experienced Cyber Governance, Risk & Compliance (GRC) Specialist to join their cyber function and take ownership of reporting, dashboards, and documentation across the … governanceandcompliance space. This is a key role in a small, high-impact team - ideal for someone who enjoys bringing structure, clarity and creativity to cyber reporting. The focus is on Power BI dashboards, KPI reporting, policy managementandrisk oversight , not writing frameworks from scratch. Key Responsibilities Design, develop and maintain Power BI dashboards and reporting packs for … leadership andgovernance teams. Create and standardise cyber KPI and performance reporting to improve visibility and decision-making. Maintain and update cyber policies, standards and documentation . Support risk assessments, supplier assurance andgovernance reviews . Work closely with stakeholders across technology, riskandcompliance to ensure alignment and transparency. Drive improvements in cyber reporting consistency, accuracy and quality. Skills More ❯
What you'll be doing Application Security (AppSec) : Driving secure development practices, code analysis, and threat modelling. Security Operations (SOC) : Overseeing monitoring, incident response, vulnerability management, and operational resilience. Governance, Risk & Compliance (GRC) : Leading our efforts to achieve and maintain compliance with PCI, GDPR, SOC2, and ISO27001. Vendor Security : Spearheading due diligence and monitoring of third parties, integrated with our … Vendor Governance Forum. Policies & Assurance : Defining and enforcing security standards, collaborating with IT Ops and Platform Engineering on execution, and providing assurance to stakeholders, customers, and regulators. RiskManagement : Escalating material risks directly to the CTO and other risk functions. Culture & Training : Promoting a secure-by-design culture through training, awareness, and best practices across the company. What we're … program, including secure development, code analysis, and threat modelling. Running Security Operations : You have deep experience overseeing a Security Operations function, managing monitoring, incident response, and vulnerability management. Driving GRC : You're an expert in managing compliance frameworks such as PCI, GDPR, SOC2, and ISO 27001, and you're skilled at preparing for audits. Vendor Security : You have led vendor More ❯
Relevant certifications welcomed - CRISC, ISO 27001 Lead Implementer/Auditor, CIPP/E, GDPR Practitioner, CISM, or CISA. Why Apply? Join a modern, compliance-driven business where security andgovernance are at the heart of operations. Visible role with direct access to senior leadership and real impact on company policy and certification. Opportunity to develop toward senior compliance or GRCMore ❯
City of London, London, United Kingdom Hybrid/Remote Options
Crimson
Cyber Security GRC Manager - London Remote working Salary up to £60,000 per annum This is a fully remote position, with occasional meetings in London and possible travel to India twice yearly. Cyber Security Manager (GRC) position available for a client based in London. The role involves shaping and implementing a governance, risk, andcompliance (GRC) strategy. Responsibilities include establishing … implementing technical controls. Skilled in articulating technical risks in terms of business impact. Professional certifications such as CISM, CISSP, CRISC, ISO 27001 Lead Auditor, and hands-on experience with GRC tools (e.g., Vanta, Drata) are highly desirable. Responsible for developing and maintaining security policies in alignment with ISO 27001, GDPR, HIPAA, and OWASP standards. Lead risk assessments and oversee the More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Crimson
Cyber Security GRC Manager - London Remote working Salary up to £60,000 per annum This is a fully remote position, with occasional meetings in London and possible travel to India twice yearly. Cyber Security Manager (GRC) position available for a client based in London. The role involves shaping and implementing a governance, risk, andcompliance (GRC) strategy. Responsibilities include establishing … implementing technical controls. Skilled in articulating technical risks in terms of business impact. Professional certifications such as CISM, CISSP, CRISC, ISO 27001 Lead Auditor, and hands-on experience with GRC tools (e.g., Vanta, Drata) are highly desirable. Responsible for developing and maintaining security policies in alignment with ISO 27001, GDPR, HIPAA, and OWASP standards. Lead risk assessments and oversee the More ❯
the MDR provider. Translate technical security risks into actionable business recommendations for stakeholders at all levels. Contribute to broader cybersecurity initiatives , including vulnerability management, cloud security, data protection, andgovernance, risk & compliance (GRC). Requirements In-depth understanding of the incident response lifecycle — preparation, detection, containment, eradication, recovery, and lessons learned. Hands-on experience with SIEM tools such as Splunk More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Cititec
