Cyber Security GRC Analyst

SES Water Limited

Exeter

On-site

GBP 50,000 - 75,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Generous holiday allowance
Discretionary Bonus
Pension
Cycle to Work Scheme
Health benefits

Job summary

SES Water Limited is recruiting a Cyber Security GRC Analyst to strengthen governance, risk management and compliance across the organisation. The role focuses on administering Microsoft Purview to embed data protection, information governance and compliance capabilities, working with IT, Legal, Audit and Procurement to drive security practices.

You will help shape security standards, support ISO 27001/Security compliance and promote a positive security culture across the business.

Qualifications

  • Experience administering or supporting Microsoft Purview and Microsoft 365 security and compliance solutions.
  • Knowledge of Purview capabilities including DLP, Information Protection, Sensitivity Labels, Insider Risk Management, eDiscovery and Compliance Manager.
  • Experience supporting data governance, information protection and compliance activities within a Microsoft 365 environment.
  • Understanding of cyber security risk management, governance and control frameworks.
  • Knowledge of information security standards such as ISO 27001, NIS Regulations and Cyber Essentials.
  • Experience producing reports, managing stakeholders and supporting audit activities.

Responsibilities

  • Administer, maintain and improve Microsoft Purview capabilities (DLP, Information Protection, Data Lifecycle Management, Insider Risk, Communication Compliance, eDiscovery, Compliance Manager).
  • Support implementation and adoption of data classification and sensitivity labeling.
  • Monitor security and compliance alerts, investigate findings and coordinate remediation.
  • Develop and maintain security policies, controls and standards.
  • Produce management reporting, dashboards and compliance metrics.
  • Plan, conduct and document internal ISO 27001 audits.
  • Support third-party risk management and supplier security assurance.
  • Help maintain compliance with ISO 27001, NIS Regulations and Cyber Essentials.
  • Support information security awareness initiatives and promote a strong security culture.
  • Assist in security incident investigations and remediation.
  • Work with stakeholders to improve information governance practices and data ownership accountability.

Skills

Purview administration
Microsoft 365 security
Governance
Risk management
Compliance
Stakeholder management
Communication skills

Education

Degree level or equivalent experience

Tools

ISO 27001
NIST
Cyber Essentials

Job description

Powered by Water, Driven by Purpose


South West Water keeps the South West flowing with safe, reliable drinking water and wastewater services across some of the UK’s most stunning landscapes.


We’re proud to be part of Pennon Group, a leader in the UK water sector, working towards a greener future. Our goals? As well as lowering our carbon footprint, we’re working with partners to plant 300,000 trees, restore peatlands and supporting farmers and landowners to improve water quality and wildlife.


Whether you’re starting out or seeking a new challenge, our scale and ambition create opportunities for you to shape your own career.


Ready to make a splash? Join our team today.


Help protect critical services through effective cyber security governance

Are you passionate about cyber security, data governance and compliance? Do you enjoy translating complex security requirements into practical controls that make a real difference?


We're looking for a Cyber Security GRC Analyst to join our growing Cyber Security team. In this role, you'll play a key part in strengthening our cyber security posture through governance, risk management and compliance activities, while helping to ensure our information assets remain protected.


A significant focus of the role will be the administration and continual improvement of Microsoft Purview, ensuring effective data protection, information governance, data classification and compliance capabilities are embedded across the organisation.


Working closely with stakeholders across IT, Legal, Audit, Procurement and the wider business, you'll help shape security practices, drive compliance initiatives and support a positive security culture.


What you'll be doing:

As our Cyber Security GRC Analyst, you will:



  • Administer, maintain and continuously improve Microsoft Purview capabilities, including:



    • Data Loss Prevention (DLP)


    • Information Protection


    • Data Lifecycle Management


    • Insider Risk Management


    • Communication Compliance


    • eDiscovery


    • Compliance Manager




  • Support the implementation and adoption of data classification and sensitivity labelling.


  • Monitor security and compliance alerts, investigate findings and coordinate remediation activities.


  • Develop and maintain security policies, controls and standards.


  • Produce management reporting, dashboards and compliance metrics.


  • Plan, conduct and document internal ISO 27001 audits.


  • Support third-party risk management and supplier security assurance activities.


  • Help maintain compliance with frameworks and regulations such as ISO 27001, NIS Regulations and Cyber Essentials.


  • Support information security awareness initiatives and promote a strong security culture.


  • Assist in security incident investigations and remediation activities.


