GRC / Cyber Security Risk Analyst in Nottingham

GRC / Cyber Security Risk Analyst in Nottingham

Nottingham Freelance 70000 - 90000 £ / year (est.) Home office (partial)
Cyber Security training courses

At a Glance

  • Tasks: Conduct cyber security risk assessments and manage governance processes.
  • Company: Join a forward-thinking organisation investing in cyber security improvements.
  • Benefits: Competitive daily rate, hybrid working, and immediate start available.
  • Other info: Dynamic role with opportunities for professional growth in a complex environment.
  • Why this job: Make a real impact on security governance and risk management.
  • Qualifications: Experience in GRC or cyber security risk management is essential.

The predicted salary is between 70000 - 90000 £ per year.

Overview

An organisation undertaking a significant cyber security improvement programme is seeking an experienced GRC / Cyber Security Risk Analyst to help establish stronger security governance, risk management and compliance practices.

This is an opportunity to join a business that is investing heavily in the maturity of its cyber security capability.

The successful contractor will play a key role in building and improving governance processes, supporting risk-based decision making and helping drive meaningful security improvements across a diverse technology estate.

The role requires a practical individual who can balance governance and compliance requirements with the realities of operational delivery.

The Role

You will work across technology, security and business teams to identify, assess and manage cyber security risks while helping establish consistent governance processes and controls.

Responsibilities

  • Conducting cyber security and technology risk assessments
  • Maintaining and developing security risk registers
  • Managing asset registers and supporting asset governance activities
  • Facilitating security governance forums and risk review meetings
  • Supporting the creation and enhancement of security policies, standards and procedures
  • Working with stakeholders to assess risks and agree remediation priorities
  • Monitoring and tracking risk treatment plans
  • Supporting ISO27001-aligned governance, risk and compliance activities
  • Contributing to wider security maturity and control improvement initiatives

What We're Looking For

  • Experience working within GRC, cyber security risk or information security functions
  • Strong understanding of cyber security risk management principles
  • Experience maintaining risk registers and conducting risk assessments
  • Knowledge of ISO27001 and ideally ISO27005
  • Experience supporting governance forums, compliance activities and policy development
  • Ability to engage confidently with technical and non-technical stakeholders
  • Strong documentation and communication skills
  • Pragmatic, delivery-focused approach

Desirable Experience

  • Experience within large, operationally complex environments
  • Exposure to NIST, Cyber Essentials Plus or similar security frameworks
  • Knowledge of enterprise security controls and security operations functions
  • Experience supporting wider cyber transformation or security maturity programmes
  • Contract Details
  • Outside IR35
  • Initial 6-month contract
  • Hybrid working
  • North West England
  • One-stage interview process
  • Immediate start available
  • #J-18808-Ljbffr

GRC / Cyber Security Risk Analyst in Nottingham employer: Cyber Security training courses

As an AI Engineer at our Central London office, you will be part of a dynamic team dedicated to pioneering cutting-edge AI solutions that drive business growth and enhance engineering capabilities. We pride ourselves on fostering a collaborative work culture that encourages innovation and professional development, offering competitive salaries, performance bonuses, and the flexibility of a hybrid working model to ensure a healthy work-life balance.

Cyber Security training courses

Contact Details:

Cyber Security training courses Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land GRC / Cyber Security Risk Analyst in Nottingham

Get Active on Cybersecurity Forums

Join platforms like Stack Exchange and Reddit’s r/cybersecurity to hang out with industry pros, learn the latest, and share your insights. This will not only boost your visibility but also help you connect with potential clients who might need your freelance services.

Show Off Your Skills with Public Projects

Create a few open-source projects or contribute to existing ones that showcase your cybersecurity skills. Use GitHub to display your work, as this is an excellent way to attract clients looking for freelancers with a proven track record.

Attend Local Conferences and Meetups

Make sure to hit up cybersecurity meetups, workshops, and conferences in your area. These events are goldmines for networking, and you’ll often find people looking for freelancers after a chat over a coffee – so come prepared with your business cards and a killer elevator pitch!

Market Yourself Smartly

Set up a professional website that showcases your portfolio, expertise, and client testimonials. Optimise it for SEO with relevant keywords so potential clients searching for cybersecurity freelancers can easily find you. Don’t forget to link to your site on all your social media and profiles!

We think you need these skills to ace GRC / Cyber Security Risk Analyst in Nottingham

GRC (Governance, Risk, Compliance)
Cyber Security Risk Management
Risk Assessments
Security Risk Registers
ISO27001
ISO27005
Policy Development

Some tips for your application 🫡

Show Your Skills Through a Strong Portfolio:Since you're applying for a freelance role in cybersecurity, it's crucial to showcase your technical skills through a detailed portfolio. Include case studies of projects you've worked on, any security tools you've developed or assessed, and specifics on the methodologies you’ve used. This will help Cyber Security training courses understand what you're capable of.

Certifications Matter!:Make sure to list any relevant certifications you hold, such as CISSP, CEH, or CompTIA Security+. Freelance clients often value these credentials as they reflect your expertise and commitment to the field. If you’re actively pursuing more certifications, don’t hesitate to mention that too!

Rates, Availability, and Your Work Style:In your application, it’s essential to be clear about your freelance rates and availability. Clients appreciate transparency. Mention how many hours a week you can dedicate and your preferred working hours, as this sets expectations from the start and shows you're organised and professional.

Tailor Your CV to Highlight Cybersecurity Experience:When crafting your CV, make sure to tailor it specifically to cybersecurity. Highlight projects, tasks, and achievements related to security assessments, vulnerabilities you've mitigated, or compliance work you've undertaken. Keywords relevant to the job can grab attention and increase your chances of landing a spot at Cyber Security training courses.

How to prepare for a job interview at Cyber Security training courses

Showcase Your Cybersecurity Skills

As a freelancer in cybersecurity, it’s crucial we demonstrate not just our knowledge but our practical skills too. Be ready to discuss specific tools you’ve used, like Wireshark or Metasploit, and share relevant experiences where you identified vulnerabilities or mitigated risks in past projects.

Prepare Your Portfolio

Unlike traditional roles, freelancing relies heavily on your portfolio. Let’s curate a selection of past work that showcases our best projects. If we’ve handled penetration tests, audits, or incident responses, be sure to highlight these in your portfolio, and share any client testimonials if we have them.

Stay Updated on Trends and Tools

Cybersecurity is an ever-evolving field, so we should be prepared to chat about recent developments and how they impact our work. Familiarise ourselves with the latest threats, tools, and frameworks, like MITRE ATT&CK, that are pertinent to the projects we’re pitching.

Pitching Your Value as a Freelancer

When freelancing, we often need to negotiate our rates and value propositions. Be ready to explain how our skills can help Cyber Security training courses protect their assets and manage risks. It can help to outline some potential strategies or improvements we could implement for them based on their current setup.