GRC Analyst

4 days ago


London, Greater London, United Kingdom Maxwell Bond Full time £50,000 - £57,000 per year

GRC Analyst – Cybersecurity Consultancy


Location: Remote UK (Occasional Office Visits)


Salary:
£50,000-£57,000 + Benefits

Overview

We're representing a highly accredited UK
cybersecurity consultancy
that is seeking a
GRC Analyst
to join its growing governance, risk, and compliance team.

This role offers the opportunity to work across a diverse portfolio of clients, helping to strengthen their security posture, ensure compliance with regulatory and contractual obligations, and contribute to the ongoing development of robust risk and assurance frameworks.

Ideal for someone with experience in
GRC, assurance, or information security
, this position provides exposure to high-impact projects within a collaborative, forward-thinking environment.

Key Responsibilities

  • Governance & Compliance:
    Support and maintain compliance frameworks, including ISO 27001, CAF, and other relevant standards.
  • Risk Management:
    Identify, assess, and monitor security risks, ensuring effective mitigation and continuous improvement within the ISMS.
  • Audit & Assurance:
    Plan, conduct, and coordinate internal and external audits, tracking findings and follow-up actions to closure.
  • Policy & Control Development:
    Assist in developing, reviewing, and improving security policies, procedures, and control documentation.
  • Supplier & Third-Party Risk:
    Support assurance activities with suppliers, partners, and service providers to maintain a consistent security baseline.
  • Information Governance:
    Contribute to compliance with data protection regulations such as GDPR and the Data Protection Act 2018.
  • Awareness & Training:
    Promote security best practice through awareness initiatives and collaboration with internal and external stakeholders.
  • Stakeholder Engagement:
    Build strong relationships across technical and business functions to support security governance objectives.

Skills & Experience

Essential:

  • Experience within
    GRC, assurance, risk management
    , or
    information security
    .
  • Understanding of
    risk assessment methodologies
    and
    compliance frameworks
    (e.g. ISO 27001, CAF, NIST).
  • Strong
    communication and reporting
    skills, with the ability to produce clear, concise documentation.
  • Excellent
    organisation and prioritisation
    skills with attention to detail.
  • Confident engaging with
    stakeholders at all levels
    of the business.

Desirable:

  • Experience with
    audit management tools
    or
    compliance automation platforms
    .
  • Knowledge of
    GDPR
    ,
    Data Protection Act 2018
    , or similar legislation.
  • Degree in
    Cybersecurity, Information Security, or a related field
    .
  • Professional certifications such as
    CISA
    ,
    CISM
    ,
    CISSP
    , or
    ISO 27001 Lead Implementer/Auditor
    .

Benefits

  • Competitive salary and comprehensive benefits package.
  • Flexible
    hybrid working
    arrangements.
  • Access to
    professional development and certification support
    .
  • Inclusive and supportive culture focused on
    collaboration and innovation
    .
  • Clear opportunities for
    career growth and progression
    within a fast-scaling consultancy.

Core Values

This organisation is driven by
collaboration, accountability, and innovation
. It fosters a culture of
continuous improvement
and empowers its people to make meaningful contributions to both client success and the company's mission of delivering
security excellence
.



  • London, Greater London, United Kingdom British Heart Foundation Full time £60,000 - £80,000 per year

    Are you an Information Security expert looking to work for one of the UK's largest charities? British Heart Foundation (BHF) is undergoing a digital transformation and seeking an Information Security Manager to oversee Governance, Risk, and Compliance (GRC) within the security team and ensure regulatory and policy compliance. Joining a dynamic and growing...

  • IT Security Analyst

    6 days ago


    London, Greater London, United Kingdom hireful Full time £50,000 - £60,000 per year

    Are you looking to join a global software technology company, with their main base of operations here, in the UK, as an experienced GRC IT Security Analyst?Do you have experience in the GRC IT Security space with audits, ISO27001, PCI DSS, SOC2, NIST & current compliance regulations? (Some, or all is fine)If so & you are looking to expand your IT Security...


  • London, Greater London, United Kingdom Temenos Full time £90,000 - £120,000 per year

    About TemenosTemenos powers a world of banking that creates opportunities for billions of people and businesses everywhere. We have been doing this for over 30 years through the pioneering spirit of our Temenosians who are passionate about making banking better, together.We serve over 3000 clients from the largest to challengers and community banks in 150+...


  • London, Greater London, United Kingdom Barclay Simpson Full time

    We're working with a leading financial services business committed to maintaining the highest standards of data protection and integrity across its cloud environments. They are seeking a dedicated Senior Information Security Analyst to focus on Cloud Security GRC.In this role, you'll lead cloud risk assessments, enforce security policies and standards, and...


  • London, Greater London, United Kingdom WiseTech Global Full time £60,000 - £120,000 per year

    The RoleWe're looking for a technically-grounded Senior IS Compliance Analyst who speaks both security operations and compliance language fluently. This role sits at the critical intersection of technical security and governance, requiring someone who can translate complex security architectures into compliance frameworks and vice versa.You'll be...


  • London, Greater London, United Kingdom Creatify Full time £7,203 - £72,060 per year

    Senior Information Security Analyst – 3-Month Remote ContractRate:£36.03 per hour (umbrella)Duration:3 monthsLocation:Remote (UK-based)Sector:Not-for-profit / Public Sector (confidential client)OverviewWe're supporting a leading UK not-for-profit organisation in strengthening its information security posture following a major digital...

  • Risk Analyst

    1 week ago


    London, Greater London, United Kingdom Canopius Full time £30,000 - £50,000 per year

    DescriptionThe RoleJoin Canopius as a Group Risk Analyst and help shape the future of risk management in a leading global (re)insurance firm. This is an excellent opportunity for a motivated early-career professional to build deep expertise in enterprise risk management while contributing to a high-performing, collaborative team.Reporting to the Group Head...


  • London, Greater London, United Kingdom Robert Walters Full time

    My client, an International bank, based in London, is looking for an Information Security Analyst to join it's team. Three MUST for this role: 1) Three days per week in the office 2) They dont offer sponsorship 3) You must come from banking or financial services background 4) Must have at least 2/3 years experience in your current firmAbout The Information...


  • London, Greater London, United Kingdom ZOLL Medical Corporation Full time £60,000 - £120,000 per year

    CorporateAt ZOLL, we're passionate about improving patient outcomes and helping save lives. We provide innovative technologies that make a meaningful difference in people's lives. Our medical devices, software and related services are used worldwide to diagnose and treat patients suffering from serious cardiopulmonary and respiratory conditions.Job...


  • London, Greater London, United Kingdom ACA Group Full time £30,000 - £60,000 per year

    The Opportunity:The Compliance Analyst on our Outsourced Marketing Review (OMR) team is responsible for participating in and ensuring the successful execution of certain compliance reviews and consulting work conducted by ACA for clients. The individual in this position will conduct careful analyses of clients' financial promotions regulatory deficiencies,...