Newcastle upon Tyne, England, United Kingdom Hybrid / WFH Options
TSG
responsibilities will include, but are not limited to; Execute thorough risk assessments and gap analyses for clients. Provide in-depth control reviews, maturity ratings, and remediation actions based on Governance, Risk, andCompliance (GRC) frameworks such as Cyber Essentials, NIST, CIS, and ISO27001 Conduct comprehensive vulnerability assessments of client systems to identify potential security risks. Assist with the implementation of … security measures through TSG and partner-led services including Managed Detection and Response (MDR), Penetration and data loss prevention (DLP) programs. Provide guidance and recommendations on technical security governance, incident response, and security awareness training. Act as a trusted advisor on cyber and information security topics, helping clients implement and refine their security strategies. Prepare and present clear and concise … security services. Knowledge, Skills & Experience; Relevant professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or Certified Information Security Manager (CISM). Familiarity with GRC frameworks such as ISO27001, NIST, CIS benchmarks, and Cyber Essentials/Plus. Proven experience in a cybersecurity consultancy role, with a strong understanding of cybersecurity principles, protocols, and standards. Demonstrable More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
TechNET IT Recruitment Ltd
Ltd by 2x Get notified about new Head of Information Security jobs in Manchester Area, United Kingdom . Altrincham, England, United Kingdom 1 week ago Head of Cyber Security Governance, RiskandCompliance Manchester, England, United Kingdom 3 months ago Head of Cyber Security Governance, RiskandCompliance Manchester, England, United Kingdom 3 days ago Manchester, England, United Kingdom … months ago Manchester, England, United Kingdom 2 weeks ago Cyber Security Governance Senior Manager Manchester, England, United Kingdom 3 months ago Cyber Security Governance Senior Manager Manchester, England, United Kingdom 2 weeks ago Manchester, England, United Kingdom 2 days ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help More ❯
London, England, United Kingdom Hybrid / WFH Options
F5 Consultants
both the Private and Public/Defence Sector. They are seeking talented Cyber Security Consultants to join their growing team, with ideal candidates having good knowledge/understanding of GovernanceRisk & Compliance (GRC), specifically around HMG/MOD frameworks such as Secure by Design, NIST, and ISO 27001. Because of the nature of the work and customers you could end More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Spencer Rose
stakeholders Base level understanding of security riskmanagementand taxonomy principles, to reduce risk to an acceptable level. Knowledge of vulnerability managementand incident management practices. Ability to learn GRC tools and best practices. RSA Archer is preferred (alternatives considered). Professional Certifications: Ideally qualified in MSc Information Security, CICA, CRISC, CISM and/or Data analysis beneficial but not More ❯
stakeholders Base level understanding of security riskmanagementand taxonomy principles, to reduce risk to an acceptable level. Knowledge of vulnerability managementand incident management practices. Ability to learn GRC tools and best practices. RSA Archer is preferred (alternatives considered). Professional Certifications: Ideally qualified in MSc Information Security, CICA, CRISC, CISM and/or Data analysis beneficial but not More ❯
London, England, United Kingdom Hybrid / WFH Options
Smart Communications group
response efforts/playbooks. Monitoring, remediating, and reporting on security events. Network management fundamentals are required to be able to enhance security posture across network tools. Supporting the Security & GRC teams in activities for certification requirements. What we’re looking for: Must have skills/experience: At least 3 years of hands-on, proven industry experience in a similar role. More ❯
VP, IT Security Risk - RSA Archer, NIST, GRC - London - Hybrid A strategic opportunity for a VP-level Information & Cyber Security professional to join a growing security governanceandrisk team. Drive enterprise-level cyber riskmanagement, compliance, and security posture enhancement in a highly regulated environment. Key Responsibilities: Own and maintain security policies, standards, procedures , andgovernance frameworks Align risk … Deliver detailed risk reporting and metrics to key stakeholders Key Skills & Experience: 5+ years in Information/Cyber Security , with 2+ years focused on security risk Strong background in GRC tools - RSA Archer strongly preferred Deep understanding of security riskmanagement , taxonomy, and control frameworks Strong attention to detail with expert-level documentation and reporting ability Ability to communicate complex More ❯
