Security Governance and Policy Lead

Reference: ieveh5urjhv0xcts7s9l

We are seeking a Security Governance and Policy Lead to shape and strengthen the organisation’s information security governance framework. This role will provide strategic direction on security policies, standards and controls, ensuring they remain aligned with regulatory obligations, industry good practice and business objectives. You will work closely with technology, risk, compliance, legal and operational teams to promote a consistent, practical and risk-based approach to security across the organisation.

Key responsibilities will include developing, reviewing and maintaining security policies, procedures, standards and guidance; overseeing the policy lifecycle and related approval processes; mapping security requirements to applicable legislation, regulations and recognised frameworks; and supporting the implementation of governance, risk and compliance processes. You will coordinate security assurance activities, contribute to risk assessments and audits, track remediation actions, and prepare clear reports and recommendations for senior stakeholders and governance forums. The role will also involve advising on security requirements for projects, suppliers, technology changes and business initiatives, as well as helping to develop security awareness and policy adoption across the workforce.

The successful candidate will have substantial experience in information security governance, policy development, risk management, compliance or a closely related discipline. You will be confident interpreting regulatory and contractual requirements and translating them into clear, workable controls and guidance. Strong knowledge of recognised security frameworks and standards, such as ISO 27001, NIST or CIS, is desirable, together with experience supporting audits, assurance reviews and third-party risk management. Excellent communication, influencing and stakeholder-management skills are essential, along with the ability to manage competing priorities, work independently and present complex security matters in a clear and accessible way. Relevant professional qualifications in information security, risk, audit or governance would be advantageous.

COMPETITIVE SALARY
Added 25/08/2026
Reference: ieveh5urjhv0xcts7s9l

Other similar jobs

Cyber Assurance Lead

Added 19/08/2026

We are seeking a highly skilled Cyber Assurance Lead to join our team and enhance our cybersecurity posture. In this role, you will be responsible for developing and implementing robust assurance frameworks that align with industry standards and regulatory requirements. You will lead risk assessments, identify vulnerabilities, and recommend strategies to mitigate risks across the organization’s digital landscape. Collaborating with cross-functional teams, you will ensure that cybersecurity best practices are integrated into all operational processes, fostering a culture of security awareness and compliance. The ideal candidate will possess a deep understanding of cybersecurity frameworks such as NIST, ISO 27001, and...

Learn more

Network Security Engineer

Added 11/08/2026

Are you passionate about safeguarding critical infrastructure and ensuring the reliability of complex networks? We are seeking a skilled Network Security Engineer to join our dynamic team. In this role, you will design, implement, and maintain robust security measures to protect our organization’s networks and data. Your responsibilities will include configuring and managing firewalls, intrusion detection/prevention systems, VPNs, and other security tools to defend against evolving cyber threats. You will also be responsible for performing regular security assessments, vulnerability scans, and penetration tests to identify and remediate potential risks. The ideal candidate will have a deep understanding of network protocols,...

Learn more

Security Engineer

Added 21/07/2026

We are seeking a skilled Security Engineer to join our dynamic team dedicated to safeguarding our digital infrastructure. In this role, you will be responsible for designing, implementing, and maintaining secure network solutions to protect sensitive data from potential threats. You will conduct thorough security assessments, identify vulnerabilities, and recommend appropriate mitigation strategies. A key aspect of your responsibilities will be to develop security protocols and ensure compliance with industry standards and regulations. Additionally, you will monitor security systems and respond promptly to any incidents, ensuring minimal disruption to operations. The ideal candidate will have a strong background in information...

Learn more

Cyber Security Policy Lead

Added 10/08/2026

We are seeking an experienced Cyber Security Policy Lead to join our dynamic team. In this role, you will be responsible for developing, implementing, and overseeing comprehensive cybersecurity policies and procedures to protect our organization's information assets. You will collaborate with various departments to ensure compliance with industry standards and regulatory requirements while promoting a culture of security awareness across the organization. Your expertise will help shape our strategic approach to risk management and incident response, ensuring that cybersecurity measures are effectively integrated into all aspects of the business. The ideal candidate will possess a strong understanding of cybersecurity frameworks,...

Learn more

Cyber Policy Lead

Added 27/07/2026

We are seeking a dynamic and experienced Cyber Policy Lead to join our team. In this role, you will be responsible for developing, implementing, and overseeing cyber security policies that align with organizational goals and regulatory requirements. You will work closely with cross-functional teams to assess risks, define security strategies, and ensure compliance with applicable laws and standards. Your expertise will be crucial in identifying potential vulnerabilities and recommending appropriate security measures to safeguard information assets. The ideal candidate will possess a strong understanding of cybersecurity frameworks, risk management practices, and incident response protocols. You will conduct thorough analyses of...

Learn more

Head of Security Policy

Added 01/09/2026

We are seeking an experienced Head of Security Policy to lead the development, implementation and continuous improvement of a comprehensive security policy framework. This role will provide strategic direction across information security, cyber risk, physical security and resilience, ensuring that policies support business objectives while meeting relevant legal, regulatory and industry requirements. You will act as a trusted adviser to senior leaders, translating complex security risks into clear, practical and proportionate guidance. Your responsibilities will include owning the security policy lifecycle, from research and drafting through consultation, approval, communication and periodic review. You will establish policy standards, procedures and control...

