Information Security & GRC Specialist
We are seeking an Information Security & GRC Specialist to support the development, implementation and continuous improvement of information security governance, risk and compliance activities. The role will help protect business information and technology assets by translating security requirements into practical policies, processes and controls. You will work with stakeholders across technology, operations, legal, privacy and business functions to promote a strong security culture and ensure that risks are identified, assessed and managed effectively.
Key responsibilities include maintaining information security policies, standards and procedures; coordinating risk assessments, control reviews and remediation plans; supporting internal and external audits; and monitoring compliance with applicable laws, regulations, contractual obligations and recognised security frameworks. You will maintain risk registers, prepare management reports and metrics, track security exceptions, and assist with third-party and supplier security assessments. The role will also contribute to incident response governance, business continuity and resilience activities, security awareness initiatives, and the ongoing improvement of governance, risk and compliance tooling and reporting.
The successful candidate will have experience in information security, governance, risk management, compliance or a related discipline, ideally within a complex technology or regulated environment. Familiarity with frameworks such as ISO 27001, NIST Cybersecurity Framework, CIS Controls, COBIT or equivalent is desirable, as is an understanding of privacy, operational resilience and third-party risk requirements. Relevant professional certifications, such as CISM, CRISC, CISSP, ISO 27001 Lead Implementer or Lead Auditor, are advantageous. You should be analytical, organised and confident engaging with stakeholders at all levels, with the ability to communicate complex security matters clearly. Strong report-writing, documentation and project coordination skills are essential, along with a proactive approach, sound judgement and a commitment to confidentiality and continuous improvement.
Information Security & GRC Specialist
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...