Lead Cybersecurity GRC Consultant in Birmingham

Lead Cybersecurity GRC Consultant in Birmingham

Birmingham Full-Time 67500 - 82500 £ / year (est.) Home office (partial)
J

At a Glance

  • Tasks: Lead the development of Cyber GRC practices and manage cyber risks effectively.
  • Company: Join Jacobs, a global leader in infrastructure solutions.
  • Benefits: Enjoy flexible working, comprehensive health cover, and a supportive work culture.
  • Other info: Hybrid working model with opportunities for career growth and personal development.
  • Why this job: Make a real impact on major projects while shaping the future of Cyber GRC.
  • Qualifications: Experience in cyber security governance and risk management is essential.

The predicted salary is between 67500 - 82500 £ per year.

At Jacobs, we're challenging today to reinvent tomorrow by solving the world's most critical problems for thriving cities, resilient environments, mission-critical outcomes, operational advancement, scientific discovery and cutting-edge manufacturing, turning abstract ideas into realities that transform the world for good.

Your impact

Join us at a pivotal moment as we strengthen cyber governance, risk and compliance across one of the UK's most significant infrastructure programmes. This is an opportunity to shape and lead a modern Cyber GRC capability from the ground up. You'll play a critical role in ensuring cyber risks are effectively understood, managed and communicated, helping senior leaders make informed decisions that support successful project delivery.

As the dedicated Cyber GRC professional supporting this team and programme, you'll have the autonomy to create meaningful change, influence stakeholders across multiple disciplines, and establish scalable approaches that could be adopted more broadly across Jacobs. For the right person, this role offers the chance to make a visible impact today while helping shape the future direction of Cyber GRC across major programmes.

What You'll Do

As Lead Cyber Security GRC Consultant, you'll be responsible for developing and embedding effective governance, risk and compliance practices across a complex project environment. Working closely with cyber, IT, digital, delivery and project teams, you'll ensure cyber risks are identified, assessed and managed effectively while building stronger links between cyber risk and wider programme risk management processes.

You’ll lead the development and implementation of policies, standards, controls and assurance activities, helping to transform existing manual processes into streamlined, digitally enabled ways of working. You’ll also provide clear, evidence-based reporting that translates technical and cyber risks into meaningful insights for senior stakeholders and decision-makers. This is a hands-on consultancy role requiring a practical approach, strong stakeholder engagement skills and the ability to drive outcomes through influence rather than direct authority.

Here’s what you’ll need

We’re looking for an experienced Cyber GRC professional who can operate independently and confidently within a complex environment. You’ll bring:

  • Proven experience delivering end-to-end cyber security or IT security governance, risk and compliance activities.
  • Strong experience conducting and managing cyber risk assessments, remediation activities and senior-level risk reporting.
  • Experience creating and implementing cyber policies, standards, frameworks and governance processes.
  • Knowledge of recognised security and risk frameworks such as ISO 27001, NIST, NCSC CAF, Government Security Standards, or equivalent.
  • The ability to communicate complex cyber risks clearly to both technical and non-technical audiences.
  • A proactive, delivery-focused mindset with the confidence to challenge constructively, remove barriers and work autonomously.
  • Experience with Microsoft Azure, Microsoft 365, operational technology (OT) environments, government projects, or critical national infrastructure would be beneficial.

At Jacobs, we deliver solutions that matter. You'll be trusted to take ownership, encouraged to challenge constructively, and supported to create meaningful change. This is a unique opportunity to build and shape a Cyber GRC capability, work on a high-profile infrastructure programme, and influence how cyber risk is managed at scale.

If you're looking for a role where you can make a lasting impact while continuing to grow your career, we'd love to hear from you.

Other Key Info

This is a full time, permanent role, UK based, hybrid (2-3 days/week - office/site) aligned to a local Jacobs office, with business travel to support client and business requirements. Full time employment at Jacobs is based on a 40-hour working week. We place a strong emphasis on work life balance and flexibility, and flexi-time is available.

All Jacobs employees will require a BPSS check as part of the hiring and onboarding process. This role will be subject to UK Security Vetting at SC (security check) level. Applicants must be eligible and willing to undergo the appropriate security clearance process, if not already cleared. Any offer of employment will be conditional upon satisfactory completion of the relevant clearance process.

We offer an excellent and wide range of employee benefits including comprehensive Health Cover, Life Assurance, Income Protection, holiday buy/sell scheme, and a variety of wellbeing, family, parental and fertility support offerings, along with an enhanced contribution pension scheme.

Joining Jacobs not only connects you locally but globally. Our values stand on a foundation of safety, integrity, inclusion and belonging. We put people at the heart of our business, and we truly believe that by supporting one another through our culture of caring, we all succeed. We value positive mental health and a sense of belonging for all employees.

With safety and flexibility always top of mind, we’ve gone beyond traditional ways of working so you have the support, means and space to maximize your potential. You’ll uncover flexible working arrangements, benefits, and opportunities, from well-being benefits to our global giving and volunteering program, to exploring new and inventive ways to help our clients make the world a better place.

We aim to embed inclusion and belonging in everything we do. We know that if we are inclusive, we’re more connected and creative. We accept people for who they are, and we champion the richness of different perspectives, lived experiences and backgrounds in the workplace, as a source of learning and innovation.

Jacobs partners with VERCIDA to help us attract and retain talent from a wide range of backgrounds. As a disability confident employer, we will interview disabled candidates who best meet the criteria. We welcome applications from candidates who are seeking flexible working and from those who may not meet all the listed requirements for a role.

We value collaboration and believe that in‑person interactions are crucial for both our culture and client delivery. We empower employees with our hybrid working policy, allowing them to split their work week between Jacobs offices/projects and remote locations enabling them to deliver their best work.

Your application experience is important to us, and we’re keen to adapt to make every interaction even better. If you require further support or reasonable adjustments with regards to the recruitment process, please contact the team via Careers Support.

Lead Cybersecurity GRC Consultant in Birmingham employer: Jacobs

At Jacobs, we pride ourselves on being an exceptional employer, offering a dynamic and inclusive work culture that prioritises safety, integrity, and collaboration. Our Glasgow office provides flexible working arrangements and a wealth of opportunities for professional growth, allowing you to contribute to innovative maritime projects while being part of a supportive team that values diverse perspectives. Join us to make a meaningful impact in the world of civil and structural engineering, all while enjoying the benefits of a global network and a commitment to employee well-being.

J

Contact Details:

Jacobs Recruitment Team

We think you need these skills to ace Lead Cybersecurity GRC Consultant in Birmingham

Cybersecurity Governance
Risk Management
Compliance Practices
Cyber Risk Assessments
Policy Development
ISO 27001
NIST Framework