All open vacancies
PermanentUnited Kingdom · Remote

Head of GRC

Lead governance, risk and compliance for the organisation's cyber security function, shaping policy, risk management and the organisation's information assurance programme.

LocationUnited Kingdom · Remote
EngagementPermanent
DatesPosted 7 September 2026 · Closes 6 December 2026

Lead governance, risk and compliance for the organisation's cyber security function, shaping policy, risk management and the organisation's information assurance programme. Responsibilities:

  • Own the organisation's cyber risk management framework and policy library
  • Lead the organisation's Cyber Assessment Framework (CAF) self-assessment cycle and produce a supporting gap analysis
  • Take ownership of compliance obligations including PCI DSS and Cyber Essentials
  • Design the organisation's security awareness programme
  • Manage a small team of governance and risk specialists

Other open roles