At a Glance
- Tasks: Drive security, risk, and compliance initiatives to support banking services and business growth.
- Company: Join Teya, a dynamic payment and software service provider in London.
- Benefits: Flexible hours, gym access, extended leave, health insurance, and 25 days annual leave.
- Other info: Inclusive environment with opportunities for continuous learning and career growth.
- Why this job: Make a real impact in a supportive culture dedicated to empowering small businesses.
- Qualifications: 5+ years in security governance, risk, and compliance within financial services.
The predicted salary is between 36000 - 60000 £ per year.
Governance, Risk & Compliance Specialist
Join to apply for the Governance, Risk & Compliance Specialist role at Teya
We’re a payment and software service provider headquartered in London serving small local businesses across Europe. Founded in 2019, we build easy‑to‑use integrated tools that enable our members to accept payments and boost business performance.
At Teya we believe small, local businesses are the lifeblood of our communities. We’re here because we don’t believe there’s a level playing field that gives small businesses a fighting chance against the giants of the high street. We’re here to fight for a future where small, local businesses can thrive, and to commit the same dedication they offer all of us.
We’re looking for exceptional talent to join our mission. We offer a chance to create impact in a high‑energy and connected culture, while benefiting from continuous learning opportunities, a supportive community that is proud to serve our mission, and comprehensive benefits.
Your Mission
We’re seeking an experienced Security GRC Specialist to drive our transformation into banking and credit services. This role blends security, risk, and compliance—translating complex regulations into practical programs that enable business growth. Reporting to senior security leadership, you’ll collaborate with teams across Europe (IT, Legal, Product, HR, etc.) to implement a scalable governance framework and influence Teya’s overall security strategy.
Your Role Will Include
Governance & Policy
- Develop, maintain, and update security policies, standards, and frameworks aligned with business and regulatory needs.
- Evolve the ISMS to support banking services and European expansion.
- Create clear, actionable documentation for security controls.
Risk Management
- Conduct enterprise‑wide and third‑party security risk assessments.
- Maintain risk registers, treatment plans, and executive reports.
- Balance security needs with business enablement.
Compliance & Regulatory
- Ensure compliance with ISO 27001, PCI‑DSS/PIN/MPOC, DORA, NIST, SWIFT CSP, GDPR, FCA, and other financial regulations.
- Manage compliance tracking, reporting, and regulatory roadmaps.
- Act as the liaison with auditors and regulators.
Audit & Assessment
- Lead internal/external audits and certification processes.
- Manage evidence collection, remediation, and reporting.
- Maintain audit readiness and control assessment programs.
Third‑Party Risk
- Oversee the TPRM program, vendor assessments, and due diligence.
- Monitor ongoing vendor compliance and manage related incidents.
Your Story
Must Have
- 5+ years’ experience in security governance, risk, and compliance within financial services, fintech, or banking.
- Proven expertise across key frameworks: ISO 27001, PCI‑DSS/PIN/MPOC, DORA, NIST CSF, GDPR, SWIFT CSP, and FCA regulations.
- Strong understanding of risk management methodologies (ISO 31000, FAIR, NIST RMF) and third‑party risk programs.
- Experience managing regulatory audits, assessments, and interactions with auditors and regulators.
- Knowledge of banking and credit risk frameworks and EU/UK compliance requirements.
Nice to Have
- Solid grasp of information security principles (cryptography, IAM, network security, secure SDLC).
- Familiar with tools such as SIEM, DLP, encryption, vulnerability management, and GRC platforms (OneTrust, ServiceNow GRC, Jira, Confluence).
- Experience with audit evidence management and cloud security (AWS, Azure, GCP).
The Perks
- Flexible working hours.
- GymPass giving free access to over 1,500 gyms in the UK, 1‑1 therapy, meditation sessions, digital fitness and nutrition apps.
- Extended and improved maternity and paternity leave choices.
- Cycle‑to‑Work scheme.
- Health and life insurance.
- Pension scheme.
- 25 days of annual leave (+ bank holidays).
- Office snacks every day.
- Friendly, comfortable and informal office environment in Central London.
Teya is proud to be an equal‑opportunity employer.
We are committed to creating an inclusive environment where everyone regardless of race, ethnicity, gender identity or expression, sexual orientation, age, disability, religion, or background can thrive and do their best work. We believe that a diverse team leads to better ideas, stronger outcomes, and a more supportive workplace for all.
If you require any reasonable adjustments at any stage of the recruitment process whether for interviews, assessments, or other parts of the application—we encourage you to let us know. We are committed to ensuring that every candidate has a fair and accessible experience with us.
#J-18808-Ljbffr
Governance, Risk & Compliance Specialist employer: Teya
Contact Detail:
Teya Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Governance, Risk & Compliance Specialist
✨Tip Number 1
Network like a pro! Reach out to people in the industry, attend events, and connect with professionals on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.
✨Tip Number 2
Prepare for interviews by researching Teya and understanding their mission. Tailor your answers to show how your experience aligns with their goals, especially in governance, risk, and compliance.
✨Tip Number 3
Practice common interview questions related to security and compliance. Use the STAR method (Situation, Task, Action, Result) to structure your responses and highlight your achievements.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, it shows you’re genuinely interested in joining our mission at Teya.
We think you need these skills to ace Governance, Risk & Compliance Specialist
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the Governance, Risk & Compliance Specialist role. Highlight your relevant experience and skills that align with Teya's mission and the specific requirements mentioned in the job description.
Showcase Your Expertise: Don’t shy away from showcasing your knowledge of key frameworks like ISO 27001 and GDPR. We want to see how your background in security governance and risk management can contribute to our goals at Teya.
Be Clear and Concise: When writing your application, keep it clear and to the point. Use bullet points where necessary to make it easy for us to read through your qualifications and experiences without getting lost in lengthy paragraphs.
Apply Through Our Website: We encourage you to apply directly through our website. This way, you’ll ensure your application reaches us promptly and you’ll have access to all the latest updates about the role and our company.
How to prepare for a job interview at Teya
✨Know Your Regulations
Make sure you’re well-versed in the key frameworks mentioned in the job description, like ISO 27001 and GDPR. Brush up on how these regulations impact Teya's operations and be ready to discuss how you can help implement compliance strategies.
✨Showcase Your Risk Management Skills
Prepare examples of past experiences where you've successfully conducted risk assessments or managed compliance audits. Highlight your understanding of risk management methodologies and how they can be applied to Teya’s needs.
✨Understand the Business Context
Teya is all about supporting small businesses. Familiarise yourself with their mission and think about how your role as a Governance, Risk & Compliance Specialist can directly contribute to that. Be ready to share ideas on balancing security with business enablement.
✨Engage with Questions
Prepare thoughtful questions that show your interest in Teya’s culture and future plans. Ask about their approach to evolving their ISMS or how they handle third-party risk management. This not only shows your enthusiasm but also helps you gauge if Teya is the right fit for you.