and conversion. What We're Looking For: 3+ years of experience in business development/sales with experience selling cyber security services (e.g., SOC/Managed D&R, Pentesting, GRC consulting, security training etc.) Proven strong business development and lead generation skills. A confident communicator who enjoys building and maintaining relationships. Excellent English communication skills (both written and spoken). More ❯
and conversion. What We're Looking For: 3+ years of experience in business development/sales with experience selling cyber security services (e.g., SOC/Managed D&R, Pentesting, GRC consulting, security training etc.) Proven strong business development and lead generation skills. A confident communicator who enjoys building and maintaining relationships. Excellent English communication skills (both written and spoken). More ❯
of our Insurance clients on a 12-month contract. Inside IR35 Hybrid Responsibilities: Analyze large datasets to identify trends, anomalies, and emerging risks across technology and cyber domains. Support governanceandrisk forums with timely and accurate reporting on key risk indicators (KRIs), control effectiveness, and remediation progress. Develop and maintain dashboards and reports to visualize technology and cyber risk … general controls, cyber security principles, and technology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau, or similar tools). Familiarity with GRC platforms andrisk data management practices. Experience in a riskmanagement, IT audit, or cyber security role within a financial services or regulated environment. Experience: Educated to degree level or More ❯
The GRC Analyst will play a pivotal role in ensuring effective governance, risk, andcompliance practices within the organisation's technology department. This position requires a keen eye for detail and the ability to support riskmanagement processes in a not-for-profit environment. Client Details An UK leading housing group with a significant focus on technology-driven initiatives. It … is committed to delivering impactful services and maintaining high standards of governanceandcompliance across its operations. Description Support the development and implementation of governance, risk, andcompliance frameworks within the technology department. Monitor and assess risks, ensuring they are effectively identified, documented, and mitigated where necessary. Conduct regular audits and reviews to ensure compliance with organisational and regulatory standards. … stakeholders. Stay updated on relevant industry regulations and standards, ensuring the organisation remains compliant. Support the resolution of compliance-related incidents and recommend improvements to processes. Profile A successful GRC Analyst should have: Experience in governance, risk, andcompliance within a technology-focused environment. Strong analytical and problem-solving skills with a detail-oriented mindset. Knowledge of relevant industry regulations More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Michael Page Technology
The GRC Analyst will play a pivotal role in ensuring effective governance, risk, andcompliance practices within the organisation's technology department. This position requires a keen eye for detail and the ability to support riskmanagement processes in a not-for-profit environment. Client Details An UK leading housing group with a significant focus on technology-driven initiatives. It … is committed to delivering impactful services and maintaining high standards of governanceandcompliance across its operations. Description Support the development and implementation of governance, risk, andcompliance frameworks within the technology department. Monitor and assess risks, ensuring they are effectively identified, documented, and mitigated where necessary. Conduct regular audits and reviews to ensure compliance with organisational and regulatory standards. … stakeholders. Stay updated on relevant industry regulations and standards, ensuring the organisation remains compliant. Support the resolution of compliance-related incidents and recommend improvements to processes. Profile A successful GRC Analyst should have: Experience in governance, risk, andcompliance within a technology-focused environment. Strong analytical and problem-solving skills with a detail-oriented mindset. Knowledge of relevant industry regulations More ❯
Operational Efficiency: Oversee end-to-end workflows (model improvement, versioning, monitoring) to support real-time personalisation and advanced analytics, focusing on architectural integrity rather than hands-on coding. Ensuring Governance & Quality Establish Strong Data Governance: Partner with the Data Governance Manager to define schema management, metadata frameworks (e.g., OpenMetadata), and data quality controls, promoting data democratisation and self-service. Adhere … Iceberg, Parquet, and other solutions for large-scale data processing. AI/ML & Analytics Background Competent in ML & analytics, with exposure to LLMOps and MLOps practices (pipeline automation, model governance). Comfortable leading the architecture of AI solutions rather than day-to-day model development. Governance, Security & Compliance Mindset Skilled in defining and enforcing data governance standards while upholding regulatory … you. Join FDJ United's A&I Department and help us shape the future of responsible, data-driven entertainment on a global scale. Ensure that you adhere to the Governance, Risk & Compliance (GRC) obligations for your role. Identify and raise any non-compliance incidents promptly to your line manager. Challenge processes, policies and projects that will negatively impact compliance within More ❯
