Senior Governance Risk and Compliance Consultant

2 weeks ago


United Kingdom HAAR Recruitment Full time

Senior GRC Consultant


ROLE PURPOSE


The Security Advisory team, of which Governance, Risk and Compliance is a key part, is of strategic importance. By helping our customers navigate the rapidly evolving and increasing complex world of Governance, Risk and Compliance, we bring significant value to organisations through our independent, consultative approach.


The Senior GRC Advisory Specialist role comprises of three core functions: 1) consultancy and delivery. 2) pre-sales and customer-facing support . And 3) developing new Advisory and assessment-led services based on business requirements.


Key functions consist of engaging with customer stakeholders to define their requirements, supporting the delivery of security assessments, managing key third-party relationships, and supporting the pre-sales/sales functions to drive new opportunities, and ultimately growing the business.


In addition, as a senior role within the Business Unit, the successful candidate will have input in to establishing and defining the strategic direction of the GRC Consultancy arm of the business unit.


This varied role will include the preparation and coordination of security advisory engagements across a broad range of market sectors. This position will encompass a client facing aspect and you will be expected to support the delivery of presentations to clients as well as articulate cyber security against business outcomes.


This is a home-based role, though will require occasional travel to customers sites, London and Dublin offices and other locations to support the needs of the business. All expenses will be paid.


RESPONSIBILITIES


Pre-sales support

Driving awareness of the security advisory portfolio internally across the wider organisation and externally at conferences and events

Ad-hoc travel to client site to develop stakeholder relationships and present the security advisory portfolio

Development of GRC advisory services collateral and presentations

Conduct training sessions with sales/pre-sales surrounding GRC advisory services

Undertaking cross-department collaboration sessions to integrate GRC advisory services into other service offerings

Reviewing and drafting initial responses to tenders

Developing Statements of Works and preparing quotes to meet clients’ requirements

Engaging and managing key third-party relationships


Consultancy

Delivering assessments against security best practice frameworks e.g. ISO 27001, Cyber Essentials, CIS Controls etc

Supporting the delivery of consultancy engagements

Co-ordinating client engagements and undertaking elements of project management throughout the lifecycle of the engagement.

Drafting and reviewing client reports

Drive follow-on work from the initial assessments

Auditing and frameworks


KNOWLEDGE AND EXPERIENCE


Required experience/knowledge

Understanding of NIS2 & DORA

Consultancy and delivery of Security best practice frameworks including : ISO 27001, CIS Critical Security Controls, NIST Cyber Security Framework and NUK NCSC Cyber Assessment Framework.

Understanding and scoping for Penetration Testing

Understanding and scoping Red Teaming/Purple Teaming

Understanding, scoping, creation and delivery of Incident Readiness activities (Playbooks, policy development, tabletop exercises)

Knowledge and understanding of Zero Trust

Data protection and Governance


Desired experience/knowledge

  1. Consultancy and delivery of Cyber Essentials
  2. Understanding/consultancy/delivery of PCI DSS.
  3. AI Governance
  4. Supply chain management
  5. Asset Management
  6. Policy development (eg, End User Access, Acceptable Use Policy etc)
  7. OT Security


Profile

Excellent communication skills (interpersonal, verbal, written, presentation)

Attention to detail, able to produce high-quality reports

Ability to translate security requirements into business language

Experience in GRC/Security Advisory, either in a Consulting firm or as an internal or external Security Professional

Ability to work independently

Ability to work as part of a team

Desire for personal and carer growth

Previous team management experience desirable


Qualifications

IT Security based degree/equivalent industry experience, and one of the following:


Certified ISO 27001 Lead Implementer/ Auditor

Certified Information Security Manager (CISM)

Certified in Risk and Information Systems Control (CRISC)

Certified in the Governance of Enterprise IT (CEGIT)

Certified Information Systems Auditor (CISA)

Certified Information Systems Security Professional (CISSP)


Excellent communication skills (interpersonal, verbal, written, presentation)

Attention to detail, able to produce high-quality reports

Ability to translate security requirements into business language

Experience in GRC/Security Advisory, either in a Consulting firm or as an internal or external Security Professional

Ability to work independently



  • United Kingdom HAAR Recruitment Full time

    Senior GRC ConsultantROLE PURPOSEThe Security Advisory team, of which Governance, Risk and Compliance is a key part, is of strategic importance. By helping our customers navigate the rapidly evolving and increasing complex world of Governance, Risk and Compliance, we bring significant value to organisations through our independent, consultative approach.The...


  • United Kingdom HAAR Recruitment Full time

    Senior GRC ConsultantROLE PURPOSEThe Security Advisory team, of which Governance, Risk and Compliance is a key part, is of strategic importance. By helping our customers navigate the rapidly evolving and increasing complex world of Governance, Risk and Compliance, we bring significant value to organisations through our independent, consultative approach.The...


  • United Kingdom Sumitomo Mitsui Banking Corporation – SMBC Group Full time

    IT Governance, Risk and Compliance (GRC) Lead 1) Background This new role forms a key part of the Technology Risk Management function, supporting the Head of Technology Risk. The role holder will form a crucial component in the establishment of an enhanced risk management framework and beyond that identify and assess potential risks across Technology, as...


  • United Kingdom HAAR Recruitment Full time

    Senior GRC Consultant ROLE PURPOSE The Security Advisory team, of which Governance, Risk and Compliance is a key part, is of strategic importance. By helping our customers navigate the rapidly evolving and increasing complex world of Governance, Risk and Compliance, we bring significant value to organisations through our independent, consultative...