Learn more

DevSecOps Policy Engineer

Added 28/07/2026

We are seeking a skilled DevSecOps Policy Engineer to join our dynamic team. In this role, you will be responsible for developing, implementing, and managing security policies that integrate seamlessly into our DevOps practices. You will work closely with cross-functional teams to ensure that security is embedded into every stage of the software development lifecycle. Your expertise will guide the creation of security frameworks and best practices, ensuring compliance with industry standards and regulatory requirements. The ideal candidate will have a strong background in both DevOps and cybersecurity. You will be tasked with conducting risk assessments, identifying vulnerabilities, and recommending...

Learn more

Information and Security Governance Lead

Added 07/09/2026

We are seeking an experienced Information and Security Governance Lead to strengthen organisational resilience, information assurance and security oversight. This role will provide strategic direction across information security governance, risk management, compliance and policy, ensuring that appropriate controls are embedded across business operations and technology environments. You will work closely with senior stakeholders, technology teams, risk specialists and operational leaders to promote a strong, practical and risk-aware security culture. Key responsibilities will include developing, maintaining and continuously improving information security policies, standards, frameworks and governance processes. You will lead the identification, assessment and treatment of information and cyber security risks,...

Learn more

Head of Cyber Security and Information Governance

Added 15/09/2026

We are seeking an experienced Head of Cyber Security and Information Governance to lead the development and delivery of a robust, organisation-wide approach to cyber security, data protection and information assurance. This is a strategic leadership role, responsible for protecting sensitive information, strengthening resilience and ensuring that security and governance are embedded across people, processes and technology. You will provide expert advice to senior leaders and ensure that cyber and information risks are understood, managed and regularly reviewed. You will define and maintain the cyber security and information governance strategy, policies, standards and assurance framework. Key responsibilities include overseeing risk...

Learn more

Information Security Governance, Risk, and Compliance (GRC) Specialist

Added 09/09/2026

An opportunity is available for an Information Security Governance, Risk, and Compliance (GRC) Specialist to support the development, implementation, and continuous improvement of information security governance and risk management practices. The successful candidate will help ensure that security policies, controls, and processes align with business objectives, regulatory obligations, and recognised industry frameworks. This role will work closely with technology, operational, legal, privacy, and business stakeholders to promote a consistent and effective approach to managing information security risk. Key responsibilities will include maintaining information security policies, standards, procedures, and control documentation; coordinating risk assessments and tracking remediation activities; supporting internal and...

Learn more

Advisory Engineer, AI Governance and Product Security

Added 08/09/2026

We are seeking an Advisory Engineer, AI Governance and Product Security to help build safe, secure and trustworthy artificial intelligence products. This role will provide practical technical guidance across the product lifecycle, from early research and design through deployment, monitoring and continuous improvement. You will work closely with software engineers, product managers, data scientists, security specialists, legal advisers and risk teams to translate emerging AI governance expectations into clear, workable engineering practices. Your responsibilities will include assessing AI systems for security, privacy, safety and regulatory risks; developing threat models and control requirements; advising on secure architecture, data protection, access management...

Learn more

Information Security Governance, Risk, and Compliance (GRC) Specialist

Added 18/08/2026

We are seeking a dedicated Information Security Governance, Risk, and Compliance (GRC) Specialist to join our team. In this role, you will be responsible for developing and maintaining the organization's information security policies and procedures, ensuring compliance with applicable regulations and standards. You will conduct risk assessments, identify vulnerabilities, and implement effective mitigation strategies to protect sensitive data. Collaborating with cross-functional teams, you will lead initiatives to enhance the organization’s overall security posture and ensure that all security measures align with business objectives. Your expertise will be crucial in conducting regular audits and assessments to evaluate the effectiveness of current...

Learn more

Head of Governance, Risk and Compliance (Information Security)

Added 10/08/2026

We are seeking a dynamic and experienced professional to take on the role of Head of Governance, Risk and Compliance (Information Security). In this leadership position, you will be responsible for developing and implementing a robust governance framework that ensures compliance with relevant laws, regulations, and industry standards. You will lead the organization’s risk management strategy, identifying potential risks and developing mitigation plans to protect sensitive information and maintain operational integrity. Your expertise will guide the creation and enforcement of policies and procedures to enhance the organization’s information security posture. The ideal candidate will possess strong analytical skills and a...

Learn more

Principal IAM Consultant, Identity Governance and Data Access

Added 07/09/2026

We are seeking a Principal IAM Consultant specialising in Identity Governance and Data Access to lead the design, delivery and continuous improvement of enterprise identity and access management capabilities. This is a senior advisory role for an experienced professional who can translate business, regulatory and security requirements into practical, scalable solutions. You will work with technology, risk, compliance, data and business stakeholders to strengthen access controls, improve governance and support secure digital transformation across complex environments. Your responsibilities will include defining IAM and identity governance strategies; developing target operating models, standards, policies and control frameworks; and leading initiatives covering joiner,...

Learn more

InfoSec Governance, Risk and Compliance Analyst

Added 10/08/2026

We are seeking a qualified InfoSec Governance, Risk and Compliance Analyst to join our dynamic team. In this role, you will be responsible for developing, implementing, and maintaining the organization's information security governance framework. You will work closely with various departments to ensure compliance with relevant regulations and standards, while promoting a culture of security awareness throughout the organization. Your expertise will be crucial in identifying and assessing risks, as well as implementing effective strategies to mitigate them. Key responsibilities include conducting regular audits and assessments of information security policies and procedures, ensuring adherence to industry standards such as ISO...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.