Current jobs related to Senior Information Security GRC Analyst - London N GU, Central London - GUARDIAN NEWS AND MEDIA


  • City Of London, UK, Central London, United Kingdom London Business School Full time

    London Business School are looking for a Senior Security GRC Analyst to join Technology on a permanent basis. You will collaborate closely with the GRC Analyst. The postholder will be responsible for the delivery and assurance of information security governance, risk, and compliance activities at London Business School.The role is central to ensuring...

  • GRC Analyst

    2 weeks ago


    London, Greater London, United Kingdom Uphold Full time

    About UpholdJob DescriptionWe are seeking a highly skilled Junior GRC Analyst to join our team. The ideal candidate will have a strong understanding of security and privacy governance, risk, and compliance processes. Key responsibilities include:Assisting in the development and implementation of GRC policies, procedures, and standards to ensure compliance...

  • GRC Security Lead

    7 days ago


    London, Greater London, United Kingdom 55 Exec Search Full time

    GRC Security LeadWe are looking for a GRC Security Lead to join our team and take on a key leadership role in the delivery of our cyber risk advisory services. As a seasoned professional with a strong background in cyber security and governance, risk and compliance (GRC), you will be responsible for leading and delivering on complex cyber risk advisory...

  • GRC Security Expert

    1 week ago


    London, Greater London, United Kingdom 55 Exec Search Full time

    GRC Security Expert 55 Exec Search is excited to present this exceptional opportunity for a highly experienced GRC Security Expert to join our client's team. The successful candidate will have a strong background in cyber risk advisory and will be responsible for leading and delivering on a diverse range of clients across various industries. As a Senior...


  • London, Greater London, United Kingdom Bestman Solutions Full time

    At Bestman Solutions, we're seeking a skilled Chief Information Security Strategist to join our team. As a Senior Business Information security officer, you'll play a pivotal role in shaping and delivering information security strategies that align with business objectives. Your extensive experience in professional services and consultancy will serve as a...


  • London, Greater London, United Kingdom Oho Group Full time

    Senior Information Security AnalystWe're looking for a Senior Information Security Analyst to join our team at Oho Group. In this role, you'll play a key part in maintaining the security of our clients' networks.About the RoleThis role requires an individual with a strong understanding of information security principles.A minimum of 2 years' experience in...

  • GRC Manager

    1 week ago


    London, Greater London, United Kingdom La Fosse Full time

    GRC Opportunities at La Fosse:We are currently looking for a talented GRC Analyst to contribute to our growing organization. This role offers an excellent opportunity to work in a dynamic environment, develop your skills, and shape risk strategies.Your Key Objectives:To manage vendor risk assessments and ensure that third-party supplier management meets...


  • London, Greater London, United Kingdom News Corporation Full time

    About the RoleWe are seeking a skilled Governance Risk and Compliance (GRC) Analyst to support our News UK Cyber GRC Program. As a GRC Analyst, you will work with key internal and external stakeholders to ensure compliance with regulatory and compliance requirements affecting a UK business.Your roles will include supporting and maintaining the News UK Cyber...


  • London, Greater London, United Kingdom Bestmansolutions Full time

    Bestman Solutions is a globally recognized consultancy that values security as a business enabler.Job OverviewThe Business Information Security Officer will play a pivotal role in shaping and delivering information security strategies that align with business objectives. This role requires a strong background in professional services and/or consultancy, as...


  • London, Greater London, United Kingdom BDO Full time

    BDO, a prominent professional services firm, is looking for an accomplished Information Security Analyst to join their team in a remote setting, with an estimated annual salary between $130,000 and $160,000.This role involves coordinating information security risk management activities, working closely with cross-functional teams to identify and assess...


  • London, Greater London, United Kingdom BDO Full time

    BDO, a leading professional services provider, is seeking an experienced Information Security Analyst to join their team in a remote location. The estimated annual salary for this position is around $120,000-$150,000.The successful candidate will be responsible for coordinating information security risk management activities across the organization, working...


  • London, Greater London, United Kingdom Intec Select Full time £70,000 - £75,000

    About the RoleWe are seeking an Information Security Governance Specialist to join our team at Intec Select. As a GRC Analyst, you will play a critical role in supporting our clients achieve their governance, risk, and compliance objectives.Key ResponsibilitiesImplement, maintain, and improve ISO 27001 ISMS for clientsConduct gap analysis, risk assessments,...


  • London, Greater London, United Kingdom Bestman Solutions Full time

    About Bestman SolutionsWe partner with prominent businesses to navigate complex challenges through innovative strategies. With a strong emphasis on cybersecurity, we enable secure operations that align with our clients' dynamic business needs.Your RoleAs a Senior Cybersecurity Advisor at Bestman Solutions, you will shape and deliver information security...


  • London, Greater London, United Kingdom Royal Mail Group Full time

    Overview of the JobWe are looking for a Senior SOC Analyst to join our team at Royal Mail Group. The successful candidate will be responsible for the security monitoring of key technologies across our estate.With a strong background in SIEM technologies and scripting languages, you will provide effective analysis and triage of security information and...


  • London, Greater London, United Kingdom Intec Select Full time £70,000 - £75,000

    About the PositionIntec Select is seeking a GRC Compliance Expert to join our team. As a GRC Analyst, you will be responsible for supporting our clients achieve their governance, risk, and compliance objectives.Key ResponsibilitiesImplement, maintain, and improve ISO 27001 ISMS for clientsConduct gap analysis, risk assessments, and internal audits to...