the MDR provider. Translate technical security risks into actionable business recommendations for stakeholders at all levels. Contribute to broader cybersecurity initiatives , including vulnerability management, cloud security, data protection, andgovernance, risk & compliance (GRC). Requirements In-depth understanding of the incident response lifecycle — preparation, detection, containment, eradication, recovery, and lessons learned. Hands-on experience with SIEM tools such as Splunk More ❯
ServiceNow modules including IRM, ITSM, HRSD, and CSM. Conduct gap analysis and identify areas for process improvement. Advise clients on platform capabilities and leading practices, especially in IRM andGRC domains. Collaborate with architects to define secure, scalable integration and data designs. Build and maintain strong relationships with clients, ensuring their needs and expectations are met. Produce high-quality documentation … though MS Products (Word, Excel, PowerPoint). Contribute to proposals, statements of work, and client-facing deliverables with commercial awareness. Ensure governance, risk, compliance, and change management considerations are embedded throughout the delivery lifecycle. Qualifications Bachelor’s degree in Business, Information Systems, Computer Science, or a related field. Advanced certifications in Business Analysis or related disciplines are a plus. Experience More ❯
ServiceNow modules including IRM, ITSM, HRSD, and CSM. Conduct gap analysis and identify areas for process improvement. Advise clients on platform capabilities and leading practices, especially in IRM andGRC domains. Collaborate with architects to define secure, scalable integration and data designs. Build and maintain strong relationships with clients, ensuring their needs and expectations are met. Produce high-quality documentation … though MS Products (Word, Excel, PowerPoint). Contribute to proposals, statements of work, and client-facing deliverables with commercial awareness. Ensure governance, risk, compliance, and change management considerations are embedded throughout the delivery lifecycle. Qualifications Bachelor’s degree in Business, Information Systems, Computer Science, or a related field. Advanced certifications in Business Analysis or related disciplines are a plus. Experience More ❯
processes for maturity and automation on ServiceNow platform Knowledge of Advance riskmanagementand continuous control monitoring. Create & execute test plans and participate in client UAT & production migration Manage GRC Use-stories in agile team and lead the iterations from delivery perspective Understand Observables, Indicators of Compromise (IOC) and IoC Look Ups Good to have experience with configuring and implementing … Service-Now GRC Applications/Modules with working knowledge of its built-in capabilities including Plug-ins, Workflows, UI elements, tables, dictionaries, integrations and dependencies. Experience of working on Scripting in ServiceNow. Skills required: Certified ServiceNow IRM/SecOps administrator/consultant (this is mandatory) Must have concluded at least 1 lifecycle of ServiceNow IRM/SecOps implementation. Experience in … JavaScript, API, Web Services Working knowledge of Vulnerability Mgmt. process & tools ISO/CISA/CISM/CISSP/CRICS (preferred) Platform expertise required: ServiceNow GRC & SecOps. More ❯
processes for maturity and automation on ServiceNow platform Knowledge of Advance riskmanagementand continuous control monitoring. Create & execute test plans and participate in client UAT & production migration Manage GRC Use-stories in agile team and lead the iterations from delivery perspective Understand Observables, Indicators of Compromise (IOC) and IoC Look Ups Good to have experience with configuring and implementing … Service-Now GRC Applications/Modules with working knowledge of its built-in capabilities including Plug-ins, Workflows, UI elements, tables, dictionaries, integrations and dependencies. Experience of working on Scripting in ServiceNow. Skills required: Certified ServiceNow IRM/SecOps administrator/consultant (this is mandatory) Must have concluded at least 1 lifecycle of ServiceNow IRM/SecOps implementation. Experience in … JavaScript, API, Web Services Working knowledge of Vulnerability Mgmt. process & tools ISO/CISA/CISM/CISSP/CRICS (preferred) Platform expertise required: ServiceNow GRC & SecOps. More ❯
Milton Keynes, Buckinghamshire, South East, United Kingdom Hybrid/Remote Options
Hays
Role Overview Our client is seeking an experienced, hands on Senior Information Security Analyst to support both their technical security work andgovernance, riskandcompliance (GRC). You will assess risks, review supplier and project security, respond to security questionnaires and tenders, support incident investigations, and help maintain compliance with Cyber Essentials Plus, ISO 27001, DSPT and GDPR. Responsibilities … to policy updates. Provide clear security advice to projects and senior stakeholders. What you'll need to succeed Proven experience in information security, with a blend of technical andGRC responsibilities. Strong understanding of cloud and network security, ideally within Microsoft ecosystems (e.g., Azure, M365, Defender suite, DLP, Conditional Access). Skilled in evaluating supplier security through questionnaires, procurement documents More ❯
