Governance, Risk & Compliance (GRC) Analyst in London
Governance, Risk & Compliance (GRC) Analyst

Governance, Risk & Compliance (GRC) Analyst in London

London Full-Time 36000 - 60000 ÂŁ / year (est.) No home office possible
The Investigo Group

At a Glance

  • Tasks: Support governance, risk, and compliance frameworks in a dynamic tech environment.
  • Company: Join The Investigo Group, a leader in innovative tech solutions.
  • Benefits: Enjoy competitive salary, private medical, generous holiday, and continuous learning opportunities.
  • Why this job: Make a real impact on security practices while developing your expertise in GRC.
  • Qualifications: Analytical mindset with experience in risk assessments and compliance frameworks.
  • Other info: Embrace a collaborative culture focused on diversity, equity, and inclusion.

The predicted salary is between 36000 - 60000 ÂŁ per year.

Location: Remote - UK

Job Type: Full-time, Permanent

Salary: Competitive, based on experience + benefits + package

Security Clearance Requirements: Please note that holding a current Security Clearance is not essential at the time of application, but eligibility is required. This role requires the successful candidate to be eligible for Security Check (SC) clearance. To meet this requirement, applicants must:

  • Have the right to work in the UK
  • Have lived in the UK continuously for the past 5 years
  • Not have spent more than 6 months outside the UK in total during that period
  • Be willing to undergo security vetting as part of the onboarding process

About Us: Come and be a part of The Investigo Group (TIG), a dynamic coalition of cutting‑edge tech firms specialising in Platform, Software, Data, AI and other bleeding‑edge technology solutions. Our innovative prowess spans the globe while proudly hailing from the United Kingdom. The group is multi‑functional with a large portfolio of B2B products and services.

About You: You’re someone who enjoys bringing structure, clarity and assurance to complex environments. You have a strong interest in governance, risk and compliance, and understand how effective security frameworks help organisations operate confidently and securely. You’re comfortable working across policies, frameworks, risk registers and audits, but equally enjoy collaborating with colleagues across the business to translate security and compliance requirements into practical, real‑world processes. You take a methodical, detail‑oriented approach to your work and are confident analysing risk, identifying gaps and helping implement improvements. At the same time, you understand that governance and compliance should enable the business, not slow it down. You’ll likely already have experience supporting information security governance, risk management or compliance programmes, and be keen to continue developing your expertise in areas such as ISO 27001, third‑party risk, regulatory compliance and GRC tooling. Most importantly, you’ll bring a collaborative mindset, curiosity and a proactive approach to strengthening security and governance across the organisation.

About The Role: We are looking for a Governance, Risk & Compliance (GRC) Analyst to join our Security Team and support the ongoing development of our governance and compliance capabilities. Working closely with the Deputy Head of Security, you will help maintain and strengthen the organisation’s Information Security Management System (ISMS) while supporting risk management, regulatory compliance and third‑party assurance activities. This role will play an important part in preparing the organisation for our ISO 27001 journey, as well as supporting the implementation and ongoing management of a new GRC platform. You will work across multiple areas including governance frameworks, risk management processes, compliance monitoring and audit preparation, helping ensure security practices remain practical, proportionate and aligned with business objectives.

Key Objectives:

  • Supporting the ongoing development and improvement of the organisation’s governance and compliance frameworks
  • Maintaining and strengthening our ISO 27001 aligned Information Security Management System
  • Facilitating enterprise risk management processes, including risk identification and tracking
  • Supporting third‑party and supply chain risk assurance
  • Contributing to the implementation and ongoing management of a GRC platform
  • Supporting internal and external audit preparation
  • Helping embed a strong security and compliance culture across the organisation

Success in This Role Looks Like: Within the first 3–6 months, success in the role will include:

  • Taking ownership of key GRC and governance processes
  • Supporting improvements across the organisation’s risk management and compliance frameworks
  • Contributing to the effective operation of the Information Security Management System
  • Supporting the implementation and adoption of the organisation’s GRC platform
  • Helping prepare the organisation for upcoming ISO 27001 audit activities

Requirements: What We’re Looking For: We are looking for someone who is analytical, organised and comfortable working within structured governance frameworks. You should enjoy working across risk, compliance and security governance, while being able to communicate requirements clearly to both technical and non‑technical stakeholders. This role suits someone who takes a methodical and detail‑oriented approach, enjoys solving problems and is motivated by helping organisations manage risk and maintain strong security practices.

Essential Experience & Skills:

  • Experience supporting risk assessments and risk registers
  • Familiarity with governance and compliance frameworks such as ISO 27001, NIST or CIS
  • Understanding of data protection and privacy principles
  • Experience maintaining policies, standards and control documentation
  • Ability to analyse risks and communicate findings clearly
  • Strong organisational skills with attention to detail
  • Experience working within security, compliance, risk or governance functions

Soft Skills & Behaviours:

  • Strong analytical and problem‑solving mindset
  • Ability to translate regulatory or technical requirements into practical guidance
  • Attention to detail and process discipline
  • Collaborative and team‑oriented approach
  • Calm, conscientious and adaptable working style
  • Positive attitude towards continuous improvement

Desirable Qualifications:

  • CISSP
  • CISM
  • CRISC
  • ISO 27001 Lead Implementer or Lead Auditor
  • IAPP certifications
  • Equivalent practical experience will also be considered.

