Information Security GRC Lead.

2 weeks ago


London, United Kingdom Millennium Management Full time
Information Security GRC Lead

Securing Millennium’s complex and robust technical environment from external and internal threats is a top priority. This individual will be responsible for development and management of the Firm’s Information Security Governance structure that will include alignment to industry standard risk and control frameworks and the requisite measurement and reporting to appropriate internal audiences. 

In this role, you will develop a pragmatic approach to help the Firm manage information and Cybersecurity Risk and ensure that senior leadership is well informed of Millennium’s position relative to emerging and evolving risk scenarios through both qualitative and quantitative measurement and reporting that is concise, informative, written in the language of the business. 

Other key activities will include; working closely with the business to understand overall risk appetite, working with control owners to ensure all information and cybersecurity controls are effective through pragmatic measurement and reporting that will evolve in maturity over time, evaluate and respond to regulatory inquiries across the range of geographies Millennium does business. 

Principal Responsibilities

Develop and implement an Information and Cyber Security Governance Framework. Conduct regular risk and control management meetings with a limited set of key stakeholders Engage with Regulator Affairs and Compliance functions within the Firm.

Qualifications/Skills Required

Bachelor's or Master's degree in Computer Science or Cyber Security. 7+ years of experience in Information Security, preferably in the financial services industry. Experience developing and leading an Information and Cybersecurity Governance program Proven knowledge of information security policies, standards, and governance controls in complex computing environments. Experiences implementing and using common EGRC technology solutions. Information and cybersecurity risk management certifications (such as CGRC, CISM, CRISC) or equivalent experience required. Information and cybersecurity certifications (such as Security+, OSCP, CISSP, CEH, GCIA, GCIH) is a plus. Knowledge of Machine Learning (ML), Artificial Intelligence (AI) / Large Language Models (LLMs) in the context of business adoption and risk.  Excellent written and verbal communication skills, with the ability to convey complex information simply and clearly to various groups within the organization. Ability to work across multiple time zones in large global environments.

  • City of London, United Kingdom i3 Resourcing Limited Full time

    **Information Security GRC Analyst** **£47,000 - £55,000** **2-3 days in a London office / 1-2 days from home** **EXCELLENT full benefits package and bonus** **Information Security GRC Analyst, Governance, Risk, Compliance, Security Risk, Privacy Risk, Management Information, ISO27001, NIST, SOX, Firewalls, IDS/IPS, DLP, Information Security Analyst,...


  • London, United Kingdom Millennium Management LLC Full time €175,000 - €250,000

    Information Security GRC Lead Securing Millennium’s complex and robust technical environment from external and internal threats is a top priority. This individual will be responsible for development and management of the Firm’s Information Security Governance structure that will include alignment to industry standard risk and control frameworks and the...


  • London, United Kingdom Harrington Starr Full time

    Superb opportunity to join an established yet growing multinational FTSE 250 organisation based in London, but are open to fully remote candidates with the expectation that the successful candidate would visit the Head Office once per quarter (approx.) This is a superb opportunity for the candidate to really take their information security career to the next...

  • Grc Team Lead

    1 month ago


    London, United Kingdom Proactive Appointments Full time

    **GRC Team Lead** Inside IR35 - Hybrid working Our client, a leading global banking organisation have an opportunity for a GRC Team Lead to join on a 6 month contract. You will be responsible for leading a team of Governance Risk and Control SMEs responsible for carrying out IT Security Assessments (Secure-by-Design)on technology projects, to ensure that...

  • Head of GRC

    2 weeks ago


    City of London, Greater London, United Kingdom Security Cleared Jobs Full time

    Your new company A high-profile Ministerial Department supporting businesses to invest, grow and export Your new role Interim Head of GRC (Governance, Risk and Compliance) - SC Cleared What you'll need to succeed We are working exclusively with a Public Sector Client, recruiting for the role of Interim Head of Governance, Risk and Compliance (GRC).The...

  • Head of GRC

    2 weeks ago


    City of London, Greater London, United Kingdom Security Cleared Jobs Full time

    Your new company A high-profile Ministerial Department supporting businesses to invest, grow and export Your new role Interim Head of GRC (Governance, Risk and Compliance) - SC Cleared What you'll need to succeed We are working exclusively with a Public Sector Client, recruiting for the role of Interim Head of Governance, Risk and Compliance (GRC).The...

