London, England, United Kingdom Hybrid / WFH Options
FSP
Join to apply for the Senior Cyber Security Consultant (GRC) role at FSP 1 week ago Be among the first 25 applicants Join to apply for the Senior Cyber Security Consultant (GRC) role at FSP We have an exciting opportunity for a Senior Security Consultant to join our growing Governance, RiskandCompliance (GRC) team. In this role, you will … apply your expertise in information security to provide strategic guidance to clients on GRC activities, as well as on achieving their cyber and information security objectives. You will take the lead in managing technical consulting engagements and contribute to the successful delivery of complex security programs. Responsibilities Apply a strong knowledge of the cyber threats, hazards, risks, controls, and mitigations … on the appropriate selection of suppliers and implementation of procured services. Be proficient in the use of Microsoft Purview for data labelling, data loss prevention, data lifecycle management, data governance, compliancemanagement, andrisk mitigation, with the ability to implement information protection strategies. Create reports on riskandcompliance for Senior stakeholders, including risk mitigation strategies and improvement plans. Contribute More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Cyber UK
support new, digitally enabled business models. Supporting organisations in developing actionable transformation programmes for the organisations, and navigating cyber transformation to support new, digitally enabled business models. Designing effective governance roles and operational frameworks to assess and define prioritised, risk-based roadmaps to increase cyber maturity, prepare for and support regulatory compliance, and allow cyber to play a key role … M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security (or equivalent) or a related discipline. Practical experience across various areas of cyber security, such as cyber architecture, cyber GRC, cyber threat management, vulnerability management, cyber security reviews. Consulting Skills: Experience building relationships with clients and developing an internal network of subject matter experts. Experience of business development, responding to More ❯
you possess the following?: Proven related experience in cybersecurity riskmanagement in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards andrisk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32 Strong knowledge of cyber More ❯
St. Albans, Hertfordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
you possess the following?: Proven related experience in cybersecurity riskmanagement in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards andrisk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32 Strong knowledge of cyber More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
you possess the following?: Proven related experience in cybersecurity riskmanagement in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards andrisk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32 Strong knowledge of cyber More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
you possess the following?: Proven related experience in cybersecurity riskmanagement in organizations of a similar scale. Experience in the identification and evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards andrisk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32 Strong knowledge of cyber More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Capgemini UK
both internally and externally as a trusted SME Security incident managementand response, security changes, problem andriskmanagement, security riskand threat assessments Delivery of security awareness training Governance/oversight of any other security services within scope (including but not limited to: SOC services, vulnerability and patch management, threat intelligence, digital forensics, GRC) Security reporting (including elements of More ❯
Watford, Hertfordshire, England, United Kingdom Hybrid / WFH Options
Hays Specialist Recruitment Limited
verbal communication abilities, with a focus on clear reporting and stakeholder engagement. Possession of industry-recognised certifications such as CISSP, CISM, CRISC, or CEH would be preferred. Familiarity with Governance, Risk, andCompliance (GRC) platforms and maintaining structured risk registers. Understanding of applicable regulations and data protection legislation, including GDPR and other industry-specific mandates. What you'll get in More ❯
Corsham, England, United Kingdom Hybrid / WFH Options
Cyber UK
OpNET Security Operations Centre (SOC), and NSoIT(D) Cyber and Information Security Risk Management. Reporting to the Chief Information Security Officer (CISO), you will be responsible for ensuring security governance, risk, andcompliance across these environments. Key Responsibilities JADE: Oversee all aspects of physical, procedural, and personnel security for JADE operations. Identify security risks and develop mitigation strategies. Produce Security … security awareness training and briefings. Manage vulnerability assessments, penetration testing, and remediation activities. Monitor and report on emerging security threats. SOC: Assure Live Service Security (LSS) delivery. Provide security governance, risk, andcompliance direction for Network Operations and Service Management. Act as lead for Paxcroft building security. RiskManagement: Lead Cyber and Information Security RiskManagement for NSoIT(D). More ❯
