Governance, Risk & Compliance Lead in London

Governance, Risk & Compliance Lead in London

London Full-Time On-site
T

GRC/Cyber Compliance Lead
Remote - 1 day a month in either London or Manchester (fully expensed)
Competitive Salary & 20% Bonus & car allowance & private health
We're looking for an experienced GRC/Cyber Compliance Lead to join a growing Group Security function and build a new Governance, Risk and Compliance capability from the ground up.
This is an opportunity to take genuine ownership. Rather than stepping into an established GRC function and simply maintaining existing processes, you'll be responsible for defining how GRC operates across the organisation - establishing the controls framework, developing meaningful security metrics and risk reporting, strengthening compliance and assurance, and giving senior leadership and the Board a clear view of the organisation's security posture.
The role
Reporting to the Head of Cyber Security, Compliance and Risk Management, you will lead the development and ongoing operation of the Group's cyber GRC capability across multiple divisions, locations and business functions.
You'll build the foundations of a mature GRC function, including:
Designing and owning the Group's security controls framework and control library
Developing cyber risk methodology, risk assessment and treatment processes
Establishing meaningful KRIs, KPIs and security posture reporting for senior leadership and Board-level audiences
Developing governance processes around security policies, standards, exceptions, waivers and control ownership
Working with stakeholders across the business to improve control maturity and manage security risks
Leading the organisation's compliance and certification activities, including Cyber Essentials and Cyber Essentials Plus
Supporting the longer-term development towards ISO 27001
Managing relationships with internal and external auditors, certification bodies and independent assurance partners
Establishing robust control testing, evidence management and audit-readiness processes
Providing governance oversight of activities such as phishing testing and security awareness
Developing practical, pre-approved security responses and evidence that can be used by commercial and sales teams during tenders and bids
Providing security governance and assurance around key supp...

Governance, Risk & Compliance Lead in London employer: Tria Recruitment

Join a forward-thinking organisation that prioritises innovation and employee development, offering a dynamic work culture where your contributions as a Digital Solution Architect will directly shape the future of their digital landscape. With competitive salaries and a flexible hybrid working model in the vibrant locations of Milton Keynes and London, you'll enjoy a supportive environment that fosters growth and embraces cutting-edge technology. This role not only provides the chance to lead significant projects but also to be part of a transformative journey that enhances your professional skills and career trajectory.

T

Contact Details:

Tria Recruitment Recruitment Team