Security GRC Analyst

Reference: 34gjss5tkf2t83vavdwj

We are seeking a Security GRC Analyst to support the development, implementation and continuous improvement of governance, risk and compliance practices across the organisation. In this role, you will help ensure that information security policies, processes and controls align with business objectives, regulatory requirements and recognised industry standards. You will work closely with security, technology, legal, privacy, audit and operational teams to promote effective risk management and a strong culture of security awareness.

Your responsibilities will include maintaining security policies, standards, procedures and control frameworks; coordinating risk assessments and documenting findings, treatment plans and remediation activities; supporting internal and external audits; and monitoring the status and effectiveness of security controls. You will assist with third-party and supplier security reviews, track compliance obligations, prepare governance reports and dashboards, and contribute to information security questionnaires and customer assurance requests. You will also help identify opportunities to improve processes, strengthen control maturity and streamline evidence collection. The role may involve supporting frameworks and requirements such as ISO 27001, SOC 2, NIST, CIS Controls, GDPR or other relevant legislation and standards.

To succeed, you will have experience in security governance, risk, compliance, audit or a related information security discipline, together with a practical understanding of control design, risk assessment and remediation tracking. Familiarity with GRC platforms, audit management tools and common security frameworks is desirable. You should be analytical, organised and confident working with stakeholders at different levels, with the ability to translate technical and regulatory requirements into clear, actionable outcomes. Strong written and verbal communication skills, attention to detail and the ability to manage competing priorities are essential. Relevant certifications such as CISA, CRISC, CISSP, ISO 27001 Lead Implementer or Lead Auditor are advantageous, as is experience in a regulated or technology-focused environment.

COMPETITIVE SALARY
Added 14/09/2026
Reference: 34gjss5tkf2t83vavdwj

Other similar jobs

Information Security GRC Analyst

Added 03/09/2026

We are seeking an Information Security GRC Analyst to support the development, maintenance, and continuous improvement of information security governance, risk, and compliance activities. This role will help ensure that security policies, processes, and controls remain aligned with business objectives, regulatory obligations, and recognised industry standards. The successful candidate will work closely with technology, risk, legal, privacy, and operational teams to promote a consistent and effective approach to managing information security risk. Key responsibilities include maintaining security policies, standards, procedures, and control frameworks; coordinating risk assessments, control reviews, and remediation activities; and supporting internal and external audits. You will collect...

Learn more

Information Security GRC Analyst

Added 03/09/2026

We are seeking an Information Security GRC Analyst to support the development, implementation and continuous improvement of governance, risk and compliance activities. This role will help ensure that information security policies, standards and controls are aligned with business objectives, regulatory obligations and recognised industry frameworks. You will work closely with technology, privacy, legal, procurement and operational teams to promote a consistent and effective approach to managing information security risk. Key responsibilities include maintaining information security policies, procedures, standards and control documentation; supporting risk assessments, control testing and remediation tracking; coordinating internal and external audit activities; and preparing clear reports for...

Learn more

Junior Information Security Analyst (GRC) - Engine by Starling

Added 02/09/2026

We are seeking a Junior Information Security Analyst to support governance, risk and compliance activities within a growing technology environment. This is an excellent opportunity for someone early in their information security career who is keen to develop practical experience across security controls, risk management, regulatory requirements and assurance. You will work closely with colleagues across technology, operations and the wider business to help maintain a strong security posture and promote effective risk management. Your responsibilities will include supporting the maintenance of information security policies, standards and procedures; assisting with risk assessments, control reviews and evidence collection; and helping to...

Learn more

Junior Information Security Analyst (GRC) - Engine by Starling

Added 02/09/2026

We are seeking a motivated Junior Information Security Analyst to support governance, risk and compliance activities across a fast-paced technology environment. This is an excellent opportunity for someone at the start of their information security career who is keen to develop practical experience in risk management, security controls, regulatory requirements and assurance. You will work with colleagues across technology, operations and business teams to help maintain a strong security culture and support the continuous improvement of the organisation’s information security framework. Your responsibilities will include assisting with security risk assessments, control reviews and the maintenance of risk and compliance registers....

Learn more

Security GRC & AI Analyst

Added 20/08/2026

We are seeking a skilled Security GRC & AI Analyst to join our dynamic team. In this role, you will be responsible for conducting risk assessments, managing compliance initiatives, and ensuring adherence to security policies and regulations. You will collaborate with various stakeholders to develop and implement governance, risk management, and compliance (GRC) strategies that align with best practices and industry standards. Your expertise in AI-driven security solutions will enable you to identify potential threats and enhance our overall security posture. Your key responsibilities will include analyzing data to assess security risks, developing compliance reports, and providing recommendations to mitigate...

Learn more

Cyber Security GRC Analyst

Added 19/08/2026

We are seeking a motivated and detail-oriented Cyber Security GRC Analyst to join our dynamic team. In this role, you will be responsible for supporting the governance, risk management, and compliance (GRC) initiatives within our organization. Your primary duties will include identifying and assessing security risks, developing and implementing policies and procedures to mitigate those risks, and ensuring compliance with relevant regulations and industry standards. You will conduct regular audits and assessments, analyze security incidents, and provide recommendations for improvements to strengthen our overall security posture. The ideal candidate will have a strong understanding of cybersecurity frameworks such as NIST,...

Learn more

Security GRC Analyst

Added 19/08/2026

We are seeking a skilled Security GRC Analyst to join our team and play a vital role in ensuring the security and compliance of our organization. The ideal candidate will be responsible for developing, implementing, and maintaining governance, risk management, and compliance (GRC) frameworks. You will conduct regular audits and assessments to identify potential risks and vulnerabilities, ensuring that appropriate controls are in place to mitigate these risks effectively. Collaborating with cross-functional teams, you will help to promote a culture of security awareness and compliance throughout the organization. Key responsibilities include monitoring regulatory changes and industry best practices to keep...

Learn more

Information Security & GRC Specialist

Added 17/09/2026

We are seeking an Information Security & GRC Specialist to support the development, implementation and continuous improvement of information security governance, risk and compliance activities. The role will help protect business information and technology assets by translating security requirements into practical policies, processes and controls. You will work with stakeholders across technology, operations, legal, privacy and business functions to promote a strong security culture and ensure that risks are identified, assessed and managed effectively. Key responsibilities include maintaining information security policies, standards and procedures; coordinating risk assessments, control reviews and remediation plans; supporting internal and external audits; and monitoring compliance...

Learn more

Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer

Added 17/09/2026

We are seeking a Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer to strengthen enterprise-wide security governance and support the continuous improvement of cyber risk management practices. This role will provide expert guidance across security frameworks, policies, controls and assurance activities, helping to ensure that technology, business processes and third-party services meet regulatory, contractual and organisational requirements. Key responsibilities include developing, maintaining and reviewing information security policies, standards and procedures; conducting risk assessments and control reviews; supporting audit and compliance programmes; and tracking remediation activities through to completion. You will coordinate evidence gathering, prepare clear reports for senior stakeholders,...

Learn more

Principal IT Security Manager (GRC)

Added 15/09/2026

We are seeking a Principal IT Security Manager (GRC) to lead the development, implementation and continuous improvement of an enterprise-wide governance, risk and compliance framework. This senior role will provide strategic direction on information security risk management, regulatory compliance, policies, standards and control effectiveness across technology and business environments. You will act as a trusted adviser to senior stakeholders, translating complex security and regulatory requirements into practical, risk-based solutions that support business objectives. Key responsibilities include owning the information security risk management lifecycle, including risk identification, assessment, treatment, acceptance and reporting. You will oversee the design, review and maintenance of...

Learn more

Sr. Security Engineer - GRC Fintech & Financial Services EU/UK

Added 11/09/2026

We are seeking a Senior Security Engineer specialising in Governance, Risk and Compliance (GRC) to support security and resilience across fintech and financial services environments in the UK and EU. This role will help strengthen risk management practices, maintain regulatory readiness and translate security requirements into practical, measurable controls. You will work closely with engineering, technology, legal, privacy, compliance and business teams to promote secure, compliant and resilient operations. Your responsibilities will include leading security and technology risk assessments, identifying control gaps and coordinating remediation plans through to completion. You will develop, review and maintain security policies, standards, procedures and...

Learn more

Information Security Governance, Risk, and Compliance (GRC) Specialist

Added 09/09/2026

An opportunity is available for an Information Security Governance, Risk, and Compliance (GRC) Specialist to support the development, implementation, and continuous improvement of information security governance and risk management practices. The successful candidate will help ensure that security policies, controls, and processes align with business objectives, regulatory obligations, and recognised industry frameworks. This role will work closely with technology, operational, legal, privacy, and business stakeholders to promote a consistent and effective approach to managing information security risk. Key responsibilities will include maintaining information security policies, standards, procedures, and control documentation; coordinating risk assessments and tracking remediation activities; supporting internal and...

Learn more

Information Security GRC Lead

Added 08/09/2026

We are seeking an experienced Information Security GRC Lead to strengthen and mature governance, risk and compliance activities across the organisation. In this role, you will lead the development, implementation and continuous improvement of information security policies, standards, procedures and control frameworks. You will work closely with technology, legal, privacy, risk, audit and business stakeholders to ensure that security requirements are clearly defined, consistently applied and aligned with business objectives and regulatory obligations. Your responsibilities will include maintaining the information security risk management programme, coordinating risk assessments, documenting remediation plans and monitoring progress against agreed actions. You will lead internal...

Learn more

Senior Information Security Consultant (GRC)

Added 01/09/2026

We are seeking a Senior Information Security Consultant (GRC) to provide expert guidance on governance, risk and compliance across a complex technology and business environment. The successful candidate will help strengthen information security frameworks, support risk-informed decision-making and ensure that security practices align with regulatory obligations, industry standards and organisational objectives. This role requires a confident consultant who can engage effectively with senior stakeholders, technical teams and business leaders. Key responsibilities will include conducting information security and technology risk assessments, maintaining risk registers, developing treatment plans and advising on appropriate controls. You will lead or contribute to security governance activities,...

Learn more

Senior GRC / Security Assurance Officer

Added 01/09/2026

We are seeking a Senior GRC / Security Assurance Officer to lead and support governance, risk and compliance activities across a complex technology and information security environment. This role will help strengthen security assurance practices, maintain compliance with applicable regulatory and industry requirements, and provide clear, practical advice to stakeholders at all levels. The successful candidate will work closely with security, technology, risk, legal, audit and business teams to ensure that security controls are appropriately designed, implemented, monitored and evidenced. Key responsibilities include maintaining security policies, standards, procedures and control frameworks; coordinating risk assessments, control reviews, audits and assurance activities;...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.