you possess the following?: Proven related experience in cybersecurity riskmanagement in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards andrisk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32 Strong knowledge of cyber More ❯
risk assessments. Excellent analytical, organisational, and problem-solving skills. Strong written and verbal communication skills, with experience presenting to senior leaders. Proficiency in Riskmanagement platforms (e.g., Archer, ServiceNow GRC). Professional certifications such as CTPRP, CISM, CISSP, or CRISC are highly desirable. What do we offer in return? A career that you define. Yes, we offer all the usual More ❯
lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity As S/4 HANA Roles & GRC Access Manager, you will lead and support our SAP Security andGovernance, Risk, andCompliance (GRC) initiatives. The ideal candidate will have extensive experience with SAP Security architecture and implementation … SAP GRC solutions (Access Control, Identity Access Governance), and proven experience managing teams through complex SAP implementations and security risk assessments. This role will play a crucial part in designing, implementing, and re-design of security roles, Identity and Access Governance for cross-platform ecosystems while maintaining secure and compliant SAP environments across the organisation. You will demonstrate and develop … your capabilities in the following areas: Develop and implement S/4 HANA security andGRC strategy, design to protect the integrity and confidentiality of our clients' enterprise systems. Oversee S/4 HANA Security during implementation ensuring compliance embedding audit and regulatory requirements. Lead the design, configuration, implementation and testing of SAP GRC modules such as Access Control (AC More ❯
Are you looking for an exciting new opportunity? Join a London based, product-agnostic consultancy specialising in information security governance, risk, andcompliancemanagement for clients across Europe. With a deep-rooted passion for cyber risk, the team excels at developing measurable controls that align with an organisation's risk appetite, capacity, and tolerance for breaches. Known for crafting innovative More ❯
and Head of Function. Engage regularly with IT, Security, and Business stakeholders to align risk reporting with organizational objectives. What We’re Looking For: RSA Archer expertise or other GRC tooling Proven experience with NIST or other regulatory-aligned frameworks. Deep understanding of Cyber RiskManagement principles. Exceptionally organized, with strong attention to detail and ability to manage multiple priorities. More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Albany Beck
and Head of Function. Engage regularly with IT, Security, and Business stakeholders to align risk reporting with organizational objectives. What We’re Looking For: RSA Archer expertise or other GRC tooling Proven experience with NIST or other regulatory-aligned frameworks. Deep understanding of Cyber RiskManagement principles. Exceptionally organized, with strong attention to detail and ability to manage multiple priorities. More ❯
globally. What You’ll Do Advise executive stakeholders on defining and executing risk-based cyber security strategies. Design and deliver cyber transformation programmes that align with business goals. Define governance frameworks, target operating models, and maturity roadmaps. Support clients in achieving regulatory compliance (e.g., NIS2, GDPR, ISO27001). Lead or support project delivery across multiple sectors and stakeholder levels. What … and team management (Agile or Waterfall). Analytical and lateral problem-solving mindset. Bonus if you have: Security clearance or the ability to obtain it. Hands-on experience across GRC, cyber threat management, or vulnerability management. If you’re ready to work on some of the most pressing and complex cyber challenges facing organisations today and want to do it More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
globally. What You’ll Do Advise executive stakeholders on defining and executing risk-based cyber security strategies. Design and deliver cyber transformation programmes that align with business goals. Define governance frameworks, target operating models, and maturity roadmaps. Support clients in achieving regulatory compliance (e.g., NIS2, GDPR, ISO27001). Lead or support project delivery across multiple sectors and stakeholder levels. What … and team management (Agile or Waterfall). Analytical and lateral problem-solving mindset. Bonus if you have: Security clearance or the ability to obtain it. Hands-on experience across GRC, cyber threat management, or vulnerability management. If you’re ready to work on some of the most pressing and complex cyber challenges facing organisations today and want to do it More ❯
better place. A safer place. A more ethical place. A place where anyone, anywhere can have a voice. That's a serious impact. NAVEX is a global leader in GRC solutions and helps organisations strengthen their riskandcompliance programs with a 360-degree view of enterprise, third party and ecosystem risk for enhanced regulatory complianceand proactive risk management. More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
resilience and enable growth. What You’ll Do Advise executives on actionable cyber strategies to support digital transformation Shape and deliver cyber transformation programmes aligned with organisational objectives Design governanceand operational models to enhance cyber maturity and regulatory readiness Assess and define risk-based roadmaps that embed cyber security into business operations Work across a range of industries and … of relevant standards: NIST CSF, ISO27001, NCSC CAF, GDPR, NIS2, etc. Certifications such as CISSP, CISM, CISA, M.Inst.ISP, or MSc in Cyber Security Hands-on experience in areas like GRC, cyber threat management, vulnerability management Strong communication skills – written and verbal – with the ability to present to both technical and business stakeholders Consulting: Proven project delivery using Agile and Waterfall More ❯
