At a Glance
- Tasks: Support governance, risk, and compliance activities to enhance security across Europe.
- Company: Cox Automotive, the world's largest automotive services organisation.
- Benefits: Competitive salary, bonus, hybrid work, and professional development opportunities.
- Other info: Work closely with global security experts and enjoy career growth.
- Why this job: Join a collaborative team and influence security practices in a fast-paced environment.
- Qualifications: 2+ years in information security with knowledge of cloud and compliance frameworks.
The predicted salary is between 36000 - 54000 £ per year.
Help protect the platforms that keep Europe's automotive ecosystem moving. Cox Automotive is the world's largest automotive services organisation — powering digital, data and physical solutions across the entire vehicle lifecycle. Behind that capability sits a modern, forward-thinking Information Security function designed to safeguard our people, our customers, and our data.
We're looking for a Security GRC Analyst to join our European Information Security team and play a key part in strengthening our cyber resilience, maturing our governance processes, and enabling secure innovation across multiple brands and markets.
Why Join Us?
At Cox Automotive Europe, security isn't a blocker — it's an accelerator. You'll work within a collaborative security team that partners closely with engineering, technology, product and business teams across the UK and Europe. You'll have the opportunity to influence how governance, risk and compliance shape our platforms, services and operational landscape. You'll also work closely with our global Enterprise Risk & Security teams in the US, giving you exposure to world-class security practices and the chance to help localise and embed them across Europe.
What You'll Be Doing
- Supporting a broad range of governance, risk and compliance activities that underpin our European security posture — including:
- Responding to customer assurance requests, security questionnaires and audit requirements
- Managing supplier assurance assessments and third-party risk reviews
- Helping maintain and improve security policies, standards and supporting documentation
- Supporting risk identification, assessment and governance processes across CAPTG Europe
- Coordinating security evidence and documentation for certifications (ISO, SOC, etc.)
- Assisting with compliance reviews for projects, new services and M&A activity
- Maintaining security documentation for legal and regulatory obligations
- Collaborating with UK, European and global security teams to align GRC practices
- Supporting security incidents from a governance and documentation perspective
- Driving continuous improvement and helping embed security into everyday operations
- Happy to travel to sites across UK & Europe
What You Bring
Essential Experience
- 2+ years in information security or governance, risk & compliance
- Solid understanding of cloud (AWS/Azure), infrastructure and software development concepts
- Familiarity with core frameworks such as ISO 27001, SOC 2, GDPR
- Experience with customer assurance, audits, or compliance questionnaires
- Supplier assurance / third-party risk management expertise
- Excellent communication, organisation and stakeholder-management skills
Desirable
- GRC tooling or platform experience
- Knowledge of risk methodologies
- Certifications such as CISM, CRISC
- Understanding of PCI-DSS
- Exposure to secure development practices or cloud security principles
What This Role Gives You
- A chance to develop your GRC skillset across diverse brands, systems and markets
- Close collaboration with global security experts and leading practitioners
- The opportunity to meaningfully influence how security is governed and embedded across a fast-moving enterprise
- A supportive environment that values curiosity, improvement and practical security
Ready to Make an Impact?
Join us and help shape a resilient, secure future for Cox Automotive Europe. Apply now and become part of a team where security truly matters.
STRICTLY NO AGENCIES PLEASE
We kindly ask that agencies do not contact us regarding this vacancy. We work with a carefully selected and trusted group of recruitment partners. We do not accept unsolicited CVs sent to the recruitment team or directly to a hiring manager. We will not be responsible for any fees related to unsolicited submissions.
Security GRC Analyst in Manchester employer: Cox Automotive Europe
Contact Detail:
Cox Automotive Europe Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security GRC Analyst in Manchester
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Prepare for interviews by researching the company and its security practices. Show them you’re not just another candidate; you’re genuinely interested in how they operate and how you can contribute.
✨Tip Number 3
Practice your responses to common interview questions, especially around governance, risk, and compliance. Being articulate about your experience will help you stand out from the crowd.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re keen on joining our team!
We think you need these skills to ace Security GRC Analyst in Manchester
Some tips for your application 🫡
Tailor Your CV: Make sure your CV reflects the skills and experiences that align with the Security GRC Analyst role. Highlight your experience in information security, governance, risk, and compliance to show us you’re the right fit!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how your background makes you a great candidate for our team. Don’t forget to mention specific frameworks or tools you’ve worked with.
Showcase Your Communication Skills: As a Security GRC Analyst, you'll need to communicate effectively with various teams. In your application, demonstrate your communication prowess by using clear and concise language, and maybe even share an example of successful stakeholder management.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates from our team!
How to prepare for a job interview at Cox Automotive Europe
✨Know Your GRC Fundamentals
Make sure you brush up on your governance, risk, and compliance knowledge. Familiarise yourself with key frameworks like ISO 27001 and SOC 2, as well as the specific requirements of GDPR. This will not only help you answer questions confidently but also show that you're genuinely interested in the role.
✨Showcase Your Communication Skills
As a Security GRC Analyst, you'll need to communicate effectively with various stakeholders. Prepare examples from your past experiences where you've successfully managed communications or collaborated with teams. This will demonstrate your ability to work within a collaborative security environment.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about how you would handle customer assurance requests or manage supplier assessments. Practising these scenarios can help you articulate your thought process during the interview.
✨Research Cox Automotive's Security Practices
Take some time to understand Cox Automotive's approach to security and their global practices. Knowing how they embed security into their operations will allow you to tailor your responses and show that you're aligned with their values and goals.