  • London, Greater London, United Kingdom Bestman Solutions Full time

    About the RoleWe are seeking a highly skilled Business Information Security Officer (BISO) to join our team at Bestman Solutions. As a BISO, you will play a pivotal role in shaping and delivering information security strategies that align with business objectives.Key ResponsibilitiesServe as the primary cybersecurity liaison between business units and...


  • London, Greater London, United Kingdom Bestmansolutions Full time

    Bestmansolutions is a globally recognized consultancy that values security as a business enabler. We are seeking an experienced Cybersecurity Governance Lead to play a pivotal role in shaping and delivering information security strategies that align with business objectives. As a trusted advisor, you will leverage your expertise in professional services and...


  • London, Greater London, United Kingdom iO Associates - UKEU Full time

    Senior GRC Professional - eDV Cleared RoleiO Associates is searching for a seasoned Senior GRC Professional to take on a challenging eDV (UK**) Cleared GRC Consultant role. This 12-month contract position offers the chance to work on a long-term programme of work, with potential for extension.You'll need a deep understanding of Cyber Security, strong...


  • London, Greater London, United Kingdom Salesforce, Inc. Full time

    As a Senior Information Security Analyst at Salesforce, Inc., you will play a crucial role in leading technical investigations in response to high-severity incidents. This position requires advanced technical knowledge and the ability to manage multiple security incidents simultaneously. You will be responsible for providing guidance to incident responders,...


  • London, Greater London, United Kingdom CV-Library Full time

    About the RoleWe are seeking a highly skilled GRC Security Specialist to join our team at CV-Library. The successful candidate will be responsible for assessing and testing the effectiveness of security controls, documenting compliance levels, and identifying risks and control gaps.The ideal candidate will have broad experience in security risk management...

Senior Information Security GRC Analyst

1 month ago


London N GU, Central London, United Kingdom GUARDIAN NEWS AND MEDIA Full time

Join our team at the Guardian and be a part of a diverse and inclusive global organisation that delivers fearless, investigative journalism, and holds power to account. Our team of award-winning journalists, cutting-edge commercial professionals, and industry-leading digital experts are committed to making a difference and represent a wide range of backgrounds and perspectives.

Are you ready to shape the future of information security?

We’re seeking a Senior Information Security GRC Analyst to join our dynamic team. This pivotal role will enable you to lead GRC efforts, ensuring that our organisation stays secure, compliant, and resilient in a rapidly evolving threat landscape. As a trusted expert, you’ll collaborate with teams across the business to embed security at the core of everything we do.

If you’re passionate about building robust security frameworks, managing risks, and making an impact, we want to hear from you

About the Role

Governance:

  • Support the design, delivery and maintenance of the security policies, standards and procedures, aligning with organisational objectives and regulatory requirements.
  • Implement and manage industry standard governance frameworks, ensuring consistent practices across the business

Risk Management:

  • Deliver Information Security risk management and compliance activities, advising business functions on best practice across the Information Security risk management lifecycle.
  • Conduct Information Security risk assessments including the periodic enterprise risk assessments, and those in response to new products, change programmes, and emerging risks.
  • Support third-party risk assessments to ensure vendor compliance with organisational security standards

Compliance:

  • Ensure ongoing compliance with regulations like GDPR, PCI-DSS, while supporting audits and assessments
  • Perform Information Security controls testing and assessment

Awareness:

  • Support the design and delivery of engaging security training programs to promote and champion a culture of security across the organisation.
  • Deliver Information Security risk management and compliance activities, advising business functions on best practice across the Information Security risk management lifecycle

Reporting:

  • Support reporting against defined key performance indicators (‘KPI’s) for Information Security risk management and compliance.
  • Develop actionable reports and dashboards on risk and compliance status, and key metrics for senior stakeholders

About You

  • Experience in Information Security risk management and controls knowledge, in line with standard security frameworks, to deliver risk assessments, risk management, controls design, and controls assurance.
  • Professional certifications such as CISM, CISSP, CRISC or ISO 27001 Lead Implementer is a benefit but not essential
  • Experience with industry standard information security management frameworks such as NIST, ISO 27001, PCI-DSS, OWASP
  • Ability to understand emerging security threats and design information security controls in response to these threats
  • Strong knowledge of risk management principles and best practices
  • Excellent communication skills to engage both with both technical and non-technical audiences
  • Analytical mindset with high level of attention to detail
  • Proficiency with GRC tools is desirable

We operate in a hybrid working model, with a mix of office based and remote based working. You'll be expected to come into our London Kings Cross office 3 days a week.

How to Apply

To apply, please upload your latest CV.

The closing date for applications is Tuesday 3rd December 2024.

--

Benefits & Policies

We offer 30 days annual leave plus bank holidays. Our pension scheme is generous; if you contribute 5% then we will contribute 8-12% (depending on your age).

You are entitled to life cover, income protection, sick pay and eye tests. You can also opt in to dental insurance.

We have enhanced maternity, paternity, adoption and shared parental leave policies in place. We also support our employees by offering an IVF, menopause, baby loss, and trans equality policy.

Culture & Wellbeing

We want everyone to feel like they belong at the Guardian and we champion diversity of thought. Our various employee forums provide a platform to use their voice to foster an inclusive workplace.

We offer great tools to help you prioritise your wellbeing including free yoga and pilates. These run alongside our corporate gym membership and cycle to work scheme.

Learning & Development

We encourage personal and professional growth. Employees have access to a broad range of tools and solutions, and we are happy to support the pursuit of professional qualifications through vocational courses and apprenticeships.

Our Working Environment

We take pride in our surroundings and are pleased to offer versatile meeting rooms and colourful communal areas. We have a brilliant canteen that caters to breakfast, lunch and dinner, with views overlooking Regent’s Canal.