Security Consultant GRC

Security Consultant GRC

Full-Time 36000 - 60000 £ / year (est.) Home office (partial)
N

At a Glance

  • Tasks: Lead and implement cyber security strategies to protect data and ensure compliance.
  • Company: Join NTT DATA, a global leader in security services with a diverse culture.
  • Benefits: Competitive salary, inclusive environment, and opportunities for professional growth.
  • Why this job: Make a real impact in the world of cyber security while working with brilliant minds.
  • Qualifications: 5+ years in information security and strong understanding of compliance frameworks.
  • Other info: We value diversity and offer support for applicants with disabilities.

The predicted salary is between 36000 - 60000 £ per year.

NTT DATA is one of the world's largest global security service providers. We are looking for passionate, curious, and motivated individuals to join our team. Our advanced portfolio of consulting, applications, business process, cloud, and infrastructure services enables you to achieve great things by working with brilliant colleagues and clients on exciting projects. Our inclusive work environment prioritises mutual respect, accountability, and continuous learning. This approach fosters collaboration, well-being, growth, and agility, leading to a more diverse, innovative, and competitive organisation.

Upon joining the NTT DATA UK family, you will experience a culturally diverse organisation living our values of Clients First, Teamwork and Foresight. At NTT DATA UK, we are proud to support and invest in our people. We offer a variety of rewarding career paths and opportunities to develop professionally with access to cutting edge innovation.

Responsibilities

  • Governance: direct, oversee, design, implement or operate within enterprise-level cyber and information security structures, policies, procedures, processes and controls to support regulatory, legal, risk, environmental and operational requirements and ensure compliance.
  • Policy and Procedure Management: direct, develop or maintain organisational cyber and information security policies, standards and processes, using recognised standards (e.g. ISO/IEC 27000 family, NIST CSF) where appropriate; apply security classifications.
  • Risk Management: develop cyber and information security risk management strategies and controls, balancing technical, physical, procedural and personnel controls; identify assets, threats, impacts, and costs to assess vulnerabilities and risks.
  • Data Privacy: direct, oversee, design, implement, contribute to, or operate within structures and controls to manage protection of personal data, privacy and human rights, ensuring regulatory compliance (e.g. GDPR, Data Protection).
  • Internal Controls Oversight: establish and monitor internal controls to safeguard data and assets, conducting regular reviews and audits.
  • Stakeholder Engagement: act as a liaison, guiding internal teams, external partners, and regulatory authorities; provide remediation guidance and prepare management reports to track remediation activities.
  • Continuous Improvement: identify opportunities for process enhancements, drive initiatives to bolster governance framework and security posture; assess and test control effectiveness and document compliance levels to identify risks and gaps.

Qualifications

  • 5+ years' varied experience in information security, data protection, risk management, enterprise IT, legal or relevant compliance roles.
  • Strong understanding of security governance, risk, and compliance frameworks such as ISO 27001, NIST 800-53 / CSF, NIS/NIS2, DORA, UK CNI / OT / IIOT compliance.
  • Hands-on experience building credibility with external stakeholders, including enterprise clients, critical system vendors, certification auditors and regulatory bodies.
  • Proven leadership skills with the ability to guide and mentor teams and influence senior stakeholders in a GRC, security, or risk management role.
  • A hands-on approach balancing strategic oversight with direct involvement in security tasks.
  • Excellent communication skills to present complex information clearly to non-technical stakeholders.
  • Ability to explain complex topics to a diverse range of audiences.
  • Strong attention to detail and the ability to deliver high-quality work.
  • A valid right to work in the UK and eligibility to obtain UK SC clearance.
  • CISA, CRISC, CISM or CISSP certification are advantageous.

We are an equal opportunities employer and are committed to promoting equity and diversity in our employment practices. We are a Disability Confident Committed Employer and guarantee an interview to applicants who declare a disability and meet the minimum requirements for the role. If you require any reasonable adjustments during the recruitment process, please let us know.

Security Consultant GRC employer: NTT DATA UK Ltd.

NTT DATA is an exceptional employer that champions a culture of inclusivity, collaboration, and continuous learning, making it an ideal place for Security Consultants GRC to thrive. With a commitment to employee growth and access to cutting-edge innovation, team members are empowered to engage in meaningful projects that have a global impact. The diverse work environment not only prioritises mutual respect and accountability but also offers various career paths, ensuring that every individual can achieve their professional aspirations while contributing to a competitive and innovative organisation.
N

Contact Detail:

NTT DATA UK Ltd. Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Security Consultant GRC

✨Tip Number 1

Network like a pro! Reach out to current employees at NTT DATA on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for landing a role in security consulting.

✨Tip Number 2

Prepare for the interview by brushing up on your knowledge of GRC frameworks like ISO 27001 and NIST. We want to see that you can talk the talk, so be ready to discuss how you've applied these in real-world scenarios.

✨Tip Number 3

Showcase your soft skills! Communication is key in this role, so think of examples where you've successfully explained complex topics to non-technical folks. We love candidates who can bridge the gap between tech and business.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining our team at NTT DATA.

We think you need these skills to ace Security Consultant GRC

Cyber Security Governance
Information Security Management
Risk Management
Data Protection
Regulatory Compliance
ISO 27001
NIST CSF
Stakeholder Engagement
Internal Controls Oversight
Process Improvement
Communication Skills
Leadership Skills
Attention to Detail
Analytical Skills
CISA Certification

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Security Consultant GRC role. Highlight your experience in information security, risk management, and compliance frameworks like ISO 27001 or NIST. We want to see how your skills match what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about this role and how your background makes you a great fit. Don’t forget to mention any relevant certifications like CISA or CISSP that you hold.

Showcase Your Communication Skills: Since you'll be presenting complex information to non-technical stakeholders, make sure to demonstrate your communication skills in your application. Use clear and concise language, and avoid jargon where possible. We love clarity!

Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to track your application status. Plus, we love seeing applications come directly from our site!

How to prepare for a job interview at NTT DATA UK Ltd.

✨Know Your GRC Frameworks

Make sure you brush up on your knowledge of security governance, risk, and compliance frameworks like ISO 27001 and NIST CSF. Be ready to discuss how you've applied these in past roles, as this will show your hands-on experience and understanding of the field.

✨Showcase Your Stakeholder Engagement Skills

Prepare examples of how you've built credibility with external stakeholders, such as enterprise clients or regulatory bodies. Highlight your communication skills by explaining complex topics clearly, as this is crucial for a Security Consultant role.

✨Demonstrate Continuous Improvement Mindset

Think of specific instances where you've identified opportunities for process enhancements in your previous roles. Discuss how you drove initiatives to improve governance frameworks and security postures, showcasing your proactive approach.

✨Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving skills in risk management and data privacy. Practice articulating your thought process and decision-making strategies, as this will help you stand out as a candidate who can balance strategic oversight with hands-on involvement.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

N
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>