Snelshall West, Milton Keynes, Buckinghamshire, England, United Kingdom
DS Smith
and flexibility to support the demands of a FTSE 100 business.Supporting Head of Information Security Architecture and Assurance as well as working closely with key stakeholders including Head of Governance, RiskandCompliance, Digital Security, IT and business teams you will focus on core areas such as riskmanagementand security due-diligence reviews ensuring compliance with legal, regulatory andMore ❯
Milton Keynes, Buckinghamshire, England, United Kingdom
Lorien
of regulatory frameworks, compliance, and technology standards. Proven ability to influence stakeholders and manage risk appetite decisions. Experience managing audits and large-scale risk assessments. Desirable Qualifications: Familiarity with GRC tools and data analytics. Professional certifications (e.g., CRMP, CIA). Carbon60, Lorien & SRG - The Impellam Group STEM Portfolio are acting as an Employment Business in relation to this vacancy. More ❯
Horsham, West Sussex, South East, United Kingdom Hybrid / WFH Options
Platform Recruitment Limited
Wi-Fi, and email security platforms Acting as the main contact for our outsourced SOC and overseeing incident response Running pen tests, vulnerability scans, and regular security assessments Owning governance, risk, andcompliance activities (ISO 27001, Cyber Essentials) Delivering supplier risk assessments and secure onboarding processes What were looking for Strong technical security knowledge across cloud platforms (Office 365, Azure More ❯
East Grinstead, Sussex, United Kingdom Hybrid / WFH Options
Spectrum IT Recruitment
Identify and implement emerging technologies that enhance performance and security. Leadership & People Development Build and develop a high-performing, collaborative team culture. Support team members' personal and professional development. Governance, Risk & Compliance Maintain the infrastructure and security risk register, ensuring compliance with all relevant regulations and policies. Supplier & Stakeholder Management Manage supplier relationships to maximise service quality and value. Collaborate More ❯
East Grinstead, West Sussex, South East, United Kingdom Hybrid / WFH Options
Spectrum It Recruitment Limited
Identify and implement emerging technologies that enhance performance and security. Leadership & People Development Build and develop a high-performing, collaborative team culture. Support team members' personal and professional development. Governance, Risk & Compliance Maintain the infrastructure and security risk register, ensuring compliance with all relevant regulations and policies. Supplier & Stakeholder Management Manage supplier relationships to maximise service quality and value. Collaborate More ❯
Cambridge, England, United Kingdom Hybrid / WFH Options
Hays
projects and managing complex, multi-stream programmes. Strong background in risk, issue, and escalation management. Solid experience using Jira for project planning and tracking. Familiarity with EDR, email security, GRC, and cloud security controls across multiple cloud platforms. Experience integrating security in M&A activities, including OT riskand compliance. Preferred certifications: PMP, Agile/Scrum Master, CompTIA Security+, CISSP. More ❯
cambridge, east anglia, united kingdom Hybrid / WFH Options
Hays
projects and managing complex, multi-stream programmes. Strong background in risk, issue, and escalation management. Solid experience using Jira for project planning and tracking. Familiarity with EDR, email security, GRC, and cloud security controls across multiple cloud platforms. Experience integrating security in M&A activities, including OT riskand compliance. Preferred certifications: PMP, Agile/Scrum Master, CompTIA Security+, CISSP. More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Robert Walters
Proven experience as a ServiceNow Architect, with a strong portfolio of designing and implementing solutions across various modules. Demonstrated expertise in the implementation and configuration of the IRM andGRC modules within ServiceNow. Exceptional communication skills, with the capacity to liaise effectively with both technical and non-technical stakeholders. Experience in leading data migration projects, with a focus on maintaining More ❯
Type: Full-Time, Permanent About the Company We are a fast-growing SaaS scale-up working with some of the world’s largest enterprises to transform how they manage governance, risk, andcompliance across their supply chains. Our award-winning platform delivers measurable ROI, efficiency, and automation for global businesses — and we’re only just getting started. As part of More ❯
