Risk and Compliance Associate

Protection Group International

West of England

On-site

GBP 45,000 - 65,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Protection Group International (PGI) is a global consultancy delivering risk, compliance and information security support. This fixed-term role in Bristol focuses on coordinating risk, governance, and compliance activities, maintaining ISO certifications, and assisting with audits and data protection requirements.

You will work closely with the Head of Risk & Compliance, deputising as needed. The role emphasises autonomy, stakeholder engagement, and practical risk management aligned with

Qualifications

  • Experience in corporate governance, risk and compliance.
  • Experience maintaining and managing risk registers.
  • Strong understanding of information security best practices.

Responsibilities

  • Coordinate and deliver key risk, governance, information security, and compliance activities.
  • Maintain ISO 27001 certification and act as lead coordinator when required.
  • Support risk assessments, management reviews, and supplier security due diligence.
  • Coordinate security awareness and training programmes and manage e-learning platform.

Skills

Governance
ISO Certifications
InfoSec Basics
Stakeholder comms
Attention to detail
Time management
Prioritisation
Commercial awareness
Relationship building
Proactive process improvement
Independent decision-making
Deputise for Head of Risk

Education

ISO27001 Lead Auditor
CISSP
CISM

Job description

PGI is a global consultancy that helps organisations build digital resilience. We deploy our people to implement solutions on behalf of clients or to support them in developing their own capabilities. Our vision is a world resilient to digital threats and online harm. To achieve this, we need to grow our team of talented and passionate people.

Our clients include some of the most well‑known global brands, national governments, and innovative growing businesses. We operate in an exciting, fast‑growing sector that bears increasing relevance and importance to nation‑states, corporates, universities, and NGOs.

This role is focused on providing hands‑on support across a broad range of Risk & Compliance activities. You will help maintain certifications, coordinate audits and governance processes, support risk management activities, and work collaboratively with stakeholders across the organisation. You will also provide additional capacity for business‑critical initiatives and help ensure Risk & Compliance continues to enable business performance rather than act as a barrier to it.

While primarily a support role, you will be expected to work with a high degree of autonomy and act as deputy to the Head of Risk & Compliance when required, including taking ownership of key activities, supporting senior stakeholder engagement, and representing the function during periods of absence.

What You’ll Be Doing

Working closely with the Head of Risk & Compliance, you will help coordinate and deliver key risk, governance, information security, and compliance activities, ensuring the function continues to operate effectively while supporting the wider business.

Responsibilities

Strong communication and relationship‑building skills are essential, as you will work with colleagues at all levels of the organisation, external auditors, clients, suppliers, and certification bodies. You will provide appropriate challenge, support sound decision‑making, and contribute to the delivery of a pragmatic and commercially focused Risk & Compliance function. Your responsibilities will include, but are not limited to:

  • Support the maintenance and coordination of ISO 27001 certification, acting as lead coordinator when required.
  • Coordinate internal audits, business continuity exercises, and related compliance activities.
  • Maintain key governance artefacts, including the Corrective Actions Log, Audit Schedule, and Continuous Improvement Plan.
  • Support risk assessments, management reviews, supplier security due diligence, and the review and maintenance of security policies, procedures, and plans.
  • Coordinate security awareness and training programmes, including new starter inductions, and manage the company's e-learning platform (Usecure).
  • Provide guidance and support on day‑to‑day data protection matters, acting as a key point of contact and escalating complex issues where appropriate.
  • Support and, where required, oversee the organisation's ongoing compliance with GDPR and wider data protection requirements.
  • Monitor and support compliance with client contractual obligations relating to data protection.
  • Support the Head of Risk & Compliance in maintaining corporate and departmental risk registers, taking ownership of activities when required.
  • Promote a positive, proportionate, and risk‑aware culture across the organisation.
  • Support business growth and delivery by providing Risk & Compliance input throughout the sales process, including bid submissions and customer due diligence questionnaires.
  • Support the maintenance and review of corporate governance policies, including Anti‑Bribery and Code of Conduct policies.
  • Coordinate activities supporting the maintenance of ISO 9001 certification across the organisation.
  • Maintain corporate certifications and registrations, including certification records and renewal schedules.
  • Support environmental management, sustainability initiatives, and related reporting requirements.
  • Assist with the administration and reporting obligations of the Business Ethics Framework, including the UN Global Compact (UNGC).
On Day One You Will Bring
  • Experience in corporate governance, risk, and compliance roles within a similarly sized organisation, including maintaining and managing risk registers.
  • Experience managing ISO certifications and working with external auditors.
  • A strong understanding of information security best practices.
  • Excellent communication skills, with the ability to build effective relationships with senior stakeholders, managers, employees, clients, auditors, and compliance bodies.
  • Strong attention to detail, commercial awareness, and organisational skills, alongside excellent time management and prioritisation abilities.
  • The ability to balance robust risk management with the practical needs of business operations and commercial objectives.
  • A continuous improvement mindset with a focus on efficiency and effectiveness.
  • Strong relationship‑building skills and the ability to influence and challenge constructively.
  • A proactive and pragmatic approach to improving processes and implementing best practice.
  • The confidence to operate independently and make decisions within agreed parameters, including deputising for the Head of Risk & Compliance when required.
Ideally, You Will Also Have
  • Previous experience acting as a DPO or supporting a Data Protection Officer.
  • Security management qualifications such as ISO27001 Lead Auditor, CISSP, or CISM.
  • Experience providing deputy or stand‑in support for a senior Risk, Compliance, Information Security, or Governance leader.