Cambridge, England, United Kingdom Hybrid / WFH Options
Abcam
the world. This community needs people like you: dedicated, agile and above all audacious so we can truly drive science forward. The Abcam's Senior Director of Cyber Security Governance & Risk is responsible for overseeing the strategic direction and implementation of IT Cyber security frameworks, managing IT risks, and ensuring compliance with relevant regulations, including but not limited to SOx … collaborating with various stakeholders to enhance the organisation compliance posture, mitigate risks, and ensure adherence to internal and external regulatory frameworks while driving continuous improvement in Abcam's IT GRC program This position reports to the Chief Digital Officer and is key member of the global Abcam Digital Department. This is a remote first position with requirement to attend Abcam … and socialize the Cyber strategy for Abcam and LSIG, working with peers and senior stakeholders to ensure understanding, support and adherence to it Develop, implement, and maintain IT Cyber governance frameworks aligned with COBIT, ITIL, NIST 800-53, and other industry standards Establish and monitor IT policies, procedures, and controls to ensure alignment with corporate governanceand regulatory requirements Lead More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Precise Placements
Information Security Analyst - 6-Month FTC Governance, RiskandCompliance Location: London/Hybrid Contract Type: Fixed Term (6 months) Salary: Competitive A global professional services firm is seeking a proactive Information Security Analyst to support the delivery of robust security and privacy policies across its global operation. This role is ideal for someone with hands-on experience in information More ❯
are looking for a driven (Senior) Consultant. Roles & Responsibilities You have knowledge of a risk organization and it' s three lines of defense and you know your way around GovernanceRisk & Compliance topics including tooling. You will assist clients in setting up monitoring processes & tools (such as SAP GRC, ServiceNow GRC, ). You will assist clients with remaining in control … of the security andcompliance in their complex IT landscape. You will understand GRC related client issues across different sectors. You will build and manage excellent client relationships across a range of clients. You will develop an internal network and maintain excellent relationships with colleagues across KPMG. You will coach and train team members to grow the GRC knowledgebase of … the team. You demonstrate deep technical capabilities and professional knowledge. Having hands-on experience in setting up Role Based Security concepts in SAP/Microsoft or setting up SAP GRC/ServiceNow GRC is a plus. Skills & Qualifications You have a Master degree (or Bachelor and equivalent by experience). You have minimum 2 years of experience in any of More ❯
skills, both verbal and written, with the ability to initiate and lead conversations with senior stakeholders Ability to prioritise and manage a varying workload Experience - Desirable Experience with using GRC solutions as part of a riskmanagement programme. Understanding of cyber security best practices including knowledge of the general cyber threat landscape and common security controls architecture. Due to the More ❯
London, England, United Kingdom Hybrid / WFH Options
ManpowerGroup
a proven track record implementing and developing Information Security Management Systems (ISMS)? The purpose of this role is managing compliance with regulations, performing risk assessments, and ensuring overall security governance along with setting up Information Security Management Systems. Why Join Us? This business is committed to providing more than just jobs, they offer career paths that match the aspirations of … possibilities are endless and full support & training is on offer to help you realise your true potential. Role Responsibilities: Establishing and maintaining an Information Security Management System (ISMS) and overseeing Governance, RiskManagement, compliance, and relevant procedures. Collaborate with cross-functional teams: acting as the Information Security SME for teams across the business to ensure good information security is embedded … be overly technical. Instead, they should be an experienced security manager with a focus on governanceand compliance. Experience in ISMS & Governance: They should have experience in ISMS, riskmanagement, andcompliance, particularly in the context of the UK market. Some technical competency is necessary Self-sufficient, can work autonomously without support in a standalone role. Detailed knowledge of GDPR More ❯
Belfast, Northern Ireland, United Kingdom Hybrid / WFH Options
McLaughlin & Harvey