experts, to ensure our business commitments are delivered with quality and to expectation. Assessing new technology solutions Ensuring our non-functional requirements are met regarding performance, scalability, resilience, andGRC requirements (Information security, risk, industry regulation compliance) Helping to encourage collaboration and product ownership across developers and testers Ensuring continual shift of secure, quality and tested code activity left Working More ❯
lifecycle from planning to deployment. Collaboration & Communication Partner with Product, Operations, and Executive teams to align technical strategy with company vision. Translate business needs into innovative, practical engineering solutions. Governance & Risk Ensure compliance with regulatory, security, and operational standards. Proactively manage technical risks and drive architectural decisions. Innovation & Technical Excellence Stay ahead of emerging technologies and recommend tools or frameworks More ❯
lifecycle from planning to deployment. Collaboration & Communication Partner with Product, Operations, and Executive teams to align technical strategy with company vision. Translate business needs into innovative, practical engineering solutions. Governance & Risk Ensure compliance with regulatory, security, and operational standards. Proactively manage technical risks and drive architectural decisions. Innovation & Technical Excellence Stay ahead of emerging technologies and recommend tools or frameworks More ❯
riskand enterprise risk registers Familiarity with frameworks like NIST, ISO 27001 or NCSC CAF Confident presenting to technical and exec audiences Skilled with reporting tools (Excel, Power BI, GRC platforms) Organised, proactive, and a clear communicator Whats on offer 30 days holiday plus bank holidays, flexible leave options, and family-friendly policies Up to 15% bonusand a generous employer More ❯
standards, frameworks, and best practices. Knowledge of information systems (e.g. cloud, access control, networking). Experience in customer-facing roles. Strong written, verbal, and interpersonal communication skills. Knowledge of Governance, Risk & Compliance (GRC). Desirable Skills & Experience UK Cyber Security Council professional registration (e.g. Chartered, Principal, Practitioner). Experience with HMG/MoD security standards, policies, and frameworks. Exposure to More ❯
standards, frameworks, and best practices. Knowledge of information systems (e.g. cloud, access control, networking). Experience in customer-facing roles. Strong written, verbal, and interpersonal communication skills. Knowledge of Governance, Risk & Compliance (GRC). Desirable Skills & Experience UK Cyber Security Council professional registration (e.g. Chartered, Principal, Practitioner). Experience with HMG/MoD security standards, policies, and frameworks. Exposure to More ❯
design and delivery of enterprise-wide cyber strategies and transformation programmes Advising senior stakeholders, including board-level executives, on managing cyber riskand enabling digital growth Shaping operating models, governance frameworks, andrisk-based roadmaps for resilience andcompliance Managing diverse delivery teams across complex client environments Building long-term client relationships and acting as a trusted advisor Contributing to … cyber strategy, transformation, andriskmanagement within complex organisations Strong knowledge of regulatory and security frameworks (e.g. NIST CSF, ISO27001, GDPR, NIS2, NCSC CAF) Experience across areas such as GRC, security architecture, threat management, or vulnerability management Outstanding communication and stakeholder engagement skills, with the ability to influence at C-suite and board level Track record of leading large-scale More ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
looking for an Information Security Analyst to join their team. This is an excellent opportunity to play a key role in advancing the company's security posture by delivering Governance, Risk, andCompliance (GRC) initiatives and embedding the NIST Cyber Security Framework (CSF) across the business. Key skills/responsibilities: Deliver day-to-day GRC activities, including designing and implementing … reviews and updates to ensure controls remain effective against evolving threats Essential skills: Minimum 2 year's experience in information security, with a solid understanding of security control andgovernance frameworks Experience in developing security controls catalogue in a financial services environment (highly desirable) Proven experience in delivering security projects within a federated organisation Desirable skills: Knowledge of NIST CSF More ❯
