and care system and to provide advice which empowers health and care staff to share information appropriately and securely to deliver care. The JCU is comprised of two divisions: Governance, RiskandCompliance - cyber and information governance, system engagement, system compliance, system supply chain, system riskmanagementand internal JCU business operations. Strategy and Policy - development and implementation of national More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
William Hill PLC
for the Principal Security Architect, and represent security in wider forums. Support and develop the Enterprise Security Architecture team through career progression, coaching, and collaboration with Security Operations andGRC functions. Who we are looking for Extensive experience in Enterprise Security Architecture, hands-on technical security, and the design and implementation of security solutions Proficient in security modelling, frameworks, and … tools (e.g., SparxEA, Archi) with deep knowledge of security principles, methodologies, and industry standards (NIST, ISO 27001, PCI-DSS, GDPR) Skilled in threat andrisk modelling, governance, and aligning security controls with business strategy, regulation, and technical constraints Stakeholder engagement and communication skills, with experience in both Agile and Waterfall environments; holds or is pursuing certifications such as SABSA, CISSP More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
Job Title: Governance, Risk & Compliance Specialist Type: Full Time & Permanent Location: Hybrid/Manchester Salary: £55,000 per annum About the Role: We are seeking an experienced GRC professional to strengthen information security andcompliance posture. This role is ideal for someone with a strong background in governance frameworks, riskmanagement, and regulatory compliance, who can work collaboratively across business … the highest standards of data protection and operational resilience. This is an opportunity to help a growing security department, intent on delivering services to the wider group. Key Responsibilities: Governance: Develop, implement, and maintain security andcompliance policies aligned with business objectives. RiskManagement: Identify, assess, and mitigate information security and operational risks across the enterprise. Compliance: Ensure ongoing compliance … Support internal and external audits, producing clear reports and recommendations. Awareness: Promote a culture of complianceandrisk awareness through training and engagement initiatives. Essential Skills: Proven experience in governance, risk, andcompliance within a technology-driven environment. Strong knowledge of ISO 27001, GDPR, andriskmanagement methodologies. Ability to interpret and apply regulatory requirements to business processes. Excellent communication More ❯
bolton, greater manchester, north west england, united kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
Job Title: Governance, Risk & Compliance Specialist Type: Full Time & Permanent Location: Hybrid/Manchester Salary: £55,000 per annum About the Role: We are seeking an experienced GRC professional to strengthen information security andcompliance posture. This role is ideal for someone with a strong background in governance frameworks, riskmanagement, and regulatory compliance, who can work collaboratively across business … the highest standards of data protection and operational resilience. This is an opportunity to help a growing security department, intent on delivering services to the wider group. Key Responsibilities: Governance: Develop, implement, and maintain security andcompliance policies aligned with business objectives. RiskManagement: Identify, assess, and mitigate information security and operational risks across the enterprise. Compliance: Ensure ongoing compliance … Support internal and external audits, producing clear reports and recommendations. Awareness: Promote a culture of complianceandrisk awareness through training and engagement initiatives. Essential Skills: Proven experience in governance, risk, andcompliance within a technology-driven environment. Strong knowledge of ISO 27001, GDPR, andriskmanagement methodologies. Ability to interpret and apply regulatory requirements to business processes. Excellent communication More ❯
warrington, cheshire, north west england, united kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
Job Title: Governance, Risk & Compliance Specialist Type: Full Time & Permanent Location: Hybrid/Manchester Salary: £55,000 per annum About the Role: We are seeking an experienced GRC professional to strengthen information security andcompliance posture. This role is ideal for someone with a strong background in governance frameworks, riskmanagement, and regulatory compliance, who can work collaboratively across business … the highest standards of data protection and operational resilience. This is an opportunity to help a growing security department, intent on delivering services to the wider group. Key Responsibilities: Governance: Develop, implement, and maintain security andcompliance policies aligned with business objectives. RiskManagement: Identify, assess, and mitigate information security and operational risks across the enterprise. Compliance: Ensure ongoing compliance … Support internal and external audits, producing clear reports and recommendations. Awareness: Promote a culture of complianceandrisk awareness through training and engagement initiatives. Essential Skills: Proven experience in governance, risk, andcompliance within a technology-driven environment. Strong knowledge of ISO 27001, GDPR, andriskmanagement methodologies. Ability to interpret and apply regulatory requirements to business processes. Excellent communication More ❯
BA1, Bath, Bath and North East Somerset, Somerset, United Kingdom
YT Technologies
and other relevant frameworks. RiskManagement: Lead the information security riskmanagement program, including the identification, assessment, mitigation, and monitoring of risks across all systems and operations. Policy andGovernance: Support and oversee the creation and enforcement of security policies, standards, and procedures. Incident Response: Develop, implement, and manage the security incident response plan. Leadership: Provide strong leadership and mentorship … to the governance, risk, andcompliance team. Essential Requirements: Extensive security leadership: Proven experience (10+ years) in a senior information security role, with significant experience in a CISO or equivalent position within a software development or health technology environment UK health sector experience: In-depth knowledge and practical experience with UK healthcare security standards and regulations, including demonstrable expertise with … track record in developing, leading, and managing security incident response plans, including experience with major incident handling and communication with regulatory bodies (eg NCSC, ICO, NHS England). Policy & governance: Extensive experience in developing, implementing, and enforcing comprehensive information security policies, standards, and procedures. Regulatory compliance: Solid understanding of UK and EU data protection laws (eg GDPR, Data Protection Act More ❯
Cyber Security ComplianceandGovernance Analyst £50-60k Manchester We are looking for a dedicated and enthusiastic Cyber Security ComplianceandGovernance analyst to join our Cyber Security team. You will be responsible for supporting and ensuring compliance with the client's cyber security governance, riskand compliance. The role is key to ensuring that security controls, policies and … that IT services are aligned with business needs and comply with industry and internal standards. Key Accountabilities: The primary duties consist of, but are not limited to the following: Governanceand Policy Management Leading the development, review and implementation of information security policies, standards and procedures. Ensuring policies remain up-to-date with applicable regulations, frameworks and best practices (eg More ❯
controls; assess the end-to-end cyber control environment, benchmark maturity against standards, and report gaps and risks. Review cloud and SaaS services for secure configuration, resilience, and vendor governance, using independent assurance to validate management's remediation. Apply data analytics for population testing and anomaly detection, develop repeatable scripts to increase coverage, report issues with clear severity, and track … requests, and walkthroughs to minimize duplication. Partner with IT and Finance to implement pragmatic remediation and enhance control design, while continuously improving audit methodology, workpapers, templates, analytics libraries, andGRC workflows. This list is not exhaustive and may be added to or amended from time to time. What we're looking for: Bachelor's degree in IT, Computer Science, Information More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
implement Oracle controls for a wide range of clients across multiple industries. This includes applying knowledge of Oracle Cloud emerging technology such as AI Agents and leveraging Oracle RiskManagement & ComplianceGRC modules to drive improvements throughout the control lifecycle from assessing risks to implementing, monitoring and assessing controls. As a Manager focussing on Oracle controls in our Controls Advisory … across areas including: business process controls, application security/role based access controls, segregation of duties, IT general controls, programme management controls, etc; Assessing, designing and implementing Oracle RiskManagementandCompliance (RMC) modules; Applying your riskand controls experience to support clients in meeting specific requirements e.g. SOX, UK corporate reform; Guiding, managing and leading team members within an More ❯