  • United Kingdom HAAR Recruitment Full time

    Senior GRC Consultant ROLE PURPOSE The Security Advisory team, of which Governance, Risk and Compliance is a key part, is of strategic importance. By helping our customers navigate the rapidly evolving and increasing complex world of Governance, Risk and Compliance, we bring significant value to organisations through our independent, consultative...


  • United Kingdom HAAR Recruitment Full time

    Senior GRC Consultant ROLE PURPOSE The Security Advisory team, of which Governance, Risk and Compliance is a key part, is of strategic importance. By helping our customers navigate the rapidly evolving and increasing complex world of Governance, Risk and Compliance, we bring significant value to organisations through our independent, consultative...

  • Head of Risk

    3 weeks ago


    United Kingdom BettingJobs Full time

    Our client, a well-established Betting Exchange is currently searching for an exceptional Head of Risk & Compliance to join their lively team based remotely in the UK with travel to London & Cork.Responsibilities:Provide leadership on Risk, Compliance, and Anti-Money Laundering (AML) best practices.Act as external point of contact for stakeholders, auditors,...


  • United Kingdom Sumitomo Mitsui Banking Corporation – SMBC Group Full time

    IT Governance, Risk and Compliance (GRC) Lead 1) Background This new role forms a key part of the Technology Risk Management function, supporting the Head of Technology Risk. The role holder will form a crucial component in the establishment of an enhanced risk management framework and beyond that identify and assess potential risks across Technology, as...


  • United Kingdom EOS Risk Group Full time

    About UsWe are a leading global security consultancy committed to providing innovative safety solutions across the energy sector. Our dedicated team of professionals works to ensure that our clients in the oil and gas industry operate in a secure and safe environment by adhering to the highest standards of risk assessment and management practices.The RoleWe...


  • United Kingdom Addington Ball Full time €50,000

    This award winning, market leading financial services firm seek a Risk & Compliance Analyst to proactively ensure they adhere to regulatory standards and ensure best practices throughout the firm. This role is hybrid and can be based in either London, Leicester, Bristol or the North West of England. Reporting into the Director of Group Risk, you will...

  • Compliance Officer

    2 months ago


    United Kingdom AJ FOX COMPLIANCE Full time

    Are you a highly skilled and dedicated professional with expertise in Anti-Money Laundering (AML) sanctions and compliance? An exceptional opportunity has arisen for a remote Compliance Officer within an International law firm.In this role, you’ll handle a broad range of compliance, conflicts and AML issues and have the chance to handle escalations from...


  • United Kingdom 086 NT Mgmt Services Ireland Ltd Full time

    Senior Consultant, ComplianceAbout Northern Trust:Northern Trust is a globally recognized financial institution that has been in continuous operation since 1889. We provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and...


  • United Kingdom 086 NT Mgmt Services Ireland Ltd Full time

    Senior Consultant, ComplianceAbout Northern Trust:Northern Trust is a globally recognized financial institution that has been in continuous operation since 1889. We provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and...


  • United Kingdom 086 NT Mgmt Services Ireland Ltd Full time

    About the RoleWe are seeking a highly skilled and experienced Senior Consultant to join our AML Compliance team in Ireland. As a key member of our team, you will be responsible for ensuring the effective implementation and maintenance of our AML compliance program.Key ResponsibilitiesDeputise for the Head of AML Compliance and execute the AML compliance...

  • Risk Consultant

    3 days ago


    United Kingdom Ardonagh Advisory Full time

    The VacancyRisk Consultant/Senior Risk Consultant - England - ARD1023614As part of our continued investment in risk management we are seeking Risk Consultants located around the UK. This exciting opportunity is aimed at multi discipline Consultants who have a good understanding of fire & perils, property, business interruption, crime & security & liability,...

  • Risk Consultant

    1 week ago


    United Kingdom Ardonagh Advisory Full time

    The VacancyRisk Consultant/Senior Risk Consultant - England - ARD1023614As part of our continued investment in risk management we are seeking Risk Consultants located around the UK. This exciting opportunity is aimed at multi discipline Consultants who have a good understanding of fire & perils, property, business interruption, crime & security & liability,...


  • United Kingdom Mac Recruit Group Full time €93,810

    Job Title: Senior Risk Manager Location: Hybrid - Remote / Multiple UK Sites Senior Risk Manager Job Summary: The Senior Risk Manager is responsible for ensuring the safe, reliable, and efficient operation of power plants. This role focuses on identifying, assessing, and mitigating risks related to plant operations, maintenance, and engineering. The...


  • United Kingdom MS Talent Full time

    Microsoft Purview/Compliance Consultant (Records Management) We have a great opportunity available for a Microsoft Purview/Compliance Consultant with Records Management experience to work with a variety of customers consulting them on data identity, security and compliance. Acting essentially as an SME for Purview/Compliance and Records Management, this...


  • United Kingdom MS Talent Full time

    Microsoft Purview/Compliance Consultant (Records Management) We have a great opportunity available for a Microsoft Purview/Compliance Consultant with Records Management experience to work with a variety of customers consulting them on data identity, security and compliance. Acting essentially as an SME for Purview/Compliance and Records Management, this...


  • United Kingdom MS Talent Full time

    Microsoft Purview/Compliance Consultant (Records Management) We have a great opportunity available for a Microsoft Purview/Compliance Consultant with Records Management experience to work with a variety of customers consulting them on data identity, security and compliance. Acting essentially as an SME for Purview/Compliance and Records Management, this...