Salary: 45,000 - 60,000 + Benefits Are you an experienced Security Consultant looking for your next challenge? We are seeking passionate cyber security professionals with strong expertise in governance, riskandcompliance (GRC), who can deliver complex projects and build trusted client relationships. As a Security Consultant , you will work on a variety of Defence and Public Sector assignments … experience in security assurance, accreditation, secure by design, andriskmanagement, alongside recognised qualifications such as CISSP, CISM, or ISO 27001 Lead Implementer. Ideally you will be familiar with GRC practices in similar environments also. In return, you'll enjoy a competitive salary, remote working, training budget, private healthcare, bonus scheme, and a culture that values collaboration, growth, and well … being. Take the next step in your career as a GRC Specialist/Security Consultant - apply today. People Source Consulting Ltd is acting as an Employment Agency in relation to this vacancy. People Source specialise in technology recruitment across niche markets including Information Technology, Digital TV, Digital Marketing, Project and Programme Management, SAP, Digital and Consumer Electronics, Air Traffic ManagementMore ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Experis
Salary: 45,000 - 75,000 + Benefits Are you an experienced Security Consultant looking for your next challenge? We are seeking passionate cyber security professionals with strong expertise in governance, riskandcompliance (GRC), who can deliver complex projects and build trusted client relationships. As a Security Consultant , you will work on a variety of Defence and Public Sector assignments … experience in security assurance, accreditation, secure by design, andriskmanagement, alongside recognised qualifications such as CISSP, CISM, or ISO 27001 Lead Implementer. Ideally you will be familiar with GRC practices in similar environments also. In return, you'll enjoy a competitive salary, remote working, training budget, private healthcare, bonus scheme, and a culture that values collaboration, growth, and well … being. Take the next step in your career as a GRC Specialist/Security Consultant - apply today. People Source Consulting Ltd is acting as an Employment Agency in relation to this vacancy. People Source specialise in technology recruitment across niche markets including Information Technology, Digital TV, Digital Marketing, Project and Programme Management, SAP, Digital and Consumer Electronics, Air Traffic ManagementMore ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
gap analysis, remediation, certification readiness, and continual improvement. You'll collaborate with senior stakeholders across industries to deliver strategic advisory and hands-on implementation of information security governance, riskmanagement, andcompliance Key Responsibilities Lead ISO 27001 implementation projects from initial assessment through to certification Conduct gap analysis tailored to private sector risk profiles and commercial priorities Facilitate risk assessments More ❯
We are seeking a detail-oriented and proactive SaaS GRC Specialist to strengthen our Governance, Risk, andCompliance framework as we scale our SaaS operations. In this role, you will ensure that our business processes, security controls, and regulatory obligations are consistently met. You will work across multiple teams—security, legal, product, and operations—helping us maintain trust with customers … and regulators while supporting business growth. Key Responsibilities Own and manage governance, risk, andcompliance initiatives for our SaaS platforms. Monitor, review, and improve internal policies, procedures, and controls in line with ISO 27001, SOC 2, GDPR, and other regulatory frameworks. Conduct risk assessments and recommend mitigation strategies for SaaS operations and customer data protection. Collaborate with product, engineering, and … IT teams to embed compliance into day-to-day operations. Prepare and support external audits, certifications, and customer due diligence requests. Deliver GRC training and awareness sessions to employees across the business. Track regulatory changes and advise leadership on potential business impacts. Requirements Bachelor’s degree in Information Security, Business, Compliance, or related field. 2+ years of experience in GRCMore ❯
london (city of london), south east england, united kingdom
Lex Dinamica
