GRC Manager - 6 month FTC

TMX Group

Greater London

Hybrid

GBP 90,000 - 130,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Trayport is seeking a GRC Manager to lead governance, risk and compliance for UK and EU regions. You will drive GDPR compliance, maintain ISO 27001, manage risk assessments and audit responses, and partner with Legal, Privacy and IT to embed security across products and services.

You will report to the Head of Information Security, mentor the Risk & Compliance team, and influence cross-functional teams to sustain a security-first culture across Trayport’s global footprint, including London,

Qualifications

  • Strong knowledge of ISO 27001, NIST CSF, NIS 2.0 and GDPR.
  • Experience with CIS controls.
  • Familiarity with cloud platforms: AWS, Azure or GCP.
  • Proven ability to deliver risk reporting to executive teams.
  • Experience leading audits and audit responses.
  • Excellent communication skills (oral and written) to senior leadership.
  • Analytical and proactive with risk and compliance focus.
  • Ability to influence cross-functional teams.
  • Balance control with pragmatic business needs.
  • Experience integrating risk management with supplier risk assessments.
  • Agile learner and team player.

Responsibilities

  • Execute UK and EU GRC strategy, ensuring GDPR compliance.
  • Maintain information security policy and security standards.
  • Oversee risk management processes including risk identification, assessment, controls and reporting.
  • Develop data-driven risk and compliance reporting for senior management and stakeholders.
  • Manage customer, internal and external audits and remediation tracking.
  • Maintain documentation and evidence of certifications and attestations.
  • Maintain ISO 27001 certification and governance outputs.
  • Recruit, manage and develop the Risk & Compliance team.
  • Participate in ISO leadership strategy and governance forums.
  • Advise executives with actionable risk insights for decision making.
  • Partner with Legal, Privacy, Procurement, Dev, IT to embed security in products and processes.
  • Champion security awareness and governance training across Trayport.
  • Develop and maintain security policies aligned with threats and compliance needs.
  • Maintain KPI reports on identified security issues.
  • Collaborate with TMX Group teams to ensure cross-discipline security execution.
  • Represent Trayport security in TMX forums such as AI Committee and Risk/Compliance Boards.
  • Influence across business units and stay updated on regulations and standards.
  • Liaise with external suppliers to ensure smooth delivery.

Skills

ISO 27001
NIST CSF
GDPR
Audit reporting
Stakeholder comms
Risk assessment
Cloud platforms

Education

Bachelor's degree

Tools

AWS
Azure
GCP
ISO 27001 Lead

Job description

GRC Manager is responsible for the overall execution of Trayport's Information Security Governance, Risk and Compliance programme under the guidance of the Head of Information Security. The role will primarily entail managing policies & standards incl. Training & Awareness deliverables, performing risk assessments, tracking of security risks of the Information Security Office and organisation as well as maintaining and managing the ISO27001 certification and ensuring there is appropriate governance & reporting on outputs and risk posture to stakeholder groups.

