London, South East, England, United Kingdom Hybrid/Remote Options
Crimson
Cyber Security GRC Manager - London Remote working Salary up to £60,000 per annum This is a fully remote position, with occasional meetings in London and possible travel to India twice yearly. Cyber Security Manager (GRC) position available for a client based in London. The role involves shaping and implementing a governance, risk, andcompliance (GRC) strategy. Responsibilities include establishing … implementing technical controls. Skilled in articulating technical risks in terms of business impact. Professional certifications such as CISM, CISSP, CRISC, ISO 27001 Lead Auditor, and hands-on experience with GRC tools (e.g., Vanta, Drata) are highly desirable. Responsible for developing and maintaining security policies in alignment with ISO 27001, GDPR, HIPAA, and OWASP standards. Lead risk assessments and oversee the More ❯
Milton Keynes, Buckinghamshire, South East, United Kingdom Hybrid/Remote Options
Hays
Role Overview Our client is seeking an experienced, hands on Senior Information Security Analyst to support both their technical security work andgovernance, riskandcompliance (GRC). You will assess risks, review supplier and project security, respond to security questionnaires and tenders, support incident investigations, and help maintain compliance with Cyber Essentials Plus, ISO 27001, DSPT and GDPR. Responsibilities … to policy updates. Provide clear security advice to projects and senior stakeholders. What you'll need to succeed Proven experience in information security, with a blend of technical andGRC responsibilities. Strong understanding of cloud and network security, ideally within Microsoft ecosystems (e.g., Azure, M365, Defender suite, DLP, Conditional Access). Skilled in evaluating supplier security through questionnaires, procurement documents More ❯
Employment Type: Contract, Work From Home
Rate: Up to £36.0 per hour + £36 per hour inside IR35 (via Umbrella)
to ensure alignment of requirements and deliverables Track activity progress, manage risks, and implement risk mitigation strategies to ensure successful outcomes Drive standardisation of threat intelligence protocols, tools, andgovernance across the region Partner with technology, compliance, andriskmanagement teams to ensure compliance with regulatory and legal requirements in each jurisdiction Host and manage regular global meetings (e.g., bi … Microsoft Teams, Outlook (for meeting management & scheduling), SharePoint, OneDrive,Miro/MURAL Reporting & Analytics: Power BI, Tableau, advanced Excel; strong ability to produce quarterly, annual, and executive- level reports. Governance & Compliance: ServiceNow, Archer GRC, or similar platforms Strong report-writing and presentation skills, with attention to detail and executive-level clarity Strong analytical and problem-solving abilities Business level fluency More ❯
tools, and mentoring junior analysts, while contributing to the continuous improvement of their security posture. This is a hands-on, operationally focused role that blends technical security responsibilities with governance, risk, andcompliance (GRC) elements. As Cyber Security Analyst, you will: Lead cyber incident investigations with SOC and client teams Triage and analyse alerts across email, cloud, and hybrid systems More ❯
tools, and mentoring junior analysts, while contributing to the continuous improvement of their security posture. This is a hands-on, operationally focused role that blends technical security responsibilities with governance, risk, andcompliance (GRC) elements. As Cyber Security Analyst, you will: Lead cyber incident investigations with SOC and client teams Triage and analyse alerts across email, cloud, and hybrid systems More ❯
Milton Keynes, Buckinghamshire, England, United Kingdom
Tate Milton Keynes
tools, and mentoring junior analysts, while contributing to the continuous improvement of their security posture. This is a hands-on, operationally focused role that blends technical security responsibilities with governance, risk, andcompliance (GRC) elements. As Cyber Security Analyst, you will: Lead cyber incident investigations with SOC and client teams Triage and analyse alerts across email, cloud, and hybrid systems More ❯
Employment Type: Full-Time
Salary: £50,000 - £60,000 per annum, Negotiable, Inc benefits, OTE
Portsmouth, Hampshire, South East, United Kingdom Hybrid/Remote Options
Robert Half
to best-in-class standards through internationally recognised security certifications and industry-wide assurance frameworks, delivering confidence to clients and meeting regulatory expectations. As a core team member in Governance, Risk, andCompliance (GRC) , you will lead certification efforts, influence operational processes, and engage directly with customers and auditors to showcase security credentials that differentiate our SOC from the competition. More ❯
Rickmansworth, Hertfordshire, South East, United Kingdom
4 RECRUITMENT SERVICES LTD
purpose We are seeking an experienced Senior Information Security Analyst to provide immediate support to the Information Security team. This role is a hybrid of technical security analysis andgovernance, risk, andcompliance (GRC)activities. The successful candidate will play a key role in assessing risks, reviewing supplier and project security documentation, responding to security questionnaires and tenders, supporting incident More ❯
