Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer
We are seeking a Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer to strengthen enterprise-wide security governance and support the continuous improvement of cyber risk management practices. This role will provide expert guidance across security frameworks, policies, controls and assurance activities, helping to ensure that technology, business processes and third-party services meet regulatory, contractual and organisational requirements.
Key responsibilities include developing, maintaining and reviewing information security policies, standards and procedures; conducting risk assessments and control reviews; supporting audit and compliance programmes; and tracking remediation activities through to completion. You will coordinate evidence gathering, prepare clear reports for senior stakeholders, and advise on risk acceptance, treatment plans and control effectiveness. The role will also contribute to security architecture and project reviews, supplier and third-party risk assessments, business continuity activities, incident response governance, and the implementation of improvements aligned with recognised frameworks such as ISO 27001, NIST, CIS Controls or similar.
The successful candidate will have substantial experience in cyber security governance, risk and compliance, with a strong understanding of security controls, regulatory obligations, audit principles and risk management methodologies. Relevant certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer or Lead Auditor are desirable. You should be confident engaging with technical and non-technical audiences, able to challenge constructively, and skilled at translating complex security issues into practical business recommendations. Strong analytical, documentation and stakeholder-management skills are essential, along with the ability to prioritise competing demands and work independently in a changing environment. Experience with GRC platforms, cloud security risk, third-party assurance and security metrics would be advantageous.
Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...