GRC Specialist

1 week ago


London, Greater London, United Kingdom TEKsystems Full time

TEKsystems are currently engaging with a global company, to source a GRC specialist to help them with their UK client base. The chosen candidate will help empower the organisation and lead customer-facing security conversations, supporting contract negotiations, and working with cross-functional teams to maintain and enhance their security posture.

Location: Remote based role in the UK, but supporting the client and Client stakeholders globally

Travel requirements: Frequent travel is not anticipated for this role. Minimal travel may be requested for infrequent internal meetings.

JOB RESPONSIBILITIES:

  • Develop and operationalize enterprise-level security, risk and privacy policies, processes, and controls to mitigate risk, comply with applicable regulations and contractual obligations
  • Partner with operational departments to enhance policies, controls and acceptable evidence in compliance with applicable regulations and contractual obligations
  • Review security, audit, privacy and other relevant terms (as required) in customer contracts and support Legal and Sales with customer-facing discussions
  • Lead audit programs for our enterprise and services against industry standards, e.g., ISO 27001, NIST CSF, PCI-DSS, SSAE 16/18, and SOC1/2
  • Maintain relationships and contracts with external assessors, auditors, and vendors
  • Oversee audits and third-party risk assessments including maintenance of risk/issue tracking registry and corrective action plans to address non-compliance and audit findings
  • Build and lead a team of security, risk and privacy professionals to support our colleagues, services and customers
  • Train all employees, contractors and consultants on their policies, industry frameworks and regulations, and contractual obligations on an ongoing basis
  • Develop, maintain and distribute relevant KPIs and reporting data relevant to the GRC programs and initiatives

JOB QUALIFICATIONS:

  • Expertise in managing compliance programs for industry standards, e.g., ISO 27001, NIST CSF, PCI-DSS, SSAE 16/18, and SOC 1/2
  • Experience analyzing common regulations that impact security programs and contracts to determine applicability, e.g., CCPA, GDPR, HIPAA, APRA, EBA, FCA Guidelines, and UK DPA and Privacy Shield
  • Familiarity with industry frameworks, e.g., CVSS scoring, and NIST 800-53, OWASP, and SANS
  • Working understanding of security controls at the systems, network, and application level and how to apply with cloud-based services such as Amazon Web Services (AWS)
  • Ability to work independently in a fast-paced environment and multi-task on parallel projects
  • Can act like an owner and be accountable for solutions, including building basic capabilities if required

Job Title: GRC Specialist

Location: England, UK

Rate/Salary: GBP Daily

Job Type: Contract

Trading as TEKsystems. Allegis Group Limited, Maxis 2, Western Road, Bracknell, RG12 1RT, United Kingdom. No Allegis Group Limited operates as an Employment Business and Employment Agency as set out in the Conduct of Employment Agencies and Employment Businesses Regulations 2003. TEKsystems is a company within the Allegis Group network of companies (collectively referred to as "Allegis Group"). Aerotek, Aston Carter, EASi, Talentis Solutions, TEKsystems, Stamford Consultants and The Stamford Group are Allegis Group brands. If you apply, your personal data will be processed as described in the Allegis Group Online Privacy Notice available at

To access our Online Privacy Notice, which explains what information we may collect, use, share, and store about you, and describes your rights and choices about this, please go to

We are part of a global network of companies and as a result, the personal data you provide will be shared within Allegis Group and transferred and processed outside the UK, Switzerland and European Economic Area subject to the protections described in the Allegis Group Online Privacy Notice. We store personal data in the UK, EEA, Switzerland and the USA. If you would like to exercise your privacy rights, please visit the "Contacting Us" section of our Online Privacy Notice at for details on how to contact us. To protect your privacy and security, we may take steps to verify your identity, such as a password and user ID if there is an account associated with your request, or identifying information such as your address or date of birth, before proceeding with your request. If you are resident in the UK, EEA or Switzerland, we will process any access request you make in accordance with our commitments under the UK Data Protection Act, EU-U.S. Privacy Shield or the Swiss-U.S. Privacy Shield.


  • Head of GRC

    1 week ago


    London, Greater London, United Kingdom Hays Technology Full time

    You will need to login before you can apply for a job. Head of GRC (Governance, Risk and Compliance) - SC Cleared Your new company A high–profile Ministerial Department supporting businesses to invest, grow and export Your new role Interim Head of GRC (Governance, Risk and Compliance) – SC Cleared What you'll need to succeed We are working...


  • London, Greater London, United Kingdom TÜV Rheinland Group Full time

    We are seeking a technically driven and self-starting graduate to come and join our talented team in London. The role is focused on advising on and configuring world class Integrated Risk Management (IRM) and Governance, Risk and Compliance (GRC) solutions. Working closely with our clients to optimise processes and the maturity of GRC through implementing...


  • London, Greater London, United Kingdom Anson McCade Full time £60,000

    Cybersecurity GRC Consultant (Remote) – £60,000 Base + Project Leadership Location: Fully Remote (UK-based, with a focus on London clients) Salary: £60,000 Base + Benefits Company Overview: Our client, an innovative and rapidly expanding cyber consulting firm based in London, is seeking a talented Cybersecurity GRC Consultant to join their team....


  • London, Greater London, United Kingdom Resilienceforward Full time

    The Enterprise Risk Specialist supports the Head of Enterprise Risk Management to deliver the Team's responsibilities. Core activities that this role supports include delivery and maintenance of the Enterprise Risk Management Framework – which includes oversight of Risk Culture (e.g., risk behaviours self-assessments, risk training and communication),...