Slough, UK with offices in Chennai, Milan & Aberdeen with teams across Europe and India. See www.agcapps.com for more details. Position We are looking for a talented SAP Security andGRC Lead ideally with exposure in the Oil and Gas/Energy Natural Resources sector/Automobile sector with a very strong demonstrable experience of working on full life cycle ECC … and S/4 HANA projects. Skills and Qualifications: 10 + years of SAP Security andGRC experience Strong experience in ECC & S/4HANA Role Design, Administration & Maintenance Strong knowledge of Security & Authorization tables in ECC, S/4HANA andGRC Strong knowledge of GRC ARA, ARM, EAM, BRM modules Strong Excel skills & ability to carry out complex analysis … on Excel Good working knowledge of configuration and administration of GRC 10.x onwards Good understanding for GRC BC sets, Workflow customization and Ruleset customization Good knowledge of SAP Security concepts, landscape, transports system and version compatibilities Knowledge of Risk Remediation & Process Controls Basic understanding of different functional tables and transactions Understanding of the primary Business Processes Good verbal, written andMore ❯
Portsmouth, England, United Kingdom Hybrid/Remote Options
Computappoint
IT services and consulting firm, is seeking a Cyber Security Assurance Manager to ensure their SOC meets and maintains top security certifications and assurance standards. As part of the GRC function, you’ll lead customer assurance activities, manage external audits, and oversee key certifications such as ISO 27001, SOC2 Type II, Cyber Essentials Plus, and CREST SOC accreditation. Key Responsibilities … Lead the delivery and ongoing maintenance of SOC-related certifications (SOC 2 Type II, SOC 3, ISO/IEC 27001, Cyber Essentials Plus, CREST) Embed certification requirements into SOC governance, processes, and operational practices Ensure continuous monitoring, evidence collection, and audit readiness for internal and external assessments Monitor developments in global cybersecurity regulations and frameworks (NIST CSF, UK NCSC guidance More ❯
Portsmouth, Hampshire, England, United Kingdom Hybrid/Remote Options
Computappoint
IT services and consulting firm, is seeking a Cyber Security Assurance Manager to ensure their SOC meets and maintains top security certifications and assurance standards. As part of the GRC function, you’ll lead customer assurance activities, manage external audits, and oversee key certifications such as ISO 27001, SOC2 Type II, Cyber Essentials Plus, and CREST SOC accreditation. Key Responsibilities … Lead the delivery and ongoing maintenance of SOC-related certifications (SOC 2 Type II, SOC 3, ISO/IEC 27001, Cyber Essentials Plus, CREST) Embed certification requirements into SOC governance, processes, and operational practices Ensure continuous monitoring, evidence collection, and audit readiness for internal and external assessments Monitor developments in global cybersecurity regulations and frameworks (NIST CSF, UK NCSC guidance More ❯
+ benefits** The IT Risk & Policy Analyst is responsible for managing IT risks, monitoring audit actions, maintaining IT policies and procedures, and supporting GDPR compliance. The role ensures effective governanceandcompliance across IT processes, providing a framework for the identification, mitigation, andmanagement of risks. This position bridges technical andgovernance aspects, ensuring alignment with company standards and regulatory … programme. Assisting the Privacy Team in ensuring DPIAs are completed where required. Required skills and experience: Some experience of working in an IT function or in an audit/governance role Knowledge of IT riskmanagementand IT governance, risk, andcompliance (GRC) would be an advantage but not essential. Understanding of cybersecurity risks and controls would be an advantage … oral and written communication skills, with high attention to detail Ability to produce high quality, detailed outputs. Good analytical skills Highly organised and able to implement and manage robust governance processes. Strong relationship building and interpersonal skills across a wide range of stakeholders. Damia Group Limited acts as an employment agency for permanent recruitment and employment business for the supply More ❯
+ benefits The IT Risk & Policy Analyst is responsible for managing IT risks, monitoring audit actions, maintaining IT policies and procedures, and supporting GDPR compliance. The role ensures effective governanceandcompliance across IT processes, providing a framework for the identification, mitigation, andmanagement of risks. This position bridges technical andgovernance aspects, ensuring alignment with company standards and regulatory … programme. Assisting the Privacy Team in ensuring DPIAs are completed where required. Required skills and experience: Some experience of working in an IT function or in an audit/governance role Knowledge of IT riskmanagementand IT governance, risk, andcompliance (GRC) would be an advantage but not essential. Understanding of cybersecurity risks and controls would be an advantage … oral and written communication skills, with high attention to detail Ability to produce high quality, detailed outputs. Good analytical skills Highly organised and able to implement and manage robust governance processes. Strong relationship building and interpersonal skills across a wide range of stakeholders. Damia Group Limited acts as an employment agency for permanent recruitment and employment business for the supply More ❯
