GRC Manager

1 week ago


London, Greater London, United Kingdom Polaris Software Full time £60,000 - £90,000 per year

About Us

At Polaris, we're on a mission to create a safer and fairer world. We provide software solutions that empower police forces and local authorities to enforce and track traffic and parking offences, manage permits and licenses, and control high-risk assets like firearms and tasers.

Since securing support from August Equity in May 2023, we've been on an exciting growth trajectory. We've expanded our reach both in the UK and internationally, acquired key companies like Farthest Gate and JML Software Solutions, along with Clarity and invested heavily in our operations.

Our goal is to build a data-driven, professionally managed organisation with robust systems and processes, poised for consistent growth and ready to seize new opportunities. We've united our legacy brands under the Polaris name, creating a dynamic new identity that reflects our vision for the future.

This is an exciting time to join Polaris. We're seeking ambitious, forward-thinking individuals who are eager to make a real impact and grow their careers in a rapidly evolving industry. If you're ready to be part of a team that's shaping the future of public safety and compliance technology, we want to hear from you.

GRC Manager – Governance, Risk and Compliance

London – hybrid – 3 days per week in office

Full time

Reporting to Director of Strategic Operations

Summary

We're looking for a proactive and detail-oriented GRC Manager to develop, implement, and maintain our governance, risk, and compliance framework. You'll play a key role in ensuring the Polaris operates responsibly, meets regulatory requirements, and effectively manages operational and information security risks.

This role sits at the intersection of InfoSec and Strategic Operations. An ideal role for someone who enjoys implementing business-appropriate structure & process improvement, whilst balancing strategic problem-solving.

Key Responsibilities:

Security

  • Lead and manage customer questionnaires and client audits

  • Oversight of vulnerability management and ensure remediation across environments is in line with company policy

  • Oversight of applicable SIEM and monitoring process to ensure that security response is in line with company policy

  • Ensure that system and security documentation is in line with company policy and is audit-ready

  • Review and work with the team to evidence physical and logical security of customer environments is in line with company policy

  • Continually review our contractual commitments against what we do to ensure that we are compliant

  • Represent security capabilities and processes in customer meetings and sales engagements to strengthen trust and win new business

Compliance

  • Perform regular control assessments and track deficiencies

  • Act as a trusted advisor to both internal leadership and external customers regarding our contractual, security and legislative obligations

  • Ensure ongoing compliance with legal, contractual, and regulatory requirements, including GDPR and domain-specific obligations

Governance

  • Create and own a process mapping approach and system for core business processes

  • Act as the central coordinator for data protection and GDPR compliance. Standardise policies, processes, and reporting for consistent compliance practices

  • Provide governance advice to senior leadership and enable transparent, informed decision-making

  • Coordinate external audit processes, including ISO 27001, ISO9001

  • Oversight of the asset register for all customer environments to support audits and effective control

Risk Management

  • Manage project compliance risks (including privacy, compliance and security risks), proactively identifying issues before they escalate

  • Assess and mitigate third-party and supply chain security risks, ensuring partners meet robust standards in line with company policy

  • Oversight of change management processes, ensuring major software or infrastructure changes are performed in line with company policy

  • Partner with business units to embed risk management into day-to-day decision-making

  • Maintaining the Risk Register, tracking remediation tasks and preparing risk reports

Customer Engagement

  • Serve as the internal point of contact for supporting customers on  process and  compliance issues

  • Document and prepare communication around sub-processor, process or supplier changes for distribution to customers

Requirements

We are looking for someone who:

  • Excellent attention to detail, documentation, and organisational skills

  • Proven experience in a Governance, Risk, Compliance, or Security leadership role, ideally in SaaS or highly regulated industries

  • Strong knowledge of ISO 27001, ISO9001, GDPR, and police/public sector compliance frameworks

  • Demonstrated ability to work with customers, auditors, and regulators at all levels

  • Practical experience in defining and oversight of vulnerability management,  and change management processes

  • Excellent communication skills able to translate complex process requirements into clear business value

  • A proactive, structured, and detail-oriented mindset, with the ability to influence cross-functional teams

Benefits
  • Market rate salary
  • 25 days annual leave
  • 2 Moment in Time Days
  • 1 Community Day
  • Life Assurance 4 x base salary
  • Private Pension with Scottish Widows
  • Health Care Cash Plan
  • Hybrid working model
  • Length of service additional time
  • Income protection
  • Car lease scheme

Our business is an equal opportunities employer. We make recruitment decisions based on qualifications, skill sets, and experiences. We consider all suitable candidates regardless of their age, sex, gender reassignment, race, religious beliefs (or lack thereof), marital status, disability, sexual orientation, or any other protected characteristics.