Altrincham, England, United Kingdom Hybrid / WFH Options
Heywood Limited
and Financial Services Referrals increase your chances of interviewing at Heywood by 2x Sign in to set job alerts for “Head of Information Security” roles. Head of Cyber Security Governance, RiskandCompliance Manchester, England, United Kingdom 2 months ago Head of Cyber Security Governance, RiskandCompliance Manchester, England, United Kingdom 2 weeks ago Manchester, England, United Kingdom … months ago Manchester, England, United Kingdom 6 days ago Manchester, England, United Kingdom 1 week ago Cyber Security Governance Senior Manager Manchester, England, United Kingdom 2 months ago Ellesmere Port, England, United Kingdom 3 days ago Cyber Security Governance Senior Manager Manchester, England, United Kingdom 4 days ago Greater Manchester, England, United Kingdom 3 months ago Manchester, England, United Kingdom More ❯
energy and the security of private equity backing. It's an inspiring time to join the team! Looking for a self-starting highly motivated and detail-orientated Information Security Governance, Risk, andCompliance (GRC) Analyst to support the design, implementation, and ongoing improvement of our information security governanceandriskmanagement framework. This role is essential in ensuring the organisation … internal compliance communications Job Requirements Previous progressive experience in information security riskmanagement, riskmanagement, or compliance Strong understanding of information security frameworks (e.g., ISO 27001, NIST) Experience with GRC tools/platforms Excellent organisational, communication, and documentation skills Ability to work independently and cross-functionally in a fast-paced environment Industry certifications such as CISA, CRISC, CISSP, CISMis preferred More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Cognisys
Location: Leeds (Hybrid)/London also considered Salary: £40 - £50K (DOE) We have an exciting opportunity to join our GRC team as a Senior GRC Consultant at a time of rapid growth and innovation at Cognisys. Cognisys is a leading cybersecurity company specialising in Penetration Testing, GRC Consulting, and Managed Security services. We pride ourselves on our customer service, forward … to excellence. Our small but mighty team works with some of the best-known companies in the world, covering over 30 countries worldwide! About the Role At Cognisys, our Governance, Risk, andCompliance (GRC) team is central to our mission of ensuring our clients’ data is protected to the highest standards of security and compliance. Due to our continued expansion … we are excited to announce an opportunity to further build our GRC team with an experienced and driven individual. Your contribution will be essential to the future growth of this team. Key Responsibilities We are seeking a passionate, detail-oriented Senior GRC Consultant to join our team. In this pivotal role, you will ensure that our clients establish robust governanceMore ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Pertemps
implementation of data classification methodologies to ensure appropriate protection based on sensitivity and importance. The role will be based in Reading and will report directly to the Head of Governance, RiskandCompliance, working to deliver the company's goals for a fit-for-purpose critical asset and classification framework. This is a role that requires independence, a proactive approach … riskmanagement practices. Desirable Technical Skills & Qualifications: Industry Certifications: Certifications such as CISSP, CISM, or CISA. Key Relationships & Interactions: CISO direct reports: Security Operations Manager, Security Architecture Manager, Security Governance Manager, Cyber Security Programme Manager, Cyber Resilience Manager CIO and CIO Direct Reports: Operational Technology, Enterprise Architects, PMO and Programme Delivery, Business Change and Engagement Key Business Stakeholders Service Owners More ❯
Watford, Hertfordshire, United Kingdom Hybrid / WFH Options
Essential Employment
a SOC environment. - Familiarity with riskmanagement frameworks?(e.g. ISO 27005, NIST RMF). - Excellent communication and reporting skills. - Relevant certifications (e.g. CISSP, CISM, CRISC, CEH). - Experience with GRC tools andrisk registers. - Knowledge of regulatory requirements and data protection laws. This is a full time role on a temporary basis. If you are interested in the role please More ❯
management to develop a cybersecurity improvement strategy and roadmap to enhance maturity and reduce risk. You work with client senior management to assess, design, and implement sustainable solutions, including GRC tools, operating processes, and people models, to address key and evolving risks. You serve as the interface between client executives and hands-on technology practitioners, driving meaningful strategic change in More ❯
London, England, United Kingdom Hybrid / WFH Options
AtlasEdge