resilience and enable growth. What You’ll Do Advise executives on actionable cyber strategies to support digital transformation Shape and deliver cyber transformation programmes aligned with organisational objectives Design governanceand operational models to enhance cyber maturity and regulatory readiness Assess and define risk-based roadmaps that embed cyber security into business operations Work across a range of industries and … of relevant standards: NIST CSF, ISO27001, NCSC CAF, GDPR, NIS2, etc. Certifications such as CISSP, CISM, CISA, M.Inst.ISP, or MSc in Cyber Security Hands-on experience in areas like GRC, cyber threat management, vulnerability management Strong communication skills – written and verbal – with the ability to present to both technical and business stakeholders Consulting: Proven project delivery using Agile and Waterfall More ❯
guiding us to deliver impact how and where it mattersmost . Connect to your opportunity As a Senior Manager, you will lead and oversee a variety of SAP Security, Governance, Risk, andCompliance (GRC) and Identity Access management work for a portfolio of diversified clients in different industries where you will be required to lead and collaborate effectively. The ideal … candidate will have extensive experience with SAP Security architecture and implementation, SAP GRC solutions (Access Control, Identity Access Governance), and proven experience managing teams through complex SAP ERP Transformation engagements. You will demonstrate and develop your capabilities in the following areas: Apply problem solving and critical thinking to enable the identification of Technology and Risks associated. Access the security requirements … and risks for complex ERP environment supporting the core business and IT processes. Develop and implement a comprehensive SAP security andGRC strategy, policies, and procedure aligned with Organisational goals and industry best practice. Oversee SAP Security during implementations, ensuring compliance with regulatory requirements and internal security standards. Establish and maintain robust access management policies and procedure for user provisioning More ❯
securing the NAO's digital future. We're on the lookout for passionate, curious, and collaborative security professionals across a wide range of specialisms. Whether your expertise lies in governance, engineering, threat detection, or cloud security, you'll find real scope to make an impact-both within InfoSec and across the wider organisation. Be part of a diverse and expanding … security baselines and configuration management using IaC tools like Biceps/Terraform and enforce with Azure policy. Improve SSDLC practices, support risk assessments, and ensure cloud services align with governance, risk, andcompliance controls. Skills required: Key skills and competencies include: Designing secure applications and solutions (Practitioner) Supporting and supporting security support methodologies (Expert) Process analysis and optimization (Practitioner) RiskMore ❯
Job Title: Senior GRC & Compliance Manager (Business GRC role for SAP S/4HANA Transformation Programme) Location: London, UK Job Type: Permanent Working Arrangements: Hybrid (2-3 days a week in office) Job Summary: Join a leading pharmaceutical organisation as a Senior Governance, Risk & Compliance (GRC) Manager to drive compliance excellence across a major SAP S/4HANA transformation programme. … You will lead governance oversight, ensuring SAP Finance & Non-Finance systems meet stringent regulatory, corporate, and quality standards. This is a high-impact role working closely with senior stakeholders, finance, IT, and quality teams to deliver robust compliance in a regulated environment. Key Responsibilities: Lead governance, risk, andcompliance for SAP Finance & Non-Finance systems. Ensure adherence to SOX, GxP … GDPR, and related regulatory requirements. Oversee implementation and maintenance of IT Quality Management Systems (QMS). Provide governance oversight during SAP S/4HANA implementations, upgrades, and integrations. Review and validate SAP design/configuration to meet financial governance standards. Collaborate with cross-functional teams to ensure alignment with corporate and regulatory frameworks. Skills, Experience, and Abilities Required: 10+ years More ❯
City of London, London, England, United Kingdom Hybrid / WFH Options
WTW
of defense. Contribute to the evolution of the Technology and Cyber Riskand Control Framework through data-driven insights. Ensure alignment of analytics activities with regulatory expectations and internal governance standards. Drive continuous improvement in risk data quality, reporting processes, and analytics capabilities. The Requirements: Skills: Strong knowledge of riskmanagement frameworks (e.g., NIST, ISO 27001, COBIT) and control environments. … general controls, cyber security principles, and technology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau, or similar tools). Familiarity with GRC platforms andrisk data management practices. Experience in a riskmanagement, IT audit, or cyber security role within a financial services or regulated environment. Ability to interpret complex technical data More ❯
of defense. Contribute to the evolution of the Technology and Cyber Riskand Control Framework through data-driven insights. Ensure alignment of analytics activities with regulatory expectations and internal governance standards. Drive continuous improvement in risk data quality, reporting processes, and analytics capabilities. Qualifications The Requirements: Skills: Strong knowledge of riskmanagement frameworks (e.g., NIST, ISO 27001, COBIT) and control … general controls, cyber security principles, and technology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau, or similar tools). Familiarity with GRC platforms andrisk data management practices. Experience in a riskmanagement, IT audit, or cyber security role within a financial services or regulated environment. Ability to interpret complex technical data More ❯
As a Senior Product Manager , your focus will be on our Governance, RiskandCompliance, (GRC) product , you will define and drive the end-to-end product vision and strategy for your area. You will work closely with customers to understand their needs and pain points and prioritize and sequence feature development and releases leading to significant and tangible business … What You'll Need Undergraduate degree or equivalent combination of education and experience in a related field 6 years of related experience in Product Management Experience within Audit or Governance, Risk & Compliance (GRC) Preferred qualifications A proven track record of leading the development of product vision and strategy Shipped products with great customer experience user reviews A self-starter mindset … to execute in a fast-paced environment with minimal direction An excellent understanding of product development and how web technologies work Working knowledge of Audit or Governance, Risk & Compliance (GRC) space or with related subject matter Strong Leadership skills - the ability to influence and inspire across multiple teams and job functions Strong analytical, problem solving, and prioritization skills Experience working More ❯