This is a 3-6 month fixed‑term contract (FTC) opportunity based at our Bristol office in Bradley Stoke (BS32). The role is available for an immediate or early start and offers an excellent opportunity to contribute to key Risk, Compliance, Information Security, and Governance activities within the organisation.

Diversity, Equity and Inclusion at PGI

As a British company which operates internationally, we draw strength from the diversity of our people. Without our diverse team, we couldn’t do the work we do. We are involved in projects across 80+ geographies, our people speak 25+ languages and come from a variety of backgrounds. By hiring and cultivating a diverse, equitable and inclusive workforce, we can uphold values that enable every member of the team to thrive, while delivering novel solutions to novel problems.

Accessibility at PGI

Every individual has different requirements, so we are committed to implementing reasonable adjustments to mitigate physical and non‑physical barriers in the workplace. We strive to make the recruitment process as accessible as possible, but if you have any questions or concerns, please get in touch.

Please note

We are not accepting applications or speculative profiles from any recruitment agencies. If we require additional resource, we will reach out to you.

We empower organisations and nations to counter digital threats. Our internationally acclaimed team of digital threat experts and thought leaders work at the cutting‑edge of threat detection, continually scanning the horizon for next‑generation risks. We use technology to support deep human insight, enabling us to build long‑range resilience for clients. We are trusted worldwide by governments, global NGOs and corporations.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Strategic Risk & Compliance Associate
Strategic Risk & Compliance Associate

Protection Group International • West of England

On-site
GBP 45,000 - 65,000
UK Head, Risk and Compliance (Fixed term contract)
UK Head, Risk and Compliance (Fixed term contract)

Specialist Risk Group • Greater London

On-site
GBP 90,000 - 130,000
25 days holiday + birthday half-day
Private medical cover
Life insurance & income protection
+2
Cyber Risk, Standards & Governance Lead
Cyber Risk, Standards & Governance Lead

Cyber UK • Greater London

On-site
GBP 60,000 - 80,000
Information Security Governance, Risk and Compliance Specialist
Information Security Governance, Risk and Compliance Specialist

GWI • Greater London

Hybrid
GBP 70,000 - 100,000
25 days annual leave
Health cash plan
4% pension matching
+6
GCP Cloud Security Architect
GCP Cloud Security Architect

PA Consulting • Bristol

On-site
Google Security Specialist
Google Security Specialist

PA Consulting • Bristol

Hybrid
GBP 60,000 - 80,000
Private healthcare
25 days of annual leave
Generous pension scheme
+2
GRC Senior Analyst
GRC Senior Analyst

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
Information Security & Compliance Lead
Information Security & Compliance Lead

Avanti Recruitment • United Kingdom

Remote
GBP 70,000 - 100,000
25 days' holiday
NEST pension
Perkbox benefits
+2
Google Security Specialist
Google Security Specialist

Astro Studios, Inc. • Bristol

Hybrid
GBP 60,000 - 80,000
Health and lifestyle perks accompanying private healthcare
25 days annual leave plus additional options
Generous company pension scheme
+2
Risk & Compliance Analyst - SC Cleared
Risk & Compliance Analyst - SC Cleared

Sanderson Government & Defence • Greater London

Hybrid
GBP 130,000 - 150,000