Oliver James are partnered with a globally renowned reinsurance company in their search for a Cyber Security Governance, Risk & Compliance (GRC) and Third-Party RiskManagement (TPRM) Lead. This role will play a crucial part in strengthening the organisation's security posture, focusing heavily on vendor risk, regulatory readiness, and cyber governance. Oliver James are partnered with a globally renowned … reinsurance company in their search for a Cyber Security Governance, Risk & Compliance (GRC) and Third-Party RiskManagement (TPRM) Lead. This role will play a crucial part in strengthening the organisation's security posture, focusing heavily on vendor risk, regulatory readiness, and cyber governance. Based in the City of London with a flexible hybrid model (average 4 days on-site … and validate vendor security documentation (e.g., SOC 2, ISO 27001), evaluate control effectiveness, and coordinate remediation efforts for identified gaps. Ensure relevant business stakeholders are informed of potential risks. Governance, Risk & Compliance (GRC): Actively contribute to broader GRC initiatives, including: Managing GRC platforms and tools (e.g., control catalogues, issue tracking, policy management). Designing and deploying security awareness programs (e.g. More ❯
Snelshall West, Milton Keynes, Buckinghamshire, England, United Kingdom
DS Smith
packaging solutions, paper products and recycling services in more than 30 different countries across EMEA with over 30,000 colleagues. About the role Reporting to Head of I&T GRC, GovernanceandRisk Lead will be responsible for driving information and cyber security awareness, delivering security awareness training including phishing and facilitation of cyber scenario desktop simulations across central and … risk register, tools, process, reporting and review. You will take responsibility for managing a subset of aspects of ISO 27001 related documentation and control activities. As the I&T GovernanceandRisk Lead you will have the responsibility of aspects of the I&T GRC scope, delegated and assigned by the Head of I&T GRC. Key Accountabilities Engage with More ❯
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports andMore ❯
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports andMore ❯
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports andMore ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Proactive Appointments
basis. Please note, the role is hybrid, with 2-4 days per week on-site. You will assist the Cyber & Information Security Specialist in ensuring our firm adheres to governanceand assurance obligations, such as ISO 27001:22. You will also collaborate closely with the Information Security Technology Manager to safeguard the company using the latest and most advanced security … tools. This multifaceted role combines security governanceand assurance with hands-on technical skills, utilising state-of-the-art security products to proactively protect the firm and its valuable assets. Your organisational skills and responsiveness will be crucial, as you will need to maintain a keen eye for detail and adapt to a flexible work schedule with shifting priorities. A … life assurance, season ticket loan, cycle to work scheme, discounted gym membership and many, many more perks! Information Security Assurance & Cyber Specialist – Key Skills: Highly experienced in information security governance, riskmanagement, and compliance. Demonstrated experience with developing and implementing information security policies, procedures, and standards. Experience with SOC 2, ISO 27001, NIST 800-53 and GDPR compliance frameworks is More ❯
Caldecotte, Milton Keynes, Buckinghamshire, England, United Kingdom
Connells Group HQ
Job Description We are seeking a Senior Security GRC Manager to join our Group Technology team in Milton Keynes . You will play a pivotal role in shaping and advancing our security governance, risk, andcompliance practices across the Group Technology function. You will have a hands-on role to monitor, report on and lead initiatives to strengthen our security … regulatory alignment. This is an exciting opportunity to make a tangible impact, working with a diverse range of stakeholders and supporting the strategic direction of the business. Key Responsibilities: Governance & Compliance : Lead the development, implementation, and continuous improvement of security and technology control frameworks; maintain and update security policies and standards; support governance forums, including Information Security, Business Continuity, and … a culture of continuous improvement, adopting new tools and practices to enhance security; promote security awareness and best practices across the organisation; maintain up-to-date knowledge of technology GRC trends and best practices. Leadership: Deputise for the Head of Security GRC as required; mentor and support colleagues within the team. Experience & Skills Required: Relevant security andcompliance certifications such More ❯
london, south east england, united kingdom Hybrid / WFH Options
ea Change
cross-functional programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governanceandriskmanagement, ensuring regulatory compliance, operational resilience, and smooth customer experience throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements More ❯