s IT environment and enterprise applications, you will be responsible for the operational management of the Company's Information Security Management System and ensuring that our IT governance, riskmanagement, andcompliance measures are effective and implemented. The role will support the implementation and maintenance of security controls across the group, aligned with our cyber security policy, group security metrics … organisational security concepts. An investigative and analytical nature with a focus on ensuring the organisation is as secure as possible. Experience in developing policy and procedural documentation to support governanceand compliance. Security tools (Email filtering, antivirus, MDR, patch management). Microsoft 365 suite (Teams, Outlook, Entra ID, Exchange). Desirable Windows server environments (Active Directory, DNS). Understanding of More ❯
London, England, United Kingdom Hybrid / WFH Options
V7
United Kingdom 2 months ago London, England, United Kingdom 3 weeks ago Greater London, England, United Kingdom 4 months ago London, England, United Kingdom 1 month ago Security Engineer, Governance, RiskandCompliance London, England, United Kingdom 2 days ago Security Analyst, Security Operations and Incident Response London, England, United Kingdom 1 week ago London, England, United Kingdom 1 week More ❯
Manchester, Lancashire, England, United Kingdom Hybrid / WFH Options
N Brown Group
We’re looking for a Governance, RiskandCompliance (GRC) Analyst to join our Cyber Security andRisk team here at N Brown GroupThe Governance, RiskandCompliance team is responsible for the development and rollout of our security policies and procedures; for building an awareness programme to promote a strong security culture across the organisation; identifying and tracking risks … line risk to develop suitable controls and metrics to ensure the Digital Operations department is operating within risk appetite, and track remediation tasks when it is not. As a Governance, RiskandCompliance (GRC) Analyst you will work across all these areas of the team’s responsibilities and help to identify ways to improve simplicity and efficiency. Although this isn … t a technical role, you will be expected to have sufficient technical expertise to understand technology risks and controls to mitigate them What will you do as a Governance, RiskandCompliance (GRC) Analyst at N Brown? Support the riskmanagement process by identifying and evaluating threats, and work with risk owners to understand the business impact and help develop More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Department for Business and Trade
Head of Cyber Governance, RiskandCompliance Join to apply for the Head of Cyber Governance, RiskandCompliance role at Department for Business and Trade Head of Cyber Governance, RiskandCompliance 1 day ago Be among the first 25 applicants Join to apply for the Head of Cyber Governance, RiskandCompliance role at Department for Business and … heart of the global economy! The Department for Business and Trade ("DBT") and Inspire People are partnering together to bring you an exciting opportunity for the Head of Cyber Governance, RiskandCompliance playing a pivotal role in shaping the success of the Cyber function and service. Salary between £71,738 to £93,864 (including allowances) plus excellent Civil Service … dependent on location and technical skills as assessed at interview. Flexible, hybrid working from London, Cardiff, Darlington, Belfast, Birmingham, Salford and Edinburgh. About the role As Head of Cyber Governance, RiskandCompliance (GRC) you will be playing a pivotal role in shaping the success of the Cyber function and service by ensuring that cyber security risks are monitored andMore ❯
London, England, United Kingdom Hybrid / WFH Options
Uphold
of transparency to open up Web3 finance for everyone. To learn more about Uphold, please visit https://uphold.com. The opportunity Uphold is seeking a Senior Data & Records Governance Lead to join our Governance, Risk, andCompliance (GRC) team. This pivotal role is responsible for designing, implementing, and operating a robust data and records governance framework that supports Uphold … teams to define and enforce policies that align with privacy, compliance, and business continuity goals. This role is ideal for a systems-savvy professional passionate about integrating technology with governance to reduce riskand enable compliance-by-design. Key Responsibilities Design, implement, and maintain a scalable data and records governance framework that aligns with global regulatory requirements (e.g., GDPR, CCPA … SEC, MiCAR) and Uphold's internal policies. Establish robust governance processes and tooling to ensure the discoverability, classification, retention, and secure disposal of data across structured and unstructured environments. Monitor and enforce data quality and records lifecycle compliance across Uphold's platforms and regions, driving continuous improvement. Collaborate with cross-functional teams including Legal, Privacy, Security, IT, GRC, and Product More ❯
