Senior Information Security Consultant (GRC)

Reference: wfvcrog6janfgcrfyco7

We are seeking a Senior Information Security Consultant (GRC) to provide expert guidance on governance, risk and compliance across a complex technology and business environment. The successful candidate will help strengthen information security frameworks, support risk-informed decision-making and ensure that security practices align with regulatory obligations, industry standards and organisational objectives. This role requires a confident consultant who can engage effectively with senior stakeholders, technical teams and business leaders.

Key responsibilities will include conducting information security and technology risk assessments, maintaining risk registers, developing treatment plans and advising on appropriate controls. You will lead or contribute to security governance activities, policy and standards development, control design, compliance assessments and audit preparation. The role will also involve mapping requirements against frameworks such as ISO 27001, NIST, CIS Controls or equivalent, supporting internal and external audits, tracking remediation actions and producing clear reports for governance forums. You may also be involved in third-party risk management, security assurance reviews, business continuity activities, incident lessons learned and the assessment of new projects, services and suppliers.

To succeed, you will have substantial experience in information security governance, risk and compliance, ideally gained in a consulting, advisory or enterprise environment. You should have a strong understanding of security principles, risk management methodologies, regulatory expectations and control frameworks, together with the ability to translate technical and compliance requirements into practical business recommendations. Relevant professional certifications such as CISM, CRISC, CISSP, ISO 27001 Lead Implementer or Lead Auditor, or equivalent experience, would be advantageous. Excellent written and verbal communication skills are essential, as is the ability to manage multiple priorities, challenge constructively and build trusted relationships at all levels. A proactive, analytical and collaborative approach will be highly valued.

COMPETITIVE SALARY
Added 01/09/2026
Reference: wfvcrog6janfgcrfyco7

Senior Information Security Consultant (GRC)

London, England, United Kingdom Permanent Security Consultant

Other similar jobs

Executive Information Security Consultant (OT)

Added 04/09/2026

We are seeking an Executive Information Security Consultant (OT) to provide strategic leadership and expert guidance across operational technology environments. In this role, you will advise senior stakeholders on the security of industrial control systems, manufacturing infrastructure, critical environments, and connected operational platforms. You will help shape security strategy, strengthen governance, and ensure that information security objectives are aligned with operational resilience, safety, regulatory, and business requirements. Your responsibilities will include assessing OT security maturity, identifying risks and vulnerabilities, and developing pragmatic improvement plans that can be implemented without compromising availability or safety. You will lead or support security assessments,...

Learn more

Technical Security Consultant

Added 25/08/2026

We are seeking a Technical Security Consultant to provide expert guidance on the design, implementation and improvement of secure technology environments. You will work with internal teams, clients and technical stakeholders to identify security risks, recommend practical controls and support the delivery of resilient solutions across infrastructure, applications, cloud services and networks. The role will involve translating complex technical issues into clear business recommendations and helping organisations strengthen their overall security posture. Responsibilities will include conducting security assessments, threat and vulnerability reviews, architecture evaluations and risk analyses; developing remediation plans and advising on appropriate security controls; supporting secure solution design...

Learn more

Senior Information Security Consultant (GRC)

Added 01/09/2026

We are seeking a Senior Information Security Consultant (GRC) to provide expert guidance on governance, risk and compliance across a complex technology and business environment. The successful candidate will work with stakeholders at all levels to assess information security risks, strengthen control frameworks and support the continued development of effective security governance practices. This role requires a pragmatic consultant who can translate regulatory, technical and business requirements into clear, achievable improvements. Responsibilities will include conducting information security and technology risk assessments, maintaining risk registers and developing appropriate mitigation plans. You will support the design, implementation and review of security policies,...

Learn more

Information Security Manager/GRC Consultant - Telecoms

Added 05/08/2026

We are seeking an experienced Information Security Manager/GRC Consultant with a focus on the telecoms sector to oversee and enhance our information security framework. In this role, you will be responsible for developing, implementing, and maintaining a comprehensive Governance, Risk management, and Compliance (GRC) strategy that aligns with industry best practices and regulatory requirements. You will lead risk assessments, manage security audits, and ensure adherence to applicable laws and standards while also providing guidance on security policies and procedures to safeguard sensitive information. The ideal candidate will have a strong background in information security management, with expertise in telecoms-specific challenges...

Learn more

Senior / Managing SAP GRC & IAM Consultant

Added 18/09/2026

We are seeking a Senior / Managing SAP GRC & IAM Consultant to lead the design, implementation and continuous improvement of SAP governance, risk and compliance, identity and access management solutions. You will work closely with business stakeholders, IT teams, security functions and project leadership to deliver secure, compliant and practical access models across complex SAP environments. The role offers the opportunity to provide strategic direction while remaining engaged in hands-on delivery, solution architecture and client-facing consulting. Your responsibilities will include assessing existing SAP security and access-control landscapes; designing and implementing SAP GRC Access Control, Risk Management and Process Control...

Learn more

Lead Cybersecurity GRC Consultant

Added 14/09/2026

We are seeking a Lead Cybersecurity GRC Consultant to provide strategic guidance across governance, risk and compliance initiatives. This role will lead the development, implementation and continuous improvement of cybersecurity frameworks, policies, standards and controls aligned with recognised industry practices and applicable regulatory requirements. You will work closely with technology, privacy, legal, risk and business stakeholders to strengthen security governance and support informed risk-based decision-making. Key responsibilities include managing enterprise security risk assessments, maintaining risk registers and treatment plans, coordinating internal and external audits, and overseeing compliance activities against frameworks such as ISO 27001, NIST, SOC 2 or equivalent standards....