slough, south east england, united kingdom Hybrid / WFH Options
ea Change
cross-functional programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governanceandriskmanagement, ensuring regulatory compliance, operational resilience, and smooth customer experience throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
ea Change
cross-functional programme team, ensuring collaboration between internal stakeholders, incumbent provider, and new vendor. Deliver clear, concise ExCo-level reporting, highlighting programme risks, dependencies, and strategic decisions. Drive robust governanceandriskmanagement, ensuring regulatory compliance, operational resilience, and smooth customer experience throughout the transition. Oversee change managementand stakeholder engagement to embed the new service and operating model. Requirements More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Oxford University Press
other stakeholders to promote understanding and conduct training and exercises. The framework must align with compliance standards and contribute to cyber risk reduction, requiring collaboration with the Head of GovernanceRiskandComplianceand the Cyber Security & Resilience Test Lead to develop metrics and maturity reporting. Additionally, the postholder will ensure recovery processes are practical and suitable for OUP's More ❯
Senior Information Security Analyst We are looking for a Senior Information Security Analyst with a strong operational background with a focus on Cyber Security and a working knowledge of GRC to be part of a central team supporting a mixture of security operations ensuring compliance with business needs. This will focus around vulnerability and threat management, making sure security controls More ❯
experts, to ensure our business commitments are delivered with quality and to expectation. · Assessing new technology solutions · Ensuring our non-functional requirements are met regarding performance, scalability, resilience, andGRC requirements (Information security, risk, industry regulation compliance) · Helping to encourage collaboration and product ownership across developers and testers · Ensuring continual shift of secure, quality and tested code activity left · Working More ❯
Type: Full-Time, Permanent About the Company We are a fast-growing SaaS scale-up working with some of the world’s largest enterprises to transform how they manage governance, risk, andcompliance across their supply chains. Our award-winning platform delivers measurable ROI, efficiency, and automation for global businesses — and we’re only just getting started. As part of More ❯
for Senior Cyber Security Risk Analyst to join their dynamic team. This role is an exciting opportunity to be a part of really helping to define and shape what governanceandrisk assurance looks like for the organisation. This will include areas such as building out and developing their education and awareness programme as well as taking ownership over third … years in roles covering riskmanagement, architecture, engineering, or vulnerability management. Relevant certifications and tools knowledge, such as CRISC, CISSP, CGEIT, and experience with platforms like UpGuard, AuditBoard, SAP GRC, and ServiceNow. For more details, please reach out to Mary Pearson on – mary.pearson@sandersonplc.com. More ❯
for Senior Cyber Security Risk Analyst to join their dynamic team. This role is an exciting opportunity to be a part of really helping to define and shape what governanceandrisk assurance looks like for the organisation. This will include areas such as building out and developing their education and awareness programme as well as taking ownership over third … years in roles covering riskmanagement, architecture, engineering, or vulnerability management. Relevant certifications and tools knowledge, such as CRISC, CISSP, CGEIT, and experience with platforms like UpGuard, AuditBoard, SAP GRC, and ServiceNow. For more details, please reach out to Mary Pearson on – mary.pearson@sandersonplc.com. More ❯
for Senior Cyber Security Risk Analyst to join their dynamic team. This role is an exciting opportunity to be a part of really helping to define and shape what governanceandrisk assurance looks like for the organisation. This will include areas such as building out and developing their education and awareness programme as well as taking ownership over third … years in roles covering riskmanagement, architecture, engineering, or vulnerability management. Relevant certifications and tools knowledge, such as CRISC, CISSP, CGEIT, and experience with platforms like UpGuard, AuditBoard, SAP GRC, and ServiceNow. For more details, please reach out to Mary Pearson on - . Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse andMore ❯
Hampshire, South East, United Kingdom Hybrid / WFH Options
Sanderson Government and Defence
Cyber Security GRC Consultant (DV Cleared) Location: Hybrid/Southeast Region - on-site presence required Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role As a Cyber Security Consultant, you will play a pivotal role in delivering Secure by Design riskand security assurance services within MOD and Public Sector environments. You'll collaborate with multi-disciplinary More ❯
