At a Glance
- Tasks: Lead Trayport's GRC programme, ensuring compliance and managing security risks.
- Company: Join a dynamic tech company committed to innovation and collaboration.
- Benefits: Gain valuable experience, work with industry leaders, and enjoy a supportive work culture.
- Other info: Embrace a culture of continuous learning and growth at Trayport.
- Why this job: Make a real impact on information security while developing your skills in a fast-paced environment.
- Qualifications: Bachelor's degree and knowledge of ISO 27001 and GDPR required.
The predicted salary is between 45000 - 55000 £ per year.
GRC Manager is responsible for the overall execution of Trayport's Information Security Governance, Risk and Compliance programme under the guidance of the Head of Information Security.
The role will primarily entail managing policies & standards incl.
Training & Awareness deliverables, performing risk assessments, tracking of security risks of the Information Security Office and organisation as well as maintaining and managing the ISO27001 certification and ensuring there is appropriate governance & reporting on outputs and risk posture to stakeholder groups.
- Primary Responsibilities
- Execute the UK and EU GRC Strategy, ensuring compliance with GDPR, UK Data Protection Act 2018, and other regional privacy laws.
- Maintain information security policy and security standards
- Oversee risk management processes including risk identification, assessment, controls, weaknesses, mitigation and reporting.
- Develop and deliver concise, data driven risk and compliance reporting for senior management/ stakeholders, highlighting trends, emerging risks & mitigation strategies.
- Manage and support audits including customer, internal and external (standards auditors) including preparation, execution and remediation tracking.
- Maintain documentation and evidence of certifications and attestations
- Maintain key standards such as ISO 27001, adding business value.
- Recruit, Manage, coach and develop the Risk & Compliance team, setting clear goals & objectives, cultivating an inclusive culture of accountability, continuous learning and collaboration.
- Proactively participate as senior member and leader within the ISO leadership team contributing to overall strategy, engagement, team dynamic and programmes within ISO.
- Act as a trusted advisor to executive and SME stakeholders, providing actionable insight and guidance to support risk-aware decision making.
- Partner with Legal, Privacy, Procurement, Development, IT and other functions to embed security, governance and compliance into products, systems, processes and services.
- Champion and scale security awareness and governance training programs to build a strong, security-first culture across Trayport.
- Own the development, communication and maintenance of security policies, ensuring alignment with evolving threats and compliance needs.
- Maintain Key Performance Indicator reports summarising the status of identified security issues.
- Additional responsibilities Build relationships with teams across Trayport and TMX Group to ensure smooth execution of the security requirements across disciplines.
- Represent Trayport security requirements in TMX central quorum forums such as AI Committee, Business Continuity & Operational Resilience and Risk/ Compliance Boards.
- Ability to influence and gain credibility with the business teams across the organisation.
- Keep up to date with emerging legal, regulatory and industry standards.
- Liaise with external suppliers to ensure smooth delivery of their work.
- Required skills
- Good knowledge of ISO 27001, NIST CSF, NIS 2.0 Legal and Regulatory requirements across UK and Europe incl. GDPR.
- Supporting knowledge of CIS controls.
- Familiarity with cloud platforms: AWS, Azure or GCP.
- Track record of delivering actionable risk reporting and advisory support to executive teams, influencing strategic decision-making.
- Experience in leading customer audits and managing audit responses.
- Excellent communication skills (oral and written), with the ability to present complex risk and compliance information clearly to senior leadership and stakeholders.
- Strong analytical and critical thinking skills, capable of identifying risks, evaluating controls, and recommending effective mitigation strategies - Detail-oriented with proactive approach to risk and compliance.
- Proven ability to balance control and creativity with problem solving abilities - tailoring governance frameworks that fit the business.
- Experience in integrating risk management processes into business operations, including supplier and third-party risk assessments.
- Agile and self-motivated learner.
- Teamwork - able to work with other people in a collaborative manner.
- Pragmatism - able to identify compromises that meet multiple, sometimes conflicting, stakeholder needs.
- Ability to work independently and influence cross-functional teams.
- Required qualifications
- Bachelors level degree
Desirable qualifications
- ISO27001 Lead Implementer or Lead Auditor
- Certified Information Systems Audtior (CISA) - ISACA
- Certified Information Security Manager (CISM) - ISACA
- Comp TIA Security+
- ITIL, COBIT or similar governance frameworks
- Other relevant certifications in cyber security or IT governance
Trayport is committed to creating and sustaining a collegial work environment in which all individuals are treated with dignity and respect and one which reflects the diversity of the community in which we operate.
