Cyber Governance Risk

2 weeks ago


London, United Kingdom PRS for Music Full time

Overview:
Music wouldn't exist without the work of songwriters, composers and publishers. We're here to represent them and ensure that they are rewarded for their creations. Over a century in the making, we are a global leader in the industry and always take centre stage.

**The Team**

Cyber Security affects us the same as the next business, which is why we’re looking for talented cyber professionals to help us secure our networks, systems, and people.

We’ve launched a comprehensive Cyber Security Programme, to increase our cyber security maturity, spanning multiple domains and activities.

The programme will deliver cyber security transformation and improvement consisting of control design, technology implementation, and broader cyber security activities to enable us to meet our ambitious business objectives and manage risk.

We have strong foundations upon which to improve our existing cyber security capabilities and are on a journey of improvement with a talented transformation team. We are now looking for experienced cyber security professionals to define and drive cyber security implementation fit for a data driven and technology enabled organisation.

**Responsibilities**:
**The Role**

As our
**Cyber Governance Risk and Compliance (GRC) Lead,** you will take ownership of Cybersecurity Strategy, Governance, Risk Management and Policies and support Supply Chain Security Risk Management efforts.

The role holder will be responsible for maturing and driving PRSfM’s Security GRC capability. We're passionate about protecting our members, colleagues and the PRSfM brand. We would love someone who can excel in the everchanging security landscape.

**Strategy and Governance**
Implementing GRC strategies to maintain compliance across the Cybersecurity function and wider PRSfM.

Lead an effective engagement and governance process across PRSfM alongside working with the internal audit managed service providers.

Establish good practices on TPRM processes and governance.

**Security Risk Management**
Identifying and assessing of security risks to the organisation and working with the Head of Risk to monitor and mitigate security risks through implementation of security controls.

Maintain the PRSfM Cybersecurity risk register and conduct regular cybersecurity risk assessments in line with NIST framework.

Optimise vendor productivity and performance through risk management in collaboration with in-line with Service Level Agreements (SLAs).

Ensuring PRSfM conduct periodic security reviews, assessments, and monitoring including Cybersecurity internal audits.

**Security Policy and Compliance**

Supporting procurement with compliance of suppliers

Implementing GRC policies to maintain compliance across the Cybersecurity function and wider PRSfM.

**Security Awareness and Training**

Working with managed service providers to deliver training and awareness.

Working with procurement to deliver security elements of TPRM training Metrics and Reporting

Review and track risk and compliance KPIs/metrics on an ongoing basis and present findings to senior leadership.

Ability to build relationships, collaborate cross functionality with various departments and communicate with stakeholders of varying seniority to explain tracking against key performance indicators and metrics in simple business language.

Qualifications:
**About you**

At PRS for Music, we want you to bring the best version of yourself to work every day and we celebrate individuality. Along with being whoever you want to be, in an ideal world you will also have
- A Bachelors degree (or equivalent) in a related technical.
- One or more of the following certifications or equivalent: CRISC, CISA or CISM.
- Knowledge, training, or experience working with security standards and frameworks, such as the ISO31000 Risk Management Framework, the ISO27001 standard and NIST security frameworks including NIST CSF and NIST 500-83.
- Knowledge and understanding of metrics, key performance indicators, key risk indicators, trackers, dashboards, and data visualisation techniques and tooling, e.g., PowerBI or Tableau.
- Experience in managing and leading a security pillar, with oversight on delivery, work and performance.
- Understanding of third-party lifecycle, risk fundamentals and associated security frameworks.
- Ability to communicate with PRSfM stakeholders to determine the security risk impact for new projects and business changes to provide relevant security requirements.
- Experience in implementing security controls across all cybersecurity domains including within the vendor risk management environment.
- General knowledge of various Cybersecurity domains such as: Governance, Risk & Compliance, Security Monitoring, Security Awareness and Skills Training and Supply Chain Risk Management, with an ability to track progress and performance across these areas.
- Passionate about raising awareness and educating teams to embed GRC management practices within wide



  • London, United Kingdom Cyber Crime Full time

    KPMG has been acknowledged by Forrester as a leader in the provision of cyber security consultancy. We are investing to building out our financial services cyber consulting team to meet a growing demand and provide a comprehensive range of services to many of the largest companies in the world. We help out clients protect, detect and respond to high end...


  • London, United Kingdom Cyber Crime Full time

    KPMG has been acknowledged by Forrester as a leader in the provision of cyber security consultancy. We are investing to building out our financial services cyber consulting team to meet a growing demand and provide a comprehensive range of services to many of the largest companies in the world. We help out clients protect, detect and respond to high end...


  • London, United Kingdom Cyber Crime Full time

    KPMG has been acknowledged by Forrester as a leader in the provision of cyber security consultancy. We are investing to building out our financial services cyber consulting team to meet a growing demand and provide a comprehensive range of services to many of the largest companies in the world. We help out clients protect, detect and respond to high end...

  • Senior Manager

    1 month ago


    London, United Kingdom Excelerate Full time

    Senior Manager, Cyber Risk & Governance - UK Are you a Senior Manager looking for a new opportunity? Role: Senior Manager, Cyber Risk & Governance Type: Permanent Locations: Newbury/ Paddington - Hybrid Working Salary: Contact to Discuss Our client, a globally recognized IT solutions and consultancy company are looking to bring in a Senior Manager on a...