governance. Required Skills: Proven experience in business/systems analysis, especially in banking, procurement, or third-party risk management. Strong background in implementing SaaS platforms, ideally ProcessUnity or similar GRC/TPRM tools. Familiarity with SaaS and cloud-based applications (Azure/AWS). Excellent understanding of technical and non-functional requirements like performance, security, and scalability. Experience in interface … specification and integration design, including APIs and data mapping. Outstanding stakeholder managementand communication skills. Preferred Skills: Knowledge of GRC platforms and third-party risk workflows. Experience with procurement systems (e.g., Coupa, Ariba, SAP). Proficiency in JIRA, Confluence, Visio, and SQL. Exposure to Agile and Waterfall methodologies. Education: Bachelor's degree in Information Systems, Business Administration, Supply Chain ManagementMore ❯
end-to-end, driving remediation outcomes with customers and internal teams. Optimise the Microsoft Security Stack: Sentinel, Defender (for Endpoint/Identity), Purview, and XDR. Support Zero Trust adoption, GRC initiatives, and audit/compliance reporting (ISO27001, NIST, SOC2, CE+). Centralise and improve visibility of security events by unifying logs across cloud, on-prem, applications, and endpoints. Integrate new … advanced threat detection. Career pathways into senior engineering, incident response leadership, or architecture roles. Ongoing funded training and certification investment. Opportunity to cross-train into wider InfoSec disciplines including GRC, Zero Trust, and compliance. Training to CISSP in year one. More ❯
Permanent | Full-time Sector: Technology/Data Infrastructure Client: Leading Data Centre Provider A prominent data centre provider is seeking a Complianceand Assurance Officer to join its expanding governance team on a permanent basis. This role offers the opportunity to contribute to the development and maintenance of a robust compliance framework within a highly regulated and security-conscious environment. … to identify areas for improvement. Assist in the development and implementation of compliance policies, procedures, and training initiatives. Work with operational and technical teams to embed effective controls andgovernance practices. Prepare documentation and reports for internal governance forums and external audits. Keep abreast of regulatory changes and emerging risks relevant to the data infrastructure sector. Experience required: Experience in … compliance, assurance, or audit within a technology-led or regulated environment. Strong understanding of governance frameworks, riskmanagement, and regulatory compliance. Excellent communication and stakeholder engagement skills. Detail-oriented with a proactive and analytical approach. Relevant qualifications (e.g., ISO Lead Auditor, CISA) would be advantageous. Must be eligible to work in the UK. Office based. (Farnborough) Paying up to More ❯
independent managed services provider. Your day-to-day responsibilities will centre around coordinating diverse teams of technical experts, managing budgets with precision, facilitating transparent stakeholder communications, and upholding rigorous governance standards. You will play an integral role in identifying risks early on and ensuring robust documentation is maintained throughout each project phase. By fostering an environment built on inclusive collaboration … throughout the project lifecycle. Facilitate stakeholder engagement by organising meetings, preparing presentations, and communicating progress updates in a clear and considerate manner. Maintain comprehensive project documentation including risk registers, governance reports, technical handover materials, and lessons learned logs for future reference. Identify potential risks early in the project lifecycle by conducting thorough assessments and implementing mitigation strategies collaboratively with relevant … at all levels. You will possess deep technical knowledge of MSP product offerings combined with strong organisational capabilities that allow you to juggle competing priorities efficiently. Your familiarity with governance frameworks ensures that all aspects of riskmanagementand documentation are handled responsibly. By demonstrating empathy in your interactions-whether mentoring junior staff or collaborating on problem-solving-you will More ❯
our growing team of ServiceNow experts. As part of a trusted ServiceNow Partner, you'll play a key role in designing, implementing, and optimising Integrated RiskManagement (IRM) andGovernance, Risk & Compliance (GRC) solutions for our clients across multiple industries. You'll work closely with enterprise customers, helping them transform their risk, compliance, and audit processes using the power of … the Now Platform. Key Responsibilities Lead and deliver ServiceNow IRM/GRC implementations, including Policy & Compliance, RiskManagement, Audit, and Vendor Risk modules Collaborate with clients to capture requirements and translate them into effective ServiceNow solutions Configure and customise the ServiceNow platform to align with business and regulatory needs Conduct workshops, demos, and user training sessions Support pre-sales activities … current with the latest ServiceNow releases and IRM capabilities Contribute to best practices, templates, and accelerators within the partner organisation Required Skills & Experience Proven experience delivering ServiceNow IRM/GRC solutions (at least one full implementation cycle) Strong understanding of riskmanagement, compliance, and audit frameworks ServiceNow Certified System Administrator (CSA) - essential ServiceNow IRM/GRC Implementation Specialist certification - highly More ❯
