Information Security Governance, Risk, and Compliance (GRC) Specialist

Reference: 10kf1h6ghvmk0nqtppm6

An opportunity is available for an Information Security Governance, Risk, and Compliance (GRC) Specialist to support the development, implementation, and continuous improvement of information security governance and risk management practices. The successful candidate will help ensure that security policies, controls, and processes align with business objectives, regulatory obligations, and recognised industry frameworks. This role will work closely with technology, operational, legal, privacy, and business stakeholders to promote a consistent and effective approach to managing information security risk.

Key responsibilities will include maintaining information security policies, standards, procedures, and control documentation; coordinating risk assessments and tracking remediation activities; supporting internal and external audits; and preparing clear reports, dashboards, and management information on compliance and risk matters. The role will also contribute to third-party and supplier security assessments, control testing, exception management, and the monitoring of compliance with applicable laws, regulations, contractual requirements, and security frameworks such as ISO 27001, NIST, or equivalent standards. You will help identify opportunities to strengthen governance processes and improve security awareness across the organisation.

Applicants should have experience in information security governance, risk, compliance, audit, or a related discipline, together with a sound understanding of security controls, risk assessment methodologies, and regulatory requirements. Strong analytical, documentation, communication, and stakeholder management skills are essential, as is the ability to manage competing priorities and explain technical or compliance matters to non-technical audiences. Experience with GRC platforms, control frameworks, third-party risk, business continuity, data protection, or audit preparation would be advantageous. Relevant qualifications or certifications, such as CISA, CISM, CRISC, ISO 27001, or equivalent experience, are desirable. The role suits a proactive, detail-focused professional who can work collaboratively while maintaining sound judgement, confidentiality, and a strong commitment to continuous improvement.

COMPETITIVE SALARY
Added 09/09/2026
Reference: 10kf1h6ghvmk0nqtppm6

Information Security Governance, Risk, and Compliance (GRC) Specialist

London, England, United Kingdom Permanent Governance and Compliance

Other similar jobs

Information Security Governance, Risk, and Compliance (GRC) Specialist

Added 18/08/2026

We are seeking a dedicated Information Security Governance, Risk, and Compliance (GRC) Specialist to join our team. In this role, you will be responsible for developing and maintaining the organization's information security policies and procedures, ensuring compliance with applicable regulations and standards. You will conduct risk assessments, identify vulnerabilities, and implement effective mitigation strategies to protect sensitive data. Collaborating with cross-functional teams, you will lead initiatives to enhance the organization’s overall security posture and ensure that all security measures align with business objectives. Your expertise will be crucial in conducting regular audits and assessments to evaluate the effectiveness of current...

Learn more

Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer

Added 17/09/2026

We are seeking a Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer to strengthen enterprise-wide security governance and support the continuous improvement of cyber risk management practices. This role will provide expert guidance across security frameworks, policies, controls and assurance activities, helping to ensure that technology, business processes and third-party services meet regulatory, contractual and organisational requirements. Key responsibilities include developing, maintaining and reviewing information security policies, standards and procedures; conducting risk assessments and control reviews; supporting audit and compliance programmes; and tracking remediation activities through to completion. You will coordinate evidence gathering, prepare clear reports for senior stakeholders,...

Learn more

Senior Manager, Cybersecurity Governance, Risk & Compliance (GRC)

Added 18/09/2026

We are seeking a Senior Manager, Cybersecurity Governance, Risk & Compliance (GRC) to lead the development and continuous improvement of a mature cybersecurity governance and risk management framework. This role will provide strategic direction, independent challenge and practical guidance to ensure security controls, policies and processes align with business objectives, regulatory obligations and recognised industry standards. The successful candidate will work closely with technology, risk, legal, audit and operational teams to strengthen cyber resilience across the organisation. Key responsibilities include owning and maintaining cybersecurity policies, standards, procedures and control frameworks; overseeing enterprise cyber risk assessments, risk registers, remediation plans and...

Learn more

Senior Manager, Cybersecurity Governance, Risk & Compliance (GRC)

Added 04/08/2026

We are seeking a seasoned professional to join our team as a Senior Manager, Cybersecurity Governance, Risk & Compliance (GRC). In this role, you will be responsible for developing, implementing, and maintaining an effective cybersecurity governance framework. Your primary duties will include overseeing risk assessments, compliance audits, and policy development to ensure alignment with industry standards and regulations. You will collaborate with various departments to identify and mitigate potential risks, ensuring that the organization remains compliant with all relevant laws and best practices. Additionally, you will lead a team of cybersecurity professionals, providing guidance and support in the execution of...

Learn more

Senior Manager, Cybersecurity Governance, Risk & Compliance (GRC)

Added 03/08/2026

We are seeking a highly skilled Senior Manager of Cybersecurity Governance, Risk & Compliance (GRC) to join our team. In this pivotal role, you will lead efforts to establish, implement, and manage our cybersecurity governance framework. You will be responsible for developing and maintaining policies, procedures, and standards to ensure compliance with applicable regulations and frameworks. Collaborating with cross-functional teams, you will assess risks, recommend mitigation strategies, and ensure that all cybersecurity initiatives align with business objectives. Your duties will include conducting regular risk assessments, audits, and compliance reviews to identify vulnerabilities and recommend necessary improvements. You will also oversee...

Learn more

Head of Governance, Risk and Compliance (Information Security)

Added 10/08/2026

We are seeking a dynamic and experienced professional to take on the role of Head of Governance, Risk and Compliance (Information Security). In this leadership position, you will be responsible for developing and implementing a robust governance framework that ensures compliance with relevant laws, regulations, and industry standards. You will lead the organization’s risk management strategy, identifying potential risks and developing mitigation plans to protect sensitive information and maintain operational integrity. Your expertise will guide the creation and enforcement of policies and procedures to enhance the organization’s information security posture. The ideal candidate will possess strong analytical skills and a...

