Information Security GRC Lead – ISO27001
Information Security GRC Lead – ISO27001

Information Security GRC Lead – ISO27001

Full-Time 36000 - 60000 £ / year (est.) No home office possible
B

At a Glance

  • Tasks: Lead the implementation and certification of ISO 27001 across a global organisation.
  • Company: Join Barclay Simpson, a leader in Cyber Security recruitment.
  • Benefits: Competitive salary, professional development, and a chance to shape security practices.
  • Why this job: Make a real impact on information security in a dynamic environment.
  • Qualifications: ISO 27001 Lead Implementer/Auditor with strong risk management experience.
  • Other info: Collaborate with diverse teams and drive innovative security solutions.

The predicted salary is between 36000 - 60000 £ per year.

We are seeking an experienced ISO 27001 Lead to drive end-to-end implementation and certification across a global organisation. This role will lead the design, build and operationalisation of the ISMS in line with ISO/IEC 27001:2022.

Key Responsibilities

  • Conduct enterprise-wide ISO 27001:2022 gap assessment
  • Define ISMS scope, context, governance and risk methodology.
  • Develop the risk register, Statement of Applicability (SoA) and risk treatment plans.
  • Deliver a prioritised implementation roadmap including budget, resourcing and timelines.
  • Establish ISMS governance, metrics, management review and audit readiness.
  • Coordinate cross-functionally with Technology, Security, Legal, HR, Procurement and Business Units.

Required Experience

  • Proven track record leading ISO 27001 certification end-to-end in complex environments.
  • Strong knowledge of ISO/IEC 27001:2022 and ISO 27002:2022.
  • Experience implementing risk management frameworks, ISMS governance and controls.
  • Cloud security familiarity (Azure/M365, AWS, GCP) and core disciplines (IAM, monitoring, incident & vulnerability management).
  • Strong stakeholder engagement and programme delivery capability.

Deliverables

  • Gap assessment report
  • Defined ISMS scope and governance model
  • Implementation roadmap with budget & resource plan
  • Audit-ready documentation and KPI dashboard

Qualifications: ISO 27001 Lead Implementer and/or Lead Auditor.

Information Security GRC Lead – ISO27001 employer: Barclay Simpson

As a global leader in Cyber Security recruitment, we pride ourselves on fostering a dynamic and inclusive work culture that prioritises employee growth and development. Our Information Security GRC Lead role offers the opportunity to work at the forefront of ISO 27001 implementation, with access to comprehensive training and resources, while collaborating with cross-functional teams in a supportive environment. Join us to make a meaningful impact in a rapidly evolving field, all while enjoying the benefits of a flexible work-life balance and competitive remuneration.
B

Contact Detail:

Barclay Simpson Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security GRC Lead – ISO27001

Tip Number 1

Network like a pro! Reach out to folks in the industry, attend events, and join online forums. The more connections we make, the better our chances of landing that dream job.

Tip Number 2

Prepare for interviews by researching the company and its culture. We should be ready to discuss how our skills align with their needs, especially around ISO 27001 and risk management frameworks.

Tip Number 3

Showcase our expertise! Create a portfolio or case studies that highlight our experience with ISO 27001 certification and ISMS implementation. This will help us stand out during interviews.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure our application gets noticed. Plus, we can keep track of our applications easily.

We think you need these skills to ace Information Security GRC Lead – ISO27001

ISO 27001
ISO/IEC 27001:2022
ISO 27002:2022
Risk Management Frameworks
ISMS Governance
Cloud Security (Azure/M365, AWS, GCP)
Identity and Access Management (IAM)
Incident Management
Vulnerability Management
Stakeholder Engagement
Programme Delivery
Gap Assessment
Implementation Roadmap Development
Audit Readiness
KPI Dashboard Creation

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights your experience with ISO 27001 and any relevant certifications. We want to see how your skills align with the role, so don’t be shy about showcasing your achievements in implementing ISMS or leading certification processes.

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re the perfect fit for the Information Security GRC Lead role. Share specific examples of your past experiences that relate to the key responsibilities listed in the job description.

Showcase Your Stakeholder Engagement Skills: Since this role involves coordinating with various teams, make sure to highlight your experience in stakeholder engagement. We love to see how you’ve successfully collaborated across departments to achieve common goals.

Apply Through Our Website: Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it gives you a chance to explore more about what we do at StudySmarter.

How to prepare for a job interview at Barclay Simpson

Know Your ISO 27001 Inside Out

Make sure you’re well-versed in ISO/IEC 27001:2022 and ISO 27002:2022. Brush up on the key principles, especially around risk management frameworks and ISMS governance. Being able to discuss these topics confidently will show that you’re the right fit for the role.

Prepare Real-World Examples

Think of specific instances where you've led ISO 27001 certification in complex environments. Be ready to share your experiences with gap assessments, risk registers, and implementation roadmaps. This will help demonstrate your hands-on expertise and problem-solving skills.

Understand Cross-Functional Coordination

Since this role involves working with various departments like Technology, Security, and HR, be prepared to discuss how you’ve successfully coordinated with different teams in the past. Highlight your stakeholder engagement skills and how you’ve managed to align diverse interests towards a common goal.

Showcase Your Cloud Security Knowledge

Familiarity with cloud security is crucial for this position. Brush up on your knowledge of platforms like Azure, AWS, and GCP. Be ready to discuss how you’ve implemented security measures in cloud environments, as this will set you apart from other candidates.

Information Security GRC Lead – ISO27001
Barclay Simpson

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>