Milton Keynes, Buckinghamshire, England, United Kingdom
VIQU IT Recruitment
GRC Analyst – 6-month contract – London/Remote – Inside IR35 My Customer is looking for a GRC Analyst to join their Governance, Risk & Compliance (GRC) team. You will play a key role in strengthening their riskmanagement processes, working primarily with Archer and other GRC tools to support risk assessment, compliance, andgovernance activities. In this role, you will be … responsible for identifying, assessing, and tracking security risks across assets, systems, and third parties, ensuring compliance with internal standards, policies, and regulatory frameworks. Key Skills from the GRC Analyst: Strong background in Security RiskandGovernance with hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST …/ISMS Accredited qualifications would be beneficial Experience working in financial sector would be beneficial Experience in ensuring internal IT system compliance against agreed standards Key Responsibilities of the GRC Analyst: Maintain and improve the security risk assessment framework, procedures, and workflows. Manage and update security questionnaires to align with compliance requirements, industry standards, and regulations. Conduct asset-level andMore ❯
Snelshall West, Milton Keynes, Buckinghamshire, England, United Kingdom
DS Smith
packaging solutions, paper products and recycling services in more than 30 different countries across EMEA with over 30,000 colleagues. About the role Reporting to Head of I&T GRC, GovernanceandRisk Lead will be responsible for driving information and cyber security awareness, delivering security awareness training including phishing and facilitation of cyber scenario desktop simulations across central and … risk register, tools, process, reporting and review. You will take responsibility for managing a subset of aspects of ISO 27001 related documentation and control activities. As the I&T GovernanceandRisk Lead you will have the responsibility of aspects of the I&T GRC scope, delegated and assigned by the Head of I&T GRC. Key Accountabilities Engage with More ❯
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports andMore ❯
Gerrards Cross, Buckinghamshire, United Kingdom Hybrid / WFH Options
83zero Ltd
times. Provide audit artefacts and support internal/external audits. Contribute to broader security initiatives and continuous improvement within the organisation. About You 3+ years' experience in Information Security, GRC, or Vendor Risk Management. Strong experience issuing or responding to security questionnaires. Knowledge of ISO 27001 Annex A, SOC 2, and GDPR/CCPA. Excellent communication skills, able to translate More ❯
Chalfont St. Peter, Buckinghamshire, United Kingdom Hybrid / WFH Options
83zero Ltd
times. Provide audit artefacts and support internal/external audits. Contribute to broader security initiatives and continuous improvement within the organisation. About You 3+ years' experience in Information Security, GRC, or Vendor Risk Management. Strong experience issuing or responding to security questionnaires. Knowledge of ISO 27001 Annex A, SOC 2, and GDPR/CCPA. Excellent communication skills, able to translate More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
possess the following? Relevant experience in cybersecurity riskmanagement or equivalent in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards andrisk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32. Strong knowledge of More ❯
london, south east england, united kingdom Hybrid / WFH Options
EDF
AI GovernanceandRisk Lead - London, UK About the Role Here at EDF, we’re looking for a AI GovernanceandRisk Lead to join our team! The Opportunity As the AI GovernanceandRisk Lead, you will support the implementation of EDF UK’s AI Digital Playbook and ensure that AI systems are developed and deployed in line with … ethical, regulatory, and internal governance standards. You’ll work closely with the AI and Automation Governanceand Delivery Manager and the AI Manager to embed robust governance practices across the AI lifecycle, supporting federated teams and ensuring compliance with evolving UK and EU AI regulations. This role is critical to ensuring that EDF’s AI and Automation Centre of Excellence … what it means to succeed. That’s why we support you to pursue a career that’s unique to you. Because success is personal. What you’ll be doing Governance & Compliance Act as an advisor to the AI & Automation Governanceand Delivery Manager in the development and refinement of AI governance policies andriskmanagement frameworks. Contribute to the design More ❯
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports andMore ❯
such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Detail oriented and strong problem-solving skills. Excellent oral and written communication skills including concisely communicating status and creating customer reports andMore ❯