Learn more

Cyber Risk and Compliance Lead (GRC) - Up to £80k

Added 29/07/2026

Are you passionate about cyber risk management and governance? An exciting opportunity has arisen for an experienced Cyber Risk and Compliance Lead (GRC) to join a dynamic team, offering up to £80k for the right candidate. In this pivotal role, you will be responsible for overseeing the development and implementation of the organisation's governance, risk, and compliance framework. You will lead efforts to identify, assess, and mitigate cyber risks, ensuring alignment with regulatory requirements and industry best practices. Your expertise will be crucial in conducting risk assessments, managing compliance audits, and supporting the implementation of security controls across the business....

Learn more

InfoSec Governance, Risk and Compliance Analyst

Added 10/08/2026

We are seeking a qualified InfoSec Governance, Risk and Compliance Analyst to join our dynamic team. In this role, you will be responsible for developing, implementing, and maintaining the organization's information security governance framework. You will work closely with various departments to ensure compliance with relevant regulations and standards, while promoting a culture of security awareness throughout the organization. Your expertise will be crucial in identifying and assessing risks, as well as implementing effective strategies to mitigate them. Key responsibilities include conducting regular audits and assessments of information security policies and procedures, ensuring adherence to industry standards such as ISO...

Learn more

Technical Specialist (cyber related), Operational Risk and Resilience, R&CGI Operational Risk and Resilience Team - Insurance Directorate

Added 24/07/2026

We are seeking a highly skilled Technical Specialist with a strong focus on cyber-related issues to join our Operational Risk and Resilience Team within the Insurance Directorate. In this role, you will be responsible for identifying, assessing, and mitigating cyber risks that could impact the organization's operational resilience. You will work closely with cross-functional teams to develop and implement strategies aimed at enhancing the cybersecurity posture and ensuring compliance with relevant regulations and industry standards. Your expertise will be critical in conducting risk assessments, analyzing potential threats, and recommending appropriate risk management solutions. The ideal candidate will have a solid...

Learn more

Security Governance, Risk, Compliance Lead

Added 18/08/2026

We are seeking a dynamic and experienced Security Governance, Risk, Compliance Lead to enhance our organization's security framework. In this role, you will be responsible for developing, implementing, and maintaining security governance policies and procedures that align with industry standards and regulatory requirements. You will lead risk assessments to identify potential vulnerabilities, ensuring that appropriate measures are in place to mitigate risks and protect sensitive information. Collaborating with cross-functional teams, you will facilitate compliance audits and ensure adherence to relevant laws and regulations, providing guidance on best practices in security and risk management. The ideal candidate will have a strong...

Learn more

Senior IT Cyber Governance, Risk & Compliance Analyst

Added 18/08/2026

We are seeking a highly skilled Senior IT Cyber Governance, Risk & Compliance Analyst to join our dynamic team. In this role, you will be responsible for developing, implementing, and maintaining an effective governance, risk management, and compliance framework to ensure the organization meets all regulatory requirements and industry standards. You will conduct thorough risk assessments, identify vulnerabilities, and recommend appropriate mitigation strategies. Additionally, you will collaborate with cross-functional teams to enhance cybersecurity policies and procedures, ensuring alignment with overall business objectives. The ideal candidate will have a strong background in IT security, risk management, and compliance, with a proven...

Learn more

Information Security and Compliance Risk Manager

Added 26/08/2026

We are seeking an Information Security and Compliance Risk Manager to lead the development, implementation and continual improvement of information security, compliance and enterprise risk management practices. This role will provide trusted advice to senior stakeholders, helping to identify, assess and manage technology, information and operational risks across the organisation. You will support a strong culture of security and accountability while ensuring that policies, controls and processes remain aligned with relevant legislation, regulatory expectations, industry standards and business objectives. Key responsibilities will include maintaining the information security and compliance risk framework; managing risk assessments, control reviews, assurance activities and remediation...

Learn more

Compliance, Governance & Information Security Work Experience

Added 01/09/2026

An exciting work experience opportunity is available for an individual interested in compliance, governance and information security. This placement is designed to provide practical exposure to the systems, processes and professional standards that help organisations manage risk, protect information and meet legal and regulatory obligations. You will gain insight into how policies are developed, implemented and reviewed, while learning how effective governance supports confident business decision-making. Responsibilities may include assisting with the maintenance of compliance records, reviewing policies and procedures, supporting risk assessments, and helping to monitor actions arising from audits or internal reviews. You may also contribute to information...

Learn more

Compliance, Governance & Information Security Work Experience

Added 01/09/2026

We are seeking a motivated individual to join a work experience opportunity focused on compliance, governance and information security. This role is designed for someone who wants to gain practical insight into how organisations manage risk, protect information and maintain effective controls. You will work alongside experienced professionals and develop an understanding of the policies, processes and standards that support responsible business operations. Your responsibilities may include assisting with the review and maintenance of internal policies, procedures and governance documents; helping to monitor compliance activities and track actions to completion; supporting risk assessments and control testing; and contributing to the...

Learn more

Information Security & GRC Specialist

Added 17/09/2026

We are seeking an Information Security & GRC Specialist to support the development, implementation and continuous improvement of information security governance, risk and compliance activities. The role will help protect business information and technology assets by translating security requirements into practical policies, processes and controls. You will work with stakeholders across technology, operations, legal, privacy and business functions to promote a strong security culture and ensure that risks are identified, assessed and managed effectively. Key responsibilities include maintaining information security policies, standards and procedures; coordinating risk assessments, control reviews and remediation plans; supporting internal and external audits; and monitoring compliance...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.