Employment Type: Contract, Work From Home
Rate: Up to £36.0 per hour + £36 per hour inside IR35 (via Umbrella)
to ensure alignment of requirements and deliverables Track activity progress, manage risks, and implement risk mitigation strategies to ensure successful outcomes Drive standardisation of threat intelligence protocols, tools, andgovernance across the region Partner with technology, compliance, andriskmanagement teams to ensure compliance with regulatory and legal requirements in each jurisdiction Host and manage regular global meetings (e.g., bi … Microsoft Teams, Outlook (for meeting management & scheduling), SharePoint, OneDrive,Miro/MURAL Reporting & Analytics: Power BI, Tableau, advanced Excel; strong ability to produce quarterly, annual, and executive- level reports. Governance & Compliance: ServiceNow, Archer GRC, or similar platforms Strong report-writing and presentation skills, with attention to detail and executive-level clarity Strong analytical and problem-solving abilities Business level fluency More ❯
to ensure alignment of requirements and deliverables Track activity progress, manage risks, and implement risk mitigation strategies to ensure successful outcomes Drive standardisation of threat intelligence protocols, tools, andgovernance across the region Partner with technology, compliance, andriskmanagement teams to ensure compliance with regulatory and legal requirements in each jurisdiction Host and manage regular global meetings (e.g., bi … Microsoft Teams, Outlook (for meeting management & scheduling), SharePoint, OneDrive,Miro/MURAL Reporting & Analytics: Power BI, Tableau, advanced Excel; strong ability to produce quarterly, annual, and executive- level reports. Governance & Compliance: ServiceNow, Archer GRC, or similar platforms Strong report-writing and presentation skills, with attention to detail and executive-level clarity Strong analytical and problem-solving abilities Business level fluency More ❯
to ensure alignment of requirements and deliverables Track activity progress, manage risks, and implement risk mitigation strategies to ensure successful outcomes Drive standardisation of threat intelligence protocols, tools, andgovernance across the region Partner with technology, compliance, andriskmanagement teams to ensure compliance with regulatory and legal requirements in each jurisdiction Host and manage regular global meetings (e.g., bi … Microsoft Teams, Outlook (for meeting management & scheduling), SharePoint, OneDrive,Miro/MURAL Reporting & Analytics: Power BI, Tableau, advanced Excel; strong ability to produce quarterly, annual, and executive- level reports. Governance & Compliance: ServiceNow, Archer GRC, or similar platforms Strong report-writing and presentation skills, with attention to detail and executive-level clarity Strong analytical and problem-solving abilities Business level fluency More ❯
significant experience of designing, engineering and securing cloud hosted solutions against real-world threats. Strong cloud security engineering and/or architecture experience in the fundamental Cloud Security Domains - Governance, Riskand Control (GRC), Identity and Access Management, Cloud Network and Compute Infrastructure Security, Data Protection (at-rest/in-transit), Workload Security, SIEM, Logging and Monitoring. Experience with Cloud More ❯
Warrington, Cheshire, United Kingdom, Great Sankey Hybrid/Remote Options
Talos
Security, Governance, RiskandCompliance Manager- £(phone number removed) + Bens – Warrington/Hybrid Over the past ten years, Talos360 has firmly established itself as a market leader in talent software solutions and online recruitment media with our innovations in the HR software space, Talos ATS & Talos Engage solving todays talent challenges. 2024 was a year where our business was … are growing quickly. We are a SaaS technology business, with massive growth plans and investment. We have an exciting new opportunity for a forward thinking, effective and passionate Security, Governance, RiskandCompliance Manager to join our team. Our new Security, Governance, RiskandCompliance Manager would be responsible for ensuring effective frameworks, policies, governance, andriskmanagement are in … information within our award-winning cloud-based software. The role is key to developing and maintaining internal control framework and will guide the evolution of our control mechanisms andgovernance processes and will help maintain a suitable security posture. Security, Governance, RiskandCompliance Manager – Responsibilities -Driving major change initiatives to facilitate the design and implementation of appropriate control mechanisms More ❯