  • Senior Manager

    1 month ago


    London, United Kingdom Excelerate Full time

    Senior Manager, Cyber Risk & Governance - UK Are you a Senior Manager looking for a new opportunity? Role: Senior Manager, Cyber Risk & Governance Type: Permanent Locations: Newbury/ Paddington - Hybrid Working Salary: Contact to Discuss Our client, a globally recognized IT solutions and consultancy company are looking to bring in a Senior Manager on a...

  • Senior Manager

    3 weeks ago


    London, United Kingdom Excelerate Full time

    Senior Manager, Cyber Risk & Governance - UK Are you a Senior Manager looking for a new opportunity? Role: Senior Manager, Cyber Risk & Governance Type: Permanent Locations: Newbury/ Paddington - Hybrid Working Salary: Contact to Discuss Our client, a globally recognized IT solutions and consultancy company are looking to bring in a Senior...

  • Senior Manager

    3 weeks ago


    London, United Kingdom Excelerate Full time

    Senior Manager, Cyber Risk & Governance - UK Are you a Senior Manager looking for a new opportunity? Role: Senior Manager, Cyber Risk & Governance Type: Permanent Locations: Newbury/ Paddington - Hybrid Working Salary: Contact to Discuss Our client, a globally recognized IT solutions and consultancy company are looking to bring in a Senior Manager on a...

  • Senior Manager

    3 weeks ago


    London, United Kingdom Excelerate Full time

    Senior Manager, Cyber Risk & Governance - UK Are you a Senior Manager looking for a new opportunity? Role: Senior Manager, Cyber Risk & Governance Type: Permanent Locations: Newbury/ Paddington - Hybrid Working Salary: Contact to Discuss Our client, a globally recognized IT solutions and consultancy company are looking to bring in a Senior Manager on a...


  • London, United Kingdom BMT Group Full time

    **Cyber Security Governance, Risk Compliance and Assurance Specialist** **About the role** Your role is at the core of everything BMT does - from helping our customers with high quality cyber security consultancy and cyber assurance supporting our customers and clients. As part of the growth of our existing successful cyber security risk and compliance...


  • London, United Kingdom Cyber Crime Full time

    KPMG has been acknowledged by Forrester as a leader in the provision of cyber security consultancy. We are investing to building out our financial services cyber consulting team to meet a growing demand and provide a comprehensive range of services to many of the largest companies in the world. We help out clients protect, detect and respond to high end...


  • London, United Kingdom Cyber Crime Full time

    KPMG has been acknowledged by Forrester as a leader in the provision of cyber security consultancy. We are investing to building out our financial services cyber consulting team to meet a growing demand and provide a comprehensive range of services to many of the largest companies in the world. We help out clients protect, detect and respond to high end...


  • London, United Kingdom Cyber Crime Full time

    KPMG has been acknowledged by Forrester as a leader in the provision of cyber security consultancy. We are investing to building out our financial services cyber consulting team to meet a growing demand and provide a comprehensive range of services to many of the largest companies in the world. We help out clients protect, detect and respond to high end...


  • London, United Kingdom Cabinet Office Full time

    **Details**: **Reference number**: - 257824**Salary**: - £61,710 - £77,900- Any offer made above the base grade will be made up with a non-pensionable specialist pay allowance based on capability**Job grade**: - Grade 6**Contract type**: - Permanent**Business area**: - CO - Chief Digital and Information Office - CDIO Security Pillar**Type of...


  • London, Greater London, United Kingdom Oliver James Full time

    Cyber Governance, Risk and Compliance Manager - FTCOliver James have been appointed to recruit a Cyber Governance, Risk and Compliance Manager for a specialty Insurance business. They are looking for the Cyber Governance, Risk and Compliance Manager to establish a control framework over security threats,as well as operationalise control assessments.Key...


  • London, Greater London, United Kingdom BAE Systems Full time £90,000

    Job Description - Head of Cyber Security Governance, Risk and Compliance (GRC Head of Cyber Security Governance, Risk and Compliance (GRC Job Title: Head of Cyber Security Governance, Risk and Compliance (GRC) Location: London, Frimley, or Preston (Other BAE sites can be considered), we offer a range of hybrid and flexible working arrangements - please...


  • London, United Kingdom BAE Systems (Powersource) Full time €90,000

    Job Title: Head of Cyber Security Governance, Risk and Compliance (GRC) Location: London, Frimley, or Preston (Other BAE sites can be considered), we offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. Salary: £90,000 + depending on skills and experiences plus executive...


  • London, United Kingdom Workingmums Full time €90,000

    Job Title: Head of Cyber Security Governance, Risk and Compliance (GRC) Location: London, Frimley, or Preston (Other BAE sites can be considered), we offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. Salary: £90,000 + depending on skills and experiences plus executive...


  • London, United Kingdom BAE Systems (Powersource) Full time €90,000

    Job Title: Head of Cyber Security Governance, Risk and Compliance (GRC) Location: London, Frimley, or Preston (Other BAE sites can be considered), we offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. Salary: £90,000 + depending on skills and experiences plus executive...


  • London, United Kingdom Workingmums Full time €90,000

    Job Title: Head of Cyber Security Governance, Risk and Compliance (GRC) Location: London, Frimley, or Preston (Other BAE sites can be considered), we offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. Salary: £90,000 + depending on skills and experiences plus executive...


  • London, Greater London, United Kingdom Partners Capital Full time

    London- Job Description:The key purpose of this role is to create and support a robust Information Security programme and framework. You will focus on core areas such as risk management, data governance, third-party security due-diligence reviews, ensuring compliance with legal, regulatory, and relevant security standards such as ISO 27001.The role requires...