Senior Information Security GRC Analyst

5 days ago


London, United Kingdom GUARDIAN NEWS AND MEDIA Full time

Join our team at the Guardian and be a part of a diverse and inclusive global organisation that delivers fearless, investigative journalism, and holds power to account. Our team of award-winning journalists, cutting-edge commercial professionals, and industry-leading digital experts are committed to making a difference and represent a wide range of backgrounds and perspectives.

Are you ready to shape the future of information security?

We’re seeking a Senior Information Security GRC Analyst to join our dynamic team. This pivotal role will enable you to lead GRC efforts, ensuring that our organisation stays secure, compliant, and resilient in a rapidly evolving threat landscape. As a trusted expert, you’ll collaborate with teams across the business to embed security at the core of everything we do. 

If you’re passionate about building robust security frameworks, managing risks, and making an impact, we want to hear from you 

About the Role

Governance: 

  • Support the design, delivery and maintenance of the security policies, standards and procedures, aligning with organisational objectives and regulatory requirements.
  • Implement and manage industry standard governance frameworks, ensuring consistent practices across the business

Risk Management: 

  • Deliver Information Security risk management and compliance activities, advising business functions on best practice across the Information Security risk management lifecycle.
  • Conduct Information Security risk assessments including the periodic enterprise risk assessments, and those in response to new products, change programmes, and emerging risks.
  • Support third-party risk assessments to ensure vendor compliance with organisational security standards

Compliance: 

  • Ensure ongoing compliance with regulations like GDPR, PCI-DSS, while supporting audits and assessments
  • Perform Information Security controls testing and assessment

Awareness: 

  • Support the design and delivery of engaging security training programs to promote and champion a culture of security across the organisation.
  • Deliver Information Security risk management and compliance activities, advising business functions on best practice across the Information Security risk management lifecycle

Reporting: 

  • Support reporting against defined key performance indicators (‘KPI’s) for Information Security risk management and compliance.
  • Develop actionable reports and dashboards on risk and compliance status, and key metrics for senior stakeholders

About You

  • Experience in Information Security risk management and controls knowledge, in line with standard security frameworks, to deliver risk assessments, risk management, controls design, and controls assurance.
  • Professional certifications such as CISM, CISSP, CRISC or ISO 27001 Lead Implementer is a benefit but not essential
  • Experience with industry standard information security management frameworks such as NIST, ISO 27001, PCI-DSS, OWASP
  • Ability to understand emerging security threats and design information security controls in response to these threats
  • Strong knowledge of risk management principles and best practices
  • Excellent communication skills to engage both with both technical and non-technical audiences
  • Analytical mindset with high level of attention to detail
  • Proficiency with GRC tools is desirable

We operate in a hybrid working model, with a mix of office based and remote based working. You'll be expected to come into our London Kings Cross office 3 days a week.

How to Apply

To apply, please upload your latest CV.

The closing date for applications is Tuesday 3rd December 2024.

--

Benefits & Policies

We offer 30 days annual leave plus bank holidays. Our pension scheme is generous; if you contribute 5% then we will contribute 8-12% (depending on your age). 

You are entitled to life cover, income protection, sick pay and eye tests. You can also opt in to dental insurance.

We have enhanced maternity, paternity, adoption and shared parental leave policies in place. We also support our employees by offering an IVF, menopause, baby loss, and trans equality policy.

Culture & Wellbeing

We want everyone to feel like they belong at the Guardian and we champion diversity of thought. Our various employee forums provide a platform to use their voice to foster an inclusive workplace.

We offer great tools to help you prioritise your wellbeing including free yoga and pilates. These run alongside our corporate gym membership and cycle to work scheme.

Learning & Development

We encourage personal and professional growth. Employees have access to a broad range of tools and solutions, and we are happy to support the pursuit of professional qualifications through vocational courses and apprenticeships. 

Our Working Environment

We take pride in our surroundings and are pleased to offer versatile meeting rooms and colourful communal areas. We have a brilliant canteen that caters to breakfast, lunch and dinner, with views overlooking Regent’s Canal.



  • London, Greater London, United Kingdom Robert Walters Full time

    About the Role:Robert Walters is seeking a highly skilled Information Security Analyst GRC to join their team in London. The ideal candidate will have a strong background in information security and experience in GRC (Governance, Risk, and Compliance) principles.Key Responsibilities:Ensure support and ownership of the Governance, Risk, and Compliance pillar...


  • City Of London, United Kingdom London Business School Full time

    Job Title: Senior Security GRC AnalystJob Summary:We are seeking a highly skilled Senior Security GRC Analyst to join our Technology department at London Business School. The successful candidate will be responsible for delivering and assuring information security governance, risk, and compliance activities.Main Responsibilities:Contribute to the design and...


  • London , N1 9GU, Central London, United Kingdom GUARDIAN NEWS AND MEDIA Full time

    Join our team at the Guardian and be a part of a diverse and inclusive global organisation that delivers fearless, investigative journalism, and holds power to account. Our team of award-winning journalists, cutting-edge commercial professionals, and industry-leading digital experts are committed to making a difference and represent a wide range of...


  • London, United Kingdom London Business School Full time

    The RoleLondon Business School are looking for a Senior Security GRC Analyst to join Technology on a permanent basis. You will collaborate closely with the GRC Analyst. The postholder will be responsible for the delivery and assurance of information security governance, risk, and compliance activities at London Business School.The role is central to ensuring...


