Senior Information Security Consultant (GRC)
We are seeking a Senior Information Security Consultant (GRC) to provide expert guidance on governance, risk and compliance across a complex technology and business environment. The successful candidate will help strengthen information security frameworks, support risk-informed decision-making and ensure that security practices align with regulatory obligations, industry standards and organisational objectives. This role requires a confident consultant who can engage effectively with senior stakeholders, technical teams and business leaders.
Key responsibilities will include conducting information security and technology risk assessments, maintaining risk registers, developing treatment plans and advising on appropriate controls. You will lead or contribute to security governance activities, policy and standards development, control design, compliance assessments and audit preparation. The role will also involve mapping requirements against frameworks such as ISO 27001, NIST, CIS Controls or equivalent, supporting internal and external audits, tracking remediation actions and producing clear reports for governance forums. You may also be involved in third-party risk management, security assurance reviews, business continuity activities, incident lessons learned and the assessment of new projects, services and suppliers.
To succeed, you will have substantial experience in information security governance, risk and compliance, ideally gained in a consulting, advisory or enterprise environment. You should have a strong understanding of security principles, risk management methodologies, regulatory expectations and control frameworks, together with the ability to translate technical and compliance requirements into practical business recommendations. Relevant professional certifications such as CISM, CRISC, CISSP, ISO 27001 Lead Implementer or Lead Auditor, or equivalent experience, would be advantageous. Excellent written and verbal communication skills are essential, as is the ability to manage multiple priorities, challenge constructively and build trusted relationships at all levels. A proactive, analytical and collaborative approach will be highly valued.
Senior Information Security Consultant (GRC)
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...