187 Governance Risk Compliance jobs in the United Kingdom
Lead_Analyst Information Security Governance Risk Compliance

Posted 16 days ago
Job Viewed
Job Description
**Title:** Lead Analyst, Information, Security, Governance, Risk and Compliance
**Location:** Remote-UK
**Salary:** £60,000 / annually
**About PSI**
We are PSI Services. We power world leading tests. Delivered with trusted science and the very best test taker experience. PSI supports test-takers on their journey to pursuing dreams and gaining certifications that are important to them. They believe that their dreams are worth working for; that their dreams are worth the effort. And we believe that too. This is our core purpose, to empower people to achieve their dreams. We do this by being the best provider of workforce solutions, which foster both technology and science to deliver the best solutions for our test takers.
We are searching for top talent to join our PSI team and help grow our products and services. We have a creative, supportive and inclusive culture where we empower people in their careers to be their authentic self and make the most of their great talent.
At PSI, we are committed to helping people meet their potential and we believe that promoting diversity, equity and inclusion is critical to our success. That's why you'll find these ideals are intrinsic to our company culture and applied throughout the employee lifecycle.
Learn more about what we do at: the Role**
The Lead Analyst, Information Security - GRC plays a key role in supporting PSI's commitment to data security, privacy, and compliance. This role is responsible for driving core activities across quality, risk management, Information Security, data protection, and audit readiness to ensure the organization meets ISO, PCI, SOC 2, and other relevant standards. The position helps deliver assurance to stakeholders that PSI prioritizes the security and privacy of its data and systems.
This is a full-time, permanent role, Monday to Friday, with flexible working hours around a standard 09:00 - 17:30 schedule. The role reports to the Snr Director of Information Security, Governance, Risk and Compliance and may be performed remotely, with occasional travel to offices and test centres as required for audits and assessments.
**Role Responsibilities**
+ Act as the primary point of contact for implementing and maintaining the security GRC framework.
+ Collaborate with internal teams to support an integrated end-to-end GRC approach across the organization.
+ Collaborate with internal teams to ensure documentation of security control in the form of system architecture diagrams, data flow diagrams and Information System Continuity Plans are in place.
+ Maintain and update security policies, standards, procedures, and guidelines, ensuring they align with current business and IT practices.
+ Monitor and assess the effectiveness of security controls across business systems and processes.
+ Ensure alignment with client, regulatory, and internal compliance requirements.
+ Support the automation and continual improvement of GRC processes and tools.
+ Generate and present GRC-related metrics and reports to internal stakeholders and executive leadership.
+ Support and coordinate internal and external audits (e.g., ISO27001, SOC2, etc.), including gathering evidence and managing responses.
+ Assist in third-party and entity-level risk assessments, identifying and mitigating risks through effective controls.
+ Build and maintain cross-functional relationships with teams such as Legal, IT, Audit, Finance, and Business Operations to ensure GRC practices support overall business objectives.
+ Support ongoing compliance initiatives, including security incident reviews, risk memos, and policy exceptions.
+ Deliver training and awareness programs related to information security, policies, and best practices.
+ Participate in the development of operational reports, metrics dashboards, and trend analysis related to security and compliance activities.
+ Prepare and support audit plans and compliance documentation for internal or external stakeholders.
+ Conduct vetting for access to sensitive systems and data, including continuous monitoring and clearance reviews.
**Knowledge, Skills and Experience Requirements**
+ Experience working within, achieving and/or maintaining ISO standards such as ISO 27001, 9001, 14001 and 2000 (essential).
+ Experience in implementing and maintaining externally awarded certifications such as ISO27001 is essential.
+ Proficient with MS Office
+ Solid understanding of common security tools (e.g., vulnerability scanners, firewalls, IDS/IPS, AV software) strongly recommended
+ Extensive training and experience in computer disciplines such as application and data security, systems programming, systems design, computer technology or software disciplines
+ Familiarity with OneTrust or ServiceNow GRC and Privacy tools desired
+ Certified training in security management, risk and compliance solutions and practices. CISSP, CISA, CISM, GSEC, CRISC, or related certification(s) desirable.