Please note that we can currently only consider candidates with an existing right to work in the UK.


  • GRC Analyst

    5 days ago


    London, Greater London, United Kingdom Maxwell Bond Full time £50,000 - £57,000 per year

    GRC Analyst – Cybersecurity ConsultancyLocation: Remote UK (Occasional Office Visits)Salary:£50,000-£57,000 + BenefitsOverviewWe're representing a highly accredited UKcybersecurity consultancythat is seeking aGRC Analystto join its growing governance, risk, and compliance team.This role offers the opportunity to work across a diverse portfolio of...


  • London, Greater London, United Kingdom Meta Full time £80,000 - £120,000 per year

    Meta is seeking a highly skilled Security GRC Program Lead to join our Risk Organization's Governance, Risk, and Compliance (GRC) pillar. This role is pivotal in providing second-line oversight of Meta's security risk management and compliance across multiple business units, regulatory entities, and governance forums. As a senior individual contributor, you...


  • London, Greater London, United Kingdom Copyrighto.2022 Full time £80,000 - £120,000 per year

    Job Location: ​Greenford Job Location: Greenford Company Description Ferrero is a family-owned company with a truly progressive and global outlook and iconic brands such as Nutella, Tic Tac, Ferrero Rocher, Raffaello, Kinder Bueno and Kinder Surprise. As the love for our brands continues to grow, so too does our global reach. Represented in more...


  • London, Greater London, United Kingdom UK National Audit Office Full time £68,000 - £80,000 per year

    • Role: Information Security Specialist: GRC• Type of contract: Full Time, permanent• Location: Hybrid working. On-site, London or Newcastle, minimum 2 days pw• Salary: London c£68,000 Newcastle c£59,000 plus Civil Service employer pension contribution of 28.9%Please note, we are not able to sponsor work visas or accept temporary visas as we are...


  • London, Greater London, United Kingdom British Heart Foundation Full time £60,000 - £80,000 per year

    Are you an Information Security expert looking to work for one of the UK's largest charities? British Heart Foundation (BHF) is undergoing a digital transformation and seeking an Information Security Manager to oversee Governance, Risk, and Compliance (GRC) within the security team and ensure regulatory and policy compliance. Joining a dynamic and growing...


  • London, Greater London, United Kingdom beqom Full time £60,000 - £100,000 per year

    Join beqom - where tech meets impactbeqom is a high-growth B2B SaaS company that provides industry-leading tools for pay equity and transparency, compensation, and performance management.Trusted by some of the world's most respected companies, beqom enables HR and business leaders to navigate global compliance and make smarter pay decisions that attract,...


  • London, Greater London, United Kingdom Trainline Full time £50,000 - £120,000 per year

    About usWe are champions of rail, inspired to build a greener, more sustainable future of travel. Trainline enables millions of travellers to find and book the best value tickets across carriers, fares, and journey options through our highly rated mobile app, website, and B2B partner channels. Great journeys start with Trainline  Now Europe's number 1...


  • London, Greater London, United Kingdom Schroders Full time £80,000 - £120,000 per year

    Job DescriptionWho we're looking forWe are seeking an experienced technology risk or information security professional to join our team at Schroders. This role involves collaboration across various disciplines with a particular emphasis on securing our digital footprint, as well as third-party and supply chain risk. Experience using AI and automation to...


  • London, Greater London, United Kingdom AI Security Institute Full time £65,000 - £145,000 per year

    About The AI Security InstituteThe AI Security Institute is the world's largest and best-funded team dedicated to understanding advanced AI risks and translating that knowledge into action. We're in the heart of the UK government with direct lines to No. 10 (the Prime Minister's office), and we work with frontier developers and governments globally.We're...


  • London, Greater London, United Kingdom AI Security Institute Full time £100,000 - £150,000 per year

    About The AI Security InstituteThe AI Security Institute is the world's largest and best-funded team dedicated to understanding advanced AI risks and translating that knowledge into action. We're in the heart of the UK government with direct lines to No. 10, and we work with frontier developers and governments globally.We're here because governments are...