London, England, United Kingdom Hybrid / WFH Options
Cyber UK
is creating software trusted by over 90% of leading industrial companies. Position: Digital Security – Senior Manager, Security Risk & Assurance Previous experience: Preferable 7+ years relevant work experience in security governance, risk, andcompliance with at least 3 years of working as a senior expert or manager of a significant department. Experience of fulfilling similar role in a software publishing or … build a competent professional skilled team with clear career pathways for members. Senior Leadership: Provide riskmanagement consultation and thought leadership to executives to set and enable Digital Security GRC strategy. Ideal experience Experience: Preferable 7+ years relevant work experience in security governance, risk, andcompliance with at least 3 years of working as a senior expert or manager of … based on business processes and practices including product development lifecycle and supply chain. Cybersecurity Frameworks: Significant experience of building riskmanagement service and providing risk assurance services against industry governance frameworks across global enterprise. Great skills to have: Customer Focussed: Skilled in developing strong trusted customer relationships built on understanding their needs over time and delivering what’s promised. Critical More ❯
in this role. ISO/IEC 27001 Lead Auditor or Lead Implementer certification. Familiarity with GDPR, NIS2, ISO/IEC 42001or other data protection and security regulations. Experience with GRC platforms or compliance automation tools. Cyber Essentials PLUS hands-on assessment or audit experience. Certifications such as CISSP, CISM, or CISA would be advantageous. The Location: Bristol (hybrid working) The More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Alexander Mae (Bristol) Ltd
in this role. ISO/IEC 27001 Lead Auditor or Lead Implementer certification. Familiarity with GDPR, NIS2, ISO/IEC 42001or other data protection and security regulations. Experience with GRC platforms or compliance automation tools. Cyber Essentials PLUS hands-on assessment or audit experience. Certifications such as CISSP, CISM, or CISA would be advantageous. The Location: Bristol (hybrid working) The More ❯
in this role. ISO/IEC 27001 Lead Auditor or Lead Implementer certification. Familiarity with GDPR, NIS2, ISO/IEC 42001or other data protection and security regulations. Experience with GRC platforms or compliance automation tools. Cyber Essentials PLUS hands-on assessment or audit experience. Certifications such as CISSP, CISM, or CISA would be advantageous. The Location: Bristol (hybrid working) The More ❯
Bradley Stoke, Gloucestershire, UK Hybrid / WFH Options
Alexander Mae (Bristol) Ltd
in this role. ISO/IEC 27001 Lead Auditor or Lead Implementer certification. Familiarity with GDPR, NIS2, ISO/IEC 42001or other data protection and security regulations. Experience with GRC platforms or compliance automation tools. Cyber Essentials PLUS hands-on assessment or audit experience. Certifications such as CISSP, CISM, or CISA would be advantageous. The Location: Bristol (hybrid working) The More ❯
bristol, south west england, United Kingdom Hybrid / WFH Options
Alexander Mae (Bristol) Ltd
in this role. ISO/IEC 27001 Lead Auditor or Lead Implementer certification. Familiarity with GDPR, NIS2, ISO/IEC 42001or other data protection and security regulations. Experience with GRC platforms or compliance automation tools. Cyber Essentials PLUS hands-on assessment or audit experience. Certifications such as CISSP, CISM, or CISA would be advantageous. The Location: Bristol (hybrid working) The More ❯
bradley stoke, south west england, united kingdom Hybrid / WFH Options
Alexander Mae (Bristol) Ltd
in this role. ISO/IEC 27001 Lead Auditor or Lead Implementer certification. Familiarity with GDPR, NIS2, ISO/IEC 42001or other data protection and security regulations. Experience with GRC platforms or compliance automation tools. Cyber Essentials PLUS hands-on assessment or audit experience. Certifications such as CISSP, CISM, or CISA would be advantageous. The Location: Bristol (hybrid working) The More ❯
Amherst, Massachusetts, United States Hybrid / WFH Options
University of Massachusetts Amherst
to security, privacy, andcompliance requirements. This position will perform security analysis andrisk assessment and improve security by setting policies and standards. This position requires deep knowledge in Governance, Risk, andCompliance (GRC), solid understanding of data security, academic business operations, compliance-related laws, regulations and audits. Essential Functions Identity Access Managementand Administration Executes and improves Identity andMore ❯