Mind Recruitment - Technology, Executive & IT Sales
IT Security, Data, Governance, Risk & Compliance (GRC) specialist to £95,000 plus excellent bonus and benefits package Security & Data Governancemanagement, Risk & Compliance Strong stakeholder management experience ISO27001, NIST, GDPR, Data Governance frameworks Operational effectiveness, risk, compliance, policies, testing procedures Working alongside IT Security, Technology teams globally 3 days per week in the London office, occasional travel This global Insurance … provider is urgently seeking an experienced Data Governance & Security specialist to work in a small team alongside the IT Security and Technology teams to continue to develop and manage the RiskandCompliance requirements across the business. You will have a background in Financial Services and good Project Management skills to work alongside their internal IT Security and Technology teams … to develop, lead and control the governanceand regulatory reporting required across the business. 1st line of defence - laws, compliance, risk, IT governance, security, data Work across various business functions to ensure complianceandrisk assessment Implement industry best practices - ISO27001, GDPR etc Update senior stakeholders across the Group This is an outstanding opportunity for someone who has ideally come More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
PLANET RECRUITMENT SERVICES LTD
external IT support providers and vendors. The IT Director will be responsible for ensuring that our systems are secure, scalable, and aligned with the Firm's high standards of governanceand performance. Key Responsibilities Infrastructure & Operations - Oversee the Firm's cloud-based infrastructure (AVD on Microsoft Azure), ensuring performance, reliability, and scalability. - Oversee the Firm's line of business applications … the Microsoft suite, Teams, CCH Central, Virtual Cabinet, Caseware, Alphatax) - Manage hardware and software lifecycles, including procurement, deployment, and retirement. - Ensure robust update control, patch management, and system monitoring. Governance & Security - Implement and maintain strong IT governance frameworks, including riskmanagementand compliance. - Lead cybersecurity strategy, including threat detection, incident response, and staff awareness training. - Ensure compliance with GDPR andMore ❯
Portsmouth, Hampshire, South East, United Kingdom Hybrid / WFH Options
Robert Half
to best-in-class standards through internationally recognised security certifications and industry-wide assurance frameworks, delivering confidence to clients and meeting regulatory expectations. As a core team member in Governance, Risk, andCompliance (GRC) , you will lead certification efforts, influence operational processes, and engage directly with customers and auditors to showcase security credentials that differentiate our SOC from the competition. More ❯
Cyber Security Consultant – Technical & GRC Focus Salary - £55 - £75 UK-Based | Hybrid | SC Clearance (or Eligible) Are you equally comfortable configuring secure cloud infrastructure and explaining ISO27001 controls to stakeholders? If you thrive at the intersection of technical cyber delivery and security governance , this role is for you. Join a fast-paced team working with UK government and public sector More ❯
Cyber Security Consultant – Technical & GRC Focus Salary - £55 - £75 UK-Based | Hybrid | SC Clearance (or Eligible) Are you equally comfortable configuring secure cloud infrastructure and explaining ISO27001 controls to stakeholders? If you thrive at the intersection of technical cyber delivery and security governance , this role is for you. Join a fast-paced team working with UK government and public sector More ❯
london (city of london), south east england, united kingdom
LT Harper - Cyber Security Recruitment
Cyber Security Consultant – Technical & GRC Focus Salary - £55 - £75 UK-Based | Hybrid | SC Clearance (or Eligible) Are you equally comfortable configuring secure cloud infrastructure and explaining ISO27001 controls to stakeholders? If you thrive at the intersection of technical cyber delivery and security governance , this role is for you. Join a fast-paced team working with UK government and public sector More ❯
and meet strategic goals. Facilitate recurring international meetings by setting agendas, tracking actions, managing time zone/holiday scheduling, and maximising participation. Drive the standardisation of threat intelligence processes, governance, and tooling. Prepare and deliver high-quality executive reports and presentations. Ensure alignment with compliance, risk, and regulatory requirements across multiple jurisdictions. Track progress, identify risks, implement mitigation, and communicate … tools such as MS Project, Jira, Confluence, Teams, SharePoint, Asana, Trello. Expertise in report-writing and analytics platforms such as Power BI, Tableau, and advanced Excel. Experience working with governance/compliance tools (e.g., ServiceNow, Archer GRC). Collaborative leadership style, with strong analytical and problem-solving skills. Ready to shape the future of global threat intelligence project management? Apply More ❯