+ Experience in a fast-paced GRC/ISO function (desirable).
**Benefits & Culture**
At PSI, our culture is to be transparent and fair. That's why all of our roles have been benchmarked at a competitive rate against the local market they are based in. To be transparent all of our adverts now include the salary so you can see if we align with your expectations when looking for your next role.
In addition to a competitive salary, we offer a comprehensive benefits package and supportive culture when you join us. This includes:
+ 401k/Pension/Retirement Plan - with country specific employer %
+ Enhanced PTO/Annual Leave
+ Medical insurance - country specific
+ Dental, Vision, Life and Short-Term Disability for US
+ Flexible Spending Accounts - for the US
+ Medical Cashback plan covering vision, dental and income protection for UK
+ Employee Assistance Programme
+ Commitment and understanding of work/life balance
+ A culture of embracing wellness, including regular global initiatives
+ Access to supportive and professional mechanisms to help you plan for your future
+ Volunteer Day and a culture of giving back to our community and industry through volunteering opportunities
IT Governance, Risk and Compliance (GRC) Consultant
Posted 28 days ago
Job Viewed
Job Description
Sword is a leading provider of business technology solutions within the Energy, Public and Finance Sectors, driving transformational change within our clients. We use proven technology, specialist teams and domain expertise to build solid technical foundations across platforms, data, and business applications. We have a passion for using technology to solve business problems, working in partnership with our clients to help in achieving their goals.
About the role:
- Develop and maintain GRC frameworks aligned with ISO 27001, NIST, GDPR, and NIS2 standards
- Conduct risk assessments across business units, vendors, and projects
- Monitor regulatory changes and ensure compliance with legal and contractual obligations
- Support business continuity and disaster recovery planning and testing
- Manage internal audits, compliance reporting, and remediation activities
- Coordinate GDPR compliance and data protection processes across the organisation
- Drive improvements in security culture through awareness and training
- Collaborate with stakeholders to identify and address control deficiencies
Requirements
Qualifications & Experience
- Substantial relevant experience in control management for governance, compliance, IT audits, IS assurance and risk management programmes
- Understanding of regulatory requirements, including cross-industry regulations (e.g., GDPR, Data Protection Act) and industry-specific regulations
- Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT as well as those from NIST, including 800-53 and Cybersecurity Framework
- Knowledge of OneTrust risk management toolset or similar preferred
- Proven ability to communicate with technical teams to elicit information and requirements
- Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate compliance and risk related concepts to technical and nontechnical audiences
- CISA, CISM or equivalent
- BSc or equivalent qualification in IT based degree.
Benefits
At Sword, our core values and culture are based on caring about our people, investing in training and career development and building inclusive teams where we are all encouraged to contribute to achieve success.
We offer comprehensive benefits designed to support your professional development and enhance your overall quality of life.
In addition to a Competitive Salary , here's what you can expect as part of our benefits package:
Personalised Career Development: We create a development plan customised to your goals and aspirations, with a range of learning and development opportunities within a culture that encourages growth.
Flexible working: Flexible work arrangements to support your work-life balance. We can’t promise to always be able to meet every request, however are keen to discuss your individual preferences to make it work where we can.
A Fantastic Benefits Package: This includes generous annual leave allowance, enhanced family friendly benefits, pension scheme, access to private health, well-being, and insurance schemes, an employee assistance programme, discounted cash plan and more….
At Sword we are dedicated to fostering a diverse and inclusive workplace and are proud to be an equal opportunities employer, ensuring that all applicants receive fair and equal consideration for employment, regardless of whether they meet every requirement. If you don’t tick all the boxes but feel you have some of the relevant skills and experience we’re looking for, please do consider applying and highlight your transferable skills and experience. We embrace diversity in all its forms, valuing individuals regardless of age, disability, gender identity or reassignment, marital or civil partner status, pregnancy or maternity status, race, colour, nationality, ethnic or national origin, religion or belief, sex or sexual orientation. Your perspective and potential are important to us.