Head of Cyber Governance, RiskandCompliance London | Hybrid | Full-time | Personal Contract Competitive pension scheme – Enhanced maternity/paternity pay – Life assurance – HolidayPlus – Cycle2work Scheme & more REQ5121 As a strategic leader in Governance, RiskandCompliance, you will guide SGN’s cyber security and regulatory approach, ensuring our operations remain secure, resilient and fully compliant. We deliver safety, warmth … comfort to homes and businesses. Every role, whether in the office or on the front line, plays a key part in this mission. Here’s how you will contribute... Governance, Risk & Compliance (GRC) Leadership Lead and manage the GRC team, aligning cyber and business goals while ensuring compliance with NIS-R, ISO27001/2, and NIST-2. Oversee delivery plans … resource allocation, and stakeholder engagement for GRC initiatives. Training & Awareness Develop and maintain SGN’s Information Security training and awareness materials. Integrate lessons learned from incidents and address feedback from training delivery. Information Security Policy & ISMS Maintain a robust portfolio of security policies, standards, and procedures to support ISO27001, NIST, and NIS eCAF compliance. Ensure policies are current, reviewed regularly More ❯
Senior Information Security Analyst We are looking for a Senior Information Security Analyst with a strong operational background with a focus on Cyber Security and a working knowledge of GRC to be part of a central team supporting a mixture of security operations ensuring compliance with business needs. This will focus around vulnerability and threat management, making sure security controls More ❯
Senior Information Security Analyst We are looking for a Senior Information Security Analyst with a strong operational background with a focus on Cyber Security and a working knowledge of GRC to be part of a central team supporting a mixture of security operations ensuring compliance with business needs. This will focus around vulnerability and threat management, making sure security controls More ❯
Security Risk Analyst – 6-month contract – London/Remote – Inside IR35 My Customer is looking for a Security Risk Analyst to join their Governance, Risk & Compliance (GRC) team. You will play a key role in strengthening their riskmanagement processes, working primarily with Archer and other GRC tools to support risk assessment, compliance, andgovernance activities. In this role, you … risks across assets, systems, and third parties, ensuring compliance with internal standards, policies, and regulatory frameworks. Key Skills from the Security Risk Analyst: Strong background in Security RiskandGovernance with hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO 270001), andcompliance requirements (GDPR More ❯
the need for Sponsorship We're looking for a Compliance Manager to support and evolve the compliance function for a telecoms organisation based in Theale. Reporting to the Senior Governance, Risk & Compliance Counsel, you'll lead the development and implementation of compliance programs that mitigate legal and regulatory risks while embedding a culture of ethical and operational integrity. Key Responsibilities More ❯
security leader with a blend of strategic vision and operational expertise. You should bring: Proven experience defining and executing cyber security strategy at a senior level Strong knowledge of governance, risk, compliance, and regulatory frameworks Leadership experience managing cyber security operations teams Excellent stakeholder management skills, including board-level engagement The ability to represent the organisation externally with authority andMore ❯
Milton Keynes, Buckinghamshire, England, United Kingdom
Lorien
of regulatory frameworks, compliance, and technology standards. Proven ability to influence stakeholders and manage risk appetite decisions. Experience managing audits and large-scale risk assessments. Desirable Qualifications: Familiarity with GRC tools and data analytics. Professional certifications (e.g., CRMP, CIA). Carbon60, Lorien & SRG - The Impellam Group STEM Portfolio are acting as an Employment Business in relation to this vacancy. More ❯
Horsham, West Sussex, South East, United Kingdom Hybrid / WFH Options
Platform Recruitment Limited
Wi-Fi, and email security platforms Acting as the main contact for our outsourced SOC and overseeing incident response Running pen tests, vulnerability scans, and regular security assessments Owning governance, risk, andcompliance activities (ISO 27001, Cyber Essentials) Delivering supplier risk assessments and secure onboarding processes What were looking for Strong technical security knowledge across cloud platforms (Office 365, Azure More ❯
Snelshall West, Milton Keynes, Buckinghamshire, England, United Kingdom
DS Smith
and flexibility to support the demands of a FTSE 100 business.Supporting Head of Information Security Architecture and Assurance as well as working closely with key stakeholders including Head of Governance, RiskandCompliance, Digital Security, IT and business teams you will focus on core areas such as riskmanagementand security due-diligence reviews ensuring compliance with legal, regulatory andMore ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Robert Walters