  • Work with business stakeholders to improve information governance practices and data ownership accountability.



What we're looking for:


  • Experience administering or supporting Microsoft Purview and Microsoft 365 security and compliance solutions.


  • Knowledge of Microsoft Purview capabilities, including DLP, Information Protection, Sensitivity Labels, Insider Risk Management, eDiscovery and Compliance Manager.


  • Experience supporting data governance, information protection and compliance activities within a Microsoft 365 environment.


  • An understanding of cyber security risk management, governance and control frameworks.


  • Knowledge of information security standards such as ISO 27001, NIS Regulations and Cyber Essentials.


  • Experience producing reports, managing stakeholders and supporting audit activities.


  • Strong communication skills with the ability to influence and build relationships across diverse teams.



Essential


  • 5 GCSEs (or equivalent), including Maths and English.


  • Educated to degree level or able to demonstrate equivalent professional experience.



Desirable


  • Hands-on experience of Microsoft Purview administration and optimisation.


  • Experience within information security, governance, risk or compliance functions.


  • Knowledge of recognised security frameworks such as ISO 27001, NIST or Cyber Essentials.


  • Ability to successfully obtain UK Government Security Clearance (SC).



Why join us?

This is an excellent opportunity to develop your cyber security governance and compliance career within a supportive environment. You'll gain exposure to enterprise-scale Microsoft security technologies, contribute to critical compliance programmes and play a meaningful role in protecting services, systems and data that matter.



  • Generous holiday allowance plus bank holidays


  • A discretionary Bonus


  • Competitive Contributory Pension


  • Share-save Scheme


  • Various health benefits


  • Wellbeing support programmes


  • A range of Group Discounts


  • Cycle to Work Scheme



Closing Date: 1st September 2026


Please note that the successful candidate will be subject to a mandatory DBS check as part of the onboarding process.


Be yourself, we like it that way. Together, we will build a culture of belonging, where inclusion is instinctive. Diversity is our strength and a reflection of our communities. We care, we value everyone, we celebrate uniqueness.


Our core values, which are essential to our success, are:


Be Rock Solid - Build trust and be trusted. Be the one we all look to and can depend on.


Be You - We want you to bring your best everyday. Be yourself and make your mark in your individual way.


Be the Future - Embrace change. Drive Progress. Own the challenge.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

Wales & West Utilities Limited • Newport

On-site
GBP 62,000 - 71,000
Flexible working opportunities
Pension with Aviva: 5% employee, 10%‑+
Life Insurance 14x salary
+4
Drinking Water Safety Plan Analyst South West Water · Engineering, Technical and Scientific · Exeter
Drinking Water Safety Plan Analyst South West Water · Engineering, Technical and Scientific · Exeter

AquaCare, Company • Exeter

On-site
GBP 40,000 - 65,000
Holiday Buy & Sell Scheme
Competitive Pension Scheme
Life Assurance
+11
Cyber Security Analyst
Cyber Security Analyst

Novia Financial plc • Bath

On-site
GBP 55,000 - 75,000
Laboratory Scientist
Laboratory Scientist

South West Water Limited • Exeter

Hybrid
GBP 28,000 - 34,000
Holiday Buy & Sell Scheme
Paid Volunteering Day
Retail discounts platform
+8
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Arctic Shores • Manchester

Hybrid
GBP 55,000 - 65,000
Share Options
Hybrid working
Private medical
+2
Cyber Security Consultant
Cyber Security Consultant

AtkinsRéalis • West of England

Hybrid
GBP 70,000 - 110,000
Hybrid working
Career development
Flexible holidays
Cyber Risk Manager - Active Security Clearance Required
Cyber Risk Manager - Active Security Clearance Required

Solirius Ltd. • Greater London

On-site
GBP 70,000 - 110,000
Competitive salary
Bonus scheme
Private healthcare insurance
+3
Senior Cyber Security Engineer
Senior Cyber Security Engineer

United States Digital Space LLC • Greater London

Hybrid
GBP 100,000 - 140,000
Security Architect
Security Architect

Solirius Ltd. • Greater London

On-site
GBP 90,000 - 120,000
Competitive Salary
Bonus Scheme
Private Healthcare Insurance
+2
Information Security Manager
Information Security Manager

Together - loans, mortgages & finance • Cheadle

On-site
GBP 60,000 - 90,000
26 days holiday
Birthday day off
Discretionary annual bonus
+8