Information Security & GRC Specialist

Reference: 57ukhbvv3rhewyy9ff0q

We are seeking an Information Security & GRC Specialist to support the development, implementation and continuous improvement of information security governance, risk and compliance activities. The role will help protect business information and technology assets by translating security requirements into practical policies, processes and controls. You will work with stakeholders across technology, operations, legal, privacy and business functions to promote a strong security culture and ensure that risks are identified, assessed and managed effectively.

Key responsibilities include maintaining information security policies, standards and procedures; coordinating risk assessments, control reviews and remediation plans; supporting internal and external audits; and monitoring compliance with applicable laws, regulations, contractual obligations and recognised security frameworks. You will maintain risk registers, prepare management reports and metrics, track security exceptions, and assist with third-party and supplier security assessments. The role will also contribute to incident response governance, business continuity and resilience activities, security awareness initiatives, and the ongoing improvement of governance, risk and compliance tooling and reporting.

The successful candidate will have experience in information security, governance, risk management, compliance or a related discipline, ideally within a complex technology or regulated environment. Familiarity with frameworks such as ISO 27001, NIST Cybersecurity Framework, CIS Controls, COBIT or equivalent is desirable, as is an understanding of privacy, operational resilience and third-party risk requirements. Relevant professional certifications, such as CISM, CRISC, CISSP, ISO 27001 Lead Implementer or Lead Auditor, are advantageous. You should be analytical, organised and confident engaging with stakeholders at all levels, with the ability to communicate complex security matters clearly. Strong report-writing, documentation and project coordination skills are essential, along with a proactive approach, sound judgement and a commitment to confidentiality and continuous improvement.

COMPETITIVE SALARY
Added 17/09/2026
Reference: 57ukhbvv3rhewyy9ff0q

Other similar jobs

Junior Cyber Security Analyst

Added 27/07/2026

Are you passionate about safeguarding digital assets and eager to launch your career in cyber security? We are seeking a motivated and detail-oriented Junior Cyber Security Analyst to join our growing team. In this role, you will work alongside experienced professionals to monitor network activity, identify potential threats, and assist in the implementation of security measures. You will be responsible for conducting vulnerability assessments, analysing security incidents, and supporting the response to security breaches. Your day-to-day activities will involve reviewing security logs, assisting with investigations, and helping to maintain up-to-date documentation of security policies and procedures. The ideal candidate should...

Learn more

Information Security Governance, Risk, and Compliance (GRC) Specialist

Added 09/09/2026

An opportunity is available for an Information Security Governance, Risk, and Compliance (GRC) Specialist to support the development, implementation, and continuous improvement of information security governance and risk management practices. The successful candidate will help ensure that security policies, controls, and processes align with business objectives, regulatory obligations, and recognised industry frameworks. This role will work closely with technology, operational, legal, privacy, and business stakeholders to promote a consistent and effective approach to managing information security risk. Key responsibilities will include maintaining information security policies, standards, procedures, and control documentation; coordinating risk assessments and tracking remediation activities; supporting internal and...

Learn more

Information Security Governance, Risk, and Compliance (GRC) Specialist

Added 18/08/2026

We are seeking a dedicated Information Security Governance, Risk, and Compliance (GRC) Specialist to join our team. In this role, you will be responsible for developing and maintaining the organization's information security policies and procedures, ensuring compliance with applicable regulations and standards. You will conduct risk assessments, identify vulnerabilities, and implement effective mitigation strategies to protect sensitive data. Collaborating with cross-functional teams, you will lead initiatives to enhance the organization’s overall security posture and ensure that all security measures align with business objectives. Your expertise will be crucial in conducting regular audits and assessments to evaluate the effectiveness of current...

Learn more

Information Security GRC Specialist

Added 13/08/2026

We are seeking an experienced Information Security GRC Specialist to join our dynamic team. In this role, you will be responsible for developing, implementing, and maintaining governance, risk management, and compliance (GRC) frameworks to ensure the organization meets regulatory and security standards. You will conduct risk assessments and audits, identify vulnerabilities, and recommend mitigation strategies to enhance our security posture. Your expertise will play a critical role in maintaining the integrity of our information systems and ensuring compliance with industry regulations. The ideal candidate will have a strong understanding of information security principles, GRC frameworks, and best practices. You will...

Learn more

Information Security GRC Lead

Added 08/09/2026

We are seeking an experienced Information Security GRC Lead to strengthen and mature governance, risk and compliance activities across the organisation. In this role, you will lead the development, implementation and continuous improvement of information security policies, standards, procedures and control frameworks. You will work closely with technology, legal, privacy, risk, audit and business stakeholders to ensure that security requirements are clearly defined, consistently applied and aligned with business objectives and regulatory obligations. Your responsibilities will include maintaining the information security risk management programme, coordinating risk assessments, documenting remediation plans and monitoring progress against agreed actions. You will lead internal...

Learn more

Information Security GRC Analyst

Added 03/09/2026

We are seeking an Information Security GRC Analyst to support the development, maintenance, and continuous improvement of information security governance, risk, and compliance activities. This role will help ensure that security policies, processes, and controls remain aligned with business objectives, regulatory obligations, and recognised industry standards. The successful candidate will work closely with technology, risk, legal, privacy, and operational teams to promote a consistent and effective approach to managing information security risk. Key responsibilities include maintaining security policies, standards, procedures, and control frameworks; coordinating risk assessments, control reviews, and remediation activities; and supporting internal and external audits. You will collect...