SAP GRC Lead Consultant About NTT DATA Business Solutions: NTT DATA Business Solutions Group is part of the NTT DATA Corporate Group a top 10 global IT services provider, headquartered in Tokyo, operating in more than 50 countries. We combine a global reach with local intimacy to provide premier professional SAP services from deep industry expertise consulting to applied innovations … SAP HANA clients and more than 300 SAP S/4HANA clients. Our clients trust our deep experience and proven approaches - all around the world. Job Summary: The SAP GRC Lead role is a key role within the NTT DATA Business Solutions (NDBS) Supply Chain Management practice. The successful candidate will be part of a wider team responsible for the …/4Hana and non-SAP solutions. Duties/Responsibilities: Work closely with customer and project teams to translate business requirements into a solution that takes advantage of the SAP GRC capabilities within the overall solution landscape. Leads and co-ordinates integrated workshops with detail and complexity with Senior Stakeholders in the customer business. Provide thought leadership to NDBS and its More ❯
Sheffield, South Yorkshire, England, United Kingdom
KBC Technologies UK LTD
security, andriskmanagement within a complex banking and financial services environment. You will be responsible for managing and delivering large-scale audits, influencing multiple stakeholders, and ensuring robust governanceandrisk frameworks are in place. Key Responsibilities Lead and deliver complex technology and cyber audits, ensuring timely completion and high-quality outcomes. Assess and strengthen riskmanagement processes, controls … andcompliance frameworks. Influence and collaborate with cross-functional teams, project managers, and senior stakeholders. Provide clear, concise reporting and recommendations to executive-level audiences. Drive governance, change management, and benefits realisation across projects. Translate complex technical issues into simple, actionable insights for business leaders. Knowledge & Experience Strong knowledge of internal audit processes , with a focus on technology and cyber … audits on time. Extensive experience in banking environments and cybersecurity projects . Strong stakeholder management, with the ability to influence and communicate at all levels. Demonstrated success in project governance, change management, and process improvement. Qualifications Degree in a technology-related discipline (e.g. BSc Computer Science ). Professional certifications such as CISA, CISM or equivalent (preferred). Additional audit certifications More ❯
Cyber Security Governance Lead Location: Birmingham, Snow Hill Rate: £500–£550 per day - Inside of IR35 6 month contract Are you passionate about driving cyber security excellence through governance, riskmanagement, and data-driven insights? We are seeking a Cyber Security Governance Lead to strengthen our security posture and ensure compliance across our IT landscape. 💼 Key Responsibilities Lead the development … and implementation of cyber security governance frameworks . Conduct and advise on risk assessments , ensuring effective mitigation and alignment with organisational standards. Ensure compliance with internal policies and external regulations, supporting audit and assurance activities. Create and maintain security reporting frameworks , delivering consistent and actionable insights. Build and manage Power BI dashboards to visualise security metrics and performance trends. Produce … high-quality reporting packs for senior stakeholders andgovernance boards. Document and maintain security policies and procedures , ensuring clarity and accessibility. Collaborate with internal teams and external partners to embed security best practices across the organisation. 🧠 What You’ll Bring Skills & Experience Strong understanding of IT security governance, risk, andcompliance (GRC) . Experience in creating dashboards and reports using More ❯
Birmingham, West Midlands, United Kingdom Hybrid/Remote Options
Tarmac Trading Limited
to shape the future of how we build, connect, and operate. Join Tarmacs Finance & IT Controls Graduate Programme and be part of a team driving digital transformation through robust governance, riskmanagement, and financial analysis.This unique opportunity blends technology, data, and business value creation- ideal for graduates passionate about automation, compliance, and strategic financial planning. This role sits at the … automation tools to enhance efficiency and insight generation.Graduates will contribute to both control assurance and financial reporting activities, supporting key initiatives across the business. What youll be doing IT Governance & RiskManagement Support control design, risk assessments, andcompliance monitoring (e.g., GDPR, ISO 27001). Financial Planning & Analysis Assist in budgeting, forecasting, and ROI modelling for technology investments. Automation & Insight … from you. Essential A degree (or predicted degree) in Computer Science, Information Systems, Finance, Accounting, Economics , or a related discipline Strong analytical and problem-solving skills Interest in IT governance, risk, compliance, and financial analysis Desirable Familiarity with control frameworks (e.g., COBIT, NIST), financial systems (e.g., SAP), and data tools (e.g., Power BI) Hybrid working available- giving you the flexibility More ❯