Cyber Security Governance & Risk Management Principal
We are seeking an experienced Cyber Security Governance & Risk Management Principal to lead the development, implementation and continual improvement of enterprise-wide cyber security governance and risk management practices. This senior role will provide strategic direction on security policies, standards, frameworks and controls, ensuring they support business objectives, regulatory obligations and evolving threat landscapes. You will act as a trusted adviser to senior stakeholders, translating complex cyber security risks into clear business impacts, priorities and practical remediation plans.
Key responsibilities include maintaining the cyber security governance framework; overseeing risk identification, assessment, treatment and acceptance processes; and reporting risk exposure, control effectiveness and compliance outcomes to executive and governance forums. You will lead the development and review of policies, procedures and control requirements, coordinate internal and external assurance activities, and support the management of audits, regulatory reviews and security certifications. The role will also contribute to third-party and supply-chain risk management, information security architecture reviews, major technology initiatives, incident preparedness and organisational resilience. You will mentor security professionals, promote a strong risk-aware culture and drive continuous improvement through meaningful metrics, maturity assessments and industry benchmarking.
To succeed, you will bring extensive experience in cyber security governance, enterprise risk management, information security or a closely related discipline, together with a strong understanding of recognised frameworks such as ISO 27001, NIST, COBIT or equivalent. Professional certifications such as CISSP, CISM, CRISC, CGEIT or relevant risk and audit qualifications are highly desirable. You will demonstrate experience engaging executives, boards, auditors and technical teams, with the ability to influence outcomes without direct authority. Strong analytical, communication, negotiation and documentation skills are essential, as is the ability to manage competing priorities and make sound, evidence-based decisions in a complex environment.
Cyber Security Governance & Risk Management Principal
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...