Stevenage, Hertfordshire, South East, United Kingdom
M Group
Technology, Computer Science, or a related field. Extensive experience managing IT infrastructure and operations for complex organisations. Demonstrable success delivering large-scale transformation projects. Knowledge of IT governance, riskmanagement, andcompliance frameworks. Experience in fast-paced environments characterised by frequent acquisitions is highly desirable. Whats in it for you? We offer a range of benefits designed to support your More ❯
Newbury, Berkshire, South East, United Kingdom Hybrid/Remote Options
Syntax Consultancy Limited
/day (Outside IR35) ServiceNow Architect needed for a 6 Month Contract. TSOM (Telecom Service & Operations Management) project experience with ITSM i.e other modules (TSOM, ITOM, ITAM, HRSD, CSM, GRC, SecOps). A chance to work with a global IT Consultancy on a ServiceNow project for an external client. Hybrid working - working 2-3 days/week remotely from home … skills, experience + tasks will include: Experienced needed TSOM (Telecom Service & Operations Management) implementation project toLead the design and implementation of ServiceNow modules, including ITSM, ITOM, ITAM, HRSD, CSM, GRC, SecOps and custom applications. Strong experience ServiceNow ITSM and other modules i.e (TSOM, ITOM, ITAM, HRSD, CSM, GRC, SecOps). Experience designing and implementing CMDB and Discovery. Proven expertise in More ❯
Woodstock, Oxfordshire, South East, United Kingdom
Ridge & Partners LLP
our long term aspirations can be achieved through clear strategic partnerships and spend control. Responsibilities will cover both sourcing (working with vendors, quality assurance, requirements analysis) and non-technical (governance, risk, andcompliance). Someone who isn't afraid to get their sleeves rolled up and get into the detail will be a key trait. No two days will be … with IT and business leaders to understand requirements and align procurement strategy with goals Analyse spend data and trends to identify opportunities for cost optimisation & risk reduction Ensure effective governance, contract managementandrisk mitigation across the supply base Support broader procurement initiatives The skills and experience you need for this role: Proven experience in procurement and category management, with … with the ability to prioritise cost savings and quality Stakeholder engagement, with the ability to influence at all levels of the organisation Experience in supplier performance managementand contract governance Analytical and data driven approach, with strong problem solving skills Understanding of procurement best practices, complianceandriskmanagement frameworks Professional procurement qualifications (e.g., CIPS) – desirable Must drive and hold More ❯
our long term aspirations can be achieved through clear strategic partnerships and spend control. Responsibilities will cover both sourcing (working with vendors, quality assurance, requirements analysis) and non-technical (governance, risk, andcompliance). Someone who isn't afraid to get their sleeves rolled up and get into the detail will be a key trait. No two days will be … with IT and business leaders to understand requirements and align procurement strategy with goals Analyse spend data and trends to identify opportunities for cost optimisation & risk reduction Ensure effective governance, contract managementandrisk mitigation across the supply base Support broader procurement initiatives The skills and experience you need for this role: Proven experience in procurement and category management, with … with the ability to prioritise cost savings and quality Stakeholder engagement, with the ability to influence at all levels of the organisation Experience in supplier performance managementand contract governance Analytical and data driven approach, with strong problem solving skills Understanding of procurement best practices, complianceandriskmanagement frameworks Professional procurement qualifications (e.g., CIPS) - desirable Must drive and hold More ❯
Role Overview Our client is seeking an experienced, hands on Senior Information Security Analyst to support both their technical security work andgovernance, riskandcompliance (GRC). You will assess risks, review supplier and project security, respond to security questionnaires and tenders, support incident investigations, and help maintain compliance with Cyber Essentials Plus, ISO 27001, DSPT click apply for More ❯
GRC Consultant - MOD DV Location: Farnborough or Cambridgeshire Type: Hybrid (3 days on-site) IR Status: Inside Rate: £500 - £600 Lenghth: Initial 6 months, scope for extension Must have Active MOD DV Clearance In this role, you'll be: Providing the Secure by Design riskand security assurance function within MOD as part of a managed service click apply for More ❯
stories, and maintaining the functional integrity of the platform and associated processes. Key Responsibilities- Apply your expertise in one or more ServiceNow products, with familiarity in ITSM, Secops, RiskOps, GRCand HRSD being advantageous. Facilitate customer workshops and lead project demonstrations using the ServiceNow platform. Develop clear and actionable customer requirements (user stories), including scripting and configuration across various platform More ❯