Europe ensures we serve businesses where they need us most. We serve 800+ customers across 23 data centres connected to more than 70 on-net carriers. JOB PURPOSE The GovernanceRiskandCompliance (GRC) team plays a critical role in maintaining AtlasEdge’s integrity, trustworthiness, and legal standing. The activities span across certifications, legal adherence, audit management, policy creation, administration … only mitigates risks but also enhances the overall reputation and operational excellence of our data centres. Working in a dynamic and exciting industry and as part of an enthusiastic GRC team, the Audit Analyst GRC will be responsible for the organisation’s riskmanagementand internal audit functions. This role involves identifying, assessing, and mitigating risks, as well as ensuring … compliance with internal policies and external regulations. The Audit Analyst GRC will be accountable for managing internal and external operational audit activity in a pan European environment. This requirement will include successfully managing an interesting mix of requirements including client audit activity, coordinating and running operational audits including but not limited to Security (E.G. PCI-DSS, ISAE 3402, ISO/ More ❯
Central London, London, England, United Kingdom Hybrid / WFH Options
GreatFind Recruitment
We’re working with a leading organisation in the entertainment industry who are seeking an experienced Governance, RiskandCompliance (GRC) Manager to join their Group division. This is a fantastic opportunity for a proactive and strategic individual to shape and maintain a strong compliance culture across a dynamic and fast-growing business operating across the UK and Europe. Location … + 25 days holiday + bank holidays + Up to 5% bonus Full-time, Permanent In this newly-created role, you’ll lead the execution of the Group GRC programme, align riskandcompliance efforts with wider business goals, and ensure robust governance across information security and operational practices. Key Responsibilities: Develop and implement a comprehensive GRC framework across the … and standards Ensure compliance with GDPR, CIS18, PCI DSS, and ISO27001 Lead on third-party audits and provide documentation and evidence Support cybersecurity programmes and incident response planning Provide GRC advisory to senior leadership and cross-functional teams Promote a culture of risk awareness through training and communication Monitor changes in regulation and adapt the GRC framework accordingly Ideal Candidate More ❯
management to develop a cybersecurity improvement strategy and roadmap to improve maturity and reduce risk. You work with client senior management to assess, design and implement stainable solutions including GRC tools, operating processes and people models to address key and evolving risks. You are the interface with client executives and hands-on technology practitioners to bring meaningful, strategic change in … certification (e.g. CISSP, CEH, CISM, CISA, GIAC, GSEC) is a plus. Having experience in leading and executing IT audit, IT internal control, and IT risk consulting engagements, leveraging IT governanceand control frameworks such as COBIT, NIST CSF, NIST 800-53, and ITIL and proficiency in core requirements and methodologies for SOX internal control programs is a plus. You have … advanced knowledge of leading frameworks such as ISO 27001, NIST Cybersecurity Framework (CSF) NIST 800-53, CIS and the Cybersecurity Maturity Model. You have experience with Information Governanceand Information Security Strategy plans, and assessments using industry framework; ISO, NIST, SOC-2, PCI, CIS, etc. You have advanced written and verbal communication and presentation skills, leadership skills, teamwork and client More ❯
London, England, United Kingdom Hybrid / WFH Options
CLS-Group
services, and assets, ensuring compliance with industry standards (e.g., CIS, NIST, ISO 27001, SOC 1/2) and internal security policies across all platforms and environments. Lead the security governance mechanism for capturing and managing security baseline adherence to rectify any policy exceptions and dispensations (deviations or gaps) against the security policy standards and controls and align security risks. Oversee … Artificial Intelligence, post quantum computing and cyber risk quantification. Considerable experience in cybersecurity, with notable experience in a senior or managerial role focused on security policy, standards, controls testing, governance, and compliance. Mastery experience of how security controls are implemented, their effectiveness, and alignment with security policy, standards and NIST best practice guidelines. Strong ability to consult with control owners … information clearly and effectively. Presenting data insights to non-technical stakeholders. Strong understanding of security riskmanagementand taxonomy principles, to reduce risk to an acceptable level. Experience with GRC tools and best practices. RSA Archer is preferred. Proficiency in security frameworks (e.g., NIST CSF, ISO 27001, SOC1,2). Expert knowledge of security assurance practices such as audit, riskMore ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Allianz Popular SL