Information Security GRC Manager | ISO27001, SOC2, Azure Security | Global Trading Platform £70–80k base + 10% bonus Hybrid in London Training budget for certifications + conference attendance Strong emphasis on professional autonomy and ethical leadership A newly created opportunity to lead and shape the GRC function of a global financial group at a pivotal time, supporting the secure rollout of … required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with complexity: able to analyze architecture, track metrics, and translate acronyms into actionable plans Mentorship ability … ready to step up, guide analysts, and model high-integrity InfoSec practice What you’ll be doing: GRC ownership: maintain ISO27001 and SOC2 certifications, policies, and the Information Security Management System Third-party riskmanagement: oversee supplier assessments, support junior analysts, and guide reviews via Panorays Security awareness & training: manage phishing simulations and content using Proofpoint Security architecture reviews: support More ❯
Information Security GRC Manager | ISO27001, SOC2, Azure Security | Global Trading Platform £70–80k base + 10% bonus Hybrid in London Training budget for certifications + conference attendance Strong emphasis on professional autonomy and ethical leadership A newly created opportunity to lead and shape the GRC function of a global financial group at a pivotal time, supporting the secure rollout of … required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with complexity: able to analyze architecture, track metrics, and translate acronyms into actionable plans Mentorship ability … ready to step up, guide analysts, and model high-integrity InfoSec practice What you’ll be doing: GRC ownership: maintain ISO27001 and SOC2 certifications, policies, and the Information Security Management System Third-party riskmanagement: oversee supplier assessments, support junior analysts, and guide reviews via Panorays Security awareness & training: manage phishing simulations and content using Proofpoint Security architecture reviews: support More ❯
Information Security GRC Manager | ISO27001, SOC2, Azure Security | Global Trading Platform £70–80k base + 10% bonus Hybrid in London Training budget for certifications + conference attendance Strong emphasis on professional autonomy and ethical leadership A newly created opportunity to lead and shape the GRC function of a global financial group at a pivotal time, supporting the secure rollout of … required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with complexity: able to analyze architecture, track metrics, and translate acronyms into actionable plans Mentorship ability … ready to step up, guide analysts, and model high-integrity InfoSec practice What you’ll be doing: GRC ownership: maintain ISO27001 and SOC2 certifications, policies, and the Information Security Management System Third-party riskmanagement: oversee supplier assessments, support junior analysts, and guide reviews via Panorays Security awareness & training: manage phishing simulations and content using Proofpoint Security architecture reviews: support More ❯
london (city of london), south east england, united kingdom
Prism Digital
Information Security GRC Manager | ISO27001, SOC2, Azure Security | Global Trading Platform £70–80k base + 10% bonus Hybrid in London Training budget for certifications + conference attendance Strong emphasis on professional autonomy and ethical leadership A newly created opportunity to lead and shape the GRC function of a global financial group at a pivotal time, supporting the secure rollout of … required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with complexity: able to analyze architecture, track metrics, and translate acronyms into actionable plans Mentorship ability … ready to step up, guide analysts, and model high-integrity InfoSec practice What you’ll be doing: GRC ownership: maintain ISO27001 and SOC2 certifications, policies, and the Information Security Management System Third-party riskmanagement: oversee supplier assessments, support junior analysts, and guide reviews via Panorays Security awareness & training: manage phishing simulations and content using Proofpoint Security architecture reviews: support More ❯