We are seeking a detail-oriented and proactive SaaS GRC Specialist to strengthen our Governance, Risk, andCompliance framework as we scale our SaaS operations. In this role, you will ensure that our business processes, security controls, and regulatory obligations are consistently met. You will work across multiple teams—security, legal, product, and operations—helping us maintain trust with customers … and regulators while supporting business growth. Key Responsibilities Own and manage governance, risk, andcompliance initiatives for our SaaS platforms. Monitor, review, and improve internal policies, procedures, and controls in line with ISO 27001, SOC 2, GDPR, and other regulatory frameworks. Conduct risk assessments and recommend mitigation strategies for SaaS operations and customer data protection. Collaborate with product, engineering, and … IT teams to embed compliance into day-to-day operations. Prepare and support external audits, certifications, and customer due diligence requests. Deliver GRC training and awareness sessions to employees across the business. Track regulatory changes and advise leadership on potential business impacts. Requirements Bachelor’s degree in Information Security, Business, Compliance, or related field. 2+ years of experience in GRCMore ❯
We are seeking a detail-oriented and proactive SaaS GRC Specialist to strengthen our Governance, Risk, andCompliance framework as we scale our SaaS operations. In this role, you will ensure that our business processes, security controls, and regulatory obligations are consistently met. You will work across multiple teams—security, legal, product, and operations—helping us maintain trust with customers … and regulators while supporting business growth. Key Responsibilities Own and manage governance, risk, andcompliance initiatives for our SaaS platforms. Monitor, review, and improve internal policies, procedures, and controls in line with ISO 27001, SOC 2, GDPR, and other regulatory frameworks. Conduct risk assessments and recommend mitigation strategies for SaaS operations and customer data protection. Collaborate with product, engineering, and … IT teams to embed compliance into day-to-day operations. Prepare and support external audits, certifications, and customer due diligence requests. Deliver GRC training and awareness sessions to employees across the business. Track regulatory changes and advise leadership on potential business impacts. Requirements Bachelor’s degree in Information Security, Business, Compliance, or related field. 2+ years of experience in GRCMore ❯
london, south east england, united kingdom Hybrid / WFH Options
SureCloud
DOE Reports To: Chief Revenue Officer Type: Full-time, Permanent About SureCloud SureCloud is on a mission to help organisations secure their futures by driving Governance, Risk, andCompliance (GRC) success. As a recognised leader in the Gartner® Magic QuadrantTM for Integrated RiskManagement Solutions, we empower companies to navigate an increasingly complex risk landscape with confidence. Our innovative platform … offers comprehensive GRC solutions, including Third Party RiskManagement, ComplianceManagement, Data Privacy Management, Enterprise RiskManagement, and more. Powered by Dynamic Risk Intelligence, SureCloud’s platform enables businesses to predict, analyse, and respond to risk before it becomes critical—providing proactive control for long-term business assurance. Trusted by global leaders like HSBC, Specsavers and The Very Group, we … re rapidly scaling to meet the growing demand in the GRC space. Why GRCand SureCloud? The GRC space is experiencing unprecedented growth as organisations across industries face heightened regulatory scrutiny, supply chain complexity, and cybersecurity threats. SureCloud’s agile platform and expert services give enterprises the flexibility to adapt, comply, and thrive—ensuring they can manage risk while seizing More ❯
slough, south east england, united kingdom Hybrid / WFH Options
SureCloud
DOE Reports To: Chief Revenue Officer Type: Full-time, Permanent About SureCloud SureCloud is on a mission to help organisations secure their futures by driving Governance, Risk, andCompliance (GRC) success. As a recognised leader in the Gartner® Magic QuadrantTM for Integrated RiskManagement Solutions, we empower companies to navigate an increasingly complex risk landscape with confidence. Our innovative platform … offers comprehensive GRC solutions, including Third Party RiskManagement, ComplianceManagement, Data Privacy Management, Enterprise RiskManagement, and more. Powered by Dynamic Risk Intelligence, SureCloud’s platform enables businesses to predict, analyse, and respond to risk before it becomes critical—providing proactive control for long-term business assurance. Trusted by global leaders like HSBC, Specsavers and The Very Group, we … re rapidly scaling to meet the growing demand in the GRC space. Why GRCand SureCloud? The GRC space is experiencing unprecedented growth as organisations across industries face heightened regulatory scrutiny, supply chain complexity, and cybersecurity threats. SureCloud’s agile platform and expert services give enterprises the flexibility to adapt, comply, and thrive—ensuring they can manage risk while seizing More ❯