Learn more

Lead Cybersecurity GRC Consultant

Added 14/09/2026

We are seeking a Lead Cybersecurity GRC Consultant to provide strategic guidance across governance, risk and compliance activities. In this role, you will lead the development, implementation and continuous improvement of cybersecurity frameworks, policies, standards and control environments. You will work with technology, privacy, legal, internal audit and business stakeholders to identify information security risks, assess their potential impact and ensure that appropriate mitigation plans are defined, owned and tracked. Your responsibilities will include leading risk assessments, control reviews, compliance readiness activities and third-party security assessments. You will map regulatory and industry requirements to internal controls, support audit preparation and...

Learn more

Lead Cybersecurity GRC Consultant

Added 14/09/2026

We are seeking a Lead Cybersecurity GRC Consultant to provide strategic guidance across governance, risk and compliance initiatives. In this role, you will lead the development, implementation and continuous improvement of cybersecurity frameworks, policies, standards and procedures aligned with recognised industry practices and regulatory requirements. You will work closely with technology, risk, legal, compliance, audit and business stakeholders to strengthen security governance and embed effective risk management across the organisation. Key responsibilities include leading cybersecurity risk assessments, control reviews, compliance gap analyses and remediation programmes. You will advise on regulatory obligations, customer and third-party assurance requirements, and the design and...

Learn more

Lead Cybersecurity GRC Consultant

Added 14/09/2026

We are seeking an experienced Lead Cybersecurity GRC Consultant to provide strategic guidance across governance, risk and compliance activities. In this role, you will lead the development, implementation and continuous improvement of cybersecurity policies, standards, procedures and control frameworks. You will work closely with technology, security, legal, privacy, audit and business stakeholders to ensure that security risks are identified, assessed and managed in line with organisational objectives and regulatory expectations. Key responsibilities include leading enterprise security risk assessments, maintaining risk registers and treatment plans, and advising on appropriate mitigation strategies. You will coordinate internal and external audits, support regulatory and...

Learn more

Lead Cybersecurity GRC Consultant

Added 14/09/2026

We are seeking a Lead Cybersecurity GRC Consultant to provide strategic leadership across governance, risk, and compliance initiatives. This role will help strengthen the organisation’s cybersecurity posture by translating business objectives, regulatory obligations, and industry standards into practical security policies, controls, and improvement programmes. You will work closely with technology, risk, legal, audit, privacy, and business stakeholders to promote a consistent, risk-based approach to information security. Key responsibilities include leading cybersecurity risk assessments, control reviews, maturity assessments, and remediation planning; maintaining and improving security governance frameworks; and supporting compliance with applicable regulations, contractual requirements, and recognised standards such as ISO...

Learn more

Lead Cybersecurity GRC Consultant

Added 14/09/2026

We are seeking an experienced Lead Cybersecurity GRC Consultant to provide strategic guidance across governance, risk and compliance initiatives. In this role, you will help strengthen the organisation’s security posture by developing and maintaining cybersecurity policies, standards, procedures and control frameworks aligned with recognised industry practices and regulatory requirements. You will work closely with technology, risk, legal, audit and business stakeholders to translate security objectives into practical, measurable and sustainable outcomes. Your responsibilities will include leading cybersecurity risk assessments, control evaluations, compliance reviews and third-party risk assessments; identifying gaps; and recommending prioritised remediation plans. You will coordinate evidence collection and...

Learn more

Lead Cybersecurity GRC Consultant

Added 14/09/2026

We are seeking an experienced Lead Cybersecurity GRC Consultant to provide strategic direction and hands-on leadership across governance, risk and compliance activities. In this role, you will advise senior stakeholders on cybersecurity risk, regulatory obligations and control effectiveness, while helping to strengthen security governance and embed sustainable risk management practices across the organisation. You will lead complex engagements from assessment through to remediation, ensuring that security objectives are aligned with business priorities. Key responsibilities will include developing and maintaining cybersecurity policies, standards, frameworks and control libraries; conducting risk assessments, control reviews, maturity assessments and compliance gap analyses; and preparing clear...

Learn more

Information Security & GRC Specialist

Added 17/09/2026

We are seeking an Information Security & GRC Specialist to support the development, implementation and continuous improvement of information security governance, risk and compliance activities. The role will help protect business information and technology assets by translating security requirements into practical policies, processes and controls. You will work with stakeholders across technology, operations, legal, privacy and business functions to promote a strong security culture and ensure that risks are identified, assessed and managed effectively. Key responsibilities include maintaining information security policies, standards and procedures; coordinating risk assessments, control reviews and remediation plans; supporting internal and external audits; and monitoring compliance...

Learn more

Information Security Governance, Risk, and Compliance (GRC) Specialist

Added 09/09/2026

An opportunity is available for an Information Security Governance, Risk, and Compliance (GRC) Specialist to support the development, implementation, and continuous improvement of information security governance and risk management practices. The successful candidate will help ensure that security policies, controls, and processes align with business objectives, regulatory obligations, and recognised industry frameworks. This role will work closely with technology, operational, legal, privacy, and business stakeholders to promote a consistent and effective approach to managing information security risk. Key responsibilities will include maintaining information security policies, standards, procedures, and control documentation; coordinating risk assessments and tracking remediation activities; supporting internal and...

Learn more

Information Security GRC Lead

Added 08/09/2026

We are seeking an experienced Information Security GRC Lead to strengthen and mature governance, risk and compliance activities across the organisation. In this role, you will lead the development, implementation and continuous improvement of information security policies, standards, procedures and control frameworks. You will work closely with technology, legal, privacy, risk, audit and business stakeholders to ensure that security requirements are clearly defined, consistently applied and aligned with business objectives and regulatory obligations. Your responsibilities will include maintaining the information security risk management programme, coordinating risk assessments, documenting remediation plans and monitoring progress against agreed actions. You will lead internal...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.