Information Security Specialist

Michael James Associates

Greater London

On-site

GBP 90,000 - 120,000

Full time

40 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Michael James Associates is recruiting an experienced Senior Information Security GRC Specialist to join our cyber security team in The City, London. You will lead governance, risk and compliance activities across the organisation, collaborating with technology and business stakeholders to strengthen security posture.

Responsibilities include developing policies, conducting risk assessments, producing risk reporting, and ensuring regulatory alignment with GDPR, NIST and other frameworks.

Qualifications

  • Extensive experience within Information Security, ideally 10+ years, with a strong background in GRC, cyber risk and security governance.
  • Proven ability to translate security risks into clear business language and recommendations.
  • Strong communication, reporting and stakeholder management skills.

Responsibilities

  • Contribute to development and delivery of information security strategy and governance.
  • Manage cyber and information security risk activities, including risk assessments, control reviews, audits and remediation.
  • Develop, review and maintain security policies, standards, controls and risk documentation.
  • Maintain oversight of security risks and track actions through to resolution.
  • Produce reporting on cyber risk, control performance, compliance and key security indicators.
  • Ensure alignment with regulatory requirements and frameworks (NIST, GDPR, DORA).

Skills

GRC governance
Security risk management
Regulatory compliance
Stakeholder communication
Cyber risk reporting

Job description

Information Security GRC Specialist Role - Insurance, The City, London

We are looking for an experienced Senior Information Security GRC Specialist to join an established and expanding cyber security team. This is a senior role with broad responsibility across security governance, risk and compliance, working closely with both technology and business stakeholders to strengthen the organisation’s overall security posture.

Key Responsibilities
  • Contribute to the development and ongoing delivery of the organisation’s information security strategy and governance approach.
  • Manage cyber and information security risk activities, including risk assessments, control reviews, audits and remediation.
  • Develop, review and maintain security policies, standards, controls and risk documentation.
  • Maintain oversight of security risks and ensure appropriate actions are tracked through to resolution.
  • Produce meaningful reporting on cyber risk, control performance, compliance and key security indicators.
  • Help ensure alignment with relevant regulatory requirements and recognised frameworks, including NIST, GDPR and DORA.
  • Work with business and technology teams to provide practical security and risk guidance.
  • Support security awareness and education activities across the organisation.
  • Contribute to security incident management, lessons learned and the ongoing improvement of security processes.
  • Provide senior-level GRC support and leadership cover when required.
Experience & Skills
  • Extensive experience within Information Security, ideally 10+ years, with a strong background in GRC, cyber risk and security governance.
  • Demonstrable experience leading security or risk initiatives and influencing senior stakeholders.
  • Strong understanding of information security controls, risk management methodologies, governance frameworks and regulatory requirements.
  • Able to translate technical and security risks into clear business language and recommendations.
  • Strong communication, reporting and stakeholder management skills.
  • Previous experience within a regulated environment, particularly financial services or insurance, would be advantageous.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Security (GRC) Specialist
Senior Information Security (GRC) Specialist

La Fosse • Greater London

Hybrid
GBP 81,000 - 99,000
Pension
Benefits
Information Security Specialist (GRC)
Information Security Specialist (GRC)

La Fosse Associates • Greater London

Hybrid
GBP 54,000 - 90,000
Pension
IT GRC Senior Analyst
IT GRC Senior Analyst

Nigel Wright Recruitment • Newcastle upon Tyne

Hybrid
GBP 70,000 - 90,000
Hybrid work policy
Senior Cyber GRC Specialist – Technical Controls
Senior Cyber GRC Specialist – Technical Controls

air-recruitment • Greater London

Hybrid
GBP 108,000 - 132,000
GRC Senior Analyst
GRC Senior Analyst

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
Information Security Manager
Information Security Manager

Frontpoint Partners Ltd • Greater London

On-site
GBP 85,000 - 110,000
Senior Information Security GRC Leader | Risk & Compliance
Senior Information Security GRC Leader | Risk & Compliance

Michael James Associates • Greater London

On-site
GBP 90,000 - 120,000
Senior GRC Specialist: Transform Governance & Risk
Senior GRC Specialist: Transform Governance & Risk

La Fosse Associates • Greater London

Hybrid
GBP 54,000 - 90,000
Pension
Information Security Engineer
Information Security Engineer

Selby Jennings • Greenwich

On-site
GBP 70,000 - 100,000
Information Security GRC Manager
Information Security GRC Manager

AJ Bell • Manchester

Hybrid
GBP 65,000 - 85,000
27 days’ holiday
Pension with matched contributions up to 8%
Discretionary bonus and share awards
+3