Join our Cyber Security Team as a Governance, RiskandCompliance Analyst. If you have been involved in practical aspects of GRC including ISO270001, want to work with a team of dedicated professionals and are able to understand wider business impacts of GRC on a business, please read more and apply. Location We operate a flexible, hybrid working environment with … wellness and employee assistance programmes, gymflex, buy and sell annual leave, travel and dental insurance Work. Life. Smarter. Our commitment to a flexible and hybrid working culture As a GRC Analyst you will: Support the development and maintenance of our Information Security Management System (ISMS) including policies, objectives, andrisk assessments Assist with internal audits and help prepare for external More ❯
Appropriate applicants will have: A strong sales track record against quotas, with a new business sales edge. Experience selling investment technology solutions. Although regtech/regulatory/compliance/GRC technology sales experience would of course be interesting to our client, it's by no means a pre-requisite as buy side technology sales track record and personal attributes are More ❯
to reduce manual intervention and operational burden. Champion observability best practices (metrics, traces, logs) and error budget tracking. Promote DevOps culture and continuous feedback loops between engineering and operations. Governance, Risk & Compliance: Ensure operational processes comply with security, privacy, and regulatory requirements (e.g., SOC 2, ISO 27001). Manage operational risks, service continuity plans, and audit readiness. If you feel More ❯
and logging infrastructure, ensuring effective SIEM (Security Information and Event Management) operations. Support security audits for PCI, SOC2, ISO, and other compliance frameworks, gathering evidence and collaborating with Engineering, GRCand the broader Security Division. Proactively enhance security operations by developing and deploying new detections, security tooling and rigorously managing key security partners. Work on security investigations, incidents, and urgent More ❯
Diligent is the AI leader in governance, riskandcompliance (GRC) SaaS solutions, helping more than 1 million users and 700,000 board members to clarify riskand elevate governance. The Diligent One Platform gives practitioners, the C-Suite and the board a consolidated view of their entire GRC practice so they can more effectively manage risk, build greater resilience … diversity through our Employee Resource Groups and provide access to resources and education to support the education of our team, facilitate dialogue, and foster understanding. Diligent created the modern governance movement. Our world-changing idea is to empower leaders with the technology, insights and connections they need to drive greater impact and accountability to lead with purpose. Our employees are More ❯
the market, and how to respond. At the same time, regulations are tightening. From data protection requirements to the Online Safety Act, organisations face growing pressure to demonstrate strong governanceand accountability. For sectors like finance, healthcare, energy and the public sector, this is especially urgent. Digital transformation is also playing a role. As cloud adoption accelerates and hybrid working … teams and forensic analysts. Supply chain risk is under the spotlight Breaches linked to third-party providers have exposed vulnerabilities beyond company walls. In response, organisations are investing in governance, riskandcompliance roles to help manage vendor relationships and strengthen oversight. AI is creating both opportunities and risks Artificial intelligence is helping defenders automate responses and improve detection. But … Typical salary: £40,000 to £60,000 Cloud Security Engineer - Experts in building and securing infrastructure in AWS, Azure or Google Cloud. Typical salary: £70,000 to £100,000 GRC Specialist - Professionals who align security with risk, complianceandgovernance frameworks. Typical salary: £60,000 to £90,000 IAM Lead - Focused on identity and access management, a vital area as More ❯
securing the NAO's digital future. We're on the lookout for passionate, curious, and collaborative security professionals across a wide range of specialisms. Whether your expertise lies in governance, engineering, threat detection, or cloud security, you'll find real scope to make an impact-both within InfoSec and across the wider organisation. -Be part of a diverse and expanding … purpose, and maintaining them in line with ISO27001 requirements, NCSC best practise, and alignment with HMG standards. o Support in develop and implement a Product Assurance framework with the GRC team. Own the process to deliver meaningful assurance as we integrate new products into the environment. o Reviewing and managing the Information Asset Inventory assessments, assessing the technical control performance … across our technology estate. o Supporting in training requirements across the organisation. o Ownership of regular reporting for senior stakeholders. o Supporting GRC in driving NIST maturity, taking ownership of assigned areas. Technical o Own the Data Loss Prevention controls developing new controls and refining existing. o Facilitate eDiscovery activities. o Own InfoSec's DR Incident Response plans and testing More ❯
deliver on engagements, managing multiple internal and external stakeholders. Projects will vary and may include internal audits, implementation or review of internal and financial control frameworks, enterprise riskmanagement, governanceriskand control (GRC), Sarbanes-Oxley (SoX) implementations or reviews, riskand control automation, and performance improvement. Support the execution and daily deliverables of a portfolio of client projects, ensuring More ❯