Senior Information Security Consultant (GRC)
We are seeking a Senior Information Security Consultant (GRC) to provide expert guidance on governance, risk and compliance across a complex technology and business environment. The successful candidate will work with stakeholders at all levels to assess information security risks, strengthen control frameworks and support the continued development of effective security governance practices. This role requires a pragmatic consultant who can translate regulatory, technical and business requirements into clear, achievable improvements.
Responsibilities will include conducting information security and technology risk assessments, maintaining risk registers and developing appropriate mitigation plans. You will support the design, implementation and review of security policies, standards, procedures and control frameworks, while coordinating assurance activities, internal audits and external assessments. The role will also involve mapping controls to relevant legislation, regulations and industry standards, such as ISO 27001, NIST, COBIT or applicable data protection requirements. You will prepare clear reports and management information, track remediation actions, and provide constructive advice on control gaps and emerging risks.
You will build strong working relationships with technology, business, legal, privacy, procurement and operational teams, helping to embed security and risk management into projects, change initiatives and day-to-day processes. Experience supporting third-party risk management, security questionnaires, supplier reviews, business continuity or incident management would be valuable. Applicants should have substantial experience in information security governance, risk or compliance, with a strong understanding of security principles, control testing and regulatory expectations. Relevant professional certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer or Lead Auditor are desirable. Excellent communication, analytical and stakeholder management skills are essential, along with the ability to work independently, prioritise competing demands and present complex information clearly to both technical and non-technical audiences.
Senior Information Security Consultant (GRC)
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...