Success or similar roles within enterprise software, preferably in security or systems integration. Proven experience managing strategic and enterprise-level customers with measurable success. Strong understanding of network security, governance, audit, risk, andcompliance practices. Customer-first mindset, highly proactive, and comfortable with client-facing engagements (calls/visits). Excellent consulting, project management, and data-driven decision-making skills. More ❯
South West London, London, United Kingdom Hybrid / WFH Options
Anson Mccade
Doing Advise senior stakeholders on cyber security strategy to support digital and operational transformation Lead the design and delivery of cyber transformation programmes across complex organisations Develop and implement governanceand operating models to improve cyber maturity and regulatory readiness Assess enterprise riskand define strategic roadmaps to embed security across business operations Solve critical cyber challenges across diverse industries … and client environments What You'll Bring Strong experience in cyber strategy, riskmanagement, governance, architecture, and regulatory compliance Familiarity with frameworks and standards such as NIST CSF, ISO27001, NCSC CAF, GDPR, and NIS2 Industry-recognised certifications (e.g. CISSP, CISM, CISA, M.Inst.ISP, or equivalent) Practical experience in GRC, threat and vulnerability management, or operational resilience Proven delivery across complex programmes More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
gap analysis, remediation, certification readiness, and continual improvement. You'll collaborate with senior stakeholders across industries to deliver strategic advisory and hands-on implementation of information security governance, riskmanagement, andcompliance Key Responsibilities Lead ISO 27001 implementation projects from initial assessment through to certification Conduct gap analysis tailored to private sector risk profiles and commercial priorities Facilitate risk assessments More ❯
I’m currently working with a business that is looking to hire a Group Cyber GRC Manager. This is a fantastic opportunity to take ownership of a global cyber GRC function, shaping strategy and driving maturity across a complex, multinational environment. The Role Define and deliver the strategic roadmap for global Cyber GRC. Lead and develop a high-performing team … data-driven insights and dashboards for senior stakeholders. Champion a strong security culture and continuous improvement mindset. What they are looking for: Proven success leading high-performing security or GRC teams. Expertise in cyber riskmanagement, frameworks, and assurance. Strong stakeholder engagement and communication skills. Experience in large, federated, and complex global organisations would be particularly valuable. Certifications such as More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Barclay Simpson
I’m currently working with a business that is looking to hire a Group Cyber GRC Manager. This is a fantastic opportunity to take ownership of a global cyber GRC function, shaping strategy and driving maturity across a complex, multinational environment. The Role Define and deliver the strategic roadmap for global Cyber GRC. Lead and develop a high-performing team … data-driven insights and dashboards for senior stakeholders. Champion a strong security culture and continuous improvement mindset. What they are looking for: Proven success leading high-performing security or GRC teams. Expertise in cyber riskmanagement, frameworks, and assurance. Strong stakeholder engagement and communication skills. Experience in large, federated, and complex global organisations would be particularly valuable. Certifications such as More ❯
london, south east england, united kingdom Hybrid / WFH Options
Barclay Simpson
I’m currently working with a business that is looking to hire a Group Cyber GRC Manager. This is a fantastic opportunity to take ownership of a global cyber GRC function, shaping strategy and driving maturity across a complex, multinational environment. The Role Define and deliver the strategic roadmap for global Cyber GRC. Lead and develop a high-performing team … data-driven insights and dashboards for senior stakeholders. Champion a strong security culture and continuous improvement mindset. What they are looking for: Proven success leading high-performing security or GRC teams. Expertise in cyber riskmanagement, frameworks, and assurance. Strong stakeholder engagement and communication skills. Experience in large, federated, and complex global organisations would be particularly valuable. Certifications such as More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Barclay Simpson
I’m currently working with a business that is looking to hire a Group Cyber GRC Manager. This is a fantastic opportunity to take ownership of a global cyber GRC function, shaping strategy and driving maturity across a complex, multinational environment. The Role Define and deliver the strategic roadmap for global Cyber GRC. Lead and develop a high-performing team … data-driven insights and dashboards for senior stakeholders. Champion a strong security culture and continuous improvement mindset. What they are looking for: Proven success leading high-performing security or GRC teams. Expertise in cyber riskmanagement, frameworks, and assurance. Strong stakeholder engagement and communication skills. Experience in large, federated, and complex global organisations would be particularly valuable. Certifications such as More ❯