Role Description The Information Security Analyst plays a key role in supporting Allianz UK's Information Security initiatives, with a focus on executing the Governance, Risk, andCompliance (GRC) activities and implementing the NIST Cyber Security Framework (CSF) across the organisation. The NIST analyst will involve in day-to-day GRC operations, such as designing and implementing security controls, interpreting … non-compliance issues and information security risks. As an Information Security Analyst at Allianz UK, you will be pivotal in advancing the company's Information Security initiatives by executing Governance, Risk, andCompliance (GRC) activities and implementing the NIST Cyber Security Framework (CSF) organization-wide. Your role will involve daily GRC operations, including designing and implementing security controls, interpreting requirements … catalogue, policies, and procedures aligned with the NIST Cyber Security Framework (CSF). Collaborating with the wider organization to integrate control testing andriskmanagement activities into the existing governance framework. Assisting cross-functional teams and business units in integrating security measures into business operations. Supporting compliance activities with the Group Information Security Framework, Cyber Essentials, and PCI DSS attestation. More ❯
London, England, United Kingdom Hybrid / WFH Options
Jobgether
and client RFPs as a subject matter expert Drive continuous improvement of services, tools, and processes within the consulting team Adhere to client and regulatory standards, contributing to riskgovernanceand business continuity efforts Requirements 3+ years in a client-facing cyber security, GRC, or consulting role, or 5+ years in a related field (military, law enforcement, or intelligence) Degree More ❯
London, England, United Kingdom Hybrid / WFH Options
Control Risks
of experience in cybersecurity, specializing in cyber assurance, third-party riskmanagement, and regulatory compliance audits. Proven track record of leading cyber assurance engagements and guiding clients through riskmanagementandcompliance processes based on industry frameworks (e.g., NIST, ISO 27001). Expertise in managing third-party audits and ensuring regulatory compliance across audit lifecycles. In-depth understanding of regulatory … Science, Engineering, or a related field. Relevant certifications such as CREST, OSCP, CISSP, CISM, CISA, ISO 27001 Lead Auditor, SANS, or other recognized credentials in cybersecurity, third-party riskmanagement, andcompliance auditing. Skills: Strong commercial acumen, with proven ability to generate new business in cyber assurance and regulatory compliance services. Exceptional communication, presentation, and analytical skills with the ability … Head of Credit RiskManagement Services London, England, United Kingdom 1 day ago Director of Risk & Compliance (law firm) London, England, United Kingdom 2 months ago Head of Cyber Governance, Riskand Complience London, England, United Kingdom 4 days ago London, England, United Kingdom 3 weeks ago Head of Governance, RiskandCompliance - Info Sec - 12 Month FTC Director Financial More ❯
South Kensington, England, United Kingdom Hybrid / WFH Options
Control Risks
of experience in cybersecurity, specializing in cyber assurance, third-party riskmanagement, and regulatory compliance audits. Proven track record of leading cyber assurance engagements and guiding clients through riskmanagementandcompliance processes based on industry frameworks (e.g., NIST, ISO 27001). Expertise in managing third-party audits and ensuring regulatory compliance across audit lifecycles. In-depth understanding of regulatory … Science, Engineering, or a related field. Relevant certifications such as CREST, OSCP, CISSP, CISM, CISA, ISO 27001 Lead Auditor, SANS, or other recognized credentials in cybersecurity, third-party riskmanagement, andcompliance auditing. Skills: Strong commercial acumen, with proven ability to generate new business in cyber assurance and regulatory compliance services. Exceptional communication, presentation, and analytical skills with the ability … Head of Credit RiskManagement Services London, England, United Kingdom 1 day ago Director of Risk & Compliance (law firm) London, England, United Kingdom 2 months ago Head of Cyber Governance, Riskand Complience London, England, United Kingdom 4 days ago London, England, United Kingdom 3 weeks ago Head of Governance, RiskandCompliance - Info Sec - 12 Month FTCDirector Financial Crime More ❯
London, England, United Kingdom Hybrid / WFH Options
Jobgether
and client RFPs as a subject matter expert Drive continuous improvement of services, tools, and processes within the consulting team Adhere to client and regulatory standards, contributing to riskgovernanceand business continuity efforts Requirements 3+ years in a client-facing cyber security, GRC, or consulting role, or 5+ years in a related field (military, law enforcement, or intelligence) Degree More ❯
Bath, Somerset, United Kingdom Hybrid / WFH Options
Bmt Defence Services LTD
d love to hear from you. About You We'd love to hear from you if you can demonstrate expertise in at least one of the following areas : Security governance, riskandcompliance (GRC), aligned with HMG cybersecurity and information assurance policies, standards, and guidance with experience in consultancy or supplier roles. Securing OT (Operational Technologies) with knowledge and understanding More ❯