  • City of London, London, Central London, United Kingdom myGwork Full time

    This job is with London Business School, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. The RoleLondon Business School are looking for a Senior Security GRC Analyst to join Technology on a permanent basis. You will collaborate closely...


  • London, United Kingdom London Business School Full time

    London Business School are looking for a Senior Security GRC Analyst to join Technology on a permanent basis. You will collaborate closely with the GRC Analyst. The postholder will be responsible for the delivery and assurance of information security governance, risk, and compliance activities at London Business School.The role is central to ensuring...


  • City of London, Greater London, United Kingdom London Business School Full time

    London Business School are looking for a Senior Security GRC Analyst to join Technology on a permanent basis. You will collaborate closely with the GRC Analyst. The postholder will be responsible for the delivery and assurance of information security governance, risk, and compliance activities at London Business School. The role is central to ensuring...


  • City of London, Greater London, United Kingdom London Business School Full time

    London Business School are looking for a Senior Security GRC Analyst to join Technology on a permanent basis. You will collaborate closely with the GRC Analyst. The postholder will be responsible for the delivery and assurance of information security governance, risk, and compliance activities at London Business School. The role is central to ensuring...


  • City Of London, United Kingdom London Business School Full time

    London Business School are looking for a Senior Security GRC Analyst to join Technology on a permanent basis. You will collaborate closely with the GRC Analyst. The postholder will be responsible for the delivery and assurance of information security governance, risk, and compliance activities at London Business School. The role is central to ensuring...


  • City of London, United Kingdom London Business School Full time

    London Business School are looking for a Senior Security GRC Analyst to join Technology on a permanent basis. You will collaborate closely with the GRC Analyst. The postholder will be responsible for the delivery and assurance of information security governance, risk, and compliance activities at London Business School. The role is central to ensuring...


  • City Of London, United Kingdom London Business School Full time

    London Business School are looking for a Senior Security GRC Analyst to join Technology on a permanent basis. You will collaborate closely with the GRC Analyst. The postholder will be responsible for the delivery and assurance of information security governance, risk, and compliance activities at London Business School.The role is central to ensuring...


  • City Of London, United Kingdom London Business School Full time

    London Business School are looking for a Senior Security GRC Analyst to join Technology on a permanent basis. You will collaborate closely with the GRC Analyst. The postholder will be responsible for the delivery and assurance of information security governance, risk, and compliance activities at London Business School.The role is central to ensuring...

  • Information Security

    2 months ago


    London, United Kingdom Virgin Trains Full time

    Information Security & GRC Manager Job Title : Location : London or Birmingham Salary : circa £60,Close Date : 29-Sep- Employment Type : PermanentFull or Part time : Full Time We are looking for a talented and driven individual to fill the role of Information Security & GRC Manager. You will be responsible for overseeing all aspects of cyber security for...


  • London, Greater London, United Kingdom AB Agri Full time

    About AB AgriAssociated British Foods is a leading global food processing and retail company with a presence in over 185 locations across 23 countries. Our ingredients division is the world's second-largest producer of both sugar and baker's yeast, and our grocery brands occupy leading positions across the globe.About the RoleThis is an exciting opportunity...

  • GRC Analyst

    3 weeks ago


    London, United Kingdom Barclay Simpson Full time

    We’re looking for a skilled GRC Analyst to join a reputable organisation in a hybrid capacity, with two days a week based in London. In this role, you’ll be responsible for assessing and testing security controls, identifying compliance gaps, and enhancing the organisation’s security risk posture through policy improvements, automation, and refined...

  • GRC Analyst

    3 weeks ago


    London,, UK, United Kingdom Barclay Simpson Full time

    We’re looking for a skilled GRC Analyst to join a reputable organisation in a hybrid capacity, with two days a week based in London. In this role, you’ll be responsible for assessing and testing security controls, identifying compliance gaps, and enhancing the organisation’s security risk posture through policy improvements, automation, and refined...

  • GRC Analyst

    1 week ago


    London, United Kingdom Barclay Simpson Full time

    Job Description We’re looking for a skilled GRC Analyst to join a reputable organisation in a hybrid capacity, with two days a week based in London. In this role, you’ll be responsible for assessing and testing security controls, identifying compliance gaps, and enhancing the organisation’s security risk posture through policy improvements, automation,...

  • GRC Analyst

    3 weeks ago


    London, United Kingdom Barclay Simpson Full time

    We’re looking for a skilled GRC Analyst to join a reputable organisation in a hybrid capacity, with two days a week based in London. In this role, you’ll be responsible for assessing and testing security controls, identifying compliance gaps, and enhancing the organisation’s security risk posture through policy improvements, automation, and refined...

  • GRC Analyst

    3 weeks ago


    London, United Kingdom Barclay Simpson Full time

    We’re looking for a skilled GRC Analyst to join a reputable organisation in a hybrid capacity, with two days a week based in London. In this role, you’ll be responsible for assessing and testing security controls, identifying compliance gaps, and enhancing the organisation’s security risk posture through policy improvements, automation, and refined...

  • GRC Compliance Officer

    22 hours ago


    City Of London, United Kingdom London Business School Full time

    Our Commitment to Inclusion and BelongingWe strive to create an environment where everyone feels respected, welcomed, and heard. Our commitment to driving inclusion and belonging is a key priority at London Business School.About the JobThe Senior Security GRC Analyst will be responsible for delivering and assuring information security governance, risk, and...