  • London, Greater London, United Kingdom Network IT Full time

    Network IT is currently recruiting for an Information Security Consultant, to join our client on a SaaS related workstream, within a multi-year modernisation programme, to provide specialist consultancy into a HR SaaS implementation. Working within a pre-existing security team, you will consult into a HR SaaS implementation workstream, acting as a Security...


  • London, Greater London, United Kingdom Network IT Full time

    Network IT is currently recruiting for an Information Security Consultant, to join our client on a SaaS related workstream, within a multi-year modernisation programme, to provide specialist consultancy into a HR SaaS implementation. Working within a pre-existing security team, you will consult into a HR SaaS implementation workstream, acting as a Security...


  • London, Greater London, United Kingdom Direct Line Insurance Group Full time

    Head of First Line RiskLocation: LondonTime Type: Full-timePosted: 9 Days AgoCompany: Direct Line GroupCombining decades of industry experience with talented individuals in various fields such as data, technology, customer care, auto repair, HR, finance, and procurement, we are a customer-centric market leader.Join a team that is dedicated to excellence in...


  • London, Greater London, United Kingdom Société Générale Full time

    Responsibilities:Description of the Business Line or DepartmentGBSU Risk & Production Management team (RPM), as part of LOD1, accompanies SG UK management in the development and transformation of its business whilst ensuring non-financial risks are appropriately identified and managed operationally, with a focus on:Transversal risks management (Business...


  • London, Greater London, United Kingdom Roka Search Full time

    Job Description Shape the future of security at a leading Real Estate name Are you a passionate information security expert looking to make a real impact? This is your chance to join a growing and dynamic IT security team at a well-known leader in the Real Estate industry. This is more than just a job; it's an opportunity to shape and define the security...


  • London, Greater London, United Kingdom Irish Life Group Services Limited Full time

    Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: Canada Life UK looks after the retirement, investment and protection needs of individuals, families and companies. We help to build better futures for our customers, our intermediaries and our employees by operating as a modern, agile and welcoming organisation. ...


  • London, Greater London, United Kingdom La Fosse Associates Full time

    6 Month ContractHybrid Role - 3 Days in London Office£700 - £800 inside IR35The Interim head of Information Security will be working on:Developing the security strategy, anticipating complex issues, challenges and opportunities, ensuring it is successfully communicated, implemented and meets business needs Provides authoritative specialist advice to the IT...


  • London, Greater London, United Kingdom Direct Line Group Full time

    About usWe are Direct Line Group - home to some of the country's best-known brands including Direct Line, Churchill, Privilege, Greenflag and NIG. Our vision is to create a world where insurance is personal, inclusive, and a force for good, and our purpose is to help people carry on with their lives, giving them peace of mind now and in the future.DLG is at...


  • London, Greater London, United Kingdom Morgan Philips Group SA Full time

    Our Client is a is a leading manufacturer of premium energy storage products for utility-scale, commercial and industrial, and residential applications.Location: Based in Europe, WFHJob responsibilities1、According to the company's strategic development requirements, planning the development path of the energy storage business, to achieve the annual...


  • London, Greater London, United Kingdom Xcede Full time

    ServiceNow Senior Technical Consultant required to join a specialist ServiceNow Implementation Partner based in the UK. Development in the ITSM suite of ServiceNow using JavaScript, HTML, and AngularJS is a prerequisite, as is hands on experience of wider offerings including CSM, ITOM, ITBM, GRC, and SecOps. Working within an industry leading IT Service...


  • London, Greater London, United Kingdom Aon Full time

    Catastrophe Analyst Aon is currently recruiting an experienced Catastrophe Modeller to join our UK Global Reinsurance Clients (GRC) Analytics team in London. Aon's Catastrophe Analytics team is the best regarded of its kind in Europe. The team sits within Aon Reinsurance Solutions and provides clients (UK insurance companies, syndicates and reinsurers)...


  • London, Greater London, United Kingdom fscom Full time £50,000

    Preference for Dublin or London, with travel to Head Office in Belfast. We are one of the leading specialist professional services firms providing governance, risk and compliance (GRC) advice to the financial services sector in the UK and Ireland. Over the last twelve years, we have built a reputation for providing high quality advice to our clients,...


  • London, Greater London, United Kingdom Xcede Full time

    ServiceNow Senior Technical Consultant required to join a specialist ServiceNow Implementation Partner based in the UK. Development in the ITSM suite of ServiceNow using JavaScript, HTML, and AngularJS is a prerequisite, as is hands on experience of wider offerings including CSM, ITOM, ITBM, GRC, and SecOps.Like the look of this opportunity Make sure to...


  • London, Greater London, United Kingdom Cointelegraph Full time

    Compliance, Policy & Training Governance Associate We re a group of hard-working overachievers who are deeply focused on building the future of finance and Web3 for our users across the globe, whether they re trading, storing, staking or using crypto. Know those people who always lead the group project? Finally, we seek people who are excited to learn about...

  • Advisory

    1 week ago


    London, Greater London, United Kingdom Avanade Spain SL Full time

    Security Advisory acts as a trusted advisor to our clients. We demystify security unknowns, develop, and execute pathways to a secure future state, and we are always at the forefront of security and technology best practice. Pair your adaptable, collaborative, and curious mindset with your tech skills, to help clients digitally transform their ways of...


  • London, Greater London, United Kingdom Markel International Services Ltd Full time

    Looking for a role within IT Governance, Risk and Compliance ? We are looking for a for a Senior IT Governance Analyst that will serve in a lead capacity to ensure all major Global IT processes and system controls are designed effectively, support clarity and enable continuous improvement. What part will you play? If you're looking for a place where you...