Senior GRC Consultant (USA - Remote) Governance, Risk and Compliance (GRC) · Leeds HQ ·
Senior GRC Consultant (USA - Remote) Governance, Risk and Compliance (GRC) · Leeds HQ ·

Senior GRC Consultant (USA - Remote) Governance, Risk and Compliance (GRC) · Leeds HQ ·

Leeds Full-Time 90000 - 110000 £ / year (est.) No home office possible
C

At a Glance

  • Tasks: Lead GRC consulting engagements and provide expert guidance on security governance and compliance.
  • Company: Join Cognisys, a leading Cyber Security company with a commitment to excellence.
  • Benefits: Enjoy competitive salary, 25 days annual leave, and a £2,000 training budget.
  • Other info: Remote work opportunity with a focus on innovation and customer care.
  • Why this job: Shape client outcomes and mentor junior team members in a dynamic environment.
  • Qualifications: 5+ years in security or compliance roles with strong client-facing experience.

The predicted salary is between 90000 - 110000 £ per year.

Location: USA (Remote)

Salary: $90,000 - $110,000 (Dependent on experience)

We are seeking a Senior GRC Consultant to join our GRC Consulting team. This is a client-facing, delivery-led role for an experienced security and compliance professional who can lead engagements, own client relationships, and provide high-quality advisory services. You will play a key role in shaping client outcomes, mentoring junior team members, and helping evolve our GRC delivery capability.

Cognisys is a leading Cyber Security company specialising in Penetration Testing, GRC Consulting, and Managed Security services. We pride ourselves on our customer service, forward-thinking approach and commitment to excellence. Our small but mighty team works with some of the best-known companies in the world, covering over 30 different countries across the globe!

About the Role

Our GRC Consulting practice helps organisations strengthen their security posture and achieve compliance through clear, structured, and practical guidance. We work with clients at different stages of maturity, from building foundational security programmes to operating mature, scalable compliance functions. As a Senior GRC Consultant, you will take responsibility for designing and delivering GRC engagements end-to-end. You will translate regulatory and framework requirements into practical, business-aligned solutions, guide clients through complex compliance challenges, and act as a trusted advisor to technical and non-technical stakeholders alike. This role suits someone who combines strong technical GRC knowledge with consulting experience, confidence in client delivery, and a desire to raise the standard of security governance across organisations.

Key Responsibilities

  • Client Leadership & Delivery: Lead and deliver GRC consulting engagements across a range of clients and industries. Act as the primary point of contact for assigned clients, owning delivery quality and client satisfaction. Design and implement GRC programmes aligned to frameworks such as ISO 27001, SOC 2, NIST, and related standards. Lead security posture assessments, gap analyses, and maturity reviews. Develop practical remediation roadmaps and guide clients through implementation. Support clients through audit preparation, certification, and external assessments. Facilitate client workshops, risk assessments, and stakeholder sessions with confidence and authority.
  • Advisory & Technical Expertise: Provide expert guidance on security governance, risk management, and compliance strategy. Interpret standards and regulations and translate them into pragmatic, business-focused solutions. Advise clients on control design, operating models, and sustainable compliance practices. Support the development of client security documentation including policies, procedures, risk registers, control frameworks, and governance models. Help clients embed compliance into operational and technical processes rather than treating it as a one-off activity.
  • Quality & Delivery Excellence: Own the quality of client deliverables, ensuring accuracy, clarity, and consistency with internal standards. Review and provide constructive feedback on work produced by junior consultants and analysts. Continuously improve delivery playbooks, templates, and methodologies. Ensure engagements are delivered on time, within scope, and to a high professional standard.
  • Team Leadership & Mentorship: Mentor and support junior team members, accelerating their technical and consulting development. Provide guidance, coaching, and informal line management support where required. Act as a role model for consulting best practice and professional conduct. Contribute to building a collaborative, high-performing team culture.
  • Operational Improvement & Practice Growth: Identify opportunities to improve delivery efficiency, tooling, and ways of working. Contribute to the development of a scalable and repeatable GRC consulting model. Support pre-sales activity where required, including scoping, proposal input, and client discovery sessions. Help shape the strategic direction of the GRC practice through feedback and innovation.

Requirements

  • 5+ years’ experience in security, risk, compliance, or GRC-focused roles.
  • Strong practical experience with one or more frameworks such as ISO 27001, SOC 2, NIST, or similar.
  • Proven experience delivering client-facing GRC or compliance engagements.
  • Confidence leading client meetings, workshops, and complex discussions.
  • Ability to design security governance and compliance programmes, not just implement them.
  • Strong written communication skills, with experience producing high-quality client documentation.
  • Experience mentoring or supporting the development of junior team members.
  • Strong organisational skills and ability to manage multiple engagements and priorities.
  • A pragmatic, solutions-focused mindset with an understanding of business realities.
  • Consulting experience is highly desirable.