  • Cyber Security

    1 month ago


    London, United Kingdom eFinancialCareers Full time

    We are looking to on board a Cyber Security GRC SME working for emagine onsite with a leading Global Investment Bank. **Cyber Security / GRC / SME**: - Are you a GRC SME with Cyber IT Audit / Cyber Risk Assessment Experience? - Are you a GRC SME with Financial Services experience? (ideally Investment Banking) - Are you a GRC SME with excellent...


  • London, Greater London, United Kingdom Facebook Full time

    We are creating an operationally effective and highly efficient "service of common concern" for all Integrity, Security, Support, and Operations (ISSO) Governance, Risk, and Compliance (GRC) needs, ensuring Integrity, Security, Support, and Operations continue to meet global regulatory requirements and manage risk. Meta's ISSO GRC is the central engine...


  • London, United Kingdom LHV Bank Limited Full time

    We are currently looking for an Information Security GRC Analyst who will help shape our cybersecurity posture. You will be central to identifying and mitigating security risks, ensuring compliance with regulatory requirements, and developing robust security frameworks. You will also be tasked with managing data privacy, crafting business continuity plans,...


  • London, United Kingdom LHV Bank Limited Full time

    We are currently looking for an Information Security GRC Analyst who will help shape our cybersecurity posture. You will be central to identifying and mitigating security risks, ensuring compliance with regulatory requirements, and developing robust security frameworks. You will also be tasked with managing data privacy, crafting business continuity plans,...


  • London, United Kingdom ASOS Full time

    Job Description An exciting opportunity has arisen for a Senior Security Analyst to join the ASOS Governance Risk and Compliance (GRC) Team in Cyber Security. Reporting to the Information Security, Governance, Risk and Compliance Manager, this role will assist in the development, enhancement and execution of ASOS’s information security risk and...


  • London, United Kingdom ASOS Full time

    This job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board. Company Description We're ASOS. We blend our flair for fashion with our love of cutting-edge technology, but more importantly were interested in how we can bring the best out of you. We exist to give people the confidence to be whoever they want to...


  • London, United Kingdom ASOS Full time

    This job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board. Company Description We're ASOS. We blend our flair for fashion with our love of cutting-edge technology, but more importantly were interested in how we can bring the best out of you. We exist to give people the confidence to be whoever they want to...


  • LONDON, United Kingdom ASOS Full time

    Company Description We're ASOS. We blend our flair for fashion with our love of cutting-edge technology, but more importantly were interested in how we can bring the best out of you. We exist to give people the confidence to be whoever they want to be, and that goes for our people too. At ASOS, you're free to be your true self without judgment, and channel...

  • GRC Consultant

    4 weeks ago


    London, United Kingdom WiseTech Global Full time

    About WiseTech Global: WiseTech Global is a leading force in empowering and revolutionizing the world's supply chains. Our innovative technologies play a pivotal role in safeguarding the data and ensuring the security of thousands of users globally, including the world's largest freight forwarders. We are dedicated to delivering efficiency, transparency,...


  • London, United Kingdom Meta Full time

    We are creating an operationally effective and highly efficient “service of common concern” for all Integrity, Security, Support, and Operations (ISSO) Governance, Risk, and Compliance (GRC) needs, ensuring Integrity, Security, Support, and Operations continue to meet global regulatory requirements and manage risk.Meta's ISSO GRC is the central engine...


  • London, United Kingdom Evolution Full time

    Job Description Information Security – GRC Consultant £Have an understanding of software development practices and cloud environments, able to understand and build credibility with highly technical teams (e.g. Able implement, and maintain comprehensive security risk management processes to ensure security risks are effectively identified, assessed, and...


  • London, United Kingdom Evolution Full time €55,000 - €70,000

    Information Security – GRC Consultant £Have an understanding of software development practices and cloud environments, able to understand and build credibility with highly technical teams (e.g. Able implement, and maintain comprehensive security risk management processes to ensure security risks are effectively identified, assessed, and managed. ...


  • London, United Kingdom Evolution Full time

    Information Security – GRC Consultant £Have an understanding of software development practices and cloud environments, able to understand and build credibility with highly technical teams (e.g. Able implement, and maintain comprehensive security risk management processes to ensure security risks are effectively identified, assessed, and managed. ...


  • London, United Kingdom Comtecs Ltd Full time

    Information Security Engineer / Information Security SME - Network Security, Perimeter Defences, Palo Alto Firewalls, Azure / AWS Cloud, SIEM, DLP, IPS/IDS, WAF; NIST, CSA, HIPAA; CISM, CISSP. Permanent, London/Remote (Hybrid, 3/2). £75k - £80k +Bonus +Benefits Information Security Engineer / Information Security SME (Subject Matter Expert) required by...