Head of Security Governance, Risk and Compliance
3 days ago
Financial Sector - Reporting to the Chief Information Security Officer
Salary - up to £100k plus 4% bonus
The Role
The Head of Security Governance, Risk and Compliance (GRC) plays a key leadership role in safeguarding the customers, assets, and reputation. This role is responsible for embedding effective security governance, risk management, and compliance practices, ensuring that security and regulatory obligations are met while enabling operations with confidence and integrity.
The postholder will establish and maintain proportionate security frameworks, policies, and processes. They will work closely with colleagues at all levels to strengthen security risk awareness, integrate risk-based decision-making, and promote a culture of accountability and resilience.
Key Responsibilities
- Leadership of the Security GRC function.
- Governance & Policy – Define, implement, and continuously improve the governance frameworks, policies, and standards for information security, risk, and compliance.
- Risk Management – Lead enterprise-wide security risk management activities, including risk identification, third-party risk management, assessment, control evaluation, and mitigation planning.
- Regulatory & Standards Compliance – Ensure adherence to relevant regulatory requirements (e.g. PRA, FCA, GDPR) and security standards (e.g. NIST CSF), maintaining readiness for internal and external audits.
- Continuous Improvement – Monitor and review governance and compliance processes, adapting to regulatory updates and emerging risks, and driving improvements.
- Collaboration & Influence – Build strong relationships with Legal, IT, Procurement, and business functions to embed risk-based decision-making and ensure a consistent, proportionate approach.
- Leadership & Oversight – Provide expert advice to senior management and the Board, reporting on risk posture, compliance status, and emerging issues.
Knowledge, Skills and Experience
- Degree in information security, risk management, or a related field.
- 10 years of proven experience in security governance, risk, and compliance leadership, ideally within financial services or a regulated environment.
- Strong knowledge of UK and EU regulatory requirements relevant to financial institutions.
- Demonstrated ability to design and embed proportionate governance and risk frameworks in a mid-sized organisation.
- Excellent stakeholder management skills, with the ability to influence at the Board and executive level.
- Strong communication and leadership skills, with a focus on building a culture of accountability and risk awareness.
- Professional certifications such as CISA, CISM or CISSP.
-
Cyber Security Governance Lead
1 week ago
Birmingham, Birmingham, United Kingdom Lorien Full timeCyber Security Governance LeadLocation:Birmingham, Snow HillRate:£500–£550 per day - Inside of IR356 month contractAre you passionate about driving cyber security excellence through governance, risk management, and data-driven insights? We are seeking aCyber Security Governance Leadto strengthen our security posture and ensure compliance across our IT...
-
Information Security Governance Analyst
5 days ago
Birmingham, Birmingham, United Kingdom Forvis Mazars Full timeForvis Mazars is a leading global professional services network providing audit & assurance, tax, and advisory services. Forvis Mazars in the UK spans 14 offices across the nation and has over 3,400 professionals, with 190 partners. We have a clear purpose and a shared commitment to shape a better future.You'll join a collaborative and inclusive team where...
-
Head of Information Security
5 days ago
Birmingham, Birmingham, United Kingdom Robert Walters Full timeRobert Walters is working in partnership with a leading financial services business. They specialise in providing experts services across pensions, wealth management and financial planning across both personal and commercial services. In addition, they offer tailored services across retirement, tax and estate planning. They are considered market leaders in...
-
Cyber Security Risk Manager
3 days ago
Birmingham, Birmingham, United Kingdom Government Property Agency Full timeDetailsReference number438531Salary£56,500 - £62,554GPA is also committed to recognising and rewarding where our staff hold the "Gold Standard' accreditation relevant to their Specialism and offer a specific non-pensionable £5000pa pro rata allowance to staff who have achieved this.A Civil Service Pension with an employer contribution of 28.97%GBPJob...
-
Head of Cyber Security
1 day ago
Birmingham, Birmingham, United Kingdom Ingeus Full timeThis is a unique and exciting opportunity to have end to end Cyber accountability for our growing regional businesses across the UK and Europe, whilst also collaborating at a global group agenda. This role will report directly to the Chief Information Officer for Ingeus in the UK, working with our Group CISO to support the global cyber agenda across the APM...
-
Governance & Compliance Support Coordinator
3 days ago
Birmingham, Birmingham, United Kingdom JLL Full timeJLL empowers you to shape a brighter way.Our people at JLL and JLL Technologies are shaping the future of real estate for a better world by combining world class services, advisory and technology for our clients. We are committed to hiring the best, most talented people and empowering them to thrive, grow meaningful careers and to find a place where they...
-
Head of IT
3 days ago
Birmingham, Birmingham, United Kingdom Robert Walters Full timeRobert Walters is working in partnership with a leading financial services business. They specialise in providing experts services across pensions, wealth management and financial planning across both personal and commercial services. In addition, they offer tailored services across retirement, tax and estate planning. They are considered market leaders in...
-
Head of Resilience, Security
3 days ago
Birmingham, Birmingham, United Kingdom Lloyds Banking Group Full time £124,653 - £146,650End DateThursday 13 November 2025Salary Range£124,653 - £146,650We support flexible working – click here for more information on flexible working optionsFlexible Working OptionsHybrid WorkingJob Description Summary.Job DescriptionJOB TITLE: Head of Resilience, Security & Data Privacy – Fixed Term ContractSALARY: £124,650pa to £146,600pa plus an...
-
Group Head of Cyber Security
3 days ago
Birmingham, Birmingham, United Kingdom Anonymous Full timeAre you ready to lead global cyber security strategy for a high-performing organization? We're looking for aGroup Head of Cyber Securityto define and execute a world-class security program that protects critical assets, intellectual property, and client trust across all business units.This is a senior leadership role with executive visibility, combining...
-
Information Security Manager
7 days ago
Birmingham, Birmingham, United Kingdom UK Regulators' Network Full timeSolicitors Regulation AuthoritySolicitors Regulation Authority, Requirements of the roleAbout The DepartmentThe Risk and Information Governance Department plays a critical role in ensuring the SRA's compliance with regulatory and security standards. We work collaboratively across the organisation to manage risk, protect information assets, and uphold the...