GRC Controls & Oversight Lead

Experis UK

Warwick

Hybrid

GBP 74,000 - 85,000

Full time

32 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Experis UK is seeking a GRC Controls & Oversight Lead to support governance, assurance, and control across IT and OT domains. You will drive evidence-based controls, embed governance frameworks, and coordinate remediation across multiple business units.

The role requires hands-on governance experience, strong organisational skills, and the ability to manage large volumes of assurance activities. Hybrid Warwick role with active SC clearance and umbrella-based daily rate.

Qualifications

  • Experience in governance, risk, compliance, assurance or controls.
  • Ability to assess control effectiveness against policies and standards.
  • Strong stakeholder management and communication skills.
  • Analytical mindset to identify gaps and remediation opportunities.

Responsibilities

  • Lead controls assurance and testing across IT/OT environments.
  • Review control effectiveness against policies, standards, and regulatory requirements.
  • Identify deficiencies, gaps and remediation actions.
  • Manage assurance backlogs and prioritise actions.
  • Maintain oversight of risks, audit observations, and remediation plans.
  • Coordinate evidence collection and stakeholder engagement for audits.
  • Produce governance reporting and assurance metrics for senior stakeholders.
  • Ensure activities align to risk appetites and regulatory obligations.
  • Facilitate governance forums and risk reviews.

Skills

GRC/Assurance
Security controls
IT/OT environments
Control testing
Stakeholder mgmt
Analytical skills
Policy interpretation
Independent working
Detail oriented

Education

Degree in Information Security or related
CRISC
CISA
ISO 27001 Lead Auditor

Tools

GRC tools

Job description

Role Title: GRC Controls & Oversight Lead

Location: Warwick - Hybrid 50/50

Rate: £400-460 per day - Umbrella only Candidates must hold active SC clearance

Role Title: GRC Controls & Oversight Lead Location: Warwick - Hybrid 50/50 Duration: 21/03/2027 Rate: £400-460 per day - Umbrella only Candidates must hold active SC clearance

Description

We are seeking an experienced GRC Controls & Oversight Lead to support the governance, assurance, and control environment across IT and Operational Technology (OT) domains. This role will play a key part in ensuring security and operational controls are effectively embedded, monitored, and evidenced across the organisation.

The successful candidate will be a hands-on practitioner with strong organisational and analytical skills, capable of navigating complex processes, coordinating stakeholders, and driving assurance activities to completion. Rather than acting as a technical security specialist, the role focuses on the practical application of governance, risk, and control management principles, ensuring that control frameworks are operating effectively and that identified gaps are tracked through to resolution.

The role requires an individual who can work independently, manage competing priorities, and bring structure to large volumes of assurance, compliance, and remediation activities.

Key Responsibilities
  • Lead and coordinate controls assurance and testing activities across IT and OT environments.
  • Review, assess, and validate control effectiveness against defined policies, standards, and regulatory requirements.
  • Identify control deficiencies, gaps, and areas for improvement, ensuring timely remediation and follow-up.
  • Manage assurance backlogs, driving prioritisation and resolution of outstanding actions and findings.
  • Maintain oversight of risks, audit observations, control exceptions, and remediation plans.
  • Work closely with security, operational, engineering, and business teams to gather evidence and validate compliance.
  • Support internal and external audits by coordinating responses, evidence collection, and stakeholder engagement.
  • Produce governance reporting, assurance metrics, and management updates for senior stakeholders.
  • Ensure control activities remain aligned to organisational risk appetites, regulatory obligations, and industry good practice.
  • Facilitate governance forums, risk reviews, and oversight meetings as required.
  • Support continuous improvement initiatives to strengthen governance processes and control effectiveness.
Essential Skills & Experience
  • Experience working within Governance, Risk & Compliance (GRC), assurance, audit, controls, or oversight functions.
  • Strong understanding of security and technology control environments across IT and/or OT domains.
  • Experience conducting or supporting control testing, assurance reviews, compliance assessments, or audit activities.
  • Ability to analyse complex processes and identify control weaknesses or improvement opportunities.
  • Experience managing large volumes of actions, findings, risks, and remediation activities.
  • Strong stakeholder management and communication skills.
  • Ability to interpret policies, standards, procedures, and control requirements.
  • Proven ability to work independently and drive activities through to completion.
  • Strong organisational skills with excellent attention to detail.
Desirable
  • Experience working within critical national infrastructure, utilities, energy, manufacturing, or regulated environments.
  • Understanding of OT security concepts and industrial control system environments.
  • Familiarity with regulatory and control frameworks such as ISO 27001, NIST CSF, IEC 62443, NIS Regulations, or similar.
  • Experience using GRC, audit, risk, or compliance management tools.
Personal Attributes
  • Proactive and delivery-focused.
  • Comfortable dealing with ambiguity and navigating complex organisational processes.
  • Highly organised with the ability to prioritise effectively.
  • Collaborative and able to influence stakeholders at all levels.
  • Pragmatic, solutions-oriented, and able to balance governance requirements with operational realities.
  • Strong sense of ownership and accountability.
Qualifications
  • Degree or equivalent professional experience in Information Security, Risk Management, Business Management, Technology, or a related discipline.
  • Industry certifications such as CRISC, CISA, ISO 27001 Lead Auditor, CISSP, or equivalent are advantageous but not essential.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Controls & Oversight Lead
GRC Controls & Oversight Lead

Experis Austria • Warwick

Hybrid
GBP 74,000 - 85,000
GRC Controls & Oversight Lead
GRC Controls & Oversight Lead

Experis Austria • North Warwickshire

Hybrid
GBP 111,000 - 157,000
SC Cleared GRC Controls & Oversight Lead
SC Cleared GRC Controls & Oversight Lead

Fortice Ltd • Warwick

On-site
GBP 70,000 - 90,000
SC Cleared GRC Controls & Oversight Lead
SC Cleared GRC Controls & Oversight Lead

Nub News • Warwick

Hybrid
GBP 72,000 - 94,000
GRC Assurance Lead – IT & OT Controls
GRC Assurance Lead – IT & OT Controls

Experis UK • Warwick

Hybrid
GBP 74,000 - 85,000
IT GRC Senior Analyst
IT GRC Senior Analyst

Nigel Wright Recruitment • Newcastle upon Tyne

Hybrid
GBP 70,000 - 90,000
Hybrid work policy
GRC Controls & Assurance Lead (IT & OT)
GRC Controls & Assurance Lead (IT & OT)

Nub News • Warwick

Hybrid
GBP 72,000 - 94,000
GRC Senior Analyst
GRC Senior Analyst

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
Security GRC Governance Lead – SC Cleared
Security GRC Governance Lead – SC Cleared

Stott and May • England

On-site
GBP 85,000 - 110,000
GRC Analyst
GRC Analyst

Experis • Manchester

Hybrid
GBP 89,000 - 96,000