What We Offer

  • Annual Leave: 25 days per year, plus UK bank holidays.
  • Additional Leave: 1 day of paid leave on your Birthday!
  • Health & Wellbeing: Access to our Employee Mental Health and Wellbeing platform.
  • Professional Development: £2,000 annual training budget to support your continued learning and career growth.
  • A dynamic and supportive work environment where customer care and innovation drive everything we do.
  • Refer a friend bonus scheme, up to £2,000!

EEO Statement

We welcome applications from candidates from a range of diverse backgrounds and can make various reasonable adjustments to consider individual needs.

Senior GRC Consultant (USA - Remote) Governance, Risk and Compliance (GRC) · Leeds HQ · employer: Cognisys Group

Cognisys is an exceptional employer that fosters a dynamic and supportive work environment, prioritising customer care and innovation. With a strong commitment to employee growth, we offer a generous £2,000 annual training budget, 25 days of annual leave plus your birthday off, and access to mental health resources, ensuring our team members thrive both personally and professionally. Join us in shaping the future of security governance while working remotely with a talented team that collaborates across the globe.
C

Contact Detail:

Cognisys Group Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior GRC Consultant (USA - Remote) Governance, Risk and Compliance (GRC) · Leeds HQ ·

Tip Number 1

Network like a pro! Reach out to your connections in the GRC space and let them know you're on the hunt for a Senior GRC Consultant role. You never know who might have the inside scoop on openings or can put in a good word for you.

Tip Number 2

Prepare for interviews by brushing up on your knowledge of frameworks like ISO 27001 and NIST. Be ready to discuss how you've successfully led GRC engagements in the past, showcasing your client delivery skills and technical expertise.

Tip Number 3

Don’t just apply anywhere; focus on companies that align with your values and expertise. Check out our website for openings at Cognisys and tailor your approach to highlight how you can elevate their GRC consulting practice.

Tip Number 4

Follow up after interviews! A quick thank-you email can go a long way in showing your enthusiasm for the role and keeping you top of mind for the hiring team. Plus, it’s a great chance to reiterate why you’re the perfect fit!

We think you need these skills to ace Senior GRC Consultant (USA - Remote) Governance, Risk and Compliance (GRC) · Leeds HQ ·

GRC Consulting
Client Relationship Management
ISO 27001
SOC 2
NIST
Security Governance
Risk Management
Compliance Strategy
Audit Preparation
Stakeholder Engagement
Technical Documentation
Mentorship
Project Management
Problem-Solving Skills
Consulting Best Practices

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter for the Senior GRC Consultant role. Highlight your experience with frameworks like ISO 27001 and SOC 2, and showcase how your skills align with our client-facing, delivery-led approach.

Showcase Your Client Leadership Skills: Since this role involves leading client engagements, share specific examples of how you've successfully managed client relationships in the past. We want to see your confidence in delivering high-quality advisory services!

Demonstrate Your Technical Expertise: Use your written application to illustrate your strong technical knowledge in security governance and compliance. Mention any relevant projects or experiences that show how you’ve translated complex regulations into practical solutions.

Keep It Professional Yet Engaging: While we appreciate a friendly tone, ensure your application maintains professionalism. Use clear language and structure to make it easy for us to see your qualifications and enthusiasm for the role. Don’t forget to apply through our website!

How to prepare for a job interview at Cognisys Group

Know Your Frameworks

Make sure you brush up on key frameworks like ISO 27001, SOC 2, and NIST. Be ready to discuss how you've applied these in past roles, as this will show your practical experience and understanding of GRC.

Showcase Client Engagement Skills

Prepare examples of how you've led client meetings or workshops. Highlight your ability to communicate complex compliance issues clearly to both technical and non-technical stakeholders, as this is crucial for the role.

Demonstrate Mentorship Experience

Think of specific instances where you've mentored junior team members. Discuss how you supported their development and contributed to a collaborative team culture, as this aligns with the team's values.

Be Solutions-Focused

During the interview, emphasise your pragmatic approach to problem-solving. Share examples of how you've designed security governance programmes and helped clients embed compliance into their operations, showcasing your strategic mindset.

Senior GRC Consultant (USA - Remote) Governance, Risk and Compliance (GRC) · Leeds HQ ·
Cognisys Group
Location: Leeds

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>