Desirable (Not Essential):

  • Experience working with GRC platforms such as Vanta, CompAI or similar
  • Exposure to security or compliance reporting tools such as Power BI
  • Experience supporting ISO 27001 certification or audit programmes
  • Experience managing or contributing to third‑party risk assessments

This is a great Opportunity to help shape and improve governance and security practices across a growing technology organisation.

Benefits:

  • Private Medical
  • Inclusive Culture: Enjoy an inclusive culture and environment.
  • Holiday: Generous holiday allowance.
  • Learning: Access to continuous learning and development opportunities.
  • Bonus Potential: Bonus potential based on performance and business‑related factors.
  • Discounts: Discounts on a wide range of products and services.
  • Pension: Pension scheme contributions.
  • EV Car Scheme
  • Hybrid Working Policy
  • More Benefits: Explore additional benefits on our career site.

How To Apply: Please note that the talent acquisition team is managing this vacancy directly and we do not require agency support. Candidates who are successful will be required to undergo relevant security checks.

Our Process: Our talent acquisition team will be in touch if you're successful, the team will arrange a short screening call (max 30 minutes) to learn more about you, and what you are looking for and answer any questions you may have. If all goes well, the team will share your profile with the hiring manager for review. Our interview process is tailored to each role.

As an inclusive employer, please inform us if you require any reasonable adjustments.

Equal Opportunities: Here at TIG we are committed to equal opportunities and value diversity, equity and inclusion at our company. We do not discriminate based on race, religion, colour, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. As a Group, we seek to ensure that individuals with disabilities receive reasonable accommodation throughout the hiring process and ultimately within the job itself. Please contact us to request any accommodations.

Governance, Risk & Compliance (GRC) Analyst in London employer: The Investigo Group

The Investigo Group (TIG) is an exceptional employer that champions innovation and inclusivity within the tech sector. With a strong commitment to employee growth, TIG offers continuous learning opportunities, a generous holiday allowance, and a hybrid working policy, all while fostering a collaborative culture where diverse voices are valued. Join us in shaping the future of technology solutions in a supportive environment that prioritises your professional development and well-being.
The Investigo Group

Contact Detail:

The Investigo Group Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Governance, Risk & Compliance (GRC) Analyst in London

✨Tip Number 1

Network like a pro! Reach out to people in the industry, attend virtual events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.

✨Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their approach to governance, risk, and compliance, and think about how your skills align with their needs. This will help you stand out as a candidate who truly gets them.

✨Tip Number 3

Practice common interview questions related to GRC roles. Be ready to discuss your experience with frameworks like ISO 27001 and how you've tackled risk management in the past. Confidence is key!

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at The Investigo Group.

We think you need these skills to ace Governance, Risk & Compliance (GRC) Analyst in London

Governance Frameworks
Risk Management
Compliance Monitoring
ISO 27001
Analytical Skills
Attention to Detail
Problem-Solving Skills
Communication Skills
Organisational Skills
Data Protection Principles
GRC Tooling
Audit Preparation
Collaboration
Adaptability

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in governance, risk, and compliance. We want to see how your skills align with the role, so don’t hold back on showcasing relevant projects or achievements!

Show Your Passion: Let us know why you’re excited about this role! Share your interest in security frameworks and how you’ve engaged with GRC processes in the past. A little enthusiasm goes a long way in making your application stand out.

Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use clear language to describe your experiences and skills, as we appreciate a methodical approach that reflects the role’s requirements.

Apply Through Our Website: We encourage you to submit your application directly through our website. This ensures that your application is seen by the right people and helps us streamline the process. Plus, it’s super easy!

How to prepare for a job interview at The Investigo Group

✨Know Your GRC Frameworks

Familiarise yourself with key governance, risk, and compliance frameworks like ISO 27001 and NIST. Be ready to discuss how these frameworks can be applied in real-world scenarios, as this will show your understanding of the role and its requirements.

✨Showcase Your Analytical Skills

Prepare examples that highlight your analytical mindset. Think about times when you've identified risks or gaps in processes and how you addressed them. This will demonstrate your problem-solving abilities and attention to detail, which are crucial for a GRC Analyst.

✨Communicate Clearly

Practice explaining complex security and compliance concepts in simple terms. You’ll likely need to communicate with both technical and non-technical stakeholders, so being able to translate jargon into practical guidance is key.

✨Emphasise Collaboration

Be ready to discuss your experience working in teams and how you’ve collaborated with others to achieve compliance goals. Highlighting your team-oriented approach will resonate well, especially since the role involves working closely with various departments.

Governance, Risk & Compliance (GRC) Analyst in London
The Investigo Group
Location: London

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>