Proven experience as a ServiceNow Architect, with a strong portfolio of designing and implementing solutions across various modules. Demonstrated expertise in the implementation and configuration of the IRM andGRC modules within ServiceNow. Exceptional communication skills, with the capacity to liaise effectively with both technical and non-technical stakeholders. Experience in leading data migration projects, with a focus on maintaining More ❯
experts, to ensure our business commitments are delivered with quality and to expectation. · Assessing new technology solutions · Ensuring our non-functional requirements are met regarding performance, scalability, resilience, andGRC requirements (Information security, risk, industry regulation compliance) · Helping to encourage collaboration and product ownership across developers and testers · Ensuring continual shift of secure, quality and tested code activity left · Working More ❯
Overview Once For All is a high-growth, cloud-based, SaaS subscription business. Our technology helps our customers to manage their supply chain governance, riskmanagementand compliance. We work across public and private sector and have over 250k customers across the UK across 20 different sectors including construction, transport, retail, hospitality education, facility and property management, manufacturing, local andMore ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
looking for an Information Security Analyst to join their team. This is an excellent opportunity to play a key role in advancing the company's security posture by delivering Governance, Risk, andCompliance (GRC) initiatives and embedding the NIST Cyber Security Framework (CSF) across the business. Key skills/responsibilities: Deliver day-to-day GRC activities, including designing and implementing … reviews and updates to ensure controls remain effective against evolving threats Essential skills: Minimum 2 year's experience in information security, with a solid understanding of security control andgovernance frameworks Experience in developing security controls catalogue in a financial services environment (highly desirable) Proven experience in delivering security projects within a federated organisation Desirable skills: Knowledge of NIST CSF More ❯
We are seeking a PMO Analyst/Project Manager to join the programme’s Governance, Risk & Compliance (GRC) function, with a specific focus on project and enterprise risk. This role will work closely with the Risk Lead to support the effective management of risks across the programme, ensuring robust tracking, analysis, and reporting. The successful candidate will have a PMO … P3M background with demonstrable experience in riskmanagement, ideally within large or complex programmes. Key Responsibilities Support the implementation and ongoing management of programme-wide risk frameworks within the GRC function. Manage the day-to-day operation of project and programme risk registers, ensuring risks are accurately logged, categorised, and updated with appropriate mitigations. Conduct detailed risk assessments at project … and workstream level, escalating critical risks as required. Produce clear and concise risk reporting and dashboards to inform programme governanceand senior stakeholder decision-making. Facilitate risk workshops, engaging delivery teams to capture risks and build stronger risk awareness across the programme. Provide practical recommendations on risk treatment, control measures, and contingency planning. Deputise for the Risk Lead where required More ❯
Job summary We are seeking an Information Governance & Cyber Security Manager to lead the second line of defence across Information Governance, Cyber Security, Quality, and Digital Clinical Safety. In this role, you will oversee the operational delivery of InHealths management systems, ensuring compliance, accountability, and consistency across the business. You will provide strong leadership, manage a dedicated team, and play … a key part in driving governance priorities that protect our patients, staff, and services. This is a pivotal position for someone who is enthusiastic, motivated, and passionate about embedding high standards of quality and security across a healthcare organisation. This is a full-time permanent role, working remotely. There will be travel to InHealth sites as part of the role. … Main duties of the job Information Governance: Oversee policy frameworks, DPIAs, DSAs, and regulatory compliance, and lead the Data Security Protection Toolkit return. Cyber Security: Manage security policies, lead ISO 27001 certification, embed data security practices, and oversee incident response. Digital Clinical Safety: Maintain digital clinical safety policies (DCB0129/0160), ensure training compliance, and support safety case documentation. Quality More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
remediation, certification readiness, and continual improvement. You'll input and collaborate with senior stakeholders across industries to deliver strategic advisory and hands-on implementation of information security governance, riskmanagement, andcompliance Key Responsibilities Supporting ISO 27001 implementation projects from initial assessment through to certification Conduct gap analysis tailored to private sector risk profiles and commercial priorities Facilitate risk assessments More ❯