GRC & Security Risk Analyst | Hybrid (ISO 27001)

Capgemini

Inverness

Hybrid

GBP 48,000 - 70,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Capgemini is seeking a Governance, Risk, Compliance (GRC) and Vulnerability Assessment Analyst to support security governance, risk management, compliance, assurance and vulnerability management across projects and services. Based in Preston or Inverness, the role blends office, client site and home working.

You will identify and report security risks, develop policies aligned with ISO 27001, Cyber Essentials Plus, GDPR and NIST, and contribute to continual security posture improvements.

Qualifications

  • Experience working within a Cyber Security Governance, Risk & Compliance (GRC) environment.
  • Familiarity with security standards, certifications, and compliance frameworks, including: ISO 27001, Cyber Essentials Plus, GDPR, NIST Cyber Security Framework, ITIL.
  • Strong analytical, reporting, documentation, communication and organisational skills.

Responsibilities

  • Support the maintenance and continuous improvement of the Cyber Security Governance Framework, ensuring alignment with organisational, client, and regulatory requirements.
  • Assist with security risk management activities, including risk identification, assessment, treatment, acceptance tracking, and ongoing monitoring.
  • Support the development, review, and maintenance of security policies, standards, and procedures aligned to ISO 27001, Cyber Essentials Plus, GDPR, and contractual obligations.
  • Conduct security assurance reviews and control assessments to identify compliance gaps, risks, and opportunities for improvement.
  • Produce security reporting and metrics covering risk, compliance, audit, incident, and vulnerability management activities for internal and client stakeholders.

Skills

GRC experience
Risk management
Governance & compliance
Audit support
ISO 27001
Cyber Essentials Plus
GDPR
NIST
ITIL
Analytical skills
Reporting

Job description

Capgemini is seeking a Governance, Risk, Compliance (GRC) and Vulnerability Assessment Analyst to support security governance, risk management, compliance, assurance and vulnerability management across projects and services. Based in Preston or Inverness, the role blends office, client site and home working.

You will identify and report security risks, develop policies aligned with ISO 27001, Cyber Essentials Plus, GDPR and NIST, and contribute to continual security posture improvements.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Analyst: ISO 27001, NIST & Microsoft Security Risk
GRC Analyst: ISO 27001, NIST & Microsoft Security Risk

IMT Resourcing Solutions • Cheltenham

On-site
GBP 42,000 - 58,000
GRC Analyst
GRC Analyst

Experis • Manchester

Hybrid
GBP 89,000 - 96,000
GRC Analyst
GRC Analyst

Experis - ManpowerGroup • Manchester

Hybrid
GBP 661,000 - 716,000
GRC Security Lead - ISO 27001 & Vendor Risk (Hybrid UK)
GRC Security Lead - ISO 27001 & Vendor Risk (Hybrid UK)

GWI • Greater London

Hybrid
GBP 70,000 - 100,000
25 days annual leave
Health cash plan
4% pension matching
+6
GRC Analyst
GRC Analyst

Capgemini • Inverness

On-site
GBP 48,000 - 70,000
Hybrid: GRC & Security Assurance Analyst (ISO 27001)
Hybrid: GRC & Security Assurance Analyst (ISO 27001)

Clue Computing Co. • West of England

Hybrid
GBP 60,000 - 70,000
Hybrid Information Security GRC Lead | ISO27001 & Risk
Hybrid Information Security GRC Lead | ISO27001 & Risk

RAC • Bradley Stoke

Hybrid
GBP 70,000 - 90,000
Colleague Share Scheme
Car salary sacrifice scheme (EV)
25 days annual leave
+4
Lead GRC Security Analyst: ISO 27001 & AI Risk
Lead GRC Security Analyst: ISO 27001 & AI Risk

Cirrus Logic • City of Edinburgh

Hybrid
GBP 90,000 - 130,000
Hybrid work
SC Cleared GRC Analyst — Hybrid Security Governance
SC Cleared GRC Analyst — Hybrid Security Governance

Experis • Manchester

Hybrid
GBP 89,000 - 96,000
GRC Analyst
GRC Analyst

IMT Resourcing Solutions • Cheltenham

On-site
GBP 42,000 - 58,000