If we can do anything to help make the hiring process more accessible, please let our talent acquisition team know when you apply so we can support any adjustments.
Compliance, Governance and Risk Administrator
Posted 6 days ago
Job Viewed
Job Description
Part-time
27.5 hours per week
Monday to Friday
Hybrid role based in Newport
Propel Finance was established in 1996 to provide flexible and accessible finance to SMEs across the country. Now, more than 20 years on, Propel has grown to become one of the UK’s largest, independent finance houses. We have continued to deliver leading-edge finance solutions through a unique combination of teamwork and technology.
From this continued success we are now looking to recruit a Compliance, Governance and Risk Administrator to allow us to continue our exciting growth plans. Our aim is to take the service we offer to the next level, to push the boundaries of what’s available, and to create great customer experiences consistent with our values. Does that sound like something you’d like to be part of?
As a Compliance, Governance and Risk Administrator , you will play a key role in supporting day-to-day compliance operations and strategic regulatory projects across the business. Working closely with the Compliance team and stakeholders at all levels, the role involves following established processes to ensure regulatory requirements are met while contributing to broader business objectives.
Role responsibilities;
- Support the development and maintenance of governance frameworks, policies, and risk processes.
- Collaborate across teams to gather data for ESG, risk management, and committee reporting.
- Stay informed on ESG and governance trends to offer insights and recommendations.
- Assist in preparing reports and presentations for stakeholders.
- Act as a subject matter expert, educating teams on governance and risk matters.
- Support compliance monitoring, onboarding presentations, and training delivery.
- Analyse regulatory trends and best practices to ensure ongoing compliance.
- Provide compliance guidance, ensure accurate data handling, and participate in continuous learning.
Key skills required;
- Proficient in Microsoft Excel, Word, and PowerPoint
- Confident in handling data with strong attention to detail
- Problem-solving abilities
- Ability to work to deadlines and remain calm under pressure
- Ability to work under own initiative, multitasking and reprioritising throughout the day to manage conflicting priorities.
- Confident communicator with ability to liaise effectively with senior managers, team members and other departments
So, why would you want to work here?
We have a great working environment and we’re an ambitious business. We achieve so much because of our people. Everyone in the business, no matter their team or role can shape the outcome, share ideas, make suggestions, and have their voice heard. It’s a truly collaborative place to work.
At Propel, we embrace hybrid working and with modern offices in Newport, London and Manchester, plus a field-based sales team, you’ll never be too far away from colleagues.
This is a hybrid role, with 2 days per week in the Newport office, giving you the best of both worlds.
Benefits you can expect:
- 25 days annual leave + bank holidays
- 2 additional days holiday after 5 years’ service
- Birthday day off
- Opt in Private Medical Insurance
- Subsidised gym membership at £18.75 a month
- Cycle to Work Scheme
- Electric Car Scheme
- Buy Annual Leave Scheme
- Half day seasonal shopping
- Auto enrolment pension – 3% employer contribution subject to eligibility
- Life Assurance 3 x basic salary
- Employee Assistance Programme available 24/7
- Company events and reward schemes
We are proud to be a member of Stonewall’s Diversity Champions programme and are committed to improving workplace inclusion.
The Curve Group is Propel’s outsource partner for Recruitment and a "Data Processor". The Curve Group will hold the information you submit but Propel will have access to it. You can find their privacy policy here:
Risk & Compliance Associate
Posted today
Job Viewed
Job Description
Risk Compliance Officer
Posted today
Job Viewed
Job Description
Risk Compliance Officer
Posted today
Job Viewed
Job Description
Risk & Compliance Associate
Posted today
Job Viewed
Job Description
Be The First To Know
About the latest Governance risk compliance Jobs in United Kingdom !
Risk & Compliance Manager
Posted today
Job Viewed
Job Description
Risk & Compliance Associate
Posted today
Job Viewed
Job Description
Risk & Compliance Associate
Posted today
Job Viewed