We provide accommodations for applicants and employees who require it.
At Trayport, our people power our success.
We are a place where talented people never stop learning, innovating and working together to make an impact!
We offer you more than a job - we offer you the opportunity to work with, and learn from the most respected industry and thought leaders in the business.
We're always pushing the boundaries, rapidly expanding our global presence across London, Vienna, Singapore, Bremen and North America.
At Trayport, we understand that our people are crucial to our future.
We strive to provide a challenging and inspirational atmosphere; employing intelligent, enthusiastic, adaptable individuals and giving them the freedom, training, and guidance to allow them to consistently achieve their potential.
#J-18808-Ljbffr
GRC Manager - 6 month FTC in London employer: TMX Group
At TMX, we pride ourselves on being an exceptional employer, offering a dynamic work culture that fosters collaboration and innovation. Based in the vibrant city of London, our hybrid work model promotes flexibility while ensuring employees have access to comprehensive benefits and well-being initiatives tailored to diverse needs. With a strong focus on professional growth and a commitment to social impact, TMX empowers its team members to thrive both personally and professionally in a supportive environment.
StudySmarter Expert Advice🤫
We think this is how you could land GRC Manager - 6 month FTC in London
✨Dive into Industry Groups
Join compliance and risk management groups on platforms like LinkedIn and Facebook. These communities often share temp job postings and insights. You’d be surprised at how many temporary gigs float around through word of mouth!
✨Showcase Your Expertise
Consider creating content on compliance topics that get you noticed—think LinkedIn articles or even a blog. This not only shows off your knowledge but can grab the attention of companies like TMX Group when they’re searching for someone to fill a temporary position.
✨Tap into Recruitment Agencies
Reach out to recruitment agencies that specialise in compliance and risk roles. They’re usually in touch with companies looking to fill temporary roles, which can save us a lot of time in our job search.
✨Go Local with Networking
Attend local compliance and risk seminars or workshops. Meeting professionals in our area can open up temp opportunities, and it’s a great way to make your face known in the industry—plus, you might even meet someone from TMX Group!
We think you need these skills to ace GRC Manager - 6 month FTC in London
Some tips for your application 🫡
Show Your Compliance Know-How:When you’re applying for a compliance-risk role like GRC Manager - 6 month FTC, make sure to highlight your understanding of industry regulations and risk management principles. Mention any relevant coursework, certifications, or projects that showcase your expertise in these areas—it's what sets you apart!
Highlight Your Analytical Skills:In the compliance-risk field, strong analytical skills are essential. Talk about your experiences that required critical thinking and data analysis, whether in past roles, internships, or academic projects. Show us how you've identified risks and implemented solutions in the past.
Tailor Your CV for the Temporary Role:Since this is a temporary role, focus on your availability and flexibility in your CV. Highlight any previous short-term roles or projects that demonstrate your ability to adapt quickly and deliver results in a fast-paced environment. This helps employers see you as an easy fit in their team!
A Concise Cover Letter is Key:Keep your cover letter short and focused! Explain why you're interested in the compliance-risk area specifically for this temporary position at TMX Group. Mention what you hope to learn and achieve, showing your enthusiasm and motivation to contribute positively during your time there.
How to prepare for a job interview at TMX Group
✨Know Your Compliance Basics
Make sure you're clued up on the key compliance and risk regulations pertinent to the industry you're applying to. Understanding frameworks like GDPR or AML will not only impress but also show that you’re ready to hit the ground running in your temporary role at TMX Group.
✨Prepare for Scenarios
Expect scenario-based questions that test your problem-solving skills. They might ask how you'd handle a specific compliance issue. Think through real situations you’ve encountered in past roles or study hypothetical cases to showcase your analytical skills and practical judgement during the interview.
✨Highlight Your Adaptability
Since this is a temporary position, emphasise your ability to adapt quickly to new environments and team dynamics. Share examples of how you’ve successfully adjusted to changes in past roles and how this flexibility can benefit TMX Group in the short term.
✨Gather Your Technical Tools
Familiarise yourself with commonly used compliance tools or software, as they might come up in the interview. If you've used tools for risk assessments or compliance tracking, mention those and be ready to discuss how they can streamline processes at TMX Group.