Primary Responsibilities
  • Execute the UK and EU GRC Strategy, ensuring compliance with GDPR, UK Data Protection Act 2018, and other regional privacy laws.
  • Maintain information security policy and security standards
  • Oversee risk management processes including risk identification, assessment, controls, weaknesses, mitigation and reporting.
  • Develop and deliver concise, data driven risk and compliance reporting for senior management/ stakeholders, highlighting trends, emerging risks & mitigation strategies.
  • Manage and support audits including customer, internal and external (standards auditors) including preparation, execution and remediation tracking.
  • Maintain documentation and evidence of certifications and attestations
  • Maintain key standards such as ISO 27001, adding business value.
  • Recruit, Manage, coach and develop the Risk & Compliance team, setting clear goals & objectives, cultivating an inclusive culture of accountability, continuous learning and collaboration.
  • Proactively participate as senior member and leader within the ISO leadership team contributing to overall strategy, engagement, team dynamic and programmes within ISO.
  • Act as a trusted advisor to executive and SME stakeholders, providing actionable insight and guidance to support risk-aware decision making.
  • Partner with Legal, Privacy, Procurement, Development, IT and other functions to embed security, governance and compliance into products, systems, processes and services.
  • Champion and scale security awareness and governance training programs to build a strong, security-first culture across Trayport.
  • Own the development, communication and maintenance of security policies, ensuring alignment with evolving threats and compliance needs.
  • Maintain Key Performance Indicator reports summarising the status of identified security issues.
  • Additional responsibilities Build relationships with teams across Trayport and TMX Group to ensure smooth execution of the security requirements across disciplines.
  • Represent Trayport security requirements in TMX central quorum forums such as AI Committee, Business Continuity & Operational Resilience and Risk/ Compliance Boards.
  • Ability to influence and gain credibility with the business teams across the organisation.
  • Keep up to date with emerging legal, regulatory and industry standards.
  • Liaise with external suppliers to ensure smooth delivery of their work.
Required skills
  • Good knowledge of ISO 27001, NIST CSF, NIS 2.0 Legal and Regulatory requirements across UK and Europe incl. GDPR.
  • Supporting knowledge of CIS controls.
  • Familiarity with cloud platforms: AWS, Azure or GCP.
  • Track record of delivering actionable risk reporting and advisory support to executive teams, influencing strategic decision-making.
  • Experience in leading customer audits and managing audit responses.
  • Excellent communication skills (oral and written), with the ability to present complex risk and compliance information clearly to senior leadership and stakeholders.
  • Strong analytical and critical thinking skills, capable of identifying risks, evaluating controls, and recommending effective mitigation strategies - Detail-oriented with proactive approach to risk and compliance.
  • Proven ability to balance control and creativity with problem solving abilities - tailoring governance frameworks that fit the business.
  • Experience in integrating risk management processes into business operations, including supplier and third-party risk assessments.
  • Agile and self-motivated learner.
  • Teamwork - able to work with other people in a collaborative manner.
  • Pragmatism - able to identify compromises that meet multiple, sometimes conflicting, stakeholder needs.
  • Ability to work independently and influence cross-functional teams.
Required qualifications
  • Bachelors level degree
Desirable qualifications
  • ISO27001 Lead Implementer or Lead Auditor
  • Certified Information Systems Audtior (CISA) - ISACA
  • Certified Information Security Manager (CISM) - ISACA
  • CompTIA Security+
  • ITIL, COBIT or similar governance frameworks
  • Other relevant certifications in cyber security or IT governance

Trayport is committed to creating and sustaining a collegial work environment in which all individuals are treated with dignity and respect and one which reflects the diversity of the community in which we operate. We provide accommodations for applicants and employees who require it.

At Trayport, our people power our success. We are a place where talented people never stop learning, innovating and working together to make an impact! We offer you more than a job - we offer you the opportunity to work with, and learn from the most respected industry and thought leaders in the business. We're always pushing the boundaries, rapidly expanding our global presence across London, Vienna, Singapore, Bremen and North America. At Trayport, we understand that our people are crucial to our future. We strive to provide a challenging and inspirational atmosphere; employing intelligent, enthusiastic, adaptable individuals and giving them the freedom, training, and guidance to allow them to consistently achieve their potential.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Manager - 6 month FTC
GRC Manager - 6 month FTC

TMX Group • City Of London

On-site
GBP 90,000 - 120,000
Senior GRC Manager: ISO 27001, GDPR & Risk
Senior GRC Manager: ISO 27001, GDPR & Risk

TMX Group • Greater London

Hybrid
GBP 90,000 - 130,000
GRC & Security Compliance Leader — ISO 27001 Expert
GRC & Security Compliance Leader — ISO 27001 Expert

TMX Group • City Of London

On-site
GBP 90,000 - 120,000
Delivery Manager
Delivery Manager

TMX Group • Greater London

Hybrid
GBP 80,000 - 110,000
GRC Senior Analyst
GRC Senior Analyst

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
Information Security Governance, Risk and Compliance Specialist
Information Security Governance, Risk and Compliance Specialist

Global Web Index • Greater London

On-site
GBP 71,000 - 82,000
25 days annual leave
Health and wellbeing support
Pension matching 4%
+3
Cyber Risk, Standards & Governance Lead
Cyber Risk, Standards & Governance Lead

Cyber UK • Greater London

On-site
GBP 60,000 - 80,000
Security GRC Analyst
Security GRC Analyst

Clue • West of England

Hybrid
GBP 60,000 - 70,000
Information Security Governance, Risk and Compliance Specialist
Information Security Governance, Risk and Compliance Specialist

GWI • Greater London

Hybrid
GBP 70,000 - 100,000
25 days annual leave
Health cash plan
4% pension matching
+6
Information Security GRC Manager
Information Security GRC Manager

AJ Bell • Manchester

Hybrid
GBP 65,000 - 85,000
27 days’ holiday
Pension with matched contributions up to 8%
Discretionary bonus and share awards
+3