Senior Manager, Cybersecurity Governance, Risk & Compliance (GRC)
We are seeking a Senior Manager, Cybersecurity Governance, Risk & Compliance (GRC) to lead the development and continuous improvement of a mature cybersecurity governance and risk management framework. This role will provide strategic direction, independent challenge and practical guidance to ensure security controls, policies and processes align with business objectives, regulatory obligations and recognised industry standards. The successful candidate will work closely with technology, risk, legal, audit and operational teams to strengthen cyber resilience across the organisation.
Key responsibilities include owning and maintaining cybersecurity policies, standards, procedures and control frameworks; overseeing enterprise cyber risk assessments, risk registers, remediation plans and risk acceptance processes; and coordinating compliance activities against applicable laws, regulations and frameworks such as ISO 27001, NIST, CIS Controls and relevant privacy requirements. You will lead the preparation for internal and external audits, assessments and regulatory reviews, track findings through to closure, and provide clear reporting on risk exposure, control effectiveness, compliance status and key performance indicators to senior leadership and governance committees. The role will also support third-party risk management, security exception management, control testing and the development of governance processes for emerging technologies and change initiatives.
To succeed, you will bring significant experience in cybersecurity governance, risk and compliance, including leadership responsibility within a complex or highly regulated environment. You should have strong knowledge of security frameworks, regulatory expectations, risk methodologies, audit practices and control design, alongside the ability to translate technical issues into concise business-focused advice. Relevant professional certifications such as CISSP, CISM, CRISC, CISA, ISO 27001 Lead Implementer or Lead Auditor are desirable. Excellent stakeholder management, communication, analytical and influencing skills are essential, as is the ability to prioritise competing demands, lead improvement programmes and operate confidently with senior executives. A proactive, pragmatic and collaborative approach will be highly valued.
Senior Manager, Cybersecurity Governance, Risk & Compliance (GRC)
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...