Hybrid GRC & Cyber Risk Specialist

Janus Henderson

Greater London

Hybrid

GBP 80,000 - 83,000

Full time

6 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Hybrid work environment

Job summary

Janus Henderson is seeking a cybersecurity leader in the United Kingdom with 3–5 years of information security experience. You will develop policies, oversee risk management, and ensure regulatory compliance across technology and business units in a hybrid work setting.

The role requires CISSP preference, deep knowledge of NIST/ISO 27001, cloud security, IAM, and Secure DevOps practices, with collaboration across Risk, Legal, Compliance, and IT teams.

Qualifications

  • Bachelor's degree in Information Technology, Cybersecurity, or related field, or equivalent work experience.
  • 3–5 years of professional information security experience.
  • CISSP certification strongly preferred.
  • Solid understanding of cybersecurity frameworks (NIST, ISO/IEC 27001) and compliance standards.
  • Experience with financial services regulations (FCA, SEC, MAS, DORA).
  • Proficient knowledge of network security principles (firewalls, IPS/IDP, TCP/IP, DHCP, DNS).
  • Experience securing Windows, UNIX/Linux, and Mac operating systems with proper access control.
  • Knowledge of cloud service models and deployment, with cloud security best practices.
  • In-depth knowledge of IAM (SSO, MFA, RBAC).
  • Understanding of Secure DevOps and CI/CD governance.

Responsibilities

  • Develop and maintain cybersecurity policies and procedures.
  • Ensure cybersecurity policies align with industry standards and regulatory requirements.
  • Integrate security practices across technical and non-technical departments.
  • Conduct regular risk assessments to identify vulnerabilities and threats.
  • Collaborate on and oversee risk mitigation strategies.
  • Monitor emerging threats and evolving technologies to refine risk protocols.
  • Design and evaluate control metrics for security effectiveness.
  • Embed cyber risk into risk registers and board-level reporting.
  • Monitor compliance with internal policies, standards, and regulatory requirements.
  • Engage with Technology, Legal, Compliance, and Internal Audit as required.
  • Deliver detailed compliance reports to senior management.
  • Monitor upcoming regulations and prepare compliance roadmaps.
  • Support and enhance cybersecurity awareness training programs.
  • Foster a company-wide culture of cybersecurity awareness.
  • Keep current with trends to inform training content and security measures.
  • Train wider tech teams on cybersecurity risk management.
  • Participate in incident response and post-incident evaluations.
  • Collaborate to strengthen defences against future incidents.
  • Maintain clear communication with stakeholders at all levels.
  • Provide expert guidance on cybersecurity best practices.
  • Work with Technology and other departments to achieve security objectives.

Skills

Cybersecurity concepts
Regulatory knowledge
Network security
Cloud security
IAM (SSO, MFA, RBAC)
Secure DevOps & CI/CD
Incident response
Stakeholder communication

Education

Bachelor's in IT/Cybersecurity or related field

Tools

CI/CD
Cloud
DevOps
IAM
Linux
Network
Security
RBAC

Job description

Janus Henderson is seeking a cybersecurity leader in the United Kingdom with 3–5 years of information security experience. You will develop policies, oversee risk management, and ensure regulatory compliance across technology and business units in a hybrid work setting.

The role requires CISSP preference, deep knowledge of NIST/ISO 27001, cloud security, IAM, and Secure DevOps practices, with collaboration across Risk, Legal, Compliance, and IT teams.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyber GRC Specialist - Hybrid, London
Senior Cyber GRC Specialist - Hybrid, London

Morson Edge (Financial Services) • Greater London

Hybrid
GBP 90,000 - 120,000
Information Security GRC Specialist
Information Security GRC Specialist

Morson Edge (Financial Services) • Greater London

Hybrid
GBP 90,000 - 120,000
Senior Cyber GRC & Technical Controls Lead
Senior Cyber GRC & Technical Controls Lead

air-recruitment • Greater London

Hybrid
GBP 108,000 - 132,000
GRC Security Lead - ISO 27001 & Vendor Risk (Hybrid UK)
GRC Security Lead - ISO 27001 & Vendor Risk (Hybrid UK)

GWI • Greater London

Hybrid
GBP 70,000 - 100,000
25 days annual leave
Health cash plan
4% pension matching
+6
Hybrid ISO 27001 GRC Specialist — Cloud & AI Security
Hybrid ISO 27001 GRC Specialist — Cloud & AI Security

Global Web Index • Greater London

Hybrid
GBP 71,000 - 82,000
25 days annual leave
Health and wellbeing support
Pension matching 4%
+3
Cyber Governance & Risk Advisor (GRC Specialist)
Cyber Governance & Risk Advisor (GRC Specialist)

Cyber UK • Greater London, Woking, Manchester

Hybrid
GBP 50,000 - 70,000
Well-being initiatives including Mental Health Champions
Professional community support
Inclusive and diverse workplace
Senior Cyber GRC Specialist – Technical Controls
Senior Cyber GRC Specialist – Technical Controls

air-recruitment • Greater London

Hybrid
GBP 108,000 - 132,000
Cyber GRC Lead - Hybrid, Regulated & Resilient
Cyber GRC Lead - Hybrid, Regulated & Resilient

Infosec • City Of London

Hybrid
GBP 90,000 - 120,000
Cyber GRC Lead – Hybrid, Regulated Infrastructure
Cyber GRC Lead – Hybrid, Regulated Infrastructure

Matchtech • Greater London

Hybrid
GBP 90,000 - 125,000
Hybrid GRC & InfoSec Analyst: ISO27001 & DSPT
Hybrid GRC & InfoSec Analyst: ISO27001 & DSPT

Cygnet Health Care Limited • Birmingham

Hybrid
GBP 45,000 - 52,000
Salary £45,000-£52,000
25 days annual leave
Training
+5