At a Glance
- Tasks: Manage risk frameworks and support compliance in a dynamic transport organisation.
- Company: Leading transport organisation with a focus on governance and risk management.
- Benefits: Competitive salary, hybrid working, bonus, pension contribution, and travel discounts.
- Other info: Exciting career growth opportunities and a supportive team environment.
- Why this job: Join a vital role in shaping a risk-aware culture and ensuring compliance.
- Qualifications: 4-5 years in governance, risk, or compliance; strong communication skills.
The predicted salary is between 50000 - 55000 £ per year.
VIQU has partnered with a leading transport organisation to recruit a GRC Analyst to join their Finance and Information Security team. This is a fantastic opportunity for a GRC Analyst to take ownership of established governance frameworks, policies, and risk processes within a highly regulated environment. The GRC Analyst will play a key role in maintaining compliance, supporting audits, and embedding a strong risk-aware culture across the business.
Key Responsibilities of the GRC Analyst:
- Support and maintain the organisation’s risk management framework, including risk identification, assessment, and monitoring
- Facilitate risk assessments across business units and support mitigation planning
- Monitor risk trends, control effectiveness, and emerging threats, providing insights to senior stakeholders
- Support compliance programmes, ensuring adherence to regulatory and industry standards (e.g. ISO27001, NIST CSF)
- Coordinate internal and external audits, including evidence gathering and action tracking
- Contribute to governance policies, standards, and procedures development and review
- Produce clear governance and risk reports for leadership teams
- Support governance and assurance of technology change management processes
- Assist with risk, compliance, and security awareness initiatives across the organisation
Key Requirements of the GRC Analyst:
- 4–5 years’ experience in governance, risk, or compliance roles within regulated or critical environments
- Strong understanding of frameworks such as ISO27001 and NIST CSF
- Experience supporting audits, compliance reporting, and evidence management
- Ability to interpret regulatory requirements into practical controls and processes
- Excellent communication and stakeholder engagement skills
- Strong organisational skills with the ability to manage multiple priorities
- Experience within regulated sectors such as transport, utilities, financial services, or government
- Exposure to Operational Technology (OT) or Industrial Control Systems (ICS) (desirable)
- Relevant certifications (ISO27001 Lead Implementer/Auditor, CISMP, CRISC, CISM) (desirable)
- Degree in Information Security, Risk, Business, Law, or equivalent experience
Additional Information:
- Hybrid working: Initially 5 days onsite, reducing to 3 days onsite after probation
- 5% bonus
- 10% pension contribution
- Free Zone 1–6 travel for you and a nominated household member
- 75% discount on National Rail season tickets
- Interview process: 2 stages (Face-to-face and virtual)
Apply today to speak with VIQU in confidence or contact Noah Yeoman at . Know someone exceptional for this GRC Analyst position? Refer them and receive up to £1,000 if successful (terms apply). Follow us on LinkedIn @VIQU IT Recruitment for more exciting opportunities.
GRC Analyst in London employer: VIQU IT Recruitment
Contact Detail:
VIQU IT Recruitment Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land GRC Analyst in London
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend events, and connect on LinkedIn. The more people you know, the better your chances of landing that GRC Analyst role.
✨Tip Number 2
Prepare for those interviews! Research the company and its governance frameworks. Be ready to discuss how your experience aligns with their needs, especially around ISO27001 and NIST CSF.
✨Tip Number 3
Showcase your skills! Bring examples of your past work in risk management and compliance to the table. Use real-life scenarios to demonstrate your problem-solving abilities and stakeholder engagement.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are proactive about their job search.
We think you need these skills to ace GRC Analyst in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the GRC Analyst role. Highlight your experience with governance frameworks and risk management, and don’t forget to mention any relevant certifications you have. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how your background makes you a great fit for our team. Keep it concise but engaging – we love a good story!
Showcase Your Communication Skills: As a GRC Analyst, you'll need to communicate effectively with various stakeholders. In your application, demonstrate your communication skills by using clear and professional language. We appreciate clarity and precision!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us that you’re proactive and keen to join our team at StudySmarter!
How to prepare for a job interview at VIQU IT Recruitment
✨Know Your Frameworks
Make sure you brush up on your knowledge of governance frameworks like ISO27001 and NIST CSF. Be ready to discuss how you've applied these in past roles, as this will show your understanding and practical experience.
✨Prepare for Scenario Questions
Expect questions that ask you to describe how you would handle specific risk management scenarios. Think about examples from your previous work where you identified risks or facilitated assessments, and be prepared to explain your thought process.
✨Showcase Your Communication Skills
As a GRC Analyst, you'll need to engage with various stakeholders. Practice articulating complex compliance concepts in simple terms. This will demonstrate your ability to communicate effectively across different levels of the organisation.
✨Research the Company Culture
Understanding the company’s values and culture is key. Look into their approach to risk management and compliance, and think about how you can contribute to fostering a strong risk-aware culture within the team.