Senior Information Security Consultant (GRC)
We are seeking a Senior Information Security Consultant (GRC) to provide expert guidance on governance, risk and compliance across a complex technology and business environment. The successful candidate will work with stakeholders at all levels to assess information security risks, strengthen control frameworks and support the continued development of effective security governance practices. This role requires a pragmatic consultant who can translate regulatory, technical and business requirements into clear, achievable improvements.
Responsibilities will include conducting information security and technology risk assessments, maintaining risk registers and developing appropriate mitigation plans. You will support the design, implementation and review of security policies, standards, procedures and control frameworks, while coordinating assurance activities, internal audits and external assessments. The role will also involve mapping controls to relevant legislation, regulations and industry standards, such as ISO 27001, NIST, COBIT or applicable data protection requirements. You will prepare clear reports and management information, track remediation actions, and provide constructive advice on control gaps and emerging risks.
You will build strong working relationships with technology, business, legal, privacy, procurement and operational teams, helping to embed security and risk management into projects, change initiatives and day-to-day processes. Experience supporting third-party risk management, security questionnaires, supplier reviews, business continuity or incident management would be valuable. Applicants should have substantial experience in information security governance, risk or compliance, with a strong understanding of security principles, control testing and regulatory expectations. Relevant professional certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer or Lead Auditor are desirable. Excellent communication, analytical and stakeholder management skills are essential, along with the ability to work independently, prioritise competing demands and present complex information clearly to both technical and non-technical audiences.
Senior Information Security Consultant (GRC)
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- Security Consultant
- IT Security Manager
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Cyber SOC Specialist - ESN
- End User Platform Vulnerabilit...
- Lead Security Engineer
- Member of Technical Staff (Sof...
- Cyber Security Consultant - As...
- Cyber Security Analyst - Enter...
- Technical Leader - Splunk Secu...
- Digital & Cyber Resilience – M...
- Data Protection Engineer
- Security Advisor
- Information Security Engineer
- Test Automation Engineer - Sec...
TOP SEARCHES
LOCATIONS
- Engineer
- Data Scientist
- Senior Data Scientist
- Head of Data Science
- Trainee Data Scientist
- Data Science Graduate
- Senior Financial Accountant
- Management Accountant
- Cost Accountant
- Civil Engineer
- Senior Civil Engineer
- Civil Design Engineer