offices so that we're able to interact and collaborate in person. About the Role In this role you will be instrumental in helping us maintain and mature our governance, risk, andcompliance program. You'll play a crucial part in ensuring our ongoing adherence to security standards and regulations, building a foundation of trust for our clients and stakeholders. … with our Engineering, Product and Security Operations teams to embed security controls into our processes and culture. Continuous Improvement: Identify opportunities to improve the effectiveness and efficiency of our GRC program and related processes. Essential A minimum of 3 years of experience in an information security role. Proven experience in supporting and managing compliance efforts for ISO 27001, SOC … and PCI DSS. Strong skills in security metrics and reporting. Experience with audit processes and evidence collection. A proactive, organized, and detail-oriented approach to your work. Experience with GRC software is a plus. Desired qualifications, if you have some of these great! CompTIA Security+ Certified Information Systems Auditor (CISA) Certified in Riskand Information Systems Control (CRISC) Certified Information More ❯
level technical design. Platform Strategy & Roadmapping: Develop and articulate ServiceNow platform strategies and roadmaps, identifying opportunities for leveraging out-of-the-box capabilities, integrations, and strategic customizations. Technical Advisory & Governance: Act as a subject matter expert and technical advisor to clients and internal teams, providing guidance on platform capabilities, performance optimization, security, and scalability. Establish technical governance to ensure solution … and implement end-to-end ServiceNow solutions across multiple modules. Deep understanding of the ServiceNow platform architecture, data model, and security framework. Expertise in ServiceNow best practices, including platform governance, performance optimization, and security hardening. Proven experience with large-scale ServiceNow implementations and complex integrations. Strong analytical and problem-solving skills with the ability to articulate complex technical concepts to … both technical and non-technical audiences. Experience with Agile development methodologies. Relevant ServiceNow certifications (e.g., Certified Master Architect, Certified Technical Architect, Certified Application Developer, Certified System Administrator). ServiceNow GRC & SecOps More ❯
level technical design. Platform Strategy & Roadmapping: Develop and articulate ServiceNow platform strategies and roadmaps, identifying opportunities for leveraging out-of-the-box capabilities, integrations, and strategic customizations. Technical Advisory & Governance: Act as a subject matter expert and technical advisor to clients and internal teams, providing guidance on platform capabilities, performance optimization, security, and scalability. Establish technical governance to ensure solution … and implement end-to-end ServiceNow solutions across multiple modules. Deep understanding of the ServiceNow platform architecture, data model, and security framework. Expertise in ServiceNow best practices, including platform governance, performance optimization, and security hardening. Proven experience with large-scale ServiceNow implementations and complex integrations. Strong analytical and problem-solving skills with the ability to articulate complex technical concepts to … both technical and non-technical audiences. Experience with Agile development methodologies. Relevant ServiceNow certifications (e.g., Certified Master Architect, Certified Technical Architect, Certified Application Developer, Certified System Administrator). ServiceNow GRC & SecOps More ❯
level technical design. Platform Strategy & Roadmapping: Develop and articulate ServiceNow platform strategies and roadmaps, identifying opportunities for leveraging out-of-the-box capabilities, integrations, and strategic customizations. Technical Advisory & Governance: Act as a subject matter expert and technical advisor to clients and internal teams, providing guidance on platform capabilities, performance optimization, security, and scalability. Establish technical governance to ensure solution … and implement end-to-end ServiceNow solutions across multiple modules. Deep understanding of the ServiceNow platform architecture, data model, and security framework. Expertise in ServiceNow best practices, including platform governance, performance optimization, and security hardening. Proven experience with large-scale ServiceNow implementations and complex integrations. Strong analytical and problem-solving skills with the ability to articulate complex technical concepts to … both technical and non-technical audiences. Experience with Agile development methodologies. Relevant ServiceNow certifications (e.g., Certified Master Architect, Certified Technical Architect, Certified Application Developer, Certified System Administrator). ServiceNow GRC & SecOps More ❯
london (city of london), south east england, united kingdom
HCLTech
level technical design. Platform Strategy & Roadmapping: Develop and articulate ServiceNow platform strategies and roadmaps, identifying opportunities for leveraging out-of-the-box capabilities, integrations, and strategic customizations. Technical Advisory & Governance: Act as a subject matter expert and technical advisor to clients and internal teams, providing guidance on platform capabilities, performance optimization, security, and scalability. Establish technical governance to ensure solution … and implement end-to-end ServiceNow solutions across multiple modules. Deep understanding of the ServiceNow platform architecture, data model, and security framework. Expertise in ServiceNow best practices, including platform governance, performance optimization, and security hardening. Proven experience with large-scale ServiceNow implementations and complex integrations. Strong analytical and problem-solving skills with the ability to articulate complex technical concepts to … both technical and non-technical audiences. Experience with Agile development methodologies. Relevant ServiceNow certifications (e.g., Certified Master Architect, Certified Technical Architect, Certified Application Developer, Certified System Administrator). ServiceNow GRC & SecOps More ❯
Are you passionate about riskmanagement, compliance, and protecting organisational integrity? Join a team as a Governance, Risk & Compliance (GRC) Analyst and play a pivotal role in strengthening our operational resilience and regulatory alignment. About the Role As the GRC Analyst, you’ll work closely with process owners, auditors, and stakeholders to monitor and address riskandcompliance issues. You … ll be responsible for administering ISO 27001, ISO 22301, and PCI compliance programs, managing audits, and overseeing our GRC tooling to ensure it’s configured and maintained to the highest standards. Key Responsibilities Own and manage the GRC tool and vendor relationship Lead risk assessments, compliance reviews, and validation testing Support and manage ISO 27001, 22301, and other audits Maintain … a central repository for audit evidence Develop and enhance the GRC framework in line with best practices Collaborate across teams to identify and mitigate IT and business risks Maintain the IT Risk Register and RoPA Align closely with the Group Risk function and Head of Audit What We’re Looking For Strong computer literacy and adaptability to niche IT systems More ❯
Are you passionate about riskmanagement, compliance, and protecting organisational integrity? Join a team as a Governance, Risk & Compliance (GRC) Analyst and play a pivotal role in strengthening our operational resilience and regulatory alignment. About the Role As the GRC Analyst, you’ll work closely with process owners, auditors, and stakeholders to monitor and address riskandcompliance issues. You … ll be responsible for administering ISO 27001, ISO 22301, and PCI compliance programs, managing audits, and overseeing our GRC tooling to ensure it’s configured and maintained to the highest standards. Key Responsibilities Own and manage the GRC tool and vendor relationship Lead risk assessments, compliance reviews, and validation testing Support and manage ISO 27001, 22301, and other audits Maintain … a central repository for audit evidence Develop and enhance the GRC framework in line with best practices Collaborate across teams to identify and mitigate IT and business risks Maintain the IT Risk Register and RoPA Align closely with the Group Risk function and Head of Audit What We’re Looking For Strong computer literacy and adaptability to niche IT systems More ❯
Are you passionate about riskmanagement, compliance, and protecting organisational integrity? Join a team as a Governance, Risk & Compliance (GRC) Analyst and play a pivotal role in strengthening our operational resilience and regulatory alignment. About the Role As the GRC Analyst, you’ll work closely with process owners, auditors, and stakeholders to monitor and address riskandcompliance issues. You … ll be responsible for administering ISO 27001, ISO 22301, and PCI compliance programs, managing audits, and overseeing our GRC tooling to ensure it’s configured and maintained to the highest standards. Key Responsibilities Own and manage the GRC tool and vendor relationship Lead risk assessments, compliance reviews, and validation testing Support and manage ISO 27001, 22301, and other audits Maintain … a central repository for audit evidence Develop and enhance the GRC framework in line with best practices Collaborate across teams to identify and mitigate IT and business risks Maintain the IT Risk Register and RoPA Align closely with the Group Risk function and Head of Audit What We’re Looking For Strong computer literacy and adaptability to niche IT systems More ❯