Oliver James is proud to be partnering with a globally renowned reinsurance company in their search for a Cyber Security Governance, Risk & Compliance (GRC) and Third-Party RiskManagement (TPRM) Specialist. This role will play a crucial part in strengthening the organisation's security posture, focusing heavily on vendor risk, regulatory readiness, and cyber governance. Overview Oliver James is proud … to be partnering with a globally renowned reinsurance company in their search for a Cyber Security Governance, Risk & Compliance (GRC) and Third-Party RiskManagement (TPRM) Specialist. This role will play a crucial part in strengthening the organisation's security posture, focusing heavily on vendor risk, regulatory readiness, and cyber governance. Based in the City of London with a flexible … and validate vendor security documentation (e.g., SOC 2, ISO 27001), evaluate control effectiveness, and coordinate remediation efforts for identified gaps. Ensure relevant business stakeholders are informed of potential risks. Governance, Risk & Compliance (GRC): Actively contribute to broader GRC initiatives, including: Managing GRC platforms and tools (e.g., control catalogues, issue tracking, policy management). Designing and deploying security awareness programs (e.g. More ❯
seamless data flow and integration between corporate systems (for example, linking finance and procurement systems or HR and payroll systems) to create a single source of truth. Implement data governance practices so that management reports and analytics are accurate and timely. Governance, Risk & Compliance: Implement strong IT governanceand security practices for all corporate tech systems. Proactively use technology to … Expertise: Hands-on knowledge of implementing and supporting enterprise software such as ERP systems (e.g., Oracle Financials, SAP, or Netsuite), HRIS/Payroll systems (e.g., Workday, PeopleSoft, ADP), andGRC (Governance, Risk & Compliance) tools. Understanding of system architecture, integrations (middleware, APIs), and data management. Enterprise Applications: Proficiency with enterprise resource planning (ERP) systems, financial reporting software, and HR management systems. More ❯
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports andMore ❯
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports andMore ❯
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports andMore ❯
Overview "Head of Cyber Governance, RiskandCompliance" - London Hybrid Full-time Personal Contract REQ5121 As a strategic leader in Governance, RiskandCompliance, you will guide SGN's cyber security and regulatory approach, ensuring our operations remain secure, resilient and fully compliant. We deliver safety, warmth, and comfort to homes and businesses. Every role, whether in the office or … on the front line, plays a key part in this mission. Here's how you will contribute Governance, Risk & Compliance (GRC) Leadership Lead and manage the GRC team, aligning cyber and business goals while ensuring compliance with NIS-R, ISO27001/2, and NIST-2. Oversee delivery plans, resource allocation, and stakeholder engagement for GRC initiatives. Training & Awareness Develop andMore ❯
Head of Cyber Governance, RiskandCompliance London | Hybrid | Full-time | Personal Contract Competitive pension scheme – Enhanced maternity/paternity pay – Life assurance – HolidayPlus – Cycle2work Scheme & more REQ5121 As a strategic leader in Governance, RiskandCompliance, you will guide SGN’s cyber security and regulatory approach, ensuring our operations remain secure, resilient and fully compliant. We deliver safety, warmth … comfort to homes and businesses. Every role, whether in the office or on the front line, plays a key part in this mission. Here’s how you will contribute... Governance, Risk & Compliance (GRC) Leadership Lead and manage the GRC team, aligning cyber and business goals while ensuring compliance with NIS-R, ISO27001/2, and NIST-2. Oversee delivery plans … resource allocation, and stakeholder engagement for GRC initiatives. Training & Awareness Develop and maintain SGN’s Information Security training and awareness materials. Integrate lessons learned from incidents and address feedback from training delivery. Information Security Policy & ISMS Maintain a robust portfolio of security policies, standards, and procedures to support ISO27001, NIST, and NIS eCAF compliance. Ensure policies are current, reviewed regularly More ❯
primary client contact for your workstreams Supporting the scoping and mobilisation of new engagements alongside senior colleagues Designing and delivering high-quality finance technology solutions (reporting, planning, close, treasury, GRC, ESG, and beyond) Translating client requirements, existing processes, and spreadsheets into coherent solution designs and implementation documentation Serving as a subject matter expert and providing architectural and technical leadership to More ❯
primary client contact for your workstreams Supporting the scoping and mobilisation of new engagements alongside senior colleagues Designing and delivering high-quality finance technology solutions (reporting, planning, close, treasury, GRC, ESG, and beyond) Translating client requirements, existing processes, and spreadsheets into coherent solution designs and implementation documentation Serving as a subject matter expert and providing architectural and technical leadership to More ❯
primary client contact for your workstreams Supporting the scoping and mobilisation of new engagements alongside senior colleagues Designing and delivering high-quality finance technology solutions (reporting, planning, close, treasury, GRC, ESG, and beyond) Translating client requirements, existing processes, and spreadsheets into coherent solution designs and implementation documentation Serving as a subject matter expert and providing architectural and technical leadership to More ❯
london (city of london), south east england, united kingdom
VantagePoint
primary client contact for your workstreams Supporting the scoping and mobilisation of new engagements alongside senior colleagues Designing and delivering high-quality finance technology solutions (reporting, planning, close, treasury, GRC, ESG, and beyond) Translating client requirements, existing processes, and spreadsheets into coherent solution designs and implementation documentation Serving as a subject matter expert and providing architectural and technical leadership to More ❯
Security Risk Analyst 6-month contract London/Remote Inside IR35 My Customer is looking for a Security Risk Analyst to join their Governance, Risk & Compliance (GRC) team. You will play a key role in strengthening their riskmanagement processes, working primarily with Archer and other GRC tools to support risk assessment, compliance, andgovernance activities. In this role, you … risks across assets, systems, and third parties, ensuring compliance with internal standards, policies, and regulatory frameworks. Key Skills from the Security Risk Analyst: Strong background in Security RiskandGovernance with hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO (phone number removed , andcomplianceMore ❯
Security Risk Analyst – 6-month contract – London/Remote – Inside IR35 My Customer is looking for a Security Risk Analyst to join their Governance, Risk & Compliance (GRC) team. You will play a key role in strengthening their riskmanagement processes, working primarily with Archer and other GRC tools to support risk assessment, compliance, andgovernance activities. In this role, you … risks across assets, systems, and third parties, ensuring compliance with internal standards, policies, and regulatory frameworks. Key Skills from the Security Risk Analyst: Strong background in Security RiskandGovernance with hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO 270001), andcompliance requirements (GDPR More ❯
Security Risk Analyst – 6-month contract – London/Remote – Inside IR35 My Customer is looking for a Security Risk Analyst to join their Governance, Risk & Compliance (GRC) team. You will play a key role in strengthening their riskmanagement processes, working primarily with Archer and other GRC tools to support risk assessment, compliance, andgovernance activities. In this role, you … risks across assets, systems, and third parties, ensuring compliance with internal standards, policies, and regulatory frameworks. Key Skills from the Security Risk Analyst: Strong background in Security RiskandGovernance with hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO (phone number removed)), andcomplianceMore ❯
security leader with a blend of strategic vision and operational expertise. You should bring: Proven experience defining and executing cyber security strategy at a senior level Strong knowledge of governance, risk, compliance, and regulatory frameworks Leadership experience managing cyber security operations teams Excellent stakeholder management skills, including board-level engagement The ability to represent the organisation externally with authority andMore ❯
cross-functional programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governanceandriskmanagement, ensuring regulatory compliance, operational resilience, and smooth customer experience throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements More ❯
City of London, London, United Kingdom Hybrid / WFH Options
ea Change
cross-functional programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governanceandriskmanagement, ensuring regulatory compliance, operational resilience, and smooth customer experience throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements More ❯
london, south east england, united kingdom Hybrid / WFH Options
ea Change
cross-functional programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governanceandriskmanagement, ensuring regulatory compliance, operational resilience, and smooth customer experience throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
ea Change
cross-functional programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governanceandriskmanagement, ensuring regulatory compliance, operational resilience, and smooth customer experience throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements More ❯
digital risk frameworks, methodologies, andcompliance requirements. Ability to interpret IT Risk regulatory requirements and translate them into actionable sales opportunities. Proficiency in riskmanagement tools and platforms (e.g. GRC platforms), ideally with experience in implementing and/or optimizing these solutions. Proven strategic experience in leading risk assessments and developing and implementing risk mitigation strategies. Strong analytical and problem … Exceptional communication and presentation skills for executive reporting, stakeholder engagement, and internal team leadership. To qualify for the role you should have Extensive experience in digital riskmanagement, IT governance, cybersecurity, or related fields; experience with AI would be an additional advantage. Professional certifications such as CISA, CISSP, or equivalent (preferred but not mandatory). Significant expertise in riskmanagementMore ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Robert Walters
Proven experience as a ServiceNow Architect, with a strong portfolio of designing and implementing solutions across various modules. Demonstrated expertise in the implementation and configuration of the IRM andGRC modules within ServiceNow. Exceptional communication skills, with the capacity to liaise effectively with both technical and non-technical stakeholders. Experience in leading data migration projects, with a focus on maintaining More ❯
experts, to ensure our business commitments are delivered with quality and to expectation. · Assessing new technology solutions · Ensuring our non-functional requirements are met regarding performance, scalability, resilience, andGRC requirements (Information security, risk, industry regulation compliance) · Helping to encourage collaboration and product ownership across developers and testers · Ensuring continual shift of secure, quality and tested code activity left · Working More ❯
party SaaS, and security consulting services. Experience of evaluating and documenting technical needs. A history of consistently meeting sales objectives and goals. Knowledge of data security related legislation andgovernance, riskandcompliance principles. Strong communication skills. If Verizon and this role sound like a fit for you, we encourage you to apply even if you don't meet every More ❯
The post holder will need todevelop strong relationships with the rest of legal team, senior management andin particular key stakeholders in the SaaS Operations, SaaS Commercial andSales, Security, Privacy, Governance, RiskandComplianceand Finance teams. The post holder will be responsible forensuring the consistent application of the company internal policies and thatappropriate expert legal advice is applied to our More ❯
and deliver the technology strategy aligned with public sector priorities, policies, and compliance. - Lead end-to-end delivery of secure, reliable digital and cloud solutions for government services. - Oversee governance, risk, and regulatory compliance, including cybersecurity and data protection. - Build strong relationships with public sector stakeholders, translating technical solutions into business outcomes. - Drive innovation by adopting emerging technologies to modernize More ❯