Learn more

Information Security GRC Analyst

Added 03/09/2026

We are seeking an Information Security GRC Analyst to support the development, implementation and continuous improvement of governance, risk and compliance activities. This role will help ensure that information security policies, standards and controls are aligned with business objectives, regulatory obligations and recognised industry frameworks. You will work closely with technology, privacy, legal, procurement and operational teams to promote a consistent and effective approach to managing information security risk. Key responsibilities include maintaining information security policies, procedures, standards and control documentation; supporting risk assessments, control testing and remediation tracking; coordinating internal and external audit activities; and preparing clear reports for...

Learn more

Junior Information Security Analyst (GRC) - Engine by Starling

Added 02/09/2026

We are seeking a motivated Junior Information Security Analyst to support governance, risk and compliance activities across a fast-paced technology environment. This is an excellent opportunity for someone at the start of their information security career who is keen to develop practical experience in risk management, security controls, regulatory requirements and assurance. You will work with colleagues across technology, operations and business teams to help maintain a strong security culture and support the continuous improvement of the organisation’s information security framework. Your responsibilities will include assisting with security risk assessments, control reviews and the maintenance of risk and compliance registers....

Learn more

Junior Information Security Analyst (GRC) - Engine by Starling

Added 02/09/2026

We are seeking a Junior Information Security Analyst to support governance, risk and compliance activities within a growing technology environment. This is an excellent opportunity for someone early in their information security career who is keen to develop practical experience across security controls, risk management, regulatory requirements and assurance. You will work closely with colleagues across technology, operations and the wider business to help maintain a strong security posture and promote effective risk management. Your responsibilities will include supporting the maintenance of information security policies, standards and procedures; assisting with risk assessments, control reviews and evidence collection; and helping to...

Learn more

Senior Information Security Consultant (GRC)

Added 01/09/2026

We are seeking a Senior Information Security Consultant (GRC) to provide expert guidance on governance, risk and compliance across a complex technology and business environment. The successful candidate will work with stakeholders at all levels to assess information security risks, strengthen control frameworks and support the continued development of effective security governance practices. This role requires a pragmatic consultant who can translate regulatory, technical and business requirements into clear, achievable improvements. Responsibilities will include conducting information security and technology risk assessments, maintaining risk registers and developing appropriate mitigation plans. You will support the design, implementation and review of security policies,...

Learn more

Senior Information Security Consultant (GRC)

Added 01/09/2026

We are seeking a Senior Information Security Consultant (GRC) to provide expert guidance on governance, risk and compliance across a complex technology and business environment. The successful candidate will help strengthen information security frameworks, support risk-informed decision-making and ensure that security practices align with regulatory obligations, industry standards and organisational objectives. This role requires a confident consultant who can engage effectively with senior stakeholders, technical teams and business leaders. Key responsibilities will include conducting information security and technology risk assessments, maintaining risk registers, developing treatment plans and advising on appropriate controls. You will lead or contribute to security governance activities,...

Learn more

Information Security Manager/GRC Consultant - Telecoms

Added 05/08/2026

We are seeking an experienced Information Security Manager/GRC Consultant with a focus on the telecoms sector to oversee and enhance our information security framework. In this role, you will be responsible for developing, implementing, and maintaining a comprehensive Governance, Risk management, and Compliance (GRC) strategy that aligns with industry best practices and regulatory requirements. You will lead risk assessments, manage security audits, and ensure adherence to applicable laws and standards while also providing guidance on security policies and procedures to safeguard sensitive information. The ideal candidate will have a strong background in information security management, with expertise in telecoms-specific challenges...

Learn more

Information Security GRC Lead

Added 04/08/2026

We are seeking an experienced Information Security GRC Lead to join our dynamic team. In this role, you will be responsible for developing, implementing, and managing the Governance, Risk, and Compliance (GRC) framework to ensure the organization meets its security and regulatory requirements. You will work closely with various departments to identify risks, establish security policies, and ensure compliance with industry standards and regulations. Your expertise will be critical in conducting risk assessments, audits, and continuous monitoring of the organization's security posture. The ideal candidate will possess a deep understanding of information security principles, risk management, and compliance mandates. You...

Learn more

Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer

Added 17/09/2026

We are seeking a Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer to strengthen enterprise-wide security governance and support the continuous improvement of cyber risk management practices. This role will provide expert guidance across security frameworks, policies, controls and assurance activities, helping to ensure that technology, business processes and third-party services meet regulatory, contractual and organisational requirements. Key responsibilities include developing, maintaining and reviewing information security policies, standards and procedures; conducting risk assessments and control reviews; supporting audit and compliance programmes; and tracking remediation activities through to completion. You will coordinate evidence gathering, prepare clear reports for senior stakeholders,...

Learn more

Principal IT Security Manager (GRC)

Added 15/09/2026

We are seeking a Principal IT Security Manager (GRC) to lead the development, implementation and continuous improvement of an enterprise-wide governance, risk and compliance framework. This senior role will provide strategic direction on information security risk management, regulatory compliance, policies, standards and control effectiveness across technology and business environments. You will act as a trusted adviser to senior stakeholders, translating complex security and regulatory requirements into practical, risk-based solutions that support business objectives. Key responsibilities include owning the information security risk management lifecycle, including risk identification, assessment, treatment, acceptance and